Its all publicly available information right?!
Leah McGrath Goodman
Age: 36
Birthday: Feburary 6th, 1978
Social Media:
l.goodman@newsweek.com
lmcgrathgoodman@gmail.com <-- 2 step verification, hasn't been logged on in four days
mcgrathgoodman@hotmail.com <-- Almost jacked, "Security question: Favorite pet's name?"
https://www.facebook.com/leah.m.goodman?fref=ts
https://twitter.com/truth_eater/
Address: 100 Marlboro Ave, Brattleboro, VT
Hard to deny confirmation from her Facebook...
Gyazo - 22b38c0ce2fc06f632bda9c348997be9.png
Possible Old Addresses (Thanks Pastebin Anon!)
Leah S. Goodman
207 8th St #1
Jersey City, NJ 07302
(201) 610-1370
Previous Address:
216 Forest St
Norwell, Ma 02061
(201) 533-1470
1154 PO Box
Saint Bonaventure, NY 14778
(201) 533-1470
92 Willett #3C
Albany, NY 12210
(201) 610-1370
92 Willett #4C
Albany, NY 12210
(973) 626-3434
4 Mockingbird Ln.
Littleton, NC 27850
(973) 626-3434
210 8th St #1
Jersey City, NJ 07302
234 Forest St
Norwell, MA 02061
Possible Relatives:
Kathleen Hill McGrath
Thomas Joseph McGrath
Sara K McGrath
Links:
https://www.google.com/maps/@42.838...ata=!3m4!1e1!3m2!1sPtnKOkN8cVaG3YgunCCU3w!2e0
http://leahmcgrathgoodman.com/wp-content/uploads/2013/01/visaedit2.jpg
Contact section of her website:
Andy Dodds
Publicist, HarperCollins
+1 212 207 7498
andy.dodds@harpercollins.com
Susan Schwartzman
Susan Schwartzman Public Relations
+1 877 833 4276
sjschwa@aol.com
Misc:
Phone: Motorola DROID RAZR M,
Gyazo - b4bf2bdb28bdd6e946d824c65f5be54d.png
WordPress Security Analysis of
Leah McGrath Goodman
WordPress Version
3.3.2
Version does not appear to be latest 3.8 - update now. Google safe browse check
PASSED
Google finds the site to be free of malware Server: Apache
X-Powered-By: None
IP Address: 66.147.244.106
Provider: UNIFIED LAYER
Country: US
WordPress Plugins
The following plugins were detected from the HTML source of the WordPress front page.
contact-form-7
Plugins are a source of many security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers plugin page for information about security related updates and fixes. Using the WPScan utility you are able to get much more aggressive in detecting all plugins installed within a WordPress installation.
Information WordPress Theme
The theme has been found by examining the path /wp-content/themes/ *theme name* /
Theme : balance
While plugins get a lot of attention when it comes to security vulnerabilities, themes are another source of security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers theme page for information about security related updates and fixes. Using the WPScan utility you are able to get much more aggressive in detecting theme based vulnerabilities such as the widely exploited Timthumb vulnerability that affected literally thousands of popular themes.
Warning User Enumeration is possible
The first two user ID's were tested to determine if user enumeration is possible.
User ID 1 : None
User ID 2 : Leah McGrath Goodman
It is recommended to rename the admin user account to reduce the chance of brute force attacks occurring. As this will reduce the chance of automated password attackers gaining access. However it is important to understand that if the author archives are enabled it is usually possible to enumerate all users within a WordPress installation.
Only the first two user ID's were tested with this scan, use the WPScan tool to test enumeration of additional user ID's.
Warning Directory Indexing Enabled
In the test we attempted to list the directory contents of the uploads and plugins folders to determine if Directory Indexing is enabled. This is an information leakage vulnerability that can reveal sensitive information regarding your site configuration or content.
/wp-content/uploads/ enabled
/wp-content/plugins/ disabled
Directory indexing was tested on the /wp-content/uploads/ and /wp-content/plugins/ directores. Note that other directories may have this web server feature enabled, so ensure you check other folders in your installation. It is good practice to ensure directory indexing is disabled for your full WordPress installation either through the web server configuration or .htaccess.
Externally Linked Host Hosting Provider Country
Express. Home of the Daily and Sunday Express Amazon Web Services, Elastic Compute Cloud, EC2, E Ireland
VICE | United States | The Definitive Guide to Enlightening Information Amazon.com United States
BBC - Homepage BBC United Kingdom
wordpress.org Peer 1 Network United States
YouTube Google United States
johnhemming.blogspot.com Google United States
Latest news, world news, sport and comment from the Guardian | theguardian.com | The Guardian Fastly United States
voiceforchildren.blogspot.com Google United States
Premium WordPress Themes by StudioPress Media Temple United States
News - Royal Jersey Golf Club M247 Ltd United Kingdom
St Helier Yacht Club Jersey | Sailing Jersey | Boating Jersey | Channel Islands | Home Nuco Technologies Ltd United Kingdom
twitter.com Twitter United States
finance.fortune.cnn.com ServerBeach United States
bit.ly Verisign United States
ricosorda.blogspot.com Google United States
Home | Mail Online Akamai Technologies United States
www.parliament.uk Home page - UK Parliament Level 3 Communications United States
Amazon.com: Online Shopping for Electronics, Apparel, Computers, Books, DVDs & more Amazon.com United States
States of Jersey Foreshore Limited United Kingdom
States Assembly Foreshore Limited United Kingdom
Information Linked Javascript
http://leahmcgrathgoodman.com/wp-includes/js/jquery/jquery.js?ver=1.7.1
http://leahmcgrathgoodman.com/wp-content/plugins/contact-form-7/jquery.form.js?ver=3.08
http://leahmcgrathgoodman.com/wp-content/plugins/contact-form-7/scripts.js?ver=3.1.2
http://leahmcgrathgoodman.com/wp-content/themes/genesis/lib/js/menu/superfish.js?ver=1.4.8
http://leahmcgrathgoodman.com/wp-content/themes/genesis/lib/js/menu/superfish.args.js?ver=1.8.1
http://stats.wordpress.com/e-201410.js
Compromised sites will often be linked to malicious javascript in an attempt to attack users of your WordPress installation. Look over the listed javascript, you should be familiar with all scripts and investigate ones you are not sure. In addition removal of unneeded javascript will speed up your website.
Information Linked iframes
No iframes were found in the page
Compromised sites will often contain embedded iframes that can also deliver malicious code to visitors of the web site. Check any discovered iframes and ensure they are legitimate.
src