Gat backlinks from .gov sites

kubel

BANNED
Joined
Oct 30, 2007
Messages
274
Reaction score
358
Hello,

This is my first post so please, don't be cruel;)

Here's a list of some .gov sites that I have found to be exploitable.
I have used a method described in an original version of the Project Black Mask, which, as far as I know, was never published.
The idea is that you will change the forms on these sites so that instead of
getting information, they will be posting it. You will place your link in the
search box, and after modifying the form, the link will get posted instead of
searched when you hit submit.

Here's what you have to do:
1. Get Firefox
2. Download webmaster toolbar from:
http://chrispederick.com/work/webdeveloper/
3. Use the Firefox Extension by going to "forms" and selecting convert
form methods, change from "post" to "get".
4. Place the link and anchor text you want to use in the search box and hit
submit. The link needs to be posted in the format below.
<a href="http://www.spam.com" title="anchor text" target="_blank">spam</a>

And here's a list of sites I have used to get the links back:


http://hxxp://www.ed.gov/help/site/advsearch/advSearch.jsp
http://hxxp://search.ocrwm.doe.gov/search/
http://hxxp://www.irs.gov/
http://hxxp://yosemite.epa.gov/oar/globalwarming.nsf/searchresult?OpenForm
http://hxxp://www.cancer.gov/clinicaltrials/search
http://hxxps://fortress.wa.gov/esd/worksource/Employment.aspx
http://hxxp://www.imls.gov/search.asp
http://hxxp://fwp.mt.gov/lands/search.aspx?q=ACT_4_0
http://hxxp://www.usmint.gov/search/index.cfm?flash=yes
http://hxxp://www.miamidade.gov/buildingcode/online_product_search.asp
http://hxxp://www.usa.gov/
http://hxxp://tax.idaho.gov/ucp_search_idaho.htm
http://hxxp://www.wsdot.wa.gov/communications/WebManual/Tools/Search.htm
http://hxxp://xxx.lanl.gov/form
http://hxxp://www.energystar.gov/index.cfm?fuseaction=dishwash.search_dishwashers
http://hxxp://www.courts.mo.gov/casenet/cases/searchCases.do?searchType=name
http://hxxp://www.nal.usda.gov/fnic/foodcomp/search/
http://hxxp://wireless2.fcc.gov/UlsApp/UlsSearch/searchAmateur.jsp
http://hxxp://www.gao.gov/docsearch/keyword.php
http://hxxp://www.ca5.uscourts.gov:8081/
hxxp://www.medicare.gov/NHCompare/Include/DataSection/Questions/SearchCriteria.asp?version=default&browser=IE|6|Win2000&language=English&defaultstatus=0&pagelist=Home
http://hxxp://scoweb.sco.ca.gov/UCP/
hxxp://www.ce9.uscourts.gov/web/newopinions.nsf/f606ac175e010d64882566eb00658118/$searchForm?SearchView
http://hxxp://www.nsf.gov/awardsearch/
http://hxxps://fortress.wa.gov/esd/worksource/AdvancedJobSearch.aspx
http://hxxp://wireless2.fcc.gov/UlsApp/UlsSearch/searchLicense.jsp
http://hxxp://www.yorkcounty.gov/search.htm
http://hxxps://nevadatreasurer.gov/ucsearch/


I hope it's going to work for you too.

Cheers,


kubel
 
Hello,

This is my first post so please, don't be cruel;)

Here's a list of some .gov sites that I have found to be exploitable.
I have used a method described in an original version of the Project Black Mask, which, as far as I know, was never published.
The idea is that you will change the forms on these sites so that instead of
getting information, they will be posting it. You will place your link in the
search box, and after modifying the form, the link will get posted instead of
searched when you hit submit.

Here's what you have to do:
1. Get Firefox
2. Download webmaster toolbar from:
http://chrispederick.com/work/webdeveloper/
3. Use the Firefox Extension by going to ?forms? and selecting convert
form methods, change from ?post? to ?get?.
4. Place the link and anchor text you want to use in the search box and hit
submit. The link needs to be posted in the format below.
<a href="http://www.spam.com" title="anchor text" target="_blank">spam</a>

And here's a list of sites I have used to get the links back:


http://www.ed.gov/help/site/advsearch/advSearch.jsp
http://search.ocrwm.doe.gov/search/
http://www.irs.gov/
http://yosemite.epa.gov/oar/globalwarming.nsf/searchresult?OpenForm
http://www.cancer.gov/clinicaltrials/search
https://fortress.wa.gov/esd/worksource/Employment.aspx
http://www.imls.gov/search.asp
http://fwp.mt.gov/lands/search.aspx?q=ACT_4_0
http://www.usmint.gov/search/index.cfm?flash=yes
http://www.miamidade.gov/buildingcode/online_product_search.asp
http://www.usa.gov/
http://tax.idaho.gov/ucp_search_idaho.htm
http://www.wsdot.wa.gov/communications/WebManual/Tools/Search.htm
http://xxx.lanl.gov/form
http://www.energystar.gov/index.cfm?fuseaction=dishwash.search_dishwashers
http://www.courts.mo.gov/casenet/cases/searchCases.do?searchType=name
http://www.nal.usda.gov/fnic/foodcomp/search/
http://wireless2.fcc.gov/UlsApp/UlsSearch/searchAmateur.jsp
http://www.gao.gov/docsearch/keyword.php
http://www.ca5.uscourts.gov:8081/
http://www.medicare.gov/NHCompare/Include/DataSection/Questions/SearchCriteria.asp?version=default&browser=IE|6|Win2000&language=English&defaultstatus=0&pagelist=Home
http://scoweb.sco.ca.gov/UCP/
http://www.ce9.uscourts.gov/web/newopinions.nsf/f606ac175e010d64882566eb00658118/$searchForm?SearchView
http://www.nsf.gov/awardsearch/
https://fortress.wa.gov/esd/worksource/AdvancedJobSearch.aspx
http://wireless2.fcc.gov/UlsApp/UlsSearch/searchLicense.jsp
http://www.yorkcounty.gov/search.htm
https://nevadatreasurer.gov/ucsearch/


I hope it's going to work for you too.

Cheers,


kubel

Hi kubel, that technique only works for when you are in the search results yourself. In the random sampling I did, all the links were for local pages and not other sites.

I didn't check if they accept HTML tags (link injection), but I doubt sites like irs.gov would be vulnerable to something like that. Anyway, Google doesn't pages with HTML in the URL.
 
wow, if this works then this should be very valuable. thanks for posting this. Rep given.
 
Hi kubel, that technique only works for when you are in the search results yourself. In the random sampling I did, all the links were for local pages and not other sites.

I didn't check if they accept HTML tags (link injection), but I doubt sites like irs.gov would be vulnerable to something like that. Anyway, Google doesn't pages with HTML in the URL.

@ummo

That's right. The method does not work in all circumstances, but sometimes, all you need is just 1 lousy gov link from a single page to get you ranked.
RE: irs site - it is vulnerable, I checked it 5 minutes ago. See Capture.jpg attached.http://www.blackhatworld.com/blackhat-seo/vbimghost.php?do=displayimg&imgid=37

Regards,

kubel
 
LOL guys seriously pick your targets more carefully, theres a big difference between using xss on a 24 yr old's surfing blog vs a government website.
 
Google no more give credits using to sites using XSS (this method you described).
If html with a href is in url, you wont get link juice.

btw, this method is from Black Mask Project ebook :)
 
Google no more give credits using to sites using XSS (this method you described).
If html with a href is in url, you wont get link juice.

btw, this method is from Black Mask Project ebook :)

I've mentioned the source already:)
 
btw how is it possible on usa.gov? didn't found any search that allow html
 
what are u plannig about getting pr10 .gov site's pr0 link :confused:
want to get sandboxed for getting thousands of pr0 links
 
Search Engines count only clickable links as backlinks :P
 
@ummo

That's right. The method does not work in all circumstances, but sometimes, all you need is just 1 lousy gov link from a single page to get you ranked.
RE: irs site - it is vulnerable, I checked it 5 minutes ago. See Capture.jpg attached.http://www.blackhatworld.com/blackhat-seo/vbimghost.php?do=displayimg&imgid=37

Regards,

kubel

kubel, the irs.gov site is not vulnerable. There is no link to http://anysitetoprovemypoint.com in your screenshot, the < and > characters are escaped in every instance.
 
I see nothing but fail in this strategy. Somethings are best left alone.
 
GAWWWD, I've got more chance of getting links on .gov sites if I got a job at the IRS and got access to the server and posted the links myself, what bo..am I allowed to swear ?
 
tough to make it worthwhile:-

1. a lot of vulnerable sites hve actually plugged the loopholes

2. this used 2 work long ago, but now Goole n company has cracked down on it n don't give weight to it. btw, the author of project black hat stole the idea from a blackhat blog called boogybonbon or or something ;-

anyways...there are still many secrets in blackhat world....so keep trying guys....:D

google me
:fight:
 
Back
Top