<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; information gathering</title>
	<atom:link href="http://www.darknet.org.uk/tag/information-gathering/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Thu, 18 Mar 2010 08:50:21 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>FindDomains v0.1.1 Released &#8211; Discover Domains/Sites/Hosts</title>
		<link>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/</link>
		<comments>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/#comments</comments>
		<pubDate>Wed, 30 Dec 2009 09:17:18 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[domain-scanner]]></category>
		<category><![CDATA[find domains]]></category>
		<category><![CDATA[find domains by ip address]]></category>
		<category><![CDATA[find domains from ip address]]></category>
		<category><![CDATA[finddomains]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[reverse domain lookup]]></category>
		<category><![CDATA[search engine discovery tool]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2370</guid>
		<description><![CDATA[FindDomains is a multithreaded search engine discovery tool that will be very useful for penetration testers dealing with discovering domain names/web sites/virtual hosts which are located on too many IP addresses. Provides a console interface so you can easily integrate this tool to your pentest automation system.
It retrieves domain names/web sites which are located on [...]]]></description>
			<content:encoded><![CDATA[<p>FindDomains is a multithreaded search engine discovery tool that will be very useful for penetration testers dealing with discovering domain names/web sites/virtual hosts which are located on too many IP addresses. Provides a console interface so you can easily integrate this tool to your pentest automation system.</p>
<p>It retrieves domain names/web sites which are located on specified ip address/hostname.</p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p>In order to use FindDomains you need to:</p>
<ol>
<li>Create an appid from &#8220;Bing Developers&#8221; at <a href="http://www.bing.com/developers/createapp.aspx">this link</a>.</li>
<li>It&#8217;ll be like that : 32AFB589D1C8B4FEC73D4BCB6EA0AD810E0FA2C7</li>
<li>When you have registered an appid, enter it to the &#8220;appid.txt&#8221; which is in the program directory. </li>
</ol>
<p><strong>Features</strong></p>
<ul>
<li>Uses Bing search engine. Works with first 1000 records.</li>
<li>Multithreaded on crawling and DNS resolution.</li>
<li>Performs DNS resolution for extracted domains to eleminate cached/old records.</li>
<li>Has a console interface so it can be very useful with some command-line foo.</li>
<li>Works with Mono. But running under Windows is more efficient. </li>
</ul>
<p><strong>Sample usage</strong></p>
<pre><code>FindDomains.exe 1.2.3.4</code></pre>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<pre><code>FindDomains.exe www.hotmail.com </code></pre>
<p><strong>Requirements</strong></p>
<ul>
<li>.NET Framework 3.5. Also working with Mono. </li>
</ul>
<p>You can dowload FindDomains v.0.1.1 here:</p>
<p><a href="http://finddomains.googlecode.com/files/FindDomainsv0.1.1.rar">FindDomainsv0.1.1.rar</a></p>
<p>Or read more <a href="http://code.google.com/p/finddomains/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts+http://bit.ly/5jfEJb+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;t=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/&amp;title=FindDomains+v0.1.1+Released+%E2%80%93+Discover+Domains%2FSites%2FHosts" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/12/finddomains-v0-1-1-released-discover-domainssiteshosts/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>hostmap 0.2 &#8211; Automatic Hostname &amp; Virtual Hosts Discovery Tool</title>
		<link>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/</link>
		<comments>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/#comments</comments>
		<pubDate>Wed, 23 Dec 2009 10:44:51 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[automatic hostname discovery]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[host mapping]]></category>
		<category><![CDATA[hostmap]]></category>
		<category><![CDATA[hostname discovery tool]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[network-security]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[vhost discovery]]></category>
		<category><![CDATA[vhost discovery tool]]></category>
		<category><![CDATA[virtual host discovery]]></category>
		<category><![CDATA[virtual host discovery tool]]></category>
		<category><![CDATA[web-hacking-tool]]></category>
		<category><![CDATA[web-security]]></category>
		<category><![CDATA[web-server-hacking]]></category>
		<category><![CDATA[web-server-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2371</guid>
		<description><![CDATA[hostmap is a free, automatic, hostnames and virtual hosts discovery tool written in Ruby, licensed under GNU General Public License version 3 (GPLv3). Its goal is to enumerate all hostnames and configured virtual hosts on an IP address. The primary users of hostmap are professionals performing vulnerability assessments and penetration tests.

hostmap helps you using several [...]]]></description>
			<content:encoded><![CDATA[<p>hostmap is a free, automatic, hostnames and virtual hosts discovery tool written in Ruby, licensed under GNU General Public License version 3 (GPLv3). Its goal is to enumerate all hostnames and configured virtual hosts on an IP address. The primary users of hostmap are professionals performing vulnerability assessments and penetration tests.</p>
<p><!--adsense#New468--></p>
<p>hostmap helps you using several techniques to enumerate all the hostnames associated with an IP address.</p>
<p><strong>Features</strong></p>
<ul>
<li>DNS names and virtual hosts enumeration</li>
<li>Multiple discovery techniques, to read more see documentation.</li>
<li>Results correlation, aggregation and normalization</li>
<li>Multithreaded and event based engine</li>
<li>Platform independent</li>
</ul>
<p><strong>Changes/New Features in v0.2</strong></p>
<ul>
<li>Fully refactored and rewritten in Ruby.</li>
<li>User requested interrupt (CTRL+C) now is handled.</li>
<li>Added Rakefile to automatize task. For example readme and API documentation rebuilding.</li>
<li>Changed info gathering plugin architecture. Now using PlugMan library.</li>
<li>Added some host names to brute forcing dictionaries.</li>
<li>Added parsing of alternate subject (subjectAltName) from X.509 certificates.</li>
<li>Added info gathering plugin using dnshistory.org.</li>
<li>Added wildcard domains detection.</li>
<li>Added wildcard X.509 certificate detection.</li>
<li>Added -d option to use a user supplied list of DNS servers</li>
<li>Added blacklist for second level TLD (for example co.uk) detection.</li>
<li>Added an enumeration plugin to use Microsoft Bing via API. API key must be provided in configuration file.</li>
<li>Added a configuration file (hostmap.conf) to keep user settings.</li>
<li>Added option &#8211;http-ports to specify the ports to check for an HTTP/HTTPS service.</li>
</ul>
<p><!--adsense#New468--></p>
<p>You can see the complete list of changes <a href="http://hostmap.sourceforge.net/doc/Changelog.txt">here</a>.</p>
<p>The user manual is available here &#8211; <a href="http://hostmap.sourceforge.net/doc/README.pdf">README.pdf</a> [PDF]</p>
<p>You can download hostmap 0.2 here:</p>
<p><a href="https://sourceforge.net/projects/hostmap/files/hostmap/hostmap-0.2/hostmap-0.2.tar.gz/download">hostmap-0.2.tar.gz</a></p>
<p>Or read more <a href="http://hostmap.sourceforge.net/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool+http://bit.ly/7naz5j+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;t=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/&amp;title=hostmap+0.2+%E2%80%93+Automatic+Hostname+%26+Virtual+Hosts+Discovery+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/12/hostmap-0-2-automatic-hostname-virtual-hosts-discovery-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Binging (BETA) &#8211; Footprinting &amp; Discovery Tool (Google Hacking)</title>
		<link>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/</link>
		<comments>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/#comments</comments>
		<pubDate>Fri, 06 Nov 2009 07:51:23 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[bing]]></category>
		<category><![CDATA[binging]]></category>
		<category><![CDATA[domain enumeration]]></category>
		<category><![CDATA[domain footprinting]]></category>
		<category><![CDATA[google-hacking]]></category>
		<category><![CDATA[host enumeration]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information-leak]]></category>
		<category><![CDATA[Information-Security]]></category>
		<category><![CDATA[microsoft bing]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[reverse lookup]]></category>
		<category><![CDATA[site discovery]]></category>
		<category><![CDATA[web-application-security]]></category>
		<category><![CDATA[web-applications]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2230</guid>
		<description><![CDATA[It&#8217;s been a while since I&#8217;ve seen a tool of this type, back in the heydays of Google Hacking (which became the generic term for information gathering via search engines) there were multiple tools such as Gooscan and Goolag.

