Penetration Testing mailing list archives

Re: RE: false positive in Wikto Google Hacking


From: lovewadhwa () secaudi com
Date: 19 Sep 2007 11:35:06 -0000

I don't think they are actually false positives.They could be but as you say , i believe that when you run wikto it 
applies all the rules of its dataabase on your web root directory.However when you go on google and search over there 
it doesn't show you.This actually means that google doesn't have crawled that page.In other words i must say the page 
is not in google cache.The pages or keywords reported by wikto doesn't mean that those must exist  in google.Wikto uses 
those keywords which if used on google website will return certain pages that it has crawled or are there in its 
cache.Hope you get that.

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


Current thread: