<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; imperva</title>
	<atom:link href="http://www.darknet.org.uk/tag/imperva/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Mon, 22 Mar 2010 06:54:39 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>GreenSQL &#8211; Open Source Database Firewall Software</title>
		<link>http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/</link>
		<comments>http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/#comments</comments>
		<pubDate>Wed, 10 Feb 2010 10:11:28 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Countermeasures]]></category>
		<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[data integrity]]></category>
		<category><![CDATA[data-security]]></category>
		<category><![CDATA[database firewall]]></category>
		<category><![CDATA[database-security]]></category>
		<category><![CDATA[green sql]]></category>
		<category><![CDATA[greensql]]></category>
		<category><![CDATA[guardium]]></category>
		<category><![CDATA[hacking-databases]]></category>
		<category><![CDATA[imperva]]></category>
		<category><![CDATA[mysql firewall]]></category>
		<category><![CDATA[mysql security]]></category>
		<category><![CDATA[postgresql firewall]]></category>
		<category><![CDATA[postgresql security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2516</guid>
		<description><![CDATA[GreenSQL is an Open Source database firewall used to protect databases from SQL injection attacks. GreenSQL works as a proxy for SQL commands and has built in support for MySQL &#038; PostgreSQL . The logic is based on evaluation of SQL commands using a risk scoring matrix as well as blocking known db administrative commands [...]]]></description>
			<content:encoded><![CDATA[<p>GreenSQL is an Open Source database firewall used to protect databases from SQL injection attacks. GreenSQL works as a proxy for SQL commands and has built in support for MySQL &#038; PostgreSQL . The logic is based on evaluation of SQL commands using a risk scoring matrix as well as blocking known db administrative commands (DROP, CREATE, etc). GreenSQL is distributed under the GPL license.</p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p><strong>GreenSQL Architecture</strong></p>
<p>GreenSQL works as a reverse proxy for MySQL connections. This means, that instead of connecting TO THE MySQL server, your applications will connect to THE GreenSQL server. GreenSQL will analyze SQL queries and then, if they&#8217;re safe, will forward them to the back-end MySQL server.</p>
<p><strong>New Changes</strong></p>
<p>In this version, GreenSQL provides native support for PostgreSQL (http://www.postgresql.org) databases for the very first time. In fact, GreenSQL is the only database firewall (Open or Closed Source) available for the protection of the many PostgreSQL databases currently in use.</p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p>GreenSQL 1.2 merges the GreenSQL-Console package into the GreenSQL-FW. The GreenSQL-Console will no longer be released as a separated package. During the installation process, you will be able to choose whether or not to install the console.</p>
<p>You can download GreenSQL v1.2 here:</p>
<p><a href="http://www.greensql.net/download/get?os=Source_Code&#038;platform=Any&#038;filename=greensql-fw-1.2.2.tar.gz">greensql-fw-1.2.2.tar.gz</a></p>
<p>Or read more <a href="http://www.greensql.net/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=GreenSQL+%E2%80%93+Open+Source+Database+Firewall+Software+http://bit.ly/c3MaSB+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/&amp;title=GreenSQL+%E2%80%93+Open+Source+Database+Firewall+Software" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/&amp;title=GreenSQL+%E2%80%93+Open+Source+Database+Firewall+Software" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/&amp;t=GreenSQL+%E2%80%93+Open+Source+Database+Firewall+Software" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/&amp;title=GreenSQL+%E2%80%93+Open+Source+Database+Firewall+Software" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2010/02/greensql-open-source-database-firewall-software/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Google Hacking Back in The News &#8211; Google Takes Action</title>
		<link>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/</link>
		<comments>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/#comments</comments>
		<pubDate>Wed, 29 Oct 2008 10:12:37 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[google-hacking]]></category>
		<category><![CDATA[hacking-websites]]></category>
		<category><![CDATA[imperva]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[Information-Security]]></category>
		<category><![CDATA[social security numbers]]></category>
		<category><![CDATA[sql-injection]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1184</guid>
		<description><![CDATA[Google hacking was the big thing back in 2004, I actually did a talk on it in Hack in the Box 2004, it&#8217;s resurfaced again as a serious threat with Google noticing more queries relating to things like social security numbers.
