SEO Egghead by Jaimie Sirovich: A blog about SEO, written for nerds, by a nerd.

Choose a Topic:

» Suggest a topic or buzz to cover; if I write about it, you'll get credit with a link in the post!

Mon
13
Nov '06

MSN Search Sniping 101

Archived; click post to view.
Excerpt: Dear Microsoft (cc: black hatters),If you don't fix this problem, I promise to make a sport out of getting people I don't like delisted from your index.  It's just plain irresponsible.  And the problem is compounded in scope by another defect in your product -- the failure to h ...
2 Comments »
Mon
30
Oct '06

The Debbie Does New Delhi Of Cloaking

Archived; click post to view.
Excerpt: Since I got my 10 links, I can now post again.  Needless to say, until then, I had a bit of free time.  What do you think I was doing?Let me tell you.  I decided to do an objective investigation as to whether cloaking is alive and well in "the" Google image search.  It ...
Leave a passing comment »
Wed
25
Oct '06

PubCon / SES Idea: Protecting Yourself From Black Hat Vulnerabilities

Archived; click post to view.
Excerpt: We all have a mischievous side.  I know I do.  And in that vein, I have a great idea for a PubCon or SES segment.  I'd appreciate some feedback in the form of comments if you'd like to see such a segment.  Then I can approach Danny Sullivan or Brett Tabke with the idea:Ti ...
7 Comments »
Thu
5
Oct '06

Find HTML Injection Vulnerabilities with Google Code Search

Archived; click post to view.
Excerpt: I guess I think like a hacker, because I thought of this before seeing RSnake's post about finding vulnerabilities with Google Code Search.If you want to find lots of PHP-based web applications that are likely vulnerable to HTML injection, try this search out:lang:php (print\(|echo)\s\$_(GET|REQ ...
7 Comments »
Sun
1
Oct '06

Confessions of a Jewish Spammer on Yom Kippur

Archived; click post to view.
Excerpt: I'm a sinner!  I violate Google's TOS daily.  But the guy standing next to me on Yom Kippur made me look like Jill Whalen!  He was a spammer -- and a pretty devious one at that.  Some of it was muffled by the sounds of unfed stomachs growling for forgiveness, but I manage ...
1 Comment »
Thu
21
Sep '06

XSS & HTML Injection are Frighteningly Trivial to Find at Harvard.edu

Archived; click post to view.
Excerpt: This recent article mentions that XSS and HTML injection are quickly eclipsing the traditional stack smashing and SQL tainting attacks in popularity.  But why?  I posit that the reason is simple -- XSS & HTML injection vulnerabilities are frighteningly trivial to find.  I will dem ...
3 Comments »
Tue
8
Aug '06

Virtual Hosting is a Liability

Archived; click post to view.
Excerpt: I was playing around with the What is Hosted on that IP? tool I just published, and some of what I found is a bit scary.  I see cases where there are a few relatively legitimate sites nestled on the same IP with hundreds of spammy sites.  Needless to say, this is a liability.Suppose I am a ...
2 Comments »
Tue
11
Jul '06

Google Violates Computer Science!

Archived; click post to view.
Excerpt: People have too much faith in Google – even when doing so implies a violation of the principles of computer science.  Many Google-oglers have contended that Google can find applications of JavaScript redirect cloaking with ease.  I'm not a PhD in Computer Science, but I doubt the ...
5 Comments »