Saturday, 15 November 2014
http://www.zabasearch.com/ ****Governements and business Web sites:**** http://www.hoovers.com http://finance.yahoo.com http://www.sec.gov/edgar.shtml http://www.uspto.gov ****Background Checks And Other personal information:**** http://www.choisepoint.com http://www.ussearch.com http://www.zabasearcg.com ****Whois:**** http://www.betterwhois.com http://www.allwhois.com http://www.whois.net http://www.godaddy.com http://www.dnstools.com ------------------------------------Hacking Websites:-------------------------------------- ****English:**** http://www.crackhackforum.com http://www.i-hacked.com http://www.insecure.in http://www.hacktutors.info/ http://www.hackingtrick.com/ http://www.hackingtricks.in/ http://hackingncrackingtools.blogspot.com http://www.hungry-hackers.com http://hackaday.com/ http://www.hackthissite.org/ http://hackguide4u.blogspot.com http://www.gohacking.com/ http://dc406.com/ http://bit.ly/qKQaQf http://www.hackinghome.com http://mrcracker.com/ http://blackhat-forums.com/ http://blackhatleaks.com/forums http://www.hellboundhackers.org/ http://www.enigmagroup.org/ http://packetstormsecurity.org/ http://ha.ckers.org http://sla.ckers.org/forum/ http://www.securityhunk.com/ http://punter-infosec.com/ http://www.explorehacking.com/ http://www.net-force.nl/challenges/ http://www.blackhatdigest.com/ http://hackmephreak.wordpress.com/ http://www.iexploit.org http://hackthepc.blogspot.com http://www.anarcrypt.net/ http://www.garage4hackers.com/ http://www.itsecurity.com/ http://www.anonymous-lulzsec.com/ http://hckr333.blogspot.com/ http://www.breakthesecurity.com/ http://hackingarticles.com/ http://r00tsecurity.org/ http://www.rafayhackingarticles.net/ http://www.hackersenigma.com/ http://learnhacking.in/ http://www.wntrmute.com/docs/hack/ http://www.andhrahackers.com/forum/ http://www.hackerscenter.com/ http://www.ehacking.net/ http://dbsecurity.org/ http://www.sec.gov http://www.securityforest.com http://www.dshield.org http://www.insecure.org http://nvd.nist.gov http://www.governmentsecurity.org http://milw0rm.com/ http://www.securityfocus.com http://techxtrm.com/ http://hackspc.com/ http://www.exploit-db.com/ http://www.defencehacker.in/ ****French:**** http://www.deathnote55.com/ http://www.newbiecontest.org/ http://hackbbs.org/index.php http://www.ouah.org/ http://www.bases-hacking.org/ ---------------------------------- Programming:----------------------------------- ****General English:**** http://www.java2s.com/ http://www.codeproject.com http://www.pickatutorial.com/ http://www.daniweb.com/ http://www.bigresource.com https://developer.mozilla.org/en-US/docs http://codepad.org http://www.supportforums.net/ http://mpgh.net/ http://www.enigmagroup.org/ http://www.thenewboston.com http://www.codeguru.com/ http://www.a1vbcode.com/ http://www.vbtutor.net/ http://forum.codecall.net/ http://www.freelancecode.net/community/ http://www.net-force.nl/challenges/ http://www.web-source.net/ http://www.w3schools.com/ http://www.dreamincode.net http://en.wikipedia.org/wiki/Regular_expression http://www.programmingforums.org http://stackoverflow.com/ http://www.opensc.ws/ http://www.programmersheaven.com/ http://www.planet-source-code.com/ http://www.devguru.com/ http://www.net-force.nl/challenges/ http://zetcode.com/ http://msdn.microsoft.com/ http://www.developerfusion.com/ http://www.sitepoint.com/ http://www.developers.net/ http://www.arachnoid.com/ http://codepad.org/ http://www.quackit.com/ http://hackquest.com/ ****General French:**** http://www.siteduzero.com http://www.developpez.com/ http://www.codes-sources.com/ http://www.pixtiz.com/ http://forum.ubuntu-fr.org/ http://www.webantoine.com/ http://www.henri-ruch.ch/ ****General Python:**** http://www.learnpython.org/ http://www.pythonware.com/library/tkinter/ introduction/ http://www.jchr.be/python/tkinter.htm http://www.sthurlow.com/python/ http://pythonfacile.free.fr/python/ressources.html http://www.learningpython.com http://www.stackless.com/ http://zetcode.com/ http://showmedo.com/videos/python http://www.youtube.com/results?searc...chtalks +python http://www.awaretek.com/tutorials.html http://www.effbot.org/zone/ http://planet.python.org http://www.tutorialspoint.com/python/ http://www.java2s.com/Code/Python/ CatalogPython.htm http://www.rosettacode.org/wiki/Categoryython http://code.activestate.com/recipes/langs/python/ http://www.siafoo.net/article/52 http://docs.python.org/dev/howto/doanddont.html http://gnosis.cx/publish/tech_index_cp.html http://www.python-forum.org http://www.learnpython.org/ http://zetcode.com/tutorials/pythontutorial/ http://diveintopython.org http://www.tutorialized.com/tutorials/Python/1 http://www.siafoo.net/article/52 http://www.straw-dogs.co.uk/11/29/to...ks-legal- free/ http://www.dabeaz.com/generators/ http://www.velocityreviews.com/forums/f43- python.html http://www.openbookproject.net/think...hon/ english2e/ http://pythonpapers.org http://python.developpez.com/cours/TutoSwinnen/ http://www.python.org/doc/faq/general/ http://norvig.com/python-iaq.html http://dev.fyicenter.com/interview-Q...hon/ index.html http://zetcode.com/ http://pythonfacile.free.fr/ http://www.arachnoid.com/python/index.html http://webchat.freenode.net/python http://learnpythonthehardway.org/book/ http://paste.pound-python.org/ ****General C:**** http://www.cprogramming.com/ ****General: C++:**** http://www.cplusplus.com/doc/tutorial/ http://cprogramming.com/ http://devcentral.iftech.com/articles/C++/ default.php http://www.learncpp.com/ http://www.intap.net/~drw/cpp http://www.cs.wustl.edu/~schmidt/C++/ http://www.functionx.com/cpp/ http://www.glenmccl.com/tutor.htm http://www.edm2.com/0507/introcpp1.html http://www.arachnoid.com/cpptutor/index.html ****General Javascript:**** http://javascript.about.com/od/learn...pt/a/ tut00.htm http://www.w3schools.com/js ****General VBScript:**** http://www.w3schools.com/vbscript/default.asp http://www.quackit.com/vbscript/tutorial/ http://www.hitmill.com/programming/vbs/ vbscript.html http://steffiaume.pagesperso-orange.fr/ vbscript.html http://vbscript-training.com/ http://www.visualbasicscript.com/ ****General Assembly:**** http://win32assembly.online.fr/tutorials.html ****General: Html/CSS:**** http://www.sitepoint.com/html-css-beginners- guide/ http://www.w3schools.com/html http://www.web-source.net/html_codes_chart.htm http://www.quackit.com/ ****General VB/VB.NET:VB/VB.NET:**** http://www.vbtutor.net/ http://www.vbforums.com/ http://www.pickatutorial.com/ http://vb.net-informations.com/ http://www.vbdotnetforums.com/ http://www.homeandlearn.co.uk/NET/vbNET.html http://extreme-vb.net http://www.startvbdotnet.com http://www.vbdotnetheaven.com http://www.java2s.com/Code/VB/CatalogVB.htm http://www.vbaccelerator.com/ http://programmervb.wordpress.com/ ****General Java:**** http://www.javabeginner.com/ ****General PHP:**** http://php.net/ ------------------------------Online Tools/ Etc..:------------------------------ ****SMS Sender:**** http://www.freesmsbundles.com/ http://www.sendmassage.com http://m.websmsonline.com/index.php http://pumpsms.com/index.php ****Fake Mailer:**** http://emkei.cz/ ****Javascript Debugger/Tester:**** http://jslint.com/ http://jsbin.com ****Online Admin