Goolag Scanner - Google Hacking Kit Released
A notorious hacker group known as, the Cult of the Dead Cows (cDc), has done it again!
Back in early 2006, the cDc launched the “Goolag” (a play on gulag, Soviet concentration camps) campaign in response to Google’s decision to comply with China’s Internet censorship policy. Now cDc continuously uses the phrase Goolag to reference the giant search company. This new tool is just another jab at Google and their decision to censor internet to the citizens of main-land China.
The newly released exploit allows security experts, hackers, and just about everyone who’s up to no good, the ability to scan websites for known vulnerabilities using the power of Google’s search technology.
Using individual searches to find security flaws can take a long time. Goolag Scanner is an application that rapidly runs lots of flaw-finding searches and returns results in an easier to digest fashion.
Despite the controversy, the Goolag Scanner is a very useful tool for website owners when used to check your own websites.
To see the tool in action check out: http://www.goolag.org
FOR IMMEDIATE RELEASESECURITY ADVISORY: The following program may screw a large Internet search
engine and make the Web a safer place.LUBBOCK, TX, February 20th — Today CULT OF THE DEAD COW (cDc), the world’s most attractive hacker group, announced the release of Goolag Scanner, a webauditing tool. Goolag Scanner enables everyone to audit his or her own website via Google. The scanner technology is based on “Google hacking,” a form of vulnerability research developed by Johnny I Hack Stuff. He’s a lovely fellow. Go buy him a drink.
“It’s no big secret that the Web is the platform,” said cDc spokesmodel
Oxblood Ruffin. “And this platform pretty much sucks from a security
perspective. Goolag Scanner provides one more tool for web site owners to
patch up their online properties. We’ve seen some pretty scary holes through
random tests with the scanner in North America, Europe, and the Middle East.
If I were a government, a large corporation, or anyone with a large web site,
I’d be downloading this beast and aiming it at my site yesterday. The v
ulnerabilities are that serious.”Goolag Scanner will be released open source under the GNU Affero General
Public license. It is dedicated to the memory of Wau Holland, founder of the
Chaos Computer Club, and a true champion of privacy rights and social justice.GOOLAG SCANNER FUNCTIONS AND FEATURES
Goolag Scanner is a standalone windows GUI based application. It uses one
xml-based configuration file for its settings. All dorks coming with the
distribution of gS are kept inside one file.
–Press Contact
Oxblood Ruffin
oxblood at hacktivismo.com









George Peterson on 04 Mar 2008 at 9:22 pm #
Tight man! Thanks for the heads up. Good stuff and great site!!!