Questions tagged [google-dorks]

Google dorks are combinations of special search operators that are used to extract some valuable information from Google

Dorks are mostly used by hackers to pinpoint a specific attribute/property of a website, potentially an exploitable one.

Using Google dorks, one can filter the search results based on various parameters. Some of the common examples are finding out URLs containing a specific string, web pages containing a pattern in their title or body, pages of websites cached by Google. One can also target a particular domain or a particular file extension.

6 questions
14
votes
7 answers

Using google dorks for a specific site?

I need to see if a site I am testing is vulnerable to any of the multiple Google dorks that are available at sites like this and this. Traditionally, one uses a 'dork' by searching "Index of/"+c99.php"" in Google and getting a whole stack of…
NULLZ
  • 11,426
  • 17
  • 77
  • 111
4
votes
3 answers

How to use information from GHDB and FSDB (Google-Dorks)?

I am new to information security and analysis. Recently, I came across FSDB (Foundstone database) and GHDB (Google Hacking database) while exploring the McAfee Foundstone Sitedigger tool. What are FSDB and GHDB? And importantly, how can I use the…
fortytwo
  • 225
  • 3
  • 7
2
votes
2 answers

Appending multiple Google dorks in a single query

My goal is to look up multiple vulns in a single google search for a particular site. (Because google makes me pay for more than 100 search api calls per day). Let's say I have 3 dorks: index of /htdocs and "Below is a rendering of the page up to…
1
vote
1 answer

Tool to prepare report of security auditing

I was doing dorking on my friend's website to make sure there is no leak of information that is not meant to be. I found domains and sub-domains in search results. Is their a tool which can help me to prepare the report? Report like domains and…
mykpc
  • 21
  • 2
1
vote
0 answers

Google search: Is it possible to search sites by value of tag attribute?

Is it possible to search sites by value of HTML tag attribute? I'm looking for something like this: intext: But in this case intext doesn't works.
-2
votes
2 answers

What file types might be vulnerable to SQL injection?

I am learning about SQL injection and Google dorks. I have seen that there are three file types that can be vulnerable to SQL injection, .php, .aspx and one more. I can't find the third one... The first two are related to the server side, so the…
Daniel
  • 17