Home > Step 2: Understand your Web applications
Step-by-Step Guide:
EMAIL THIS

Step 2: Understand your Web applications

20 Oct 2005 | SearchWindowsSecurity.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

I recommend getting with whoever developed your Web site and getting a crash course in how the site works. Every Web application is different. Depending on the language that the site was coded in and on the skill of the person who built your site, the site may contain hidden links to pages that are not intended to be seen by the public. It's these hidden links that pose the biggest threat from Google hacks. Since your Web guy isn't likely to tell you about potentially damaging hidden links, it's best to get a list of every page in the site that the public should never see. Don't worry too much about backend pages that contain nothing but functions. Instead, focus your efforts on things like administrative consoles, mailing list interfaces, report generators, and things like that.


Google hacking to test your security

 Home: Introduction
 Step 1: Identify what could be Google hacked
 Step 2: Understand your Web applications
 Step 3: Queries to Google hack your site -- Simple stuff
 Step 4: More complicated Google queries
 Step 5: Harden your Web site against Google hacks


More information from SearchWindowsSecurity.com

  • Learning Center: Google hack Windows servers
  • Tip: Google your Windows security vulnerabilities

  • ABOUT THE AUTHOR:
    Brien M. Posey, MCSE, is a Microsoft Most Valuable Professional for his work with Windows 2000 Server and IIS. He has served as CIO for a nationwide chain of hospitals and was once in charge of IT security for Fort Knox. As a freelance technical writer, he has written for Microsoft, TechTarget, CNET, ZDNet, MSD2D, Relevant Technologies and other technology companies. You can visit his personal Web site at www.brienposey.com.
    Copyright 2005 TechTarget


    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



    RELATED CONTENT
    Endpoint security management tools
    MDOP for Windows 7 available now
    Microsoft's Online Desktop Manager caters to small IT shops
    Monitoring user activity with network analyzers
    Using third-party technologies with Microsoft's NAP
    Understanding Microsoft's NAP's internal and external components
    Microsoft's NAP can ensure security compliance
    Top 5 registry keys for Windows XP
    Microsoft releases WSUS 3 SP2 with Win 7, R2 support
    Using System Center Essentials as a patch management tool
    Troubleshooting Microsoft WSUS connectivity issues

    Microsoft Internet Explorer (IE)
    Admins can wear many hats using Netcat
    Patching third-party browsers adds more work in Windows shops
    Four Internet Explorer 8 Group Policy security settings
    Safe enterprise Web browsing: Five tips in five minutes
    Top client security tips of 2006
    General security configuration: Step 1
    Protection against international domain names, URL handling: Step 3
    ActiveX opt-ins, information bar and cross-domain protection: Step 4
    Windows Vista and IE7: Step 5
    Phishing filter: Step 2

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    system tray  (SearchEnterpriseDesktop.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary




    Windows Admin Solutions - User Management, Application Management, Windows Deployments
    HomeTopicsITKnowledge ExchangeTipsMultimediaWhite PapersBlogs
    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    SEARCH 
    TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Site Map




    All Rights Reserved, Copyright 2008 - 2009, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts