<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; website-hacking</title>
	<atom:link href="http://www.darknet.org.uk/tag/website-hacking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>GoLISMERO &#8211; Web Application Mapping Tool</title>
		<link>http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/</link>
		<comments>http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/#comments</comments>
		<pubDate>Thu, 17 Nov 2011 19:58:51 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[golismero]]></category>
		<category><![CDATA[web application mapping]]></category>
		<category><![CDATA[web application mapping tool]]></category>
		<category><![CDATA[web mapping tool]]></category>
		<category><![CDATA[web site security]]></category>
		<category><![CDATA[web-application-hacking]]></category>
		<category><![CDATA[web-application-security]]></category>
		<category><![CDATA[web-security]]></category>
		<category><![CDATA[website mapping tool]]></category>
		<category><![CDATA[website scanner]]></category>
		<category><![CDATA[website security]]></category>
		<category><![CDATA[website-hacking]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3224</guid>
		<description><![CDATA[GoLISMERO helps you to map a web application, displaying the results in a readable format for security auditors and also prepares the results for integration with other web hacking tools as w3af, wfuzz, netcat, nikto, etc. Features Map a web aplication. Show all links and forms params as confortable format. Save results with some formats: [...]]]></description>
			<content:encoded><![CDATA[<p>GoLISMERO helps you to map a web application, displaying the results in a readable format for security auditors and also prepares the results for integration with other web hacking tools as <a href="http://www.darknet.org.uk/2011/11/w3af-v1-1-released-for-download-web-application-attack-audit-framework/">w3af</a>, <a href="http://www.darknet.org.uk/2007/07/wfuzz-a-tool-for-bruteforcingfuzzing-web-applications/">wfuzz</a>, netcat, <a href="http://www.darknet.org.uk/2009/10/nikto-2-1-0-released-web-server-security-scanning-tool/">nikto</a>, etc.</p>
<p><strong>Features</strong></p>
<ul>
<li>    Map a web aplication.</li>
<li>    Show all links and forms params as confortable format.</li>
<li>    Save results with some formats: text, cvs, html, raw (for parsing with bash script) and wfuzz script.</li>
<li>    Detect common vulnerabilites of web application.</li>
<li>    Filter web information retaining only what is important.</li>
<li>    Many other features you can find very useful. </li>
</ul>
<p>You can download GoLISMERO here:</p>
<p><a href="http://golismero.googlecode.com/files/GoLISMERO_last.zip">GoLISMERO_last.zip</a></p>
<p>Or read more <a href="https://code.google.com/p/golismero/ ">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3224+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;t=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;title=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;title=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;title=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/&amp;title=GoLISMERO+%E2%80%93+Web+Application+Mapping+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F11%2Fgolismero-web-application-mapping-tool%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/11/golismero-web-application-mapping-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Apparently 8/10 High Traffic or &#8216;Big&#8217; Websites are Vulnerable</title>
		<link>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/</link>
		<comments>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/#comments</comments>
		<pubDate>Fri, 06 Jul 2007 06:47:44 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[big-websites]]></category>
		<category><![CDATA[hacking-websites]]></category>
		<category><![CDATA[high-traffic-websites]]></category>
		<category><![CDATA[web-application-security]]></category>
		<category><![CDATA[web-security]]></category>
		<category><![CDATA[website-hacking]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/</guid>
		<description><![CDATA[It seems after a brief scan that about 80% of sites contain common flaws that allows them to be compromised in some way, most often to create phishing sites, steal data and hijack info about clients. An amazing 30% contain a serious vulnerability. Eight out of ten Web sites contain common flaws that can allow [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>It seems after a brief scan that about 80% of sites contain common flaws that allows them to be compromised in some way, most often to create phishing sites, steal data and hijack info about clients.</p>
<p>An amazing 30% contain a serious vulnerability.</p>
<blockquote><p>Eight out of ten Web sites contain common flaws that can allow attackers to steal customer data, create phishing exploits, or craft a variety of other attacks, a security company reported today.</p>
<p>WhiteHat Security regularly scans hundreds of &#8220;very popular, very high-traffic sites&#8221; for its online business customers, says Jeremiah Grossman, the company&#8217;s founder. &#8220;More than likely, you have shopped there, or bank there,&#8221; he says. Thirty percent of scanned sites contain an urgent vulnerability, such as one that allows direct access to a company database with customer information, he says.</p>
<p>Two out of three scanned sites have one or more cross-site scripting (XSS) flaws, which take advantage of problems with sites&#8217; programming and are increasingly used in phishing attacks. A recent eBay scam used a now-fixed XSS hole on the auction site to direct anyone who clicked on a phony car auction to a phishing site.</p></blockquote>
<p>I guess this should be a stern lesson for anyone shopping online or using online facilities from any companies/banks or financial institutions.</p>
<blockquote><p>About a third of scanned sites are at risk for some sort of information leakage, which often means the providing of programming data about the site that can facilitate an attack. And about one out of four sites allows content spoofing, another potential phishing risk, according to WhiteHat&#8217;s vulnerability report.</p>
<p>A type of database vulnerability that allows SQL injection attacks &#8212; &#8220;one of the nastier issues out there&#8221; &#8212; is becoming less common, Grossman says. Fewer than one out of five sites contain this type of vulnerability, but a successful incident can give a sophisticated attacker access to everything in a company&#8217;s database, he says.</p></blockquote>
<p>The irony is those geeky sites which hold the least important information about people are usually the most secure, where as the big sites built by important companies often have the most vulnerabilities and are leaking the most important data.</p>
<p></p>
<p>Source: <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&#038;articleId=9017261&#038;source=rss_news50">Computer World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D553+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;t=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;title=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;title=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;title=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/&amp;title=Apparently+8%2F10+High+Traffic+or+%E2%80%98Big%E2%80%99+Websites+are+Vulnerable" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F07%2Fapparently-810-high-traffic-or-big-websites-are-vulnerable%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/07/apparently-810-high-traffic-or-big-websites-are-vulnerable/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
	</channel>
</rss>

