Skip to content

Commit 2fc6654

Browse files
authored
Merge pull request #63 from opsdisk/bump-yagooglesearch-version-to-1.3.0
Bumped yagooglesearch version and updated dorks
2 parents da32f63 + cc47e22 commit 2fc6654

17 files changed

Lines changed: 1385 additions & 7 deletions

dorks/advisories_and_vulnerabilities.dorks

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2214,3 +2214,5 @@ inurl:wp-content/plugins/1-flash-gallery
22142214
inurl:"/wp-content/plugins/123ContactForm
22152215
inurl:wp-content/plugins/Ultimate-member
22162216
inurl:/wp-content/plugins/wpdiscuz/
2217+
inurl:quicklinks.aspx
2218+
"PHP Projectworlds 1.0"

dorks/all_google_dorks.json

Lines changed: 1 addition & 1 deletion
Large diffs are not rendered by default.

dorks/all_google_dorks.txt

Lines changed: 691 additions & 2 deletions
Large diffs are not rendered by default.

dorks/error_messages.dorks

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -121,3 +121,4 @@ intitle:"index of" errors.log
121121
intitle:"index of" "my-errors.log" OR "my-errors.logs"
122122
intitle:"index of" "stacktrace.log"
123123
intext:"Error Occurred While Processing Request"
124+
"Lucee" "Error (expression)" -lucee.org

dorks/files_containing_juicy_info.dorks

Lines changed: 378 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -940,3 +940,381 @@ intitle:"index of" "ssh_host_rsa_key" + "ssh_host_rsa_key.pub"
940940
inurl:/inicis/ ext:log
941941
inurl:wp-content/plugins/modern-events-calendar-lite
942942
intitle:untitled filetype:xls intext:password
943+
filetype:xlsx intext:"gmail.com" OR "hotmail.com" site:gov
944+
allintext:adhaar filetype:xlsx
945+
intext:"SECRET_KEY=" site:pastebin.com
946+
intext:"private_key=" site:pastebin.com
947+
intitle:"index of" "/webpack-dev-server/ssl/"
948+
intitle:"index of" "/wp-content/uploads/"
949+
intext:"API KEY" site:pastebin.com
950+
intitle:"Index of" service.pwd
951+
inurl:gov filetype:xls intext:password
952+
intitle:"index of" "irc.log" | "irc.logs"
953+
site:*/phpmyadmin/import.php
954+
site:*/phpmyadmin/server_import.php
955+
intext:"Welcome to Huawei web page for network configuration."
956+
intitle: index of /bin/php.ini
957+
intitle:"LiveZilla Server Page"
958+
intitle: "index of /files clients"
959+
intitle:"index of" "database.py"
960+
inurl:/_vti_bin/Authentication.asmx
961+
ext:txt intext:Windows PowerShell transcript start
962+
intitle:"index of" "tls-cert.pem" | "tls-csr.pem" | "tls-key.pem"
963+
intitle:"index of" "development.py"
964+
intitle:"index of" "production.py"
965+
intitle:"index of" "local_settings.py"
966+
inurl:/admin/radeditorprovider/dialoghandler.aspx "Loading the dialog..."
967+
phpMyAdmin -www filetype:conf site:*
968+
Google Dork: intitle:index.of ipconfig
969+
intext:"Powered by SmarterTrack"
970+
inurl:/wp-content/themes/beach_apollo
971+
intitle:GoogleService-Info filetype:plist
972+
intitle:"Index of" "build-an-atom"
973+
inurl:"robots" | "robot" intext:"Disallow:" | "Allow:" ext:txt
974+
inurl:autodiscover/autodiscover.xml
975+
intitle:"index of" "robots.txt"
976+
intitle:"index of" "development.js"
977+
intext:Authorization: Bearer filetype:log
978+
intitle.index of .env
979+
intitle:index.of root user
980+
intitle:"Operations Automation Default Page"
981+
intext:"Powered by YzmCMS"
982+
intitle:"index of" "sourcecode"
983+
# Exploit Title: [SF Dork]
984+
inurl:/wp-content/themes/striking_r
985+
inurl:/wp-content/themes/avada
986+
inurl:/wp-content/themes/centum
987+
inurl:/wp-content/themes/ultimatum
988+
inurl:/wp-content/themes/IncredibleWP
989+
inurl:/wp-content/plugins/wp-e-commerce
990+
intitle: "index" inurl: log
991+
allintitle:Index of /wp-includes/
992+
intext:private_key filetype:log
993+
intext:api_key filetype:log
994+
inurl: /admin/webeditor/admin_login.asp
995+
inurl:sap/public/bc
996+
intext:"docs.google.com/forms/d/"
997+
intitle:" index of " "/BigIp"
998+
intitle:"index of" "robots.txt"
999+
intext:"Number of Requests for items accessed on this Server"
1000+
allintext:"[Sec. Info]" file.php
1001+
allintext:"Call to undefined function"
1002+
intitle: "Index of ipcam"
1003+
intitle: "index of data clinic"
1004+
intitle:"index of" "mongod.conf"
1005+
intitle:"index of " inurl:".bash_profile "
1006+
intitle:"index of" "config.json"
1007+
intitle:"index of" "docker-compose.yaml"
1008+
inurl:execute-api site:amazonaws.com
1009+
intitle:index of django.config
1010+
intitle:"index of" inurl:gov Juicy Info |GHDB
1011+
intitle: "index of Health Records"
1012+
intitle:"index of" "/api-debug.log"
1013+
site:pastebin.com intext:"-----BEGIN CERTIFICATE-----"
1014+
site:pastebin.com intext:"-----BEGIN RSA PRIVATE KEY-----"
1015+
site:pastebin.com intext:":aad3b435b51404eeaad3b435b51404ee:"
1016+
intitle:"index of" "schema.graphql"
1017+
site:.execute-api.us-east-1.amazonaws.com
1018+
inurl:employee filetype:xls
1019+
ext:xls intext:/etc/passwd | inurl:password
1020+
"index of" intext:wpbdp-csv-exports
1021+
inurl:mil intext:"UNCLASSIFIED/FOUO" ext:pdf
1022+
filetype:log "AUTHTOKEN"
1023+
intitle:"index of" "mysql.yaml"
1024+
site:*/oauth/token
1025+
intitle:"index of" "sftp.json"
1026+
inurl:simplesaml/saml2/idp
1027+
".:/opt/remi/php56/root/usr/share/pear" | ":/opt/remi/php56/root/usr/share/php"
1028+
"boarding pass" site:http://tripadvisor.com
1029+
intitle:index de sshd_config
1030+
site:pastebin.com intext:root: & :0: & ::: | intitle:passwd | shadow
1031+
intitle:"Index of" "Apache/2.4.49"
1032+
intitle: "access log" filetype: txt
1033+
intitle:"index of" "credentials"
1034+
site:pastebin.com intitle:"leak" | "breach" intext:"password" | "pw" | "pwd"
1035+
"Warehouse Management System" Ext:pdf site:.gov
1036+
intitle: "index of" "admin" "/backup"
1037+
intitle: "Library System by YahooBaba"
1038+
inurl:/wp-content/plugins/thecartpress/
1039+
inurl:/wp-content/plugins/mstore-api/
1040+
inurl:/plugins/pie-register/
1041+
filetype:log intext:("apache2" | "htdocs")
1042+
intext:"index of/" "client-1.0-SNAPSHOT"
1043+
intitle:"phpinfo()" inurl:"phpinfo.php"
1044+
intitle:"index of" "passwords" gov
1045+
New Dork
1046+
intitle:"Index of" inurl:data/plugins/
1047+
Google Dork: intitle:"Index of" "Apache/2.4.50"
1048+
site:*/node_modules/ content:"ssh"
1049+
site:*/node_modules/ content:"PEM"
1050+
intitle:"index of" "schema.mysql"
1051+
intitle:"Pi-hole - raspberrypi"
1052+
inurl:"/responsible disclosure"
1053+
intitle:"index of" "console"
1054+
intitle:"index of" "logs"
1055+
index of / inurl:/pki/
1056+
intext:"index of/" "top secret" gov
1057+
inurl:/servicedesk/customer/user/signup
1058+
inurl:wp-content/plugins/easy-wp-smtp
1059+
Re: inurl:"/app/kibana#"
1060+
intext:"adobe coldfusion 8"
1061+
Fwd: intitle:"Authorize application" "Learn more about OAuth"
1062+
inurl:/wp-content/plugins/elementor/
1063+
inurl:/wp-content/plugins/wp-filebase/
1064+
inurl:"app.yaml" intext:"runtime: " ext:yaml
1065+
inurl: https://app.zerocopter.com/rd/
1066+
intitle:index.of conf.mysql
1067+
intext:"password" intitle:"index of"
1068+
inurl:"robots" | "robot" intext:"admin" AND "Disallow" ext:txt
1069+
intitle:"index of" "mongod*"
1070+
intitle:index.of wp.login
1071+
inurl:/wp-content/plugins/simple-forum/admin/
1072+
intitle:index.of /Snowflake /robots.txt
1073+
intitle:"index of" ".env.example"
1074+
intitle:index of cv site:.com
1075+
intext:swagger filetype:log
1076+
intitle:"index of" "server.properties"
1077+
Index of /apidoc/api-web/target/classes/
1078+
intitle:"password reset"
1079+
intitle:index.of /CMS /robots.txt
1080+
intitle:"index of" "server.log"
1081+
intitle:"index of" "/backup/sql"
1082+
site:pastebin.com intext:license key | expiration
1083+
site:pastebin.com intext:username | password | secret_key | token
1084+
intitle:index.of /email /robots.txt
1085+
intitle:index.of /cftp /robots.txt
1086+
allinurl:index.php?page= site:.gov.in
1087+
"inurl:php?id=" site:.gov.bd
1088+
Index of /vendor/spatie/robots-txt
1089+
intitle:"index of" ".private.xml"
1090+
site:pastebin.com intext:"administrator:500:"
1091+
"inurl:php?id=" site:.com
1092+
intitle:"index of" ".ppt"
1093+
site:github.com intext:"unattend xmlns" AND "password" ext:xml
1094+
intitle:"index of" "workspace.xml"
1095+
intitle:"index of" "-qpf"
1096+
intitle:"index of" "-ipk"
1097+
intitle:"index of" "Packages.gz"
1098+
intitle:"index of" "mips32el-nf"
1099+
intitle:"index of" ".phpunit.xml"
1100+
intitle:"index of" " .AndroidManifest.xml"
1101+
intitle:"Index of /" intext:"pass.txt"
1102+
inurl:WS_FTP.log
1103+
intext:"Index of" "email.txt"
1104+
intitle:"index of" "pptx"
1105+
intitle:"index of" "ppt.html"
1106+
intitle:"index of" "slides-ppt"
1107+
intitle:"index of" "-XML.pdf "
1108+
intitle:"index of" "XML "
1109+
intitle:"index of" "XML.Xerces "
1110+
intitle:"index of" "infn.it"
1111+
intitle:"index of" "lngs.infn.it "
1112+
intitle:"index of" "extra"
1113+
intitle:"index of" "extranet"
1114+
intitle:"index of" "fsi"
1115+
intitle:"index of" "oxid-esales"
1116+
intitle:"index of" "wp-content"
1117+
intitle:"index of" "css"
1118+
intitle:"index of" "CD.pdf "
1119+
intitle:"index of" "DOCS-TECH "
1120+
intitle:"index of" " Server-Side "
1121+
intitle:"index of" " py-text"
1122+
Google Dork
1123+
Google Dork
1124+
Google Dork
1125+
intitle:"index of" "htdocs"
1126+
intitle:"index of" " unidecode"
1127+
