支付宝转账信息能够被谷歌抓取,大量用户隐私信息被泄露。

clip_image002

练习php写了个提取支付宝帐号的程序

<?php

/* Build:2013-3-28

* Author:Secer

* Encoding:UTF-8

* 

* http://www.googlestable.com/search?q=site:shenghuo.alipay.com+%E8%BD%AC%E8%B4%A6%E7%BB%93%E6%9E%9C&hl=zh-CN&newwindow=1&ei=qJtTUYG1KcaHkwXNooHYBw&start=10&sa=N

* 抓取谷歌采集支付宝

* 

Useage php.exe 9getgoogle.php

*/

header("Content-type: text/html; charset=utf-8");

$filename = 'http://www.googlestable.com/search?num=100&hl=zh-CN&tbo=d&site=&source=hp&q=site%3Ashenghuo.alipay.com+%E8%BD%AC%E8%B4%A6%E7%BB%93%E6%9E%9C&btnG=Google+%E6%90%9C%E7%B4%A2';

// $filename = 'http://www.googlestable.com/search?q=site:shenghuo.alipay.com+%E8%BD%AC%E8%B4%A6%E7%BB%93%E6%9E%9C&num=100&hl=zh-CN&newwindow=1&ei=lrFTUbSBMMfNkQWH0YAI&start=100&sa=N';

// $filename = 'http://www.googlestable.com/search?q=site:shenghuo.alipay.com+%E8%BD%AC%E8%B4%A6%E7%BB%93%E6%9E%9C&num=100&hl=zh-CN&newwindow=1&ei=ybFTUbjRC8fbkAX5joBI&start=200&sa=N';

//将对方的GBK编码转为utf-8后进行匹配

$result = iconv("gbk", "utf-8//IGNORE",$result);

$pat_send = "/付款账户:, ([\w\d\.@]+)\. /";

$pat_recv = "/收款账户:, ([\w\d\.@]+)\. /";



preg_match_all($pat_send,$result,$arr1); 

preg_match_all($pat_recv,$result,$arr2);

for($i=0 ; $i < count($arr1[1]) ;$i++)

{

echo $arr[1][$i];

$fp = fopen("alipay.txt", 'a');

fwrite($fp, $arr1[1][$i]."\r\n");

fclose($fp);

}

for($i=0 ; $i < count($arr2[1]) ;$i++)

{

echo $arr[1][$i];

$fp = fopen("alipay.txt", 'a');

fwrite($fp, $arr2[1][$i]."\r\n");

fclose($fp);

}

?>

 

结果生成到文件alipay.txt。

源链接

Hacking more

...