Search Engines

Methodology

Dorking

Filter by domain

site:<domain.name>

Find Subdomains

site:*.<domain.name>

In URL

inurl:<word>

In Title

intitle:<word>

All in Title

allintitle:<word1> <word2>

In Text

intext:<word>

All in text

allintext:<word1> <word2>

Remove "www"

-www

File type "pdf"

filetype:pdf

Wildcard

the * something

Useful Dorks

Find exposed configuration files

filetype:env "DB_PASSWORD"

Find pages with identifiers

intext:"username" intext:"password"

Find PDF on Specific Website

site:<domain> filetype:pdf

Find live camera

inurl:/view.shtml
intitle:"Live View / - AXIS"

Directory Listing

intitle:"index of /" "parent directory"
inurl:"/backup"

Find admin portals

allintitle:admin login

Find confidential files

filetype:pdf "confidential"

Find SQL files with password

ext:sql "password"

Resources

Automate Google Hacking Database scraping and searching

Compiles Google dorks to search on LinkedIn, Dribbble, GitHub, Xing, StackOverflow, Twitter

DorkGPT

Optimize their Google searches

Last updated