-
-
Save SakiiR/5d33f5187a6ba193dfd90c9aebab2474 to your computer and use it in GitHub Desktop.
Compilation of some dorks when doing bug bounty or pentest on a scope. This script will open like 37 tabs with all theses dorks. you can add yours.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
/* | |
* You can test this script by opening your favorite console browser | |
* Then launch just 3 dorks with: dorksMe(`example.com`).slice(5,8).map( el => window.open(el)) | |
* Or all the dorks with: dorksMe(`example.com`).map( el => window.open(el)) | |
* Enjoy :) | |
* @_SaxX_ | |
*/ | |
function dorksMe(site) { | |
return [ | |
`https://www.google.com/search?q=site:${site}+intitle:index.of`, | |
`https://www.google.com/search?q=site:${site}+ext:xml+|+ext:conf+|+ext:cnf+|+ext:reg+|+ext:inf+|+ext:rdp+|+ext:cfg+|+ext:txt+|+ext:ora+|+ext:ini`, | |
`https://www.google.com/search?q=site:${site}+ext:sql+|+ext:dbf+|+ext:mdb`, | |
`https://www.google.com/search?q=site:${site}+ext:bkf+|+ext:bkp+|+ext:bak+|+ext:old+|+ext:backup|+ext:log`, | |
`https://www.google.com/search?q=site:${site}+inurl:login`, | |
`https://www.google.com/search?q=site:${site}+intext:"sql+syntax+near"+|+intext:"syntax+error+has+occurred"+|+intext:"incorrect+syntax+near"+|+intext:"unexpected+end+of+SQL+command"+|+intext:"Warning:+mysql_connect()"+|+intext:"Warning:+mysql_query()"+|+intext:"Warning:+pg_connect()"`, | |
`https://www.google.com/search?q=site:${site}+ext:doc+|+ext:docx+|+ext:odt+|+ext:pdf+|+ext:rtf+|+ext:sxw+|+ext:psw+|+ext:ppt+|+ext:pptx+|+ext:pps+|+ext:csv`, | |
`https://www.google.com/search?q=site:${site}+inurl:wp-content+|+inurl:wp-includes`, | |
`https://www.google.com/search?q=site:${site}+ext:php+intitle:phpinfo+"published+by+the+PHP+Group"`, | |
`https://www.google.com/search?q=site:${site}+inurl:wp-+|+inurl:wp-content+|+inurl:plugins+|+inurl:uploads+|+inurl:themes+|+inurl:download`, | |
`https://www.google.com/search?q=site:${site}+inurl:shell+|+inurl:backdoor+|+inurl:wso+|+inurl:cmd+|+shadow+|+passwd+|+boot.ini+|+inurl:backdoor`, | |
`https://www.google.com/search?q=site:${site}+inurl:readme+|+inurl:license+|+inurl:install+|+inurl:setup+|+inurl:config`, | |
`https://www.google.com/search?q=site:${site}+inurl:redir+|+inurl:url+|+inurl:redirect+|+inurl:return+|+inurl:src=http+|+inurl:r=http`, | |
`https://www.google.com/search?q=site:${site}+ext:action+|+ext:struts+|+ext:do`, | |
`https://www.google.com/search?q=site:${site}+inurl:"/phpinfo.php"+|+inurl:".htaccess"+|+inurl:"/.git"+${site} -github`, | |
`https://www.google.com/search?q=site:pastebin.com+${site}`, | |
`https://www.google.com/search?q=site:linkedin.com+employees+${site}`, | |
`https://www.google.com/search?q=site:*.${site}`, | |
`https://www.google.com/search?q=site:*.*.${site}`, | |
`https://github.com/search?q="*.${site}"&type=host`, | |
`http://threatcrowd.org/domain.php?domain=${site}`, | |
`https://web.archive.org/cdx/search?url=${site}/&matchType=domain&collapse=urlkey&output=text&fl=original&filter=mimetype:application/x-shockwave-flash&limit=100000`, | |
`https://web.archive.org/web/*/(.${site})`, | |
`https://web.archive.org/web/*/${site}/*`, | |
`https://crt.sh/?q=%25.${site}`, | |
`https://www.openbugbounty.org/search/?search=${site}&type=host`, | |
`https://www.reddit.com/search/?q=${site}&source=recent`, | |
`http://wwwb-dedup.us.archive.org:8083/cdx/search?url=${site}/&matchType=domain&collapse=digest&output=text&fl=original,timestamp&filter=urlkey:.*wp[-].*&limit=1000000&xx=`, | |
`https://censys.io/ipv4?q=${site}`, | |
`https://censys.io/domain?q=${site}`, | |
`https://censys.io/certificates?q=${site}`, | |
`https://www.shodan.io/search?query=${site}`, | |
]; | |
} | |
dorksMe(`example.com`) | |
.slice(5, 8) | |
.map((el) => window.open(el)); | |
//dorksMe(`example.com`).map( el => window.open(el)) |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment