Google Hacks Tutorial - Part 3
Hello this is Hollow with Information Leak. Welcome to another exciting edition of Google Hacks volume 3. Today, we’re going to go over a couple of really fast, once really cool. A member brought up to information leak on our forums about the front page hack let me type it in here for you. First are the directory and the file. Okay, so now, he brought this up. what it is, is as front page hack; what it does it is brings you different sites that are made from—with from page and as you can see they’ll bring out a username and a password that’s encrypted in DES. So all you would need at this point would be to crack this encryption in DES. I’m not saying you’ll need a DES cracker like for example John the John the Ripper. I’m just saying if you wanted to crack DES you’d probably use something like John the Ripper. At this point, all you would have to do is launch front page, go to file, open web, enter those credentials and view the full access to that stuff very cool hack going to kick out of it.
Now, the neat one we’re going to do is a little PHP Photo album hack. I thought you might enjoy. This little hack right here—I should make it bigger so you can see. This little hack right here makes it available yes it did that’s the smartest man and in case find ourselves a nice little. All right, for example, this gentleman here, he’s photo thing here we’re going to take this information Leak photo that I’ve put in here. IRL logo and we’re going to insert it directly into his album which as his album shows up we’ll see a lovely little information Leak thing on the bottom. I’ve been messing with this for a while so it’s probably a couple. These different ones to use with this you’ll find them overall pretty interesting and if you’re anything like me a lot of fun, here we go. Little tag, I’ve got to kick out of this stuff sometimes. Just about any of them are get to go and you should be able to pop them in without any problem. Right now, I’m just tagging a few—doesn’t hurt anybody you just pop in up picture into their album if they don’t like you take and take it out but I thought you might get a kick out of that. Of course I don’t have time for this so—let’s do this one again why not and that’s that moving on.
And we have another one that’s pretty neat, how to get into VNC logins. If you’re not familiar with VNC its Virtual Network Computing meaning you can login remotely to another computer and control it so software that largely can do it. There’s a bunch of ports if you’re using real VNC generally you’re going to be behind around 5800 to—I’ll make this nice and big so you can see--it would be around 5800 to 5806. So we’re going to start of the 5800, take a look all this logins right here. For example—oh crap that’s right—hold on one second I don’t have—yes it just happened don’t have Java installed on that and this is a Java based software.
It should give us a login and which case we’ll have to brute force the password, not saying to use a brute forcer specifically designed for VNC I’m just saying that you would use a brute forcer specifically designed for VNC but let me just tell you as I’m using—we’ll bring this up a little larger for you. As I’m using 5800, 5801 you’ll see that this will bring up more 5802, etcetera, etcetera. Now, obviously all the way out to 5806 this is the general area, apparently there’s probably done in six which are five. And there’s a couple more—there are other ports you can use. You can basically just start checking ports in the high 5000 that’s generally where you find them. That’s for VNC as well. You know what? Having fun a few you can see I’ve been playing with that as little bit. So now, like I said it’s up to you, you fool around and you’ll be able to find some stuff I’m sure you’ll enjoy, many case. This is Hallow from Information Leak, Google Hacks Volume 3. Please enjoy Google until next time system.
Transcription by:
Scribe4you Transcription Services