Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Search Engines, Directories, SEO, and Site Promotion › Search Engines, Directories, SEO, and Site Promotion › Search Engines › google v
« Previous 1 … 5 6 7 8 9 Next »

Major Security Flaw With Google Sitemaps Stats

  
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
Major Security Flaw With Google Sitemaps Stats
11-19-2005, 10:16 AM,
Post: #1
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
Major Security Flaw With Google Sitemaps Stats
Quote:David Naylor points out, as does this WebmasterWorld thread spotted via Threadwatch, a pretty surprising security oversight with Google's new Sitemaps stats system that can allow anyone access to stats of other web sites, if those web sites don't report 404/File Not Found errors correctly. Right now, I'm looking at stats for eBay and AOL, as well as Google's own Orkut!

...The problem is, some web sites will respond that any page exists, even if it doesn't. Rather than sending out a 404 File Not Found error message, they'll dynamically generate the page with content anyway or they'll tell the user the file doesn't exist, but the server code sent to a browser says differently.

full article: http://blog.searchenginewatch.com/blog/051118-092239

Quote:A couple of things we’ve found since playing with this:

    * 23% of the Alexa Top 100 sites are susceptible to this problem
    * Other big sites include Orkut, Infoseek Japan, Match.com, Business.com and Whitehouse.gov
    * SEW ranks for singingfish
    * Most sites we added were using 301 or 302 to another file. We noticed if your 302 or 301 crosses a domain, the site was added
    * MSN servers return 200 OK but also “STATUS_CODE: NotFound", which Google fell over on ("temporary problem")
    * Monster.com should be susceptible but Google’s servers couldn’t resolve it.

full article: http://www.davidnaylor.co.uk/archives/20...-sitemaps/
Like Post Reply
[+]
11-25-2005, 11:24 PM,
Post: #2
jezebel Offline
Tulip Fanatic
*******
Posts: 1,385
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Jul 2005
Reputation: 0
Re: Major Security Flaw With Google Sitemaps Stats
Still not fixed  :Smile
Like Post Reply
[+]
11-26-2005, 01:18 AM,
Post: #3
bargainbloodhound Offline
Lawnmower Mouth
********
Posts: 4,372
Likes Given: 0
Likes Received: 4 in 4 posts
Joined: Jul 2005
Reputation: 0
Re: Major Security Flaw With Google Sitemaps Stats
[quote author=jezebel link=topic=1343.msg5278#msg5278 date=1132961059]
Still not fixed  :Smile
[/quote]

They fixed it the same day it was discovered.

http://news.com.com/2061-10812_3-5961484.html?part=rss&tag=5961484&subj=news
"Well, Jay was so giddy that someone named Jay was involved with this site we posted our first non-eBay listing in 3 years here at Lunarbid (we tried two items at Yahoo once upon a time, they bombed)" -Marie posting in a LunarBid thread at OTWA in 2005 wins the award for 'most moronic reason ever given for choosing a venue"

"thanks twat u must have nothing better 2 do. do u talk to all your members like that. will not be recomending your site.
best way to put it is TULIPTOOLS.COM IS REALLY SHIT. DONT JOIN." -pubescent owner of rinky dink off2auction.com in 2011
Like Post Reply
[+]
« Next Oldest | Next Newest »




Possibly Related Threads…
Thread Author Replies Views Last Post
  Using Google Sitemaps mandy 0 2,379 06-13-2008, 10:04 AM
Last Post: mandy
  Google: Sitemaps FAQs mandy 0 1,902 03-09-2008, 12:22 PM
Last Post: mandy
  Google Mini/Google Search Appliance Security Hole puts Websites at Risk mandy 0 2,286 11-28-2006, 12:02 PM
Last Post: mandy
  Google Public Search contains Security Hole that can be Exploited by Phishers mandy 0 1,997 09-16-2006, 07:35 AM
Last Post: mandy
  Latest release of Google Sitemaps adds more stats features mandy 0 2,105 06-25-2006, 02:11 PM
Last Post: mandy

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 05-19-2025, 05:08 AM Powered By MyBB, © 2002-2025 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.