Binging is a simple tool to query Bing search engine. It will use your Bing API key [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been a while since I&#8217;ve seen a tool of this type, back in the heydays of <a href="http://www.darknet.org.uk/tag/google-hacking/">Google Hacking</a> (which became the generic term for information gathering via search engines) there were multiple tools such as <a href="http://www.darknet.org.uk/2008/11/gooscan-automated-google-hacking-tool/">Gooscan</a> and <a href="http://www.darknet.org.uk/2008/03/goolag-gui-tool-for-google-hacking/">Goolag</a>.</p>
<p><!--adsense#New468--></p>
<p>Binging is a simple tool to query Bing search engine. It will use your Bing API key and fetch multiple results. This particular tool can be used for cross domain footprinting for Web 2.0 applications, site discovery, reverse lookup, host enumeration etc. One can use various different directives like site, ip etc. and run queries against the engine. On top of it tool provides filtering capabilities so you can ask for unique URLs or hosts. It is also possible to filter results by applying power of regular expression. Get your Bing API key and use this tool for your audit, assessment and research.</p>
<p><!--adsense#New468--></p>
<p>You can download Binging here:</p>
<p><a href="http://www.blueinfy.com/Binging.zip">Binging.zip</a></p>
<p>Or read more <a href="http://www.blueinfy.com/tools.html">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29+http://bit.ly/1IKimm+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;t=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/&amp;title=Binging+%28BETA%29+%E2%80%93+Footprinting+%26+Discovery+Tool+%28Google+Hacking%29" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/11/binging-beta-footprinting-discovery-tool-google-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Origami &#8211; Parse, Analyze &amp; Forge PDF Documents</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/</link>
		<comments>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comments</comments>
		<pubDate>Tue, 20 Oct 2009 09:18:47 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[analyze pdf]]></category>
		<category><![CDATA[document forensics]]></category>
		<category><![CDATA[forging pdf]]></category>
		<category><![CDATA[hacking pdf]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information-leak]]></category>
		<category><![CDATA[origami]]></category>
		<category><![CDATA[parse pdf]]></category>
		<category><![CDATA[pdf forensics]]></category>
		<category><![CDATA[pdf security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169</guid>
		<description><![CDATA[origami is a Ruby framework designed to parse, analyze, and forge PDF documents. This is NOT a PDF rendering library. It aims at providing a scripting tool to generate and analyze malicious PDF files. As well, it can be used to create on-the-fly customized PDFs, or to inject (evil) code into already existing documents.

Features

Create PDF [...]]]></description>
			<content:encoded><![CDATA[<p>origami is a Ruby framework designed to parse, analyze, and forge PDF documents. This is NOT a PDF rendering library. It aims at providing a scripting tool to generate and analyze malicious PDF files. As well, it can be used to create on-the-fly customized PDFs, or to inject (evil) code into already existing documents.</p>
<p><!--adsense#New468--></p>
<p><strong>Features</strong></p>
<ul>
<li>Create PDF documents from scratch.</li>
<li>Parse existing documents, modify them and recompile them.</li>
<li>Explore documents at the object level, going deep into the document structure, uncompressing PDF object streams and desobfuscating names and strings.</li>
<li>High-level operations, such as encryption/decryption, signature, file attachments&#8230;</li>
<li>A GTK interface to quickly browse into the document contents.</li>
</ul>
<p><strong>Full Scripts</strong></p>
<p><!--adsense#New468--></p>
<p>Some scripts are provided to help in performing common actions on PDF files. You can contribute more by sending your own scripts to origami(at)security-labs.org.</p>
<ul>
<li>detectjs.rb: search for all JavaScript objects.</li>
<li>embed.rb: add an attachment to a PDF file.</li>
<li>create-jspdf.rb: add a JavaScript to a PDF file, executed when the document is opened.</li>
<li>moebius.rb: transform a PDF to a moebius strip.</li>
<li>encrypt.rb: encrypt a PDF file.</li>
</ul>
<p>You can download Origami here:</p>
<p><a href="http://security-labs.org/origami/files/origami-1.0.0-beta1.tar.gz">origami-1.0.0-beta1.tar.gz</a></p>
<p>Or read more <a href="http://security-labs.org/origami/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents+http://bit.ly/9cX4r+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;t=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/&amp;title=Origami+%E2%80%93+Parse%2C+Analyze+%26+Forge+PDF+Documents" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>dnsmap 0.22 Released &#8211; Subdomain Bruteforcing Tool</title>
		<link>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/</link>
		<comments>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/#comments</comments>
		<pubDate>Tue, 17 Mar 2009 09:28:35 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[dns enumeration]]></category>
		<category><![CDATA[dns mapping]]></category>
		<category><![CDATA[dns subdomain bruteforcer]]></category>
		<category><![CDATA[dnsmap]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[security assessment]]></category>
		<category><![CDATA[stealth enumeration]]></category>
		<category><![CDATA[subdomain bruteforcer]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1544</guid>
		<description><![CDATA[dnsmap is a subdomain bruteforcer for stealth enumeration, you could say something similar to Reverse Raider or DNSenum.
Originally released in 2006, dnsmap is mainly meant to be used by pentesters during the information gathering/enumeration phase of infrastructure security assessments. During the enumeration stage, the security consultant would typically discover the target company’s IP netblocks, domain [...]]]></description>
			<content:encoded><![CDATA[<p>dnsmap is a subdomain bruteforcer for stealth enumeration, you could say something similar to <a href="http://www.darknet.org.uk/2009/01/complemento-v06-letdown-tcp-flooder-reverseraider-subdomain-scanner-httsquash-http-server-scanner-tool/">Reverse Raider</a> or <a href="http://www.darknet.org.uk/2008/07/dnsenum-domain-information-gathering-tool/">DNSenum</a>.</p>
<p>Originally released in 2006, dnsmap is mainly meant to be used by pentesters during the information gathering/enumeration phase of infrastructure security assessments. During the enumeration stage, the security consultant would typically discover the target company’s IP netblocks, domain names, phone numbers, etc. dnsmap was included in <a href="http://www.darknet.org.uk/tag/backtrack/">Backtrack</a> 2 and 3, although the version included is the now dated version 0.1.</p>
<p><!--adsense#New468--></p>
<p>Subdomain brute-forcing is another technique that should be used in the enumeration stage, as it’s especially useful when other domain enumeration techniques such as zone transfers don’t work (public zone transfers rarely work nowadays).</p>
<p><strong>Original Features of Version 0.1</strong></p>
<ul>
<li>obtain all IP addresses (A records) associated to each successfully bruteforced subdomain, rather than just one IP address per subdomain</li>
<li>abort the bruteforcing process in case the target domain uses wildcards</li>
<li>ability to be able to run the tool without providing a wordlist by using a built-in list of keywords</li>
<li>bruteforcing by using a user-supplied wordlist (as opposed to the built-in wordlist)</li>
</ul>
<p><!--adsense#New468--></p>
<p><strong>New Improvements in Version 0.22</strong></p>
<ul>
<li>saving the results in human-readable and CSV format for easy processing</li>
<li>fixed bug that disallowed reading wordlists with DOS CRLF format</li>
<li>improved built-in subdomains wordlist</li>
<li>new bash script (dnsmap-bulk.sh) included which allows running dnsmap against a list of domains from a user-supplied file.</li>
<li>bypassing of signature-based dnsmap detection by generating a proper pseudo-random subdomain when checking for wildcards</li>
</ul>
<p>You can download dnsmap 0.22 here:</p>
<p><a href="http://www.gnucitizen.org/static/blog/2009/03/dnsmap-0222tar.gz">dnsmap-0222tar.gz</a> (Make sure you add another . before the tar)</p>
<p>Or read more <a href="http://www.gnucitizen.org/blog/new-version-of-dnsmap-out/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool+http://bit.ly/36X0od+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;t=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/&amp;title=dnsmap+0.22+Released+%E2%80%93+Subdomain+Bruteforcing+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/03/dnsmap-022-released-subdomain-bruteforcing-tool/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Using Twitter for Data Mining and Information Gathering</title>
		<link>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/</link>
		<comments>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/#comments</comments>
		<pubDate>Thu, 22 Jan 2009 10:46:31 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[5and2fish]]></category>
		<category><![CDATA[data-mining]]></category>
		<category><![CDATA[hacking twitter]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[PeopleBrowsr]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[twitter data mining]]></category>
		<category><![CDATA[twitter hacking]]></category>
		<category><![CDATA[twitter information gathering]]></category>
		<category><![CDATA[twitter privacy]]></category>
		<category><![CDATA[Twitter Spectrum]]></category>
		<category><![CDATA[Twitter Venn]]></category>
		<category><![CDATA[TwitterFriends]]></category>
		<category><![CDATA[Twitturly]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1423</guid>
		<description><![CDATA[We&#8217;ve mentioned Twitter a few times lately as it has become a larger and larger part of the social web and the premier &#8216;micro-blogging&#8217; platform.
There was a recent Phishing issue on Twitter and before that Twitter Jacking and a CSRF bug that allowed auto-following.
Due to the large update of Twitter, the amount of datable available [...]]]></description>
			<content:encoded><![CDATA[<p>We&#8217;ve mentioned <a href="http://www.darknet.org.uk/tag/twitter/">Twitter</a> a few times lately as it has become a larger and larger part of the social web and the premier &#8216;micro-blogging&#8217; platform.</p>
<p>There was a recent <a href="http://www.darknet.org.uk/2009/01/phishing-attacks-hits-twitter-users-utilising-direct-messages/">Phishing issue on Twitter</a> and before that <a href="http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/">Twitter Jacking</a> and a <a href="http://www.darknet.org.uk/2008/09/csrf-vulnerability-in-twitter-allows-forced-following/">CSRF bug that allowed auto-following</a>.</p>
<p>Due to the large update of Twitter, the amount of datable available on the site and it&#8217;s easily searchable nature it has become a great platform for data-mining and information gathering (the first and sometimes most important parts of any pen test/vuln ass or security test).</p>
<p><!--adsense#New468--></p>
<blockquote><p>Twitter is fun. It&#8217;s also a powerful research tool. People increasingly use Twitter to share advice, opinions, news, moods, concerns, facts, rumors, and everything else imaginable. Much of that data is public and available for mining.</p>
<p>Here&#8217;s how to use Twitter to gather useful information about topics, companies, and individuals. I&#8217;ll cover native Twitter features, as well as third-party tools with catchy names, such as 5and2fish, Twitter Venn, TwitterFriends, PeopleBrowsr , Twitturly, Twitter Spectrum, and others.</p>
<p>Most of the techniques mentioned here don&#8217;t require you to be a registered Twitter user. If you use Twitter, consider what data tidbits you release there, and whether you need to be more careful.</p></blockquote>
<p>People don&#8217;t tend to be so careful or post in such a considered manner when using Twitter as the tidbits posted are so short and off-the-cuff.</p>
<p>This leads to an interesting source of information for people like us doing research about an individual or organization. You can really get a good gauge on the publics feelings for a certain topic too by searching Twitter for relevant keywords.</p>
<p>For example if you search Twitter for &#8216;<a href="http://search.twitter.com/search?q=darknet">Darknet</a>&#8216; you can see some people mentioning our posts and one guy pretty consistently re-syndicating our content onto the micro-blogging platform.</p>
<p><!--adsense#New468--></p>
<blockquote><p>As you gather information on Twitter, be mindful of others attempting to manipulate you into arriving at their conclusions by feeding you misinformation. Cross-check data and understand its sources. For more on this, see Is Twitter A Market Manipulator&#8217;s Dream on the TwiTip blog. If the topic of reputational attacks interests you, also look at the SpinHunters blog.</p>
<p>If using Twitter to share information and stay in touch with your friends, be mindful of how others might misuse what you reveal about yourself, others, or your company. In the words of Wired magazine&#8217;s Steven Levy, &#8220;No matter how innocuous your individual tweets, the aggregate ends up being the foundation of a scary-deep self-portrait. It&#8217;s like a psychographic version of strip poker&#8211;I&#8217;m disrobing, 140 characters at a time.&#8221;</p></blockquote>
<p>It&#8217;s an article well worth reading if you are a Twitter user or not, if you are an infosec professional it gives you another source to search when you are doing information gathering or data-mining tasks.</p>
<p>The Internet is always evolving along with the way people use it, as it becomes a more social platform &#8211; more information is bound to be &#8216;<em>exposed</em>&#8216; online &#8211; for us to find..</p>
<p>Source: <a href="http://isc.sans.org/diary.html?storyid=5728&#038;rss">SANS ISC</a></p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Using+Twitter+for+Data+Mining+and+Information+Gathering+http://bit.ly/4mHPBD+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;t=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/&amp;title=Using+Twitter+for+Data+Mining+and+Information+Gathering" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/01/using-twitter-for-data-mining-and-information-gathering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Maltego &#8211; Forensics and Intelligence Application &amp; Information Gathering Tool</title>
		<link>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/</link>
		<comments>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/#comments</comments>
		<pubDate>Fri, 14 Nov 2008 09:39:45 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[auditing tools]]></category>
		<category><![CDATA[data mining tool]]></category>
		<category><![CDATA[forensics and intelligence]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information gathering tool]]></category>
		<category><![CDATA[maltego]]></category>
		<category><![CDATA[maltego community edition]]></category>
		<category><![CDATA[paterva]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[vulnerability-assessment]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1229</guid>
		<description><![CDATA[Maltego is an open source intelligence and forensics application. It allows for the mining and gathering of information as well as the representation of this information in a meaningful way.
