Goolag Scanner released!
Krass Katt sez:
Go grab my app! Choke on it, you silly bitches.
FOR IMMEDIATE RELEASESECURITY ADVISORY: The following program may screw a large Internet search engine and make the Web a safer place.
LUBBOCK, TX, February 20th -- Today CULT OF THE DEAD COW (cDc), the world's most attractive hacker group, announced the release of Goolag Scanner, a web auditing tool. Goolag Scanner enables everyone to audit his or her own web site via Google. The scanner technology is based on "Google hacking," a form of vulnerability research developed by Johnny I Hack Stuff. He's a lovely fellow. Go buy him a drink.
"It's no big secret that the Web is the platform," said cDc spokesmodel Oxblood Ruffin. "And this platform pretty much sucks from a security perspective. Goolag Scanner provides one more tool for web site owners to patch up their online properties. We've seen some pretty scary holes through random tests with the scanner in North America, Europe, and the Middle East. If I were a government, a large corporation, or anyone with a large web site, I'd be downloading this beast and aiming it at my site yesterday. The vulnerabilities are that serious."
Goolag Scanner will be released open source under the GNU Affero General Public license. It is dedicated to the memory of Wau Holland, founder of the Chaos Computer Club, and a true champion of privacy rights and social justice.GOOLAG SCANNER FUNCTIONS AND FEATURES
Goolag Scanner is a standalone windows GUI based application. It uses one xml-based configuration file for its settings. All dorks coming with the distribution of gS are kept inside one file.
--Press Contact
Oxblood Ruffin
oxblood at hacktivismo.com
Comments
Goolag likes you...
Well dude.. what's the PW of the rar containing the source code?
And did you guys ever heared about bittorrent? :-p
It may would make sense (except of having slow Servers :) )
goolag dot org is offline. Anyone have a copy of the program that they can send to me via email at cindylouwho at thebabecams dot com
Try goolag.net instead; same thing. Torrent coming soon.
Sorry to say...but I don't find this tool very useful. There are much better vunerability scanners out there, but if I just want to scan the available dorks I could write a simple script which does the job and doesn't require Windows, .NET or anything fancy.
Wake up guys! You can do much much better than this!
OMG! I just had a look at the gdorks.xml file...Are you serious? Have you ever heard of data structures? This is lame!
It's very easily useable since it does not require a local proxy like Sensepost Aura but also seems to be still hindered by the google bot captcha problem due to this simplicity...it should probably integrate an API key or something like Aura with Wikto/GHDB...I got blocked in short order.
A new frontend for GHDB?
Mirror:
Self-extracting .exe (install only):
http://rapidshare.com/files/95037326/Goolag_Scanner_1.0.0.40_Setup.exe
Full source distribution:
http://rapidshare.com/files/95037951/GoolagScanner_1.0.0.41.rar
Hi,
Interesting app.
Don't forget that computer insecurity is everywhere :
www.xssed.com/mirror/30220/
fuckin CDC~
stupid guy~
CDC sucks~
Goolag sucks~
Mother Fucker CDC !!!
Suck my dick~
I understand that the Host string is used as the 'site' parameter in the query. I thought that meant you would only find pages on that host URL that had the dork. However, I'm getting successful queries that have URLs that are unrelated to the host I entered. If you go to the url shown in the successful result you can see the dork string but there's nothing about the host on that page.
For you folks who can't access goolag.org
look on PacketStormSecurity.org for GoolagScanner 1.0.40
It's a .RAR file with the source and self extracting binary. Enjoy!
Ya'll need to make this a .deb for us Linux users.
:O
I visit this web from searching from www.avun.com
You should kiss my ass even for advisory/vulnerability section. You asked to the Johnny community forums if you can do this Windows shit?
rgod
hey, where can i put the proxy server. Tools-Options-Proxy address . . . if i'm already ussing proxy just click on *use system default settings* ???
goolag scanner is fail
Hello,
We facilitate the provision of independent analysis to support expert testimony, regulatory or legislative engagements.http://www.potentiamed.com
CULT OF THE DEAD COW
ASSAULT TELECOM.
cDc site version 666.2.0
Archives
RIP THE NIGHTSTALKER
December 29, 1951 - June 14, 2012
Memesphere Poopfest
Children of the Cow
Legal Crap
Wiz Dumb
CULT OF THE DEAD COW
Recent texXxt
413 "Temporary Paralysis: A One-Act Play" by Jake Edward Kara
412 "The Screen Generation" by elliot.pank
411 "The DEFCON 2007 Experience" by Oxycolton, KEMiKAL, and Flack
410 "My Bike" by Lupo
Recent Periodicals
"The changing landscape of hacktivism" by Oxblood Ruffin
"AnonyMiss, the yin to the Anonymous yang" by Oxblood Ruffin
"The real reason Google wants out of China" by Oxblood Ruffin
"Gary McKinnon: Wanted, Dead or Alive" by Oxblood Ruffin
Recent Books
Recent Muzak
272 "Dr. Poo" by Punkle Jones
271 "Stroke Yer Gabba Gabba - Hey?!"by CULT OF THE DEAD COW
270 "Amity" by DilDog
269 "Elvis' Penis" by unknown
Recent grafx
"Sometimes it's just like that."
by Punkle Jones
cDc #046
"I Love a Parade!" by G. Ratte'
- all grafx -
Recent Video
Recent Apps/Projects
"cDc Mobile Content Package" by Hella Kitty
"cDc T-File Reader for the Sony PSP & other portable devices" by BlindAssassin
"Goolag Scanner" by Krass Katt
"eCoder Ring" by Flack




















Digg does not like me.
Posted by BlindAssassin at 7:06 PM on February 20, 2008