brazerzkidailoud.blogg.se

Mysql database server using an unpassworded account.
Mysql database server using an unpassworded account.





mysql database server using an unpassworded account.

If they're in such a hurry with Apache installs, I wonder what else they rushed through?

Mysql database server using an unpassworded account. how to#

When you learn how to use Apache, your supposed to delete these online Apache manuals. When you install the Apache web server, you get a nice set of online documentation. Intitle:"Apache HTTP Server" intitle:"documentation" On purpose?įinancial spreadsheets: finance.xls Financial spreadsheets: finances.xls These folks have theirĮntire ICQ directories online. ICQ () allows you to store the contents of your online chats into a file. Lesse, what were those server names again? These are server cluster reports, great for info gathering. Best case scenario is that outsiders can see what your company/agency/workers are surfing. Let's say there's not security problems revealed in these logs. must be a furball) OK, lets say BEST CASE scenario. *COUGH* *COUGH* *COUGH* unresolved DNS lookups give clues *COUGH* *COUGH* ('scuse me. Not that I've noticed any examples of this in this google list.

mysql database server using an unpassworded account.

Load up your web browser, set your proxy as their proxy and surf your way into their intranet.

mysql database server using an unpassworded account.

Want to make matters worse for yourself as an admin? OK, configure your external proxy server as a trusted internal host. Then, the internal user surf all over to their hearts content (including intranet pages cuz well, the admins are stupid) Voila, intranet links show up in the external cache report. For example, an institution stands up a proxy server for their internal users to get to the outside world. Fairly benign, really except when you consider using them for evil purposes. "cacheserverreport for" "This squid cache server analysis was produced by reports calamaris" You are free to use these dorks collection for any purpose. I copied raw data from No changes have done. This below tables shows the title of the dork, the actual dork that we use and third description of the dork. Here is a collection of Dorks Submitted to.







Mysql database server using an unpassworded account.