Page Finder:**** http://sc0rpion.ir/af/ ****Online MD5 Hash Cracker:**** Netmd5crack.com MD5-Cracker.tk tools.BenRamsey.com md5.Gromweb.com md5.HashCracking.com victorov.su md5.thekaine.de tmto.org md5-db.de md5.my-addr.com md5pass.info md5decryption.com md5crack.com md5online.net md5-decrypter.com authsecu.com hashcrack.com objectif-securite.ch c0llision.net md5.rednoize.com cmd5.org cacin.net ibeast.com password-decrypt.com bigtrapeze.com hashchecker.com md5hashcracker.appspot.com passcracking.com askcheck.com cracker.fox21.at crackfoo.nicenamecrew.com joomlaaa.com md5-lookup.com sha1-lookup.com sha-256.sha1-lookup.com ripemd-lookup.com md5.com.cn md5.digitalsun.pl md5.drasen.net md5.myinfosec.net md5.net md5.noisette.ch md5hood.com stringfunction.com xanadrel.99k.org isc.sans.edu bokehman.com crypo.com/ ****Anonymous/Disposable emails :**** http://www.yopmail.com http://www.email-wgwerf.de/wegwerfemail- liste.html ****Virus Online scanner:**** http://onlinelinkscan.com/ http://www.virustotal.com/ http://www.urlvoid.com http://vscan.novirusthanks.org http://virscan.org/ http://virusscan.jotti.org/nl http://www.viruschief.com/ http://www.filterbit.com/ http://bugbopper.com/SubmitAFile.asp http://onlinescan.avast.com/ http://vms.drweb.com/online/ http://www.kaspersky.com/scanforvirus http://www.fortiguard.com/antivirus/virus_ scanner.html http://www.arcabit.com/check_files http://www.pandasecurity.com/homeuse...ns/ activescan/ http://housecall.trendmicro.com/ http://www.eset.com/onlinescan/ http://www.bitdefender.com/scanner/online/ free.html http://home.mcafee.com/Downloads/ FreeScan.aspx http://cainternetsecurity.net/entscanner/ http://onecare.live.com/site/en-US/default.htm http://wepawet.iseclab.org/ https://vms.drweb.com/sendvirus/ http://www.microsoft.com/en-us/secur...s/ onecare.aspx http://anubis.iseclab.org/ http://www.threatexpert.com/submit.aspx http://camas.comodo.com/ http://valkyrie.comodo.com/ http://www.norman.com/security_center/security_ tools/ http://www.joesecurity.org/service.php http://www.xandora.net/upload/ https://www.vicheck.ca/
Thursday, 21 April 2011
Google Hacking - The Basics
Maniac
Hacking - The Basics
• What exactly is Google Hacking?
• Google Hacking involves using the Google search engine to identify
vulnerabilities in websites.
Hacking - The Basics
• Ok, so you use Google to find all of this stuff, but how do you?
• Google supports a multitude of operators and modifiers that add a ton of
power to google searching.
Hacking - The Basics
• Mmmmmm....operators and modifiers! I want them!
Hacking - The Basics
• cache:
• Syntax: cache:URL [highlight]
• The cache operator will search through google’s cache and return the
results based on those documents. You can alternatively tell cache to
highlight a word or phrase by adding it after the operator and URL.
Hacking - The Basics
• link:
• Syntax: link:URL
• Sites that have a hyperlink to the URL specified will be returned in the
search results.
Hacking - The Basics
• related:
• Syntax: related:URL
• The related operator will return results that are “similar” to the page that was
specified.
Hacking - The Basics
• info:
• Syntax: info:URL
• This tag will give you the information that Google has on the given URL.
Hacking - The Basics
• site:
• Syntax: site:Domain
• This modifier will restrict results to those sites within the domain given.
Hacking - The Basics
• allintitle:
• Syntax: allintitle: oper1 [oper2] [oper3] [etc..]
• Google will restrict the results to those that have all of the words entered
after the modifier within the title. NOTE: This modifier does not play well
with others.
