Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread Sankarshan (সঙ্কর্ষণ)
amar akshat wrote:

 I recently had my paper accepted for publication in IAENG conference WCECS
 2008 @ San Francisco regarding Google Cookies. The paper title was Security
 Mutation Algorithm For  Google Print and Google Search Security Deficiency.
 I had discovered the fact that Google in one way or the other is exploiting
 the in awareness of the layman for may be refining its searches and results.

The $subject of your mail is intriguing - is there a link to your paper
so that folks can read it ? Or, are you considering putting up a link
after the conference is over ? (I understand some conferences would not
like a link to be put up before the event)



-- 

http://www.gutenberg.net - Fine literature digitally re-published
http://www.plos.org - Public Library of Science
http://www.creativecommons.org - Flexible copyright for creative work



___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread amar akshat
Sankarshan sir,
I had attached the paper in my second mail only. The paper is there attached
in the thread it self.! Even thats ambigious because my conference starts
tomoro only.
If u want i can repost the paper as attachment.!

Regds
Amar Akshat
(No more a Certified Ethical Hacker)


On Thu, Oct 23, 2008 at 12:13 PM, Sankarshan (সঙ্কর্ষণ) 
[EMAIL PROTECTED] wrote:

 amar akshat wrote:

  I recently had my paper accepted for publication in IAENG conference
 WCECS
  2008 @ San Francisco regarding Google Cookies. The paper title was
 Security
  Mutation Algorithm For  Google Print and Google Search Security
 Deficiency.
  I had discovered the fact that Google in one way or the other is
 exploiting
  the in awareness of the layman for may be refining its searches and
 results.

 The $subject of your mail is intriguing - is there a link to your paper
 so that folks can read it ? Or, are you considering putting up a link
 after the conference is over ? (I understand some conferences would not
 like a link to be put up before the event)



 --

 http://www.gutenberg.net - Fine literature digitally re-published
 http://www.plos.org - Public Library of Science
 http://www.creativecommons.org - Flexible copyright for creative work



 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/




-- 
V.P , AGE
Certified Ethical Hacker,
Dept. Of Computer Engineering,
Sikkim Manipal Institute Of Tech.


Where You See a Feature I See a Flaw..
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread Kartik Mistry
2008/10/23   amar akshat:
 From: amar akshat [EMAIL PROTECTED]
 The biggest de-facto difference between AF and us is that we are just
 theoretical in all concepts AF is proff.!

AF is AH.

-- 
 Cheers,
 Kartik Mistry | 0xD1028C8D | IRC: kart_
 Homepage: people.debian.org/~kartik
 Blog.en: ftbfs.wordpress.com
 Blog.gu: kartikm.wordpress.com

___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread PJ
amar akshat [EMAIL PROTECTED] writes:

 I had attached the paper in my second mail only. The paper is there attached
 in the thread it self.! Even thats ambigious because my conference starts
 tomoro only.
 If u want i can repost the paper as attachment.!

(Aside: Please use a spellchecker before I gouge out my own eyes)

I think attachments to this list get junked. In any case, The
gmane web/news access system doesn't have it.

So, put the attachment up somewhere I guess.

 Regds
 Amar Akshat
 (No more a Certified Ethical Hacker)

Nice. You've almost redeemed yourself ;-)

PJ



___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread narendra sisodiya


 Regds
 Amar Akshat
 (No more a Certified Ethical Hacker)

 Congrats
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


Re: [ilugd] The Google Cookie Conspiracy

2008-10-23 Thread amar akshat
Hi all,
I was wondering today that my notion about Network Security and Ethics in
Hacking were almost the same. But after a healthy discussion hereby and
Pradeepto's Genuine arguments I realize that i was perhaps wrong.

I had in my schedule of CEH with EC-Council gone through modules like SQL
Injection, Buffer Overflows etc. I had done practical surveys too. I
found Fingerprinting the most interesting part. But I considered them to be
some part of Anti Hacking and hence they call it Ethical Hacking. I guess I
have lots to learn about ethics.

In the course schedule I came across Parameter Tampering attack in a
practical survey I queried Google for checking its cookie expiry and
validation. When I analyzed the time field TM , I then understood thats
there is something fishy.
I mailed executives from Google , but no one replied with correct satisfying
answers. And so on. I landed up with an algorithm to challenge the Google
Print service and so on.
I have uploaded the paper. You can have a look.
http://www.geocities.com/algeekoders/ICIMT_7_Final_Paper.pdf


Regds,

Amar Akshat

On Thu, Oct 23, 2008 at 4:32 PM, narendra sisodiya 
[EMAIL PROTECTED] wrote:

 
 
  Regds
  Amar Akshat
  (No more a Certified Ethical Hacker)
 
  Congrats
 ___
 ilugd mailinglist -- ilugd@lists.linux-delhi.org
 http://frodo.hserus.net/mailman/listinfo/ilugd
 Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi
 http://www.mail-archive.com/ilugd@lists.linux-delhi.org/




-- 
V.P , AGE
No More a Certified Ethical Hacker,
Dept. Of Computer Engineering,
Sikkim Manipal Institute Of Tech.


Where You See a Feature I See a Flaw..
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/


[ilugd] The Google Cookie Conspiracy

2008-10-17 Thread amar akshat
Hi All
I recently had my paper accepted for publication in IAENG conference WCECS
2008 @ San Francisco regarding Google Cookies. The paper title was Security
Mutation Algorithm For  Google Print and Google Search Security Deficiency.
I had discovered the fact that Google in one way or the other is exploiting
the in awareness of the layman for may be refining its searches and results.
In 2006 i had discovered that Google cookie which in the very first
interaction lands into your system , and under all normal circumstances it
would land into your system till Jan 17,2038. Since then i was haunted with
the fear that Google Would be monitoring my searches. On further study i
realized that Google through its EULA has mentioned that it has rights to
use each and every search by us through Google.
I claimed against that and in return Google answered me that they are
maintaining a long lived cookie just to maintain the hard limit for Google
Print (for reading Books.). I then worked out an algorithm to mute the
security of Google Print and came up with some tabulated data. Through the
research work by Debashish Mohanty I thus proved that even the search
syntaxes prove to be malicious user's best friend.
Now after all the hue and cry in the world Google finally changed the cookie
policy to 2 years expiry. Wired.com even covered the news.

I would like the house to shed light on Google Cookie Conspiracy.
-- 
V.P , AGE
Certified Ethical Hacker,
Dept. Of Computer Engineering,
Sikkim Manipal Institute Of Tech.


Where You See a Feature I See a Flaw..
___
ilugd mailinglist -- ilugd@lists.linux-delhi.org
http://frodo.hserus.net/mailman/listinfo/ilugd
Archives at: http://news.gmane.org/gmane.user-groups.linux.delhi 
http://www.mail-archive.com/ilugd@lists.linux-delhi.org/