Untitled


SUBMITTED BY: Guest

DATE: May 15, 2013, 10 p.m.

FORMAT: Text only

SIZE: 18.1 kB

HITS: 1750

  1. #OpBilderberg: http://bilderberg.org/ |
  2. ------------------------
  3. 1) HTML form without CSRF protection
  4. Cross-site request forgery, also known as a one-click attack or session riding and abbreviated as CSRF or XSRF, is a type of malicious exploit of a website whereby unauthorized commands are transmitted from a user that the website trusts.
  5. Acunetix WVS found a HTML form with no apparent CSRF protection implemented. Consult details for more information about the affected HTML form
  6. Affected items:
  7. http://bilderberg.org/seahttp://bitbin.it/YINScN7Nrch/search.htm
  8. -------------------------------------------------------------------------------------------------
  9. 2) OPTIONS method is enabled
  10. HTTP OPTIONS method is enabled on this web server. The OPTIONS method provides a list of the methods that are supported by the web server, it represents a request for information about the communication options available on the request/response chain identified by the Request-URI.
  11. Affected items:
  12. Web Server
  13. -------------------------------------------------------------------------------------------------
  14. 3) Sensitive data not encrypted
  15. Sensitive data such as credit card numbers, social security numbers are sent without using an encrypted connection. Information sent in clear text is not encrypted and therefore, can be intercepted.
  16. Affected items:
  17. http://bilderberg.org/cia.htm
  18. http://bilderberg.org/st/index.htm
  19. -------------------------------------------------------------------------------------------------
  20. 4) Slow response time
  21. This page had a slow response time. The response time for this page was 29032 ms while the average response time for this site is 157.86 ms. This types of files can be targetted in denial of service attacks. An attacker can request this page repeatedly from multiple computers until the server becomes overloaded.
  22. Affected items:
  23. http://bilderberg.org/Clearwel2.doc
  24. http://bilderberg.org/g/Bild-az-tab.html
  25. http://bilderberg.org/land/lawofree.htm
  26. http://bilderberg.org/MartinBormann-NaziInExile-PaulManning-1981.doc
  27. http://bilderberg.org/nwo.htm
  28. http://bilderberg.org/pepis02.htm
  29. http://bilderberg.org/sis.htm
  30. http://bilderberg.org/whorunstheworld8.doc
  31. http://bilderberg.org/whorunstheworld9.doc
  32. -------------------------------------------------------------------------------------------------
  33. 5) TRACE method is enabled
  34. HTTP TRACE method is enabled on this web server. In the presence of other cross-domain vulnerabilities in web browsers, sensitive header information could be read from any domains that support the HTTP TRACE method.
  35. Affected items:
  36. Web Server
  37. 6) Email address found
  38. One or more email addresses have been found on this page. The majority of spam comes from email addresses harvested off the internet. The spam-bots (also known as email harvesters and email extractors) are programs that scour the internet looking for email addresses on any website they come across. Spambot programs look for strings like myname@mydomain.com and then record any addresses found.
