February 9, 2011

I just found a nie tutorial about google hacking.

My favorite part:

SQL Dumps

We will be hunting for SQL password dumps saved in database, here ext:sql specifies the type of password dump, e10adc3949ba59abbe56e057f20f883e is the md5 hash for 123456; one of the most common password people keep..and intext dork will allows to search inside the dump.

ext:sql intext:e10adc3949ba59abbe56e057f20f883e

ext:sql intext:”INSERT INTO” intext:password

Remember kids

1. Use different email providers, substitute gmail/yahoomail instead of somemail ,or try custom domain mail providers.
2. Use different file extensions.
3. Use different type of hashes, some older ones might be using md4 and some others might be using other prominent encryption algorithms.
4. just mix everything up and try different combinations