The Google Hacking Database has been active for years now and there are hundreds of [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.darknet.org.uk/tag/google-hacking/">Google hacking</a> was the big thing back in 2004, I actually did a talk on it in <a href="http://conference.hackinthebox.org/">Hack in the Box</a> 2004, it&#8217;s resurfaced again as a serious threat with Google noticing more queries relating to things like social security numbers.</p>
<p>The <a href="http://johnny.ihackstuff.com/ghdb.php">Google Hacking Database</a> has been active for years now and there are hundreds of queries that can bring up juicy information. <a href="http://www.darknet.org.uk/2008/03/goolag-gui-tool-for-google-hacking/">Goolag</a> was also released this year which gives a much easier, automated way of Google Hacking for specific domains or info.</p>
<p><!--adsense#New468--></p>
<blockquote><p>Search engines such as Google are increasingly being used by hackers against Web applications that hold sensitive data, according to a security expert.</p>
<p>Even with rising awareness about data security, it takes all of a few seconds to pluck Social Security numbers from Web sites using targeted search terms, said Amichai Shulman, founder and CTO for database- and application-security company Imperva.</p>
<p>The fact that Social Security numbers are even on the Web is a human error; the information should never be published in the first place. But hackers are using Google in more sophisticated ways to automate attacks against Web sites, Shulman said.</p>
<p>Shulman said Imperva recently discovered a way to execute a <a href="http://www.darknet.org.uk/tag/sql-injection">SQL injection</a> attack that comes from an IP address that belongs to Google. </p></blockquote>
<p>It seems like it&#8217;s becoming big business on both sides, finding information and vulnerable sites and by gaming Google into dropping pages from the index (Blackhat SEO).</p>
<p>Even with the throttling it&#8217;ll still continue, people will find smarter ways to make the queries so it&#8217;s not blocked and they&#8217;ll build rate limiting into their tools so they don&#8217;t get dropped. The bad guys have plenty of patience, trust me on that.</p>
<p><!--adsense#New468--></p>
<blockquote><p>Manipulating Google is particularly useful since it offers anonymity for a hacker plus an automated attack engine, Shulman said.</p>
<p>Tools such as Goolag and Gooscan can execute broad searches across the Web for specific vulnerabilities and return lists of Web sites that have those problems.</p>
<p>&#8220;This is no more a script kiddy game &#8212; this is a business,&#8221; Shulman said. &#8220;This is a very powerful hacking capability.&#8221;</p>
<p>Another attack method is so-called Google worms, which use the search engine to find specific vulnerabilities. With the inclusion of additional code, the vulnerability can be exploited, Shulman said.</p>
<p>&#8220;In 2004, this was science fiction,&#8221; Shulman said. &#8220;In 2008, this is a painful reality.&#8221;</p>
<p>Google and other search engines are taking steps to stop the abuse. For example, Google has stopped certain kinds of searches that could yield a trove of Social Security numbers in a single swoop. It also puts limits on the number of search requests sent per minute, which can slow down mass searches for vulnerable Web sites. </p></blockquote>
<p>As they said, this is not some script kiddy stuff, with the amount of queries going on and the complexity this is some serious business!</p>
<p>Any pen-test or vulnerability assessment should have an information gathering stage and it&#8217;s here you should be using Google Hacking techniques and tools to uncover anything on the domain or company infrastructure that shouldn&#8217;t be there.</p>
<p>Just be warned that this kind of stuff is on the up, so brief your clients of the dangers and make sure this step is included in the audit.</p>
<p>Source: <a href="http://www.networkworld.com/news/2008/102708-security-analyst-warns-of-google.html?page=1">Network World</a></p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action+http://bit.ly/2nrvQc+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;t=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