Coupled with its graphing libraries, Maltego, allows you to identify key relationships between information and identify previously unknown relationships between them. It is a must-have tool [...]]]></description>
			<content:encoded><![CDATA[<p>Maltego is an open source intelligence and forensics application. It allows for the mining and gathering of information as well as the representation of this information in a meaningful way.</p>
<p>Coupled with its graphing libraries, Maltego, allows you to identify key relationships between information and identify previously unknown relationships between them. It is a must-have tool in the forensics, security and intelligence fields!</p>
<p>Maltego offers the user with unprecedented information. Information is leverage.</p>
<p><!--adsense#New468--></p>
<p><strong>What does Maltego do?</strong></p>
<p>Maltego is a program that can be used to determine the relationships and real world links between:</p>
<ul>
<li>People</li>
<li>Groups of people (social networks)</li>
<li>Companies</li>
<li>
Organizations</li>
<li>Web sites</li>
<li>
Internet infrastructure such as: Domains, DNS Names, Netblocks and IP Addresses</li>
<li>Phrases</li>
<li>Affiliations</li>
<li>Documents and files </li>
</ul>
<p>These entities are linked using open source intelligence.</p>
<ul>
<li>Maltego is easy and quick to install &#8211; it uses Java, so it runs on Windows, Mac and Linux.</li>
<li>Maltego provides you with a graphical interface that makes seeing these relationships instant and accurate &#8211; making it possible to see hidden connections.</li>
<li>
Using the graphical user interface (GUI) you can see relationships easily &#8211; even if they are three or four degrees of separation away.</li>
<li>Maltego is unique because it uses a powerful, flexible framework that makes customizing possible. As such, Maltego can be adapted to your own, unique requirements. </li>
</ul>
<p><!--adsense#New468--></p>
<p><strong>Limitations</strong></p>
<p>The Community Edition is limited in the following ways:</p>
<ul>
<li>A 15second nag screen</li>
<li>Save and Export has been disabled</li>
<li>
Limited zoom levels</li>
<li>Can only run transforms on a single entity at a time</li>
<li>Cannot copy and paste text from detailed view</li>
<li>
Transforms limited to 75 per day</li>
<li>Throttled client to TAS communication</li>
</ul>
<p>Check out the <a href="http://ctas.paterva.com/view/Userguide">User Guide here</a>.</p>
<p>You can download Maltego Community Edition here:</p>
<p><a href="http://www.paterva.com/malv2/MaltegoInstaller-v2-210-CE.jar">Maltego CE &#8211; Linux</a><br />
<a href="http://www.paterva.com/malv2/MaltegoInstaller-v2-210-CE.exe">Maltego CE &#8211; Windows</a></p>
<p>Or read more <a href="http://www.paterva.com/maltego/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool+http://bit.ly/Foe0x+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;t=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/&amp;title=Maltego+%E2%80%93+Forensics+and+Intelligence+Application+%26+Information+Gathering+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/11/maltego-forensics-and-intelligence-application-information-gathering-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Sam Spade &#8211; Network Investigation Tool for Windows</title>
		<link>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/</link>
		<comments>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/#comments</comments>
		<pubDate>Thu, 30 Oct 2008 15:45:26 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[hacking-networks]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[network auditing]]></category>
		<category><![CDATA[network infrastructure]]></category>
		<category><![CDATA[network-analysis]]></category>
		<category><![CDATA[penetration-testing]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1191</guid>
		<description><![CDATA[Sam Spade is one of the oldest network security tools around in terms of a neat package containing a lot of stuff you need, it&#8217;s one of the first things I used when I got into information security and I was on a crusade against spammers and scammers.
It has all kinds of useful tools in [...]]]></description>
			<content:encoded><![CDATA[<p>Sam Spade is one of the oldest network security tools around in terms of a neat package containing a lot of stuff you need, it&#8217;s one of the first things I used when I got into information security and I was on a crusade against spammers and scammers.</p>
<p>It has all kinds of useful tools in a neat graphical interface, a lot of them are available on the command line in Windows &#8211; but they aren&#8217;t so easy to use. It&#8217;s extremely useful for tracking spam or &#8216;UCE&#8217; as it&#8217;s known (Unsolicited Commercial E-mail).</p>
<p><!--adsense#New468--></p>
<p>Some of the features included are:</p>
<ul>
<li>Ping</li>
<li>NSlookup</li>
<li>Whois</li>
<li>IP block search</li>
<li>Dig</li>
<li>
Traceroute</li>
<li>
Finger</li>
<li>SMTP VRFY</li>
<li>Web browser keep-alive</li>
<li>DNS zone transfer</li>
<li>SMTP relay check</li>
<li>Usenet cancel check</li>
<li>
Website download</li>
<li>
Website search</li>
<li>Email header analysis</li>
<li>
Email blacklist</li>
<li>
Query Abuse address</li>
</ul>
<p><!--adsense#New468--></p>
<p>Some other cool stuff it does is:</p>
<ul>
<li>Each tool displays it&#8217;s output in it&#8217;s own window, and everything is multi-threaded so you don&#8217;t need to wait for one query to complete before starting the next one</li>
<li>Some functions are threaded still further to allow lazy reverse DNS lookups (never do a traceroute -n again)</li>
<li>The output from each query is hotlinked, so you can right click on an email address, IP address, hostname or internic tag to run another query on it</li>
<li>Appending the results of a query to the log window is a single button function</li>
<li>There&#8217;s a lot of online help, in both WinHelp and HTMLHelp formats. This includes tutorials, background information and links to online resources as well as the program manual itself</li>
</ul>
<p>You can download Sam Spade here:</p>
<p><a href="http://majorgeeks.com/Sam_Spade_d594.html">Sam Spade v1.14</a></p>
<p>Or read more <a href="http://searchsecurity.techtarget.com/tip/0,289483,sid14_gci901093,00.html">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows+http://bit.ly/1b6el0+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;t=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/&amp;title=Sam+Spade+%E2%80%93+Network+Investigation+Tool+for+Windows" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/10/sam-spade-network-investigation-tool-for-windows/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Google Hacking Back in The News &#8211; Google Takes Action</title>
		<link>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/</link>
		<comments>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/#comments</comments>
		<pubDate>Wed, 29 Oct 2008 10:12:37 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Database Hacking]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[google-hacking]]></category>
		<category><![CDATA[hacking-websites]]></category>
		<category><![CDATA[imperva]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[Information-Security]]></category>
		<category><![CDATA[social security numbers]]></category>
		<category><![CDATA[sql-injection]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1184</guid>
		<description><![CDATA[Google hacking was the big thing back in 2004, I actually did a talk on it in Hack in the Box 2004, it&#8217;s resurfaced again as a serious threat with Google noticing more queries relating to things like social security numbers.
