rfi

Google RFI Scanning w/ Bots

"So, on a sunday morning, I was watching some hacker activities. These hackers were doing the following pattern:"

- Using bots based on Perl
- Querying Google for parts of the urls that may identify some applications, using the inurl: parameter.
- Scanning the Google results sites for vulnerable applications
- Exploit those applications in a way to run remote commands on the machine, giving orders like download additional software to the machine, like the same perl bot."Read more

Tags

Syndicate content