blog | about | texXxt | tunez | grafx | video | apps | merch | appearances | misc. pics | feedback | links
« | »
February 20, 2008
Goolag Scanner released!
Posted by Krass Katt at 9:09 AM CT | Listen

Go grab my app! Choke on it, you silly bitches.


FOR IMMEDIATE RELEASE

SECURITY ADVISORY: The following program may screw a large Internet search
engine and make the Web a safer place.

LUBBOCK, TX, February 20th -- Today CULT OF THE DEAD COW (cDc), the world's
most attractive hacker group, announced the release of Goolag Scanner, a web
auditing tool. Goolag Scanner enables everyone to audit his or her own web
site via Google. The scanner technology is based on "Google hacking," a form
of vulnerability research developed by Johnny I Hack Stuff. He's a lovely
fellow. Go buy him a drink.

"It's no big secret that the Web is the platform," said cDc spokesmodel
Oxblood Ruffin. "And this platform pretty much sucks from a security
perspective. Goolag Scanner provides one more tool for web site owners to
patch up their online properties. We've seen some pretty scary holes through
random tests with the scanner in North America, Europe, and the Middle East.
If I were a government, a large corporation, or anyone with a large web site,
I'd be downloading this beast and aiming it at my site yesterday. The v
ulnerabilities are that serious."

Goolag Scanner will be released open source under the GNU Affero General
Public license. It is dedicated to the memory of Wau Holland, founder of the
Chaos Computer Club, and a true champion of privacy rights and social justice.

GOOLAG SCANNER FUNCTIONS AND FEATURES

Goolag Scanner is a standalone windows GUI based application. It uses one
xml-based configuration file for its settings. All dorks coming with the
distribution of gS are kept inside one file.
--

Press Contact
Oxblood Ruffin
oxblood at hacktivismo.com


Edit: digg this shit.

Comments
Posted by BlindAssassin at 07:06 PM February 20, 2008

Digg does not like me.

Posted by Pawl at 04:54 PM February 21, 2008

Goolag likes you...

Posted by rembrandt at 12:33 PM February 22, 2008

Well dude.. what's the PW of the rar containing the source code?

And did you guys ever heared about bittorrent? :-p
It may would make sense (except of having slow Servers :) )

Posted by Cindy Lou Who at 03:51 PM February 22, 2008

goolag dot org is offline. Anyone have a copy of the program that they can send to me via email at cindylouwho at thebabecams dot com

Posted by KK at 05:32 PM February 22, 2008

Try goolag.net instead; same thing. Torrent coming soon.

Posted by buherator at 11:58 AM February 24, 2008

Sorry to say...but I don't find this tool very useful. There are much better vunerability scanners out there, but if I just want to scan the available dorks I could write a simple script which does the job and doesn't require Windows, .NET or anything fancy.

Wake up guys! You can do much much better than this!

Posted by buherator at 12:37 PM February 24, 2008

OMG! I just had a look at the gdorks.xml file...Are you serious? Have you ever heard of data structures? This is lame!

Posted by br0d at 07:35 PM February 25, 2008

It's very easily useable since it does not require a local proxy like Sensepost Aura but also seems to be still hindered by the google bot captcha problem due to this simplicity...it should probably integrate an API key or something like Aura with Wikto/GHDB...I got blocked in short order.

Posted by quangntenemy at 12:43 AM February 26, 2008

A new frontend for GHDB?

Posted by phil at 04:47 AM February 26, 2008

Mirror:

Self-extracting .exe (install only):
http://rapidshare.com/files/95037326/Goolag_Scanner_1.0.0.40_Setup.exe

Full source distribution:
http://rapidshare.com/files/95037951/GoolagScanner_1.0.0.41.rar

Posted by Vincent at 01:04 PM February 27, 2008

Hi,

Interesting app.
Don't forget that computer insecurity is everywhere :

www.xssed.com/mirror/30220/

Posted by Alex in Taiwan at 12:11 AM February 29, 2008

fuckin CDC~
stupid guy~
CDC sucks~
Goolag sucks~

Posted by YuBou Jian at 10:00 PM March 03, 2008

Mother Fucker CDC !!!
Suck my dick~

Posted by BenjaminTallmadge at 10:41 AM March 04, 2008

I understand that the Host string is used as the 'site' parameter in the query. I thought that meant you would only find pages on that host URL that had the dork. However, I'm getting successful queries that have URLs that are unrelated to the host I entered. If you go to the url shown in the successful result you can see the dork string but there's nothing about the host on that page.

Posted by Pawl at 01:41 AM March 08, 2008

For you folks who can't access goolag.org

look on PacketStormSecurity.org for GoolagScanner 1.0.40
It's a .RAR file with the source and self extracting binary. Enjoy!

Posted by Pawl at 01:43 AM March 08, 2008

http://packetstormsecurity.org/filedesc/GS1.0.0.40OfficialRelease.rar.html

Posted by Mykahh at 03:18 PM March 09, 2008

Ya'll need to make this a .deb for us Linux users.

