The FBI has issued a warning to police and other emergency response personnel about a lethal new tool which ‘malicious actors’ have been using to deadly effect against American government institutions – Google dorks.
The warning, reported by Ars Technica, refers specifically to âGoogle dorksâ  or âGoogle dorkingâ – ie the use of specialized search syntax, using terms such as âfiletype:sqlâ.
‘Google dorks’ refers to search syntax which allow users to search within a specific website (using the term in:url) or for specific file types, and can thus be used to search databases. Such search terms are widely known, and legal – the warning alerts units who may not be aware of the technique to secure databases properly.
Google dorks: Weapon of the ‘malicious’?
âIn October 2013, unidentified attackers used Google dorks to find websites running vulnerable versions of a proprietary internet message board software product, according to security researchers,â the FBI warning says.
âAfter searching for vulnerable software identifiers, the attackers compromised 35,000 websites and were able to create new administrator accounts. ”
“For example, a simple âoperator:keywordâ syntax, such as âfiletype:xls intext:username,â in the standard search box would retrieve Excel spreadsheets containing usernames. Additionally, freely available online tools can run automated scans using multiple dork queries.â
The warning refers to several online resources commonly used to automate âGoogle dorkâ queries – and offers advice on the scope of such search terms.syntax.
Shock as web users employ ‘search’
The warning also offers a useful link to Googleâs own testing centre for pre-empting such attacks, the Google Hacking Database. Webmasters can use this to check whether files are âvisibleâ to Google dorks, then hide them if they wish.
Ars Technica points out that the warning refers to âmalicious cyber actorsâ and refers to a notorious case in which reporters were accused of âhackingâ a website by using freely available information and an automated tool, GNUGet.
However, as Ars explains, the warning is not really meant to highlight a ânewâ technique, i.e Google dorks, but to warn webmasters to make their websites more secure.
âThis warning from the DHS and the FBI was mostly intended to give law enforcement and other organizations a sense of urgency to take a hard look at their own websitesâ security,â Ars comments. âLocal police departments have increasingly become the target of âhacktivists.â Recent examples include attacks on the Albuquerque Police Departmentâs network in March following the shooting of a homeless man and attacks on St. Louis County police networks in response to the recent events in Ferguson, Missouri.â
The warning says, âEnsure sensitive websites are not indexed in search engines. Google USPER provides webmaster tools to remove entire sites, individual URLs, cached copies, and directories from Googleâs index.â
The post Google dorks – FBI warning about dangerous ânewâ search tool appeared first on We Live Security.