 Mark Micheli for Nextgov 2013-05-09 13:37:33 -0700
Mark Micheli for Nextgov 2013-05-09 13:37:33 -0700 There’s a reason they call it cyberspace: Like space, the Internet has grown so expansive that we’ll likely never know all its secrets. Indeed, cyberspace is so deep and complex that even the National Security Agency’s top cyberspies are struggling to comprehend it. But that hasn’t stopped them from trying.
Thanks to a FOIA request filed in April by MuckRock, a service that files FOIA requests on behalf of journalists and others, you can learn to surf the web like one of the NSA’s top cyber sleuths. The agency recently released a 643-page book, called Untangling the Web: A Guide to Internet Research, that is full of tips on doing web research — including an entire section dedicated to “Google Hacking.”
What is Google hacking? The author of NSA’s book is quick to note that there is nothing unknown or illegal about the practice — noting that much of it was first revealed in Johnny Long’s 2004 book “Google Hacking for Penetration Testers” — but that it will help you “access publicly available information that almost certainly was not intended for public distribution” (cybersecurity professionals, take note).
Here are five of the hacking tips the author recommends.
“This can be as broad as a country [site:fr] or as specific as an individual server on a company website [site:office.microsoft.com].”
“You will have a lot more success searching for information within the Chinese Ministry of Foreign Affairs [site:fmprce.cn.gov] than looking at all the sites indexed for China [site:cn] or even for the government of China [site:gov.cn].”
“Here’s where your subject matter knowledge and creativity really help. You are the best source of information about what words are most likely to yield the best quality and quantity of useful information. As a general rule, more uncommon words work best (consider using unusual proper names).”
“Most of the best information found by Google hackers is not on webpages (HTML) but in other types of files. Try all or most of the file types one at a time (these are not the only searchable types; check the particular search engine’s documentation . . . for others.”
“You will frequently encounter a website, perhaps a database, that requires registration to view its contents. On occasion you can use Google to get at that data without registering.”
The author of the document is quick to note that nobody should use these techniques for cracking — i.e. breaking into websites and servers — but rather, the author encourages readers to “hack” their own websites “to see what kinds of information is being revealed inadvertently via Google and other search engines.”
So, perhaps, it’s best to view it as a cyber defense manual — unless, of course, that’s not how you intend to use it.
Image via PAUL J.RICHARDS/AFP/Getty Images
This article originally published at Nextgov here
Topics: Apps and Software, Google, hackers, national security, U.S., US & World Nextgov is a Mashable publishing partner that is the all-day technology resource for federal decision makers, delivering news, analysis and a nationwide community of expert voices on how technology and innovation are transforming government. This article is reprinted with the publisher's permission. if(window.pageChanged) window.omni({"channel":"us-world","content_type":"article","top_channel":"us-world","content_source_type":"MPP","content_source_name":"Nextgov","author_name":"Nextgov","age":"0","pub_day":9,"pub_month":5,"pub_year":2013,"pub_date":"05/09/2013","isPostView":true,"post_lead_type":"Default","topics":"Apps and Software,Google,hackers,national security,Uncategorized,U.S.,US & World"}); metaData = {"link":[["canonical","http://www.nextgov.com/cybersecurity/cybersecurity-report/2013/05/how-hack-google-one-nsas-top-cyberspies/63071/"],["image_src","http://rack.1.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk3MjB4NzIwIwplCWpwZw/944f5913/f91/NSA.jpg"]],"meta_property":[["og:url","http://mashable.com/2013/05/09/hack-google-nsa-cyberspies/"],["og:title","How to Hack Google Like NSA's Top Cyberspies"],["og:type","article"],["og:site_name","Mashable"],["og:image","http://rack.1.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk3MjB4NzIwIwplCWpwZw/944f5913/f91/NSA.jpg"],["og:article:published_time","2013-05-09T13:37:33-07:00"],["og:article:modified_time","2013-05-09T13:37:46-07:00"]],"meta_name":[["description","There’s a reason they call it cyberspace: Like space, the Internet has grown so expansive that we’ll likely never know all its secrets. Indeed, cyberspace is so deep and complex..."],["keywords",["google","hackers","cybersecurity","national-security","uncategorized","apps-software","us-world","us"]],["twitter:title","How to Hack Google Like NSA's Top Cyberspies"],["twitter:description","There’s a reason they call it cyberspace: Like space, the Internet has grown so expansive that we’ll likely never know all its secrets. Indeed, cyberspace is so deep and complex that even the National..."],["twitter:image","http://rack.2.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk1NjB4NzUwCmUJanBn/0920a608/f91/NSA.jpg"],["twitter:site","@mashable"],["twitter:url","http://mashable.com/2013/05/09/hack-google-nsa-cyberspies/"],["twitter:creator","@mashable"],["twitter:card","photo"],["twitter:image:width","560"],["twitter:image:height","750"]],"short_url":[["short_url","http://on.mash.to/10uDOM7"]]};
 Nextgov is a Mashable publishing partner that is the all-day technology resource for federal decision makers, delivering news, analysis and a nationwide community of expert voices on how technology and innovation are transforming government. This article is reprinted with the publisher's permission. if(window.pageChanged) window.omni({"channel":"us-world","content_type":"article","top_channel":"us-world","content_source_type":"MPP","content_source_name":"Nextgov","author_name":"Nextgov","age":"0","pub_day":9,"pub_month":5,"pub_year":2013,"pub_date":"05/09/2013","isPostView":true,"post_lead_type":"Default","topics":"Apps and Software,Google,hackers,national security,Uncategorized,U.S.,US & World"}); metaData = {"link":[["canonical","http://www.nextgov.com/cybersecurity/cybersecurity-report/2013/05/how-hack-google-one-nsas-top-cyberspies/63071/"],["image_src","http://rack.1.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk3MjB4NzIwIwplCWpwZw/944f5913/f91/NSA.jpg"]],"meta_property":[["og:url","http://mashable.com/2013/05/09/hack-google-nsa-cyberspies/"],["og:title","How to Hack Google Like NSA's Top Cyberspies"],["og:type","article"],["og:site_name","Mashable"],["og:image","http://rack.1.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk3MjB4NzIwIwplCWpwZw/944f5913/f91/NSA.jpg"],["og:article:published_time","2013-05-09T13:37:33-07:00"],["og:article:modified_time","2013-05-09T13:37:46-07:00"]],"meta_name":[["description","There’s a reason they call it cyberspace: Like space, the Internet has grown so expansive that we’ll likely never know all its secrets. Indeed, cyberspace is so deep and complex..."],["keywords",["google","hackers","cybersecurity","national-security","uncategorized","apps-software","us-world","us"]],["twitter:title","How to Hack Google Like NSA's Top Cyberspies"],["twitter:description","There’s a reason they call it cyberspace: Like space, the Internet has grown so expansive that we’ll likely never know all its secrets. Indeed, cyberspace is so deep and complex that even the National..."],["twitter:image","http://rack.2.mshcdn.com/media/ZgkyMDEzLzA1LzA5LzU0L05TQS5lOTdiYS5qcGcKcAl0aHVtYgk1NjB4NzUwCmUJanBn/0920a608/f91/NSA.jpg"],["twitter:site","@mashable"],["twitter:url","http://mashable.com/2013/05/09/hack-google-nsa-cyberspies/"],["twitter:creator","@mashable"],["twitter:card","photo"],["twitter:image:width","560"],["twitter:image:height","750"]],"short_url":[["short_url","http://on.mash.to/10uDOM7"]]}; 
 
0 comments:
Post a Comment