The Google Hacking Database has been active for years now and there are hundreds of [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.darknet.org.uk/tag/google-hacking/">Google hacking</a> was the big thing back in 2004, I actually did a talk on it in <a href="http://conference.hackinthebox.org/">Hack in the Box</a> 2004, it&#8217;s resurfaced again as a serious threat with Google noticing more queries relating to things like social security numbers.</p>
<p>The <a href="http://johnny.ihackstuff.com/ghdb.php">Google Hacking Database</a> has been active for years now and there are hundreds of queries that can bring up juicy information. <a href="http://www.darknet.org.uk/2008/03/goolag-gui-tool-for-google-hacking/">Goolag</a> was also released this year which gives a much easier, automated way of Google Hacking for specific domains or info.</p>
<p><!--adsense#New468--></p>
<blockquote><p>Search engines such as Google are increasingly being used by hackers against Web applications that hold sensitive data, according to a security expert.</p>
<p>Even with rising awareness about data security, it takes all of a few seconds to pluck Social Security numbers from Web sites using targeted search terms, said Amichai Shulman, founder and CTO for database- and application-security company Imperva.</p>
<p>The fact that Social Security numbers are even on the Web is a human error; the information should never be published in the first place. But hackers are using Google in more sophisticated ways to automate attacks against Web sites, Shulman said.</p>
<p>Shulman said Imperva recently discovered a way to execute a <a href="http://www.darknet.org.uk/tag/sql-injection">SQL injection</a> attack that comes from an IP address that belongs to Google. </p></blockquote>
<p>It seems like it&#8217;s becoming big business on both sides, finding information and vulnerable sites and by gaming Google into dropping pages from the index (Blackhat SEO).</p>
<p>Even with the throttling it&#8217;ll still continue, people will find smarter ways to make the queries so it&#8217;s not blocked and they&#8217;ll build rate limiting into their tools so they don&#8217;t get dropped. The bad guys have plenty of patience, trust me on that.</p>
<p><!--adsense#New468--></p>
<blockquote><p>Manipulating Google is particularly useful since it offers anonymity for a hacker plus an automated attack engine, Shulman said.</p>
<p>Tools such as Goolag and Gooscan can execute broad searches across the Web for specific vulnerabilities and return lists of Web sites that have those problems.</p>
<p>&#8220;This is no more a script kiddy game &#8212; this is a business,&#8221; Shulman said. &#8220;This is a very powerful hacking capability.&#8221;</p>
<p>Another attack method is so-called Google worms, which use the search engine to find specific vulnerabilities. With the inclusion of additional code, the vulnerability can be exploited, Shulman said.</p>
<p>&#8220;In 2004, this was science fiction,&#8221; Shulman said. &#8220;In 2008, this is a painful reality.&#8221;</p>
<p>Google and other search engines are taking steps to stop the abuse. For example, Google has stopped certain kinds of searches that could yield a trove of Social Security numbers in a single swoop. It also puts limits on the number of search requests sent per minute, which can slow down mass searches for vulnerable Web sites. </p></blockquote>
<p>As they said, this is not some script kiddy stuff, with the amount of queries going on and the complexity this is some serious business!</p>
<p>Any pen-test or vulnerability assessment should have an information gathering stage and it&#8217;s here you should be using Google Hacking techniques and tools to uncover anything on the domain or company infrastructure that shouldn&#8217;t be there.</p>
<p>Just be warned that this kind of stuff is on the up, so brief your clients of the dangers and make sure this step is included in the audit.</p>
<p>Source: <a href="http://www.networkworld.com/news/2008/102708-security-analyst-warns-of-google.html?page=1">Network World</a></p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action+http://bit.ly/2nrvQc+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;t=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/&amp;title=Google+Hacking+Back+in+The+News+%E2%80%93+Google+Takes+Action" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/10/google-hacking-back-in-the-news-google-takes-action/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Web-Harvest &#8211; Web Data Extraction Tool</title>
		<link>http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/</link>
