Google Hack Honeypot

June 3, 2010 / Testing / Quality Assurance

Nowadays, when search engines crawl the web on daily basis, sites content is at risk. Plain queries allow hackers to manipulate search engines data for tracking easy targets on the web.

Security Backdoor Tracking

FrontPage Access Tracker:
“# -FrontPage-” inurl:service.pwd

Google search for hosted pwd files
This query will bring back hosted pwd files containing the username:password of hundreds of Frontpage based websites.

SQL DB Access Tracker:
“A syntax error has occurred” filetype:ihtml +dbname +login

SQL Syntax errors can reveal your most sensitive site information – the SQL username/password. All it takes is that Google will crawl your site with the slightest error. The result could be catastrophic and destructive.

SQL Syntax error
To protect yourself from revealing this, you must create custom landing pages for the most common errors on your server (500, 580 etc’) so that people (or search engines) will never be able see the actual errors.

The Solution!

GHH. Google Hack Honeypot was designed to secure these and many other similar Google Hacks. The demo page includes details a vast amount of similar backdoors and shows how GHH deals with them on your server.

You’ll make yourself (or your client) a big favor by setting this up and preventing the possibility

of such event ever occurring.