Hacking - The Basics
• intitle:
• Syntax: intitle:operator
• Google will return only results that match the word or phrase entered after
the modifier within the title of the page.
Hacking - The Basics
• allinurl:
• Syntax: allinurl: oper1 [oper2] [oper3] [etc...]
• This modifier is similar to allintitle: in that it will use the rest of the query and
look for all the words or phrases in the URL that was specified. NOTE: Also
like allintitle:, this modifier doesn’t play well with others.
Hacking - The Basics
• inurl:
• Syntax: inurl:operator
• Here is the single operator version of allinurl:. Will return anything that has
the operator in the URL.
Hacking - The Basics
• allintext:
• Syntax: allintext: oper1 [oper2] [oper3] [etc...]
• Just like not using any operators....
Hacking - The Basics
• intext:
• Syntax: intext:operator
• Ok, ok, I’ll let you guess on this one.
Hacking - The Basics
• Are you done yet? That seemed like a lot, and what the hell was with all the
apple stuff?
• Almost there. Now its time to start mixing and matching these modifiers
and operators.
• The four most commonly used will be intitle:, intext:, inurl:, and filetype:
• Also note, you can use OR and + and - signs.
Hacking - The Basics
• mixing in intext:, inurl:, and intitle: and looking for default drupal sites that
haven’t been configured yet.
• -inurl:drupal.org intext:"Welcome to your new Drupal-powered website."
intitle:drupal
Hacking - The Basics
• "display printer status" intitle:"Home"
Hacking - The Basics
• Whoa! a Xerox printer!
Hacking - The Basics
• "#mysql dump" filetype:sql 21232f297a57a5a743894a0e4a801fc3
21232f297a57a5a743894a0e4a801fc3 is the MD5sum for
admin
Hacking - The Basics
• "Certificate Practice Statement" inurl:(PDF | DOC)
CAs are the formal requests that are made to get a Digital Certificate.
Hacking - The Basics
• "Network Vulnerability Assessment Report"
Hacking - The Basics
• "Thank you for your order" +receipt filetype:pdf
Hacking - The Basics
• "robots.txt" + "Disallow:" filetype:txt
Hacking - The Basics
• "phpMyAdmin" "running on" inurl:"main.php"
Hacking - The Basics
• "phone * * *" "address *" "e-mail" intitle:"curriculum vitae"
Hacking - The Basics
• "social security number" "phone * * *“ "address *" "e-mail *" intitle:"curriculum
vitae" filetype:pdf site:.edu
Hacking - The Basics
• ext:vmx vmx
Hacking - The Basics
• filetype:QBW qbw
Hacking - The Basics
• filetype:xls inurl:"email.xls"
Hacking - The Basics
• intitle:"Index of" finances.xls
Hacking - The Basics
• WOW! That was a lot of good finds! Where can I find more info on
googlehacking...
This tutorial is divided in two parts.
1. Introduction into Credit Cards
2. Credit card Hacking
Note: Hacking credit cards is an illegal act, this is only informational post and I am not responsible for any actions done by you after reading this tutorial. This post is for educational purposes only.
Lets start with some easy terms.
What is credit card ?
Credit cards are of two types:
* Debit Card
* Credit Card
1. Debit means u have a sum of amount in it and u can use them.
2. Credit means u have a credit line limit like of $10000 and u can use them and by the end of month pay it to bank.
To use a credit card on internet u just not need cc number and expiry but u need many info like :
* First name
* Last name
* Address
* City
* State
* Zip
* Country
* Phone
* CC number
* Expiry
* CVV2 ( this is 3digit security code on backside after signature panel )
If you get that info you can use that to buy any thing on internet, like software license, porn site membership, proxy membership, or any thing (online services usually, like webhosting, domains).
If u want to make money $ through hacking then you need to be very lucky… you need to have a exact bank and bin to cash that credit card through ATM machines.
Let me explain how ?
First study some simple terms.
BINS = first 6 digit of every credit card is called ” BIN ” (for example cc number is : 4121638430101157 then its bin is ” 412163 “), i hope this is easy to understand.
Now the question is how to make money through credit cards. Its strange…, well you cant do that, but there is specific persons in world who can do that. They call them selves ” cashiers “. You can take some time to find a reliable cashiers.
Now the question is every bank credit cards are cashable and every bin is cashable? Like citibank, bank of america , mbna .. are all banks are cashables ? Well answer is ” NO “. If u know some thing, a little thing about banking system, have u ever heard what is ATM machines? Where u withdraw ur cash by putting ur card in.
Every bank don’t have ATM, every bank don’t support ATM machines cashout. Only few banks support with their few bins (as u know bin is first 6 digit of any credit / debit card number), for suppose bank of america. That bank not have only 1 bin, that bank is assigned like, 412345 412370 are ur bins u can make credit cards on them. So bank divide the country citi location wise, like from 412345 – 412360 is for americans, after that for outsiders and like this. I hope u understand. So all bins of the same bank are even not cashable, like for suppose they support ATM in New York and not in California, so like the bins of California of same bank will be uncashable. So always make sure that the bins and banks are 100% cashable in market by many cashiers.
Be sure cashiers are legit, because many cashiers r there which take your credit card and rip u off and don’t send your 50% share back.
You can also find some cashiers on mIRC *( /server irc.unixirc.net:6667 ) channel : #cashout, #ccpower
Well, check the website where u have list of bins and banks mostly 101% cashable. If u get the credit card of the same bank with same bin, then u can cashout otherwise not . Remember for using credit card on internet u don’t need PIN ( 4 words password which u enter in ATM Machine ), but for cashout u need. You can get pins only by 2nd method of hacking which i still not post but i will. First method of sql injection and shopadmin hacking don’t provide with pins, it only give cc numb cvv2 and other info which usually need for shopping not for cashing.
Credit Card Hacking
CC (Credit Cards) can be hacked by two ways:
* Credit Card Scams ( usually used for earning money , some times for shopping )
* Credit Card Shopadmin Hacking ( just for fun, knowledge, shopping on internet )
1. Shopadmin Hacking
This method is used for testing the knowledge or for getting the credit card for shopping on internet, or for fun, or any way but not for cashing ( because this method don’t give PIN – 4 digit passcode ) only gives cc numb , cvv2 and other basic info.
Shopadmins are of different companies, like: VP-ASP , X CART, etc. This tutorial is for hacking VP-ASP SHOP.
I hope u seen whenever u try to buy some thing on internet with cc, they show u a well programmed form, very secure. They are carts, like vp-asp xcarts. Specific sites are not hacked, but carts are hacked.
Below I’m posting tutorial to hack VP ASP cart. Now every site which use that cart can be hacked, and through their *mdb file u can get their clients ‘credit card details’, and also login name and password of their admin area, and all other info of clients and comapny secrets.
Lets start:
Type: VP-ASP Shopping Cart
Version: 5.00
How to find VP-ASP 5.00 sites?
Finding VP-ASP 5.00 sites is so simple…
1. Go to google.com and type: VP-ASP Shopping Cart 5.00
2. You will find many websites with VP-ASP 5.00 cart software installed
Now let’s go to the exploit..
The page will be like this: ****://***.victim.com/shop/shopdisplaycategories.asp
The exploit is: diag_dbtest.asp
Now you need to do this: ****://***.victim.com/shop/diag_dbtest.asp
A page will appear contain those:
* xDatabase
* shopping140
* xDblocation
* resx
* xdatabasetypexEmailxEmail NamexEmailSubjectxEmailSy stemxEmailTypexOrdernumbe r
Example:
The most important thing here is xDatabase
xDatabase: shopping140
Ok, now the URL will be like this: ****://***.victim.com/shop/shopping140.mdb
If you didn’t download the Database, try this while there is dblocation:
xDblocation
resx
the url will be: ****://***.victim.com/shop/resx/shopping140.mdb
If u see the error message you have to try this :
****://***.victim.com/shop/shopping500.mdb
Download the mdb file and you should be able to open it with any mdb file viewer, you should be able to find one at download.com, or use MS Office Access.
Inside you should be able to find credit card information, and you should even be able to find the admin username and password for the website.
The admin login page is usually located here: ****://***.victim.com/shop/shopadmin.asp
If you cannot find the admin username and password in the mdb file or you can but it is incorrect, or you cannot find the mdb file at all, then try to find the admin login page and enter the default passwords which are:
Username: admin
password: admin
OR
Username: vpasp
password: vpasp
2. Hacking Through Scams
This method is usually used to hack for earning money. What happens in this method is you create a clone page.
Target: its basically eBay.com or paypal.com for general credit cards, or if u want to target any specific cashable bank like regionbank.com then u have to create a clone page for that bank.
What is eBay.com?
Its a shopping site world wide which is used by many of billion people which use their credit cards on ebay. What you do make a similar page same as eBay and upload it on some hosting which don’t have any law restrictions, try to find hosting in Europe they will make your scam up for long time, and email the users of eBay.
How to get the emails of their users?
Go to google.com and type “Email Harvestor” or any Email Spider and search for eBay Buyers and eBay Sellers and u will get long list. That list is not accurate but out of 1000 atleast 1 email would be valid. Atleast you will get some time.
Well u create a clone page of ebay, and mail the list u create from spider with message, like “Your account has been hacked” or any reason that looks professional, and ask them to visit the link below and enter your info billing, and the scam page have programming when they enter their info it comes directly to your email.
In the form page u have PIN required so u also get the PIN number through which u can cash through ATM ..
Now if u run ebay scam or paypal scam, its up to your luck who’s your victim. A client of bank of america or of citibank or of region, its about luck, maybe u get cashable, may be u don’t its just luck, nothing else.
Search on google to download a scam site and study it !
After you create your scam site, just find some email harvestor or spider from internet (download good one at Bulk Email Software Superstore – Email Marketing Internet Advertising) and create a good email list.
And you need to find a mailer (mass sending mailer) which send mass – emails to all emails with the message of updating their account on ur scam page ). In from to, use email eBay@reply3.ebay.com and in subject use : eBay – Update Your eBay Account and in Name use eBay
Some Instructions:
1. Make sure your hosting remains up or the link in the email u will send, and when your victim emails visit it, it will show page cannot be displayed, and your plan will be failed.
2. Hardest point is to find hosting which remains up in scam. even i don’t find it easily, its very very hard part.
3. Maybe u have contacts with someone who own hosting company and co locations or dedicated he can hide your scam in some of dedicated without restrictions.
4. Finding a good email list (good means = actually users)
5. Your mass mailing software land the emails in inbox of users.
That’s all Readers. Hope you will find this tutorial useful. And remember, hacking credit cards is an illegal act, this is only informational post and I am not responsible for any actions done by you after reading this tutorial.
Search
Popular Posts
-
Google Hacking - The Basics Maniac Hacking - The Basics • What exactly is Google Hacking? • Google Hacking involves using the Google search ...
-
Bulk SMS is Gradually Turning Out to be the Most Simplest & Easiest Way to Make Money doing a Stressless work while Seeking Admission or...
-
A common worry for site owners is that of duplicate content. This worry can develop over time as your site gets bigger you might begin to fo...
-
543 Hacking / Hacking Exposed 6: Network Security Secrets & Solutions / McClure & Scambray / 161374-3 11 Web Hacking 11-ch11.indd 54...
-
Now you can root your android device without PC, just use framaroot. This app including several exploits named as the heroes of the book ...
-
Hi there. This is my first serious “black hat hacking” post of credit cards hacking. Here will be explained all methods used to hack credit ...
-
A leading question raised by website content writers today is - "How do I write a copy that facilitates conversions?" More often t...
-
Internet is full of opportunities to make money online , and blogging is one of the smartest and rewarding way, to earn money. One big mis-...
-
If you don't mind, you can buy me a beer or send me a gift because if not for my research and study we wouldn't have come across thi...
-
M any business owners who want to market their business online have heard of the tremendous benefits of making use of SEO services ( search ...
Recent Posts
Subscribe Via Email
Subscribe to our newsletter to get the latest updates to your inbox. ;-)
Your email address is safe with us!