		<comments>http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/#comments</comments>
		<pubDate>Fri, 17 Oct 2008 06:02:04 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[data extraction]]></category>
		<category><![CDATA[information gathering]]></category>
		<category><![CDATA[information gathering tool]]></category>
		<category><![CDATA[java]]></category>
		<category><![CDATA[web data extraction]]></category>
		<category><![CDATA[web harvest]]></category>
		<category><![CDATA[web spidering]]></category>
		<category><![CDATA[webharvest]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1153</guid>
		<description><![CDATA[ Web-Harvest is Open Source Web Data Extraction tool written in Java. It offers a way to collect desired Web pages and extract useful data from them. In order to do that, it leverages well established techniques and technologies for text/xml manipulation such as XSLT, XQuery and Regular Expressions. Web-Harvest mainly focuses on HTML/XML based [...]]]></description>
			<content:encoded><![CDATA[<p> Web-Harvest is Open Source Web Data Extraction tool written in Java. It offers a way to collect desired Web pages and extract useful data from them. In order to do that, it leverages well established techniques and technologies for text/xml manipulation such as XSLT, XQuery and Regular Expressions. Web-Harvest mainly focuses on HTML/XML based web sites which still make vast majority of the Web content. On the other hand, it could be easily supplemented by custom Java libraries in order to augment its extraction capabilities.</p>
<p>Process of extracting data from Web pages is also referred as Web Scraping or Web Data Mining. World Wide Web, as the largest database, often contains various data that we would like to consume for our needs. The problem is that this data is in most cases mixed together with formatting code &#8211; that way making human-friendly, but not machine-friendly content. Doing manual copy-paste is error prone, tedious and sometimes even impossible. Web software designers usually discuss how to make clean separation between content and style, using various frameworks and design patterns in order to achieve that. Anyway, some kind of merge occurs usually at the server side, so that the bunch of HTML is delivered to the web client.</p>
<p><!--adsense#New468--></p>
<p>Every Web site and every Web page is composed using some logic. It is therefore needed to describe reverse process &#8211; how to fetch desired data from the mixed content. Every extraction procedure in Web-Harvest is user-defined through XML-based configuration files. Each configuration file describes sequence of processors executing some common task in order to accomplish the final goal. Processors execute in the form of pipeline. Thus, the output of one processor execution is input to another one. This can be best explained using the simple configuration fragment:</p>
<pre><code>&lt;xpath expression="//a[@shape='rect']/@href"&gt;
    &lt;html-to-xml&gt;
        &lt;http url="http://www.somesite.com/"/&gt;
    &lt;/html-to-xml&gt;
&lt;/xpath&gt;</code></pre>
<p><!--adsense#New468--></p>
<p>When Web-Harvest executes this part of configuration, the following steps occur:</p>
<ol>
<li>http processor downloads content from the specified URL.</li>
<li>html-to-xml processor cleans up that HTML producing XHTML content.</li>
<li>xpath processor searches specific links in XHTML from previous step giving URL sequence as a result.</li>
</ol>
<p>Web-Harvest supports a set of useful processors for variable manipulation, conditional branching, looping, functions, file operations, HTML and XML processing, exception handling. See User manual for technical description of provided processors. </p>
<p>You can download Web-Harvest 1.0 here:</p>
<p><a href="http://web-harvest.sourceforge.net/download/webharvest1-exe.zip">webharvest1-exe.zip</a></p>
<p>Or read more <a href="http://web-harvest.sourceforge.net/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Web-Harvest+%E2%80%93+Web+Data+Extraction+Tool+http://bit.ly/17ICkQ+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/&amp;title=Web-Harvest+%E2%80%93+Web+Data+Extraction+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/&amp;title=Web-Harvest+%E2%80%93+Web+Data+Extraction+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/&amp;t=Web-Harvest+%E2%80%93+Web+Data+Extraction+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/&amp;title=Web-Harvest+%E2%80%93+Web+Data+Extraction+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/10/web-harvest-web-data-extraction-tool/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