  39. Affected items:
  40. /1991.htm
  41. /1992.htm
  42. /1997.htm
  43. /1998.htm
  44. /1999.htm
  45. /2000.htm
  46. /2001.htm
  47. /2002.htm
  48. /2003.htm
  49. /2004.htm
  50. /2005.htm
  51. /2006.htm
  52. /2007.htm
  53. /2008.htm
  54. /apostasy.htm
  55. /badlink.htm
  56. /bap.htm
  57. /bernhard.htm
  58. /bilder.htm
  59. /bildhist.htm
  60. /bis.htm
  61. /bohos.htm
  62. /boneswar.htm
  63. /censored.htm
  64. /cgi-bin/htsearch
  65. /changes.htm
  66. /cia.htm
  67. /critic.htm
  68. /davos.htm
  69. /endtimes.htm
  70. /goodlink.htm
  71. /hbomb.htm
  72. /hell.htm
  73. /hgenetix.htm
  74. /homedn.htm
  75. /imf.htm
  76. /index.htm
  77. /infowar.htm
  78. /jewish.htm
  79. /kissing.htm
  80. /land/diggers.htm
  81. /land/index.htm
  82. /land/lawofree.htm
  83. /land/letter.htm
  84. /land/newchai2.htm
  85. /land/petition.htm
  86. /land/poor.htm
  87. /land/solemn.htm
  88. /land/thompson.htm
  89. /land/truerel.htm
  90. /legal.htm
  91. /lucis.htm
  92. /masons.htm
  93. /micwaves.htm
  94. /milne.htm
  95. /monref.htm
  96. /nato.htm
  97. /ncl.htm
  98. /nwo.htm
  99. /nwo2007.htm
  100. /officers.txt
  101. /pepis00.htm
  102. /pepis01.htm
  103. /pepis02.htm
  104. /pepis03.htm
  105. /pepis04.htm
  106. /pepis05.htm
  107. /pepis06.htm
  108. /pepis07.htm
  109. /pepis08.htm
  110. /pepis98.htm
  111. /pepis99.htm
  112. /product.htm
  113. /railways.htm
  114. /rockef.htm
  115. /secret.htm
  116. /shengen.htm
  117. /sis.htm
  118. /skulbone.htm
  119. /st/index.htm
  120. /strigas.htm
  121. /tonyhom.htm
  122. /trib.htm
  123. /trilat.htm
  124. /ugle0304.txt
  125. /usglobal.htm
  126. /wdm.htm
  127. /wwiii.htm
  128. 7) GHDB: ht://Dig error message
  129. The description for this alert is contributed by the GHDB community, it may contain inappropriate language.
  130. Category : Error Messages
  131. The ht://Dig system is a complete world wide web indexing and searching system for a domain or intranet. A list of publically available sites that use ht://Dig is available at http://www.htdig.org/uses.html ht://Dig 3.1.1 - 3.2 has a directory traversal and file view vulnerability as described at http://www.securityfocus.com/bid/1026. Attackers can read arbitrary files on the system. If the system is not vulnerable, attackers can still use the error produced by this search to gather information such as administrative email, validation of a cgi-bin executable directory, directory structure, location of a search database file and possible naming conventions.
  132. The Google Hacking Database (GHDB) appears courtesy of the Google Hacking community.
  133. Affected items:
  134. /cgi-bin/htsearch
  135. -------------------------------------------------------------------------------------------------
  136. GHDB: HTTP 300 status code
  137. The description for this alert is contributed by the GHDB community, it may contain inappropriate language.
  138. Category : Web Server Detection
  139. This search shows sites that have the 300 error code, but also reveal a server tag at the bottom of the page that an attacker could use to profile a system.
  140. The Google Hacking Database (GHDB) appears courtesy of the Google Hacking community.
  141. Affected items:
  142. /land/tenure
  143. /www.bbc.co.uk
  144. /www.bbc.co.uk/bbcfour
  145. /www.bbc.co.uk/bbcfour/documentaries
  146. /www.bbc.co.uk/bbcfour/documentaries/%20features
  147. /www.bbc.co.uk/bbcfour/documentaries/%20features/century_of_the_self.shtml
  148. /www.gifford.co.uk
  149. /www.gifford.co.uk/~bedwards
  150. /www.gifford.co.uk/~bedwards/video
  151. -------------------------------------------------------------------------------------------------
  152. 9) GHDB: Possible file lock
  153. The description for this alert is contributed by the GHDB community, it may contain inappropriate language.
  154. Category : Files containing usernames
  155. These lock files often contain usernames of the user that has locked the file. Username harvesting can be done using this technique.
  156. The Google Hacking Database (GHDB) appears courtesy of the Google Hacking community.
  157. Affected items:
  158. /endtimes.htm
  159. -------------------------------------------------------------------------------------------------
  160. 10) Possible internal IP address disclosure
  161. A string matching an internal IPv4 address was found on this page. This may disclose information about the IP addressing scheme of the internal network. This information can be used to conduct further attacks.
  162. Affected items:
  163. /1993.htm
  164. ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
  165. List of file extensions:
  166. File extensions can provide information on what technologies are being used on this website.
  167. List of file extensions detected:
  168. htm => 158 file(s)
  169. doc => 21 file(s)
  170. rtf => 14 file(s)
  171. txt => 6 file(s)
  172. sys => 1 file(s)
  173. asc => 1 file(s)
  174. shtml => 2 file(s)
  175. xls => 1 file(s)
  176. html => 24 file(s)
  177. List of email addresses
  178. Description
  179. List of all email addresses found on this host.
  180. 19990408082227.10646.rocketmail@web806.mail.yahoo.com
  181. abuse@kundenserver.de
  182. adi@ursula.blythe.org
  183. admcc@admcc.freeserve.co.uk
  184. admin@dmoz.org
  185. admin@lightfilms.com
  186. admin@nprov47.freeserve.co.uk
  187. ahcra@yahoo.com
  188. ahdaf@hotmail.com
  189. a-infos@tao.ca
  190. a-infos-d@tao.ca
  191. a-infos-org@tao.ca
  192. a-infos-work@tao.ca
  193. alan.holton@horology.idps.co.uk
  194. alanandcarole@pgen.net
  195. alf.mitchell@virgin.net
  196. alfred.mendes@virgin.net
  197. anarchobabe@fempages.org
  198. andraitx@tathamroad.swintemet.co.uk
  199. andy.meikle@virgin.net
  200. anglowelsh@theudderground.com
  201. anmlpepl@whidbey.com
  202. Antek5@aol.com
  203. antony.barnett@observer.co.uk
  204. arabisraelites@yahoo.com
  205. arjen.nijeboer@agora-europe.org
  206. aseedeur@antenna.nl
  207. ASillett@amiplan.com
  208. atpearlsteins@washpost.com
  209. avengers@vomit.demon.co.uk
  210. awalshe@nd.edu
  211. beauseant@arms-armor.com
  212. bedspgl@yahoo.co.uk
  213. belfast.gazette@pop.net.ntl.com
  214. BIAC@oecd.org
  215. billder@vtc.net
  216. bobolsen@arcos.org
  217. bobulus@btopenworld.com
  218. borromees@borromees.it
  219. brianclayton@Zoom.co.uk
  220. bristolactivists@yahoogroups.com
  221. brooshooft@shepherdswell.org.uk
  222. burcu.ca...@hyattintl.com
  223. bwright4609@yahoo.co.uk
  224. captjonprice@email.com
  225. caq@igc.org
  226. carobel@aol.com
  227. cberlet@igc.org
  228. ce@bucksprovince.freeserve.co.uk
  229. ceo@xs4all.nl
  230. chapter.oxon@btopenworld.com
  231. chapter@pgl-york.org
  232. charles@craine.net
  233. charles_marshall@msn.com
  234. chasval@avalon54.fsnet.co.uk
  235. chomsky@mit.edu
  236. chosso@travel-net.com
  237. chossudovsky@videotron.ca
  238. chydrick@getus.com
  239. cioj@dircon.co.uk
  240. classwaruk@hotmail.com
  241. clr@igc.apc.org
  242. comments@atlargestudy.org
  243. comodo@squat.net
  244. contact@weforum.org
  245. corp-focus@lists.essential.org
  246. corp-focus-request@lists.essential.org
  247. ctrl@listserv.aol.com
  248. cubahistory@webtv.net
  249. cutts@cs.unc.edu
  250. d.estulin@ctconsultoria.com
  251. dan@southeast.net
  252. davep@exeterleft.freeserve.co.uk
  253. david.leigh@guardian.co.uk
  254. david@berkeleybooks.co.uk
  255. david@google.com
  256. derick-hayes@supanet.com
  257. diggers350@egroups.com
  258. diggers350-subscribe@egroups.com
  259. Diggers350-subscribe@yahoogroups.com
  260. dissent-request@userhome.com
  261. djbennett@blueyonder.co.uk
  262. dmgexternal@bt-sys.bt.co.uk
  263. dmichel@atlargestudy.org
  264. dtoube@cgsh.com
  265. dweston@cqm.co.uk
  266. E1AyBKP-0004Qd-00@mrvnet.kundenserver.de
  267. easterisle@parascope.com
  268. eblack@startribune.com
  269. edbar@lineone.net
  270. edinfo@sussexmasons.org.uk
  271. editor@globalresearch.ca
  272. editor@mediaguardian.co.uk
  273. editor@monetary-reform.on.ca
  274. eibyr.hughes@nfucymruwales.org.uk
  275. emery.mike@btinternet.com
  276. engdc@acsu.buffalo.edu
  277. enquiries@essex-lodges.org
  278. enquiries@freemasonsofcheshire.org.uk
  279. entetu@tpu.fi
  280. eratier@faits-et-documents.com
  281. ericlee@labourstart.org
  282. erik225@knoware.nl
  283. f.diaz@ucl.ac.uk
  284. fabian@unpopular.demon.co.uk
  285. fantasia39@hotmail.com
  286. FBOYLE@LAW.UIUC.EDU
  287. FFWi@aol.com
  288. fpf@chello.nl
  289. freepress@cpbf.org.uk
  290. frendz@marsbard.com
  291. friendly_fireuk@yahoo.co.uk
  292. friestaat@yahoo.com
  293. g.murdock@lboro.ac.uk
  294. Gene.Taft@perseusbooks.com
  295. genvaler@belgacom.net
  296. gerald_bisson@hotmail.com
  297. ghealy@europarl.eu.int
  298. giles.fraser@parishofputney.co.uk
  299. ginnyfelton@compuserve.com
  300. global@devil.com
  301. gordonc@belmont.carenet.org.uk
  302. graham@bowerman.org.uk
  303. grattan_healy@compuserve.com
  304. gregory.palast@guardian.co.uk
  305. griffinb@cwcom.net
  306. groenfr@dds.nl
  307. gshalif@netvision.net.il
  308. gv...@verizon.net
  309. h2o@tekomedia.de
  310. h5414@accor.com
  311. hammond@sunshine-project.org
  312. heather@teknopunx.co.uk
  313. I_Neal@imeche.org.uk
  314. ianneal@fastmail.fm
  315. i-contact@videonetwork.org
  316. info.office@bristol.ac.uk
  317. info@beds-freemasonry.org
  318. info@bod.org.uk
  319. info@engdahl.oilgeopolitics.net
  320. info@hgalert.org
  321. info@hotelasur.com
  322. info@mcspotlight.org
  323. info@milansperanza.it
  324. info@orientexpresshotel.com
  325. info@probe.org
  326. info@uscib.org
  327. iswor@aol.com
  328. j18discussion@gn.apc.org
  329. jamie.shea@nato.gov.world
  330. jamiehartz@gn.apc.org
  331. JAMYOUNG@compuserve.com
  332. jcbeadle@btconnect.com
  333. jfrijns@antenna.nl
  334. jgholdsworth@supanet.com
  335. jimmy.1959@hotmail.co.uk
  336. jmdf@globalnet.co.uk
  337. jmw859@aol.com
  338. jnpresse@pt.lu
  339. john.mas...@multiline.com.au
  340. john.mcneece@jm-pr.com
  341. john.papworth@btinternet.com
  342. john@courtjb.freeserve.co.uk
  343. joncarpenterpublishing@compuserve.com
  344. jpchance@egroups.com
  345. jsansone@rcn.com
  346. jschneider5@bloomberg.net
  347. jshields@sun-sentinel.com
  348. jtwg@bellsouth.net
  349. jtwood3@home.com
  350. juliam@coxnews.com
  351. jw@clearwellcaves.com
  352. jwagner@jupitermedia.com
  353. jwhitley@inforamp.net
  354. jzogby@aaiusa.org
  355. k0012569@kingston.ac.uk
  356. kemal_jebril@hotmail.com
  357. kevin.maguire@guardian.co.uk
  358. keziah@globalismnews.com
  359. kkumar@startribune.com
  360. klaus@hauptgewinn.de
  361. kolyaab@hotmail.com
  362. kristian.vedaa@saas.no
  363. lAK@care4free.net
  364. lauch.martin@utanet.at
  365. lawfirm@danowsky.se
  366. lawya@leeds.ac.uk
  367. lewis@ewhurst5.fsnet.co.uk
  368. libertylobby@earthlink.net
  369. lists@j12.org
  370. ludicrousdivers...@hotmail.com
  371. M.Peters@lmu.ac.uk
  372. maggie.okane@guardian.co.uk
  373. mail@lilliput-information.com
  374. majordomo@tao.ca
  375. mark.campbell10@virgin.net
  376. martin.wolf@ft.com
  377. martyn@daley.co.uk
  378. masons@warwickshirepgl.org
  379. masontruth@aol.com
  380. maurice2000@maurice2000.screaming.net
  381. mayday2000@egroups.com
  382. mayer@oakland.edu
  383. mbi@btinternet.com
  384. mclibel@globalnet.co.uk
  385. meacherm@parliament.uk
  386. merja.kivinen@eduskunta.fi
  387. mgmort@jerseymail.co.uk
  388. michaeljpeters@hotmail.com
  389. michel@icann.org
  390. michellenicolosi@seattlepi.com
  391. mike.manly@btintemet.com
  392. mikeruppert@earthlink.net
  393. mjwalsh@heythrop.ac.uk
  394. mmarkhollingsworth@talk21.com
  395. mpagano@efinancialnews.com
  396. mriemer@YellowTimes.org
  397. msra@fibertel.com.ar
  398. naima.bouteldja@gmail.com
  399. Newsresearcher3@amiplan.com
  400. nick.erran@ntlworld.com
  401. Nigel@warwickshirepgl.org
  402. northsandhunts@provoffice.fsnetco.uk
  403. nwprovince@mason-net.org
  404. office@eastkentfreemasons.org
  405. office@middlesexfreemasons.org.uk
  406. office@tlio.demon.co.uk
  407. oops@spanner.org
  408. p.harwood@ozannes.com
  409. p.preston@guardian.co.uk
  410. palacioestoril@mail.telepac.pt
  411. pasaojan@cc.jyu.fi
  412. paul.nuki@sunday-times.co.uk
  413. pduveen@yahoo.com
  414. pearlsteins@washpost.com
  415. pelasgos@hotmail.com
  416. pepis@googlegroups.com
  417. PEPIS@marsbard.com
  418. PEPIS-subscribe@googlegroups.com
  419. PEPIS-subscribe@yahoogroups.com
  420. peter@hickory65.freeserve.co.uk
  421. petergjones@clara.co.uk
  422. peterj.mason@lineone.net
  423. pga@agp.org
  424. pgc@btconnect.com
  425. pgc@edsw.freeserve.co.uk
  426. pgcleics@hotrnail.com
  427. pgl@durhamfreemason.org
  428. pgl@durharnfreemasons.org
  429. pgl@edsw.freeserve.co.uk
  430. pgl@wrprovince.co.uk
  431. pgl1eics@hotmail.com
  432. pglsuffolk@suffolkfreemason.org.uk
  433. PGScribeE@freemasons-westkent.org.uk
  434. pgsec@freemasons-westkent.org.uk
  435. pgsec@monmasons.org.uk
  436. pgsec@pglcambs.org.uk
  437. plever@waitrose.com
  438. predwood@phonecoop.coop
  439. presidentsregister@cec.eu.int
  440. press@google.com
  441. profdog@thekenneI6.fsnet.co.uk
  442. protein@techsploitation.com
  443. provchapter@btopenworld.com
  444. prov-gchapter-surrey@lineone.net
  445. provgcnfk@aol.com
  446. provgsec@berkspgl.org.uk
  447. ProvGSecretary@pglherts.demon.co.uk
  448. Province@somerset63.freeserve.co.uk
  449. province_of_bristol@lineone.net
  450. provincial@worcestershire-freemasons.org.uk
  451. provincial-secretary@hantsandiow.fsnet.co.uk
  452. psorahan@compuserve.com
  453. pww@pww.org
  454. r.cook@guardian.co.uk
  455. radical@globalnet.co.uk
  456. randsmarshall@btinternet.com
  457. ray@ray-martland.co.uk
  458. rbricknell@aol.com
  459. rdy4battle@aol.com
  460. richard.sambrook@bbc.co.uk
  461. Richard@hardaker4.freeserve.co.uk
  462. right-left@savanne.ch
  463. rlawson@gn.apc.org
  464. rmcgehee@igc.org
  465. robert.r.styles@si.shell.com
  466. robin@lobster.karoo.co.uk
  467. roddyray@cwgsy.net
  468. rodpitham@aol.com
  469. roundtable@geocities.com
  470. roundtable@mail.geocities.com
  471. rowenathursby@onetel.com
  472. RowenaThursby@onetel.net.uk
  473. royalarch@lowin.net
  474. rparry@ix.netcom.com
  475. russjer@hotmail.com
  476. s.milne@guardian.co.uk
  477. salbuchi@fibertel.com.ar
  478. schindler@presroi.de
  479. schnews@brighton.co.uk
  480. scre@btconnect.com
  481. scribee@nottsmasons.org.uk
  482. secretariat@eastlancsmasons.org.uk
  483. secretary@derbyshiremason.org
  484. secretary@nottsmasons.org.uk
  485. secretary@oxfordshiremasons.org.uk
  486. secretary@pglstaffordshire.co.uk
  487. seminars@kissingerassoc.com
  488. service@copvcia.com
  489. smithy@mindspring.com
  490. SMye5@aol.com
  491. social.credit@virgin.net
  492. southern.eye@bbc.co.uk
  493. spectre@worldcom.ch
  494. staff-app@dmoz.org
  495. STEVECLAUDIA@MCR1.poptel.org.uk
  496. stevenswan@earthlink.net
  497. stopnato-subscribe@listbot.com
  498. subscribe@schnews.org.uk
  499. subscribe-kw@icai-online.org
  500. t_taylor@dxy.co.uk
  501. taylormoore@ukgateway.net
  502. tbird331@attbi.com
  503. tburghardt@igc.org
  504. the_roundtable@iname.com
  505. thinkers@tm.net.my
  506. thomasharris@net.ntl.com
  507. titus.alexander@mcr1.poptel.org.uk
  508. tjohnson@herald.com
  509. tmcclu@aol.com
  510. tomto5@yahoo.com
  511. tony.blair@parliament.gov.uk
  512. tony@cultureshop.org.uk
  513. tony@gaia.org
  514. tony@tlio.org.uk
  515. tonyg@citipages.net
  516. trustnowun@yahoo.com
  517. tudormorris@hotmail.com
  518. UK_Left_Network@yahoogroups.com
  519. ukgold@bbc.co.uk
  520. umitsayin@gmail.com
  521. unconfigured@htdig.searchengine.maintainer
  522. valmontnoir@sapo.pt
  523. vi_blir_lurt@yahoo.com
  524. vomituk@my-deja.com
  525. VoxPax@aol.com
  526. wb50years@igc.org
  527. westlancs.masons@btinemet.com
  528. westlancs.masons@btintemet.com
  529. wolvrail@amicro.co.uk
  530. www@xxxxxxxx.net
  531. xxxxx-shadow@xxxxxx.com
  532. xxxxxx@xxxxxx.com
  533. >>>Anonymous Fighters<<<

comments powered by Disqus