Monday, October 8, 2018

Google Hacking - list

inurl:
This operator allows looking for keywords in the uniform resource locator (URL) of the site. It is useful to find out pages which follow a usual keyword for specific pages, such as contact us. Generally, as the URL contains some keywords associated with the body contents, it will help us to find out the equivalent page for the keyword we are searching for.
Example: inurl:hack
allinurl:
Similar to “inurl” this operator allows looking for multiple keywords in the URL. So we can search for multiple keywords in the URL of a page. This also enhances the chances of getting quality content of what we are looking for.
Example: allinurl:hack security
intext:
This operator makes sure that the keyword specified is present in the text of the page. Sometimes just for the sake of SEO, we can find some pages only contain keywords to enhance the page rank but not the associated content. In that case we can use this query parameter to get the appropriate content from a page for the keyword we are looking for.
Example: intext:hack
allintext:
Similar to the “intext” this operator allows to lookup for multiple keywords in the text. As we discussed earlier the feature of searching for multiple keywords always enhances the content quality in the result page.
Example: allintext:data marketing
intitle:
It allows us to restrict the results by the keywords present in the title of the pages (title tag: <title>XYZ</title>). It can be helpful to identify pages which follow a convention for the title of the pages such as directory listing by the keywords “index of” and most of the sites provide the keywords in the title for improving the page rank. So this query parameter always helps to search for a particular keyword.
Example: intitle:blueocean
allintitle:
This is the multiple keyword counterpart of “intitle” operator.
Example: allintitle:blueocean market
filetype:
This operator is used to find out files of a specific kind. It supports multiple file types such as pdf, swf, kml, doc, svg, txt, etc. This operator comes handy when we are only looking for specific type of files on a specific domain.
Example: filetype:pdf, site:xyz.com, filetype:doc
ext:
The operator ext simply stands for extension and it works similar to the filetype operator.
Example: ext:pdf
define:
This operator is used to find out the meaning of the keyword supplied. Google returns dictionary meaning and synonyms for the keyword.
Example: define:data
AROUND
This operator is helpful when we are looking for the results which contain two different keywords, but in close association. It allows us to restrict the number of words as the maximum distance between two different keywords in the search results.
Example: A AROUND(6) Z
AND
A simple Boolean operator which makes sure keywords on both the side are present in the search results.
Example: data AND market
OR
Another Boolean operator which provides search results that contain either of the keyword present on both the sides of the operator.
Example: data OR intelligence
NOT
Yet another Boolean operator which excludes the search results that contain the keyword followed by it.
Example: lotus NOT flower
“”
This operator is useful when we need to search for the results which contain the provided keyword in the exact sequence. For example we can search pages which contain quotes or some lyrics.
Example: “time is precious”
-
This operator excludes the search results which contain the keyword followed by it (no space).
Example: lotus -flower
is precious”
..
Example: japan volcano 1990..2000
info:
Example: info:uol.com
related:
cache:

time
 time france
weather
Example: weather sweden
Calculator
Example: 39(9823-312)+44/3
Convertor
Example: 6 feet in meters


Sunday, October 7, 2018

Bastion hosts, also known as jump box


RFC1918

 The 10.0.0.1 and 10.0.0.2 are a part of a series of netblocks set aside for private networks by RFC1918, IP Address Allocation for Private Internets. RFC1918 sets aside three large ranges, 10.0.0.0-10.255.255.255 (10.0.0.0/8), 172.16.0.0-172.31.255.255 (172.16.0.0/12), and 192.168.0.0-192.168.255.255 (192.168.0.0/16).

NetFlow information


Wireshark overview of tabs


You recently used Wireshark to capture a series of packets. You are expanding one of the packets into its constituent sections. Which of the following is not a section in a captured packet?
a. Frame
b. Ethernet II
c. Internet Protocol version 4
d. Application


 Frame: This is the physical layer and describes how many bytes are on the wire.



 Ethernet II: This is the data link layer and contains source and destination MAC addresses.

 Internet Protocol version 4: This is the network layer and contains source and destination IP addresses.

 Transmission Control Protocol: This is the transport layer and contains source and destination port numbers.

 Data of some type: There is no data in this packet because it is an SYN packet, part of the TCP handshake. But if this were HTTP data, for example, the section would be titled HTTP, and it would include the raw data.

A South African perspective on cyber-warfare


As with many other nations, South Africa is looking to improve its cyber-defense capability following the attacks on Estonia and Georgia. South Africa would regard a cyber-based incident that causes major disruption to national information systems as an act of war. Much of the country’s information warfare and cyber-warfare capabilities are still classified, therefore publications containing doctrine-related material are scarce. What is clear is that there is increasing concern over the growing prevalence and availability of broadband services, coupled with the lack of user awareness. Adequate legislative, incident response and monitoring mechanisms at a strategic level are also lacking to a certain degree, therefore there is no holistic view of cyber-security incidents in South Africa.

Writing to Brazil

 Brazil is a huge country with a multi-faceted culture that pulls its diverse peoples together, but the middle class that runs the business world is small and relatively concentrated, though growing. As a result everyone knows everyone, and personal relationships are crucially important. You need to make contact gracefully, maintain relationships, and understand expectations and attitude.

In order to do this, you must be on the scene. Write a brief letter saying that you’re coming to Sao Paulo, for example, establish why you’re contacting the person, what you want, and definitely anything in common you can find. A vague general exploratory conversation doesn’t work. People make plans more spontaneously, so trying to set a meeting up weeks in advance may not work. Neither does showing up on someone’s doorstep.

You’re likely to find Brazilians polite, warm and friendly but they’re also very shrewd in evaluating your potential value. Brazilians themselves have an acute consciousness of class and more subtly, race. They are keyed in to status markers like where someone went to school and brands. They have their own elaborate system that gives them a social map of their own networks.


To find a place in that network, do your homework and look for a contact. Don’t expect to transact business quickly. Quick deals do not happen. Work on the relationship and keep building it.




Practical tips for email and letters




Brazilians see no meaningful distinction between British and American writing styles. Email is a widely accepted means of communication. The post office works, but not quickly.




Tip.eps People generally prefer getting straight to the point unless a relationship has already been established. Polite, clear and direct are fine, but Mariana Esteves notes that ‘pragmatism and straightforward writing can sound like giving orders.’ She recommends using softer language.




For a letter, opening and closing phrases in Portuguese are usually welcome. Prezado is equivalent to Dear, as in Prezado Sr. (or Sra.) Silva.




When reaching out to a large Brazilian business present mutual advantage early. Try to open with a compliment that relates to the person’s work. If you’re introducing yourself because you want to import children’s clothing, for example, you can say ‘I saw beautiful examples of your work in XXX and would like to talk to you about importing them to my store in London. I’m arriving on YYY. . . . ’ Or, ‘I hear you are the top company in Brazil for . . . .’




A cold call letter may or may not succeed. Look for connections. ‘The content of a letter is less important than how you established the contact – who introduces you and how,’ Leni Silverstein says. Reference your contact or anything else you have in common immediately.




To begin a dialogue with writing, have the material or prospectus translated into Portuguese and attach it to your letter.




A formal ending may be Desde ja agrudeco (Thanking you in advance), and finally, Atenciosamente (Yours sincerely). If you write anything in Portuguese be sure to use the proper accent marks.




Mistakes to avoid




When communicating with Brazilian business people:




check.png Read between the lines: Brazilians dislike saying ‘no’ directly, so be on the alert.




 Don’t expect speedy action with business formalities like registration; Brazilian law is cumbersome, inefficient and time-consuming.




check.png Take care in telling someone the people you already talked to because the person may be ‘out of network’ and not a friend.




 Don’t make jokes when writing or speaking; Brazilians love humour but their jhumorre often risqué.




Cultural issues




Business and networking in Brazil blends personal relations. ‘Networking is more about having a beer and talking about sports and general subjects than going straight to the point,’ Mariana Esteves says. ‘Relationships have to be built and then business will grow, but not before that.’




The younger generation is more casual than the older ones in some ways, but you should still conduct business formally.




Tip.eps Leni Silverstein suggests two courtesies that can help in Brazil – or any country foreign to you:




check.png Get a mobile phone with a Brazilian telephone number, so you have a local number.




check.png If you are comfortable reading Portuguese (or another language), you may write in English and invite the other person to respond in his or her own language, a gesture that is highly appreciated.




Contributors: Leni Silverstein, Anthropology PhD and independent consultant with Strategies for Development, a non-profit engaged in international gender and women’s health issues; Mariana Esteves, International Relations Consultant affiliated with US-Brazil Connect, which brings together Brazilian and American students.

PS - change registry -


PS - Remote control - commands.




Powershell remote control


Help on PowerShell


The Nexus of Policy and Technology: An Expert Report on Allegations of Political Bias in Gmail's Spam Filtering

  Executive Summary: The Nexus of Policy and Technology The Federal Trade Commission (FTC) has initiated a new wave of regulatory scrutiny a...