:O

Posted by Donny at 12:00 PM March 11, 2008

I visit this web from searching from www.avun.com

Posted by rgod at 01:14 AM March 16, 2008

You should kiss my ass even for advisory/vulnerability section. You asked to the Johnny community forums if you can do this Windows shit?

rgod

Post a comment









Remember personal info?





Mind viruses. Deadly memes.
ASSAULT TELECOM.
BOW TO THE COW
:: CULT OF THE DEAD COW ::
cDc website version 666

All of us in the cDc participate in this site. If you want to complain because this ain't teaching you how to be an 31337 hax0r, you can eat our collective ass. Thx!

:: RSS-O-RAMA ::
Want new cDc headlines on your own website? Hell yeah! Just grab the official cDc RSS feed. And if you don't know what the hell an RSS feed is, get some learnin' for chrissakes.

Here are the feeds we offer (all independently validated):
site-wide feed - RSS 2.0
blog posts only - RSS 2.0
blog posts only - podcast
content only - RSS 2.0
pdf from RSS
CULT updates from MSN

Oh, and we're syndicated on LiveJournal for all the - quote - "emo fags who use that piece of shit website." -the guy who put it up.

:: NINJA STRIKE FORCE RADIO ::
Soooper authentic, official cDc NINJA STRIKE FORCE streaming audio awaits your empty, desiring earholes. Let it fill them both with its thrusting streams of love!! Your head will be a doublestuff cookie and all you can think is "OMFG!@$#!@$!!!@#$

Page of info to SEE

The link with which you HEAR (iTunes, WinAmp, whateva).

:: 'TARD BOX ::
We keep our freaks here in this Chat Box of Eternal Torment. Feel free to poke at them with a stick. Go ahead, it's fun.

Shining faces dripping with hate-seed! Bitter depravity manifesting as frustrated, incoherent rambling! The sorrowful bleating of condemned sheep!

BEHOLD!!
And add your lot to this sad cavalcade of hopeless despair!
'TARD BOX
CLOSED FOR
MAINTENANCE.

NO FUSSIN',
YA HEAR?

:: WHERE WE SIT ::
:: IN THE MEMESPHERE ::
:: THOUGHTSPACE POOPFEST ::
Has the cDc site inspired you to create your OWN? Has it filled you with a desire to go out and create a blog full of beauty and sparkly magic? Or has it driven you to create your own site full of bile, bitterness, and bad sportsmanship?

Click these buttons for red hott daisy chain action!

cDc Technorati profile
Page Rank
Listed on BlogShares
cDc @ Blog Top Sites
cDc EveryFeed.com
cDc blog pedigree
TTLB Ecosystem

:: TRANSLATE ::


:: HOT BUTTERED BLOGROLL ::

:: LEGAL CRAP ::
"CULT OF THE DEAD COW"
is a registered trademark of
cDc communications.

copyright © 1984-2007
cDc communications.
some rights reserved.
the internet's #1 white slavery and cockfighting site!
COW IS NOW
:: RECENT NEWS ::
CULT OF THE DEAD COW CATCHES THE COMMIES PUBLISHING PORNOGRAPHY ON THEIR WEBSERVERS
Goolag Scanner released!
Video! Video! Video!
Videos by Bill Brown
SOURCE Boston security conference coming up in March!

:: RECENT CONTENT ::
"Goolag Scanner" by Krass Katt
Fluffy by Punkle Jones
Kustom Kamera Kommandos by Bill Brown
Railbike by Bill Brown
"Ibogaine" by KRON 4, featuring Lord Digital
271 "Stroke Yer Gabba Gabba - Hey?!" by CULT OF THE DEAD COW
CDC NSF OSC 2008 by HackerJacks
040 "Hoist the Jolly R0g3r" by Delchi
270 "Amity" by DilDog
411 "The DEFCON 2007 Experience" by Oxycolton, KEMiKAL, and Flack

:: RANDOM CONTENT VOMIT ::
Read:
245 "U.S. Mercenary Army" by Phil Agee

See:
031 "Devolish Pinup" by MiB


CDC031.JPG

Watch:
"Hacktivismo at the Chaos Communication Congress 2006" shot by Lesh featuring MiB, Devolish, and elliot.pank

Hear:
261 "Kingpin ('merican blooz mix)" by Weasel-MX

Use:
"PECrunch" by Sir Dystic
:: ARCHIVES ::






:: Ninja Strike Force ::
Solving Crimes with your Thumb (Drive)
Crash Gordon
Operation BitSave
Bitrot
Goolag

:: cDc's Bovine Dawn Dojo ::
Public Dojo :: Help me help my friend, please.
Public Dojo :: Religious Wars 2: Xenu Strikes Back
Public Dojo :: improving communcations mediums using brains hardware
Public Dojo :: black racism in the democratic primaries
Public Dojo :: Whoo! Tell it like it is Girls!

:: alt.fan.cult-dead-cow ::
buy soma online kamagra fuck buy fastin phentermine no prescriptions
campus invasion blowjob video antonella barba uncensored blowjob puctures nautica thorn blowjob
Free Erotic Sex
COWFEED TEST
Welcome to Hell.