intitle:"index of" " cldr-data"
1128+
intitle:"index of" " gettext"
1129+
intitle:"index of" " src "
1130+
intitle:"index of" " src.hint"
1131+
intitle:"index of" "tar.xz"
1132+
intitle:"index of" "pkgs"
1133+
intitle:"index of" "ftp.riken
1134+
intitle:"index of" "pub"
1135+
intitle:"index of" "cygwin"
1136+
intitle:"index of" "kde-l10n-de"
1137+
intitle:"index of" "txdot"
1138+
intitle:"index of" "mirror.koddos.net"
1139+
intitle:"index of" "Squid-cache"
1140+
intitle:"index of" "-login.php"
1141+
intitle:"index of" "metin"
1142+
intitle:"index of" "html-en"
1143+
intitle:"index of" "html-intro"
1144+
intitle:"index of" "echo-linux"
1145+
intitle:"index of" "filelist.xml"
1146+
intitle:"index of" "master01"
1147+
intext:"password" | "passwd" | "pwd" site:anonfiles.com
1148+
site:*.example.com inurl:(elmah.axd | errorlog.axd) ext:axd
1149+
inurl:errorlog.axd ext:axd
1150+
showing putty logs
1151+
intitle:"index of" "script.js"
1152+
intitle:"index of" "admin-config"
1153+
intitle:"index of" "admin.login.php"
1154+
intitle:"index of" "admin.login.php"
1155+
intitle:"index of" " wp-mail-smtp"
1156+
intitle:"index of" "/resources"
1157+
intext:"index of" "ftp"
1158+
intitle:"index of" "untitled"
1159+
intitle:"index of" "untitled" "wp-content" intext:scanned
1160+
index of :"uploads" "parent" "salary" intext:salary
1161+
index of :wp-config.zip
1162+
intitle:"index of" ".ssh/authorized_keys"
1163+
Intitle:database ext:sql
1164+
index of: "parent directory" "uploads"
1165+
index of: "confidential" "uploads"
1166+
index of: "cache" "uploads"
1167+
index of: "QRcodes" "uploads"
1168+
index of: "contracts" "uploads"
1169+
index of : "phonebook "
1170+
index of : "truecaller" "uploads"
1171+
index of: "license" "upload"
1172+
index of: "certificate" "upload"
1173+
index of: "certificate" "wp-content"
1174+
index of: "application" "upload"
1175+
index of: "application form" "upload"
1176+
index of: "documents" "wp-content"
1177+
intitle:"index of" "_vti_inf.html"
1178+
intitle:"index of" "service.pwd"
1179+
intitle:"index of" "shtml.dll "
1180+
inurl:admin ext:sql
1181+
index of:"password" "wp-content"
1182+
index of: "putty" "uploads"
1183+
index of: "participants" "uploads"
1184+
filetype:txt site:gitlab.* "secret" OR "authtoken"
1185+
site:gitlab.* intext:password intext:@gmail.com | @yahoo.com | @hotmail.com
1186+
inurl: */.env
1187+
intitle:"index of" "/.git/config"
1188+
intitle:"index of" "*/ftp.txt"
1189+
intext:"index of" "user-config"
1190+
intitle:"database" "backup" filetype:sql
1191+
intext:"sitemap" filetype:txt
1192+
intext:pass filetype:txt
1193+
inurl:/package.json
1194+
intitle"index of" "username" "password" filetype: xlsx
1195+
intitle:"Index of /logs/" "nginx"
1196+
intext:"index of" "home_page"
1197+
inurl:/mutillidae/ "Toggle Hints"
1198+
intext:"index of" inurl:/etc/
1199+
inurl:wp-content/uploads/wooccm_uploads
1200+
intitle:"index of" "particle.js"
1201+
index of: "invoice" "upload"
1202+
intitle:"index of" Hindi movies
1203+
intext:"index of" "wp-uploads"
1204+
intext:"index of" "signin"
1205+
index of: "marksheet" "upload"
1206+
inurl:gov.uk
1207+
intext:"Index of" intext:"users.zip"
1208+
intext:"Index of" "services.php | pass.php | passwd.php | credentials.txt"
1209+
intitle:"index of" "dhcp"
1210+
index of:"blog" "upload"
1211+
inurl:cache/uploads
1212+
intitle:"index of" "Apache/2.4.41 (Ubuntu) Server"
1213+
{intitle: indexof/.git }
1214+
site:gov.hk intitle:index of /
1215+
inurl:pastebin "AWS_ACCESS_KEY"
1216+
site:*/forgotpassword.php
1217+
site:.edu intitle:"index of"
1218+
site:pastebin.com "*@gmail.com password"
1219+
site:.edu inurl:search
1220+
intitle:"Index of" "DCIM/camera"
1221+
intitle:"Index of" "Screenshot"
1222+
intitle:"Index of" "system32"
1223+
intitle:"Index of" "Program files"
1224+
intitle:"Index of" *.py
1225+
intitle:"index of" "certificates"
1226+
intitle:"index of" "/.cpanel"
1227+
"index of" :excel documents
1228+
intitle:"index of" :mobile number
1229+
intitle:"index of" "node.js"
1230+
intext:"Index of" intext:"config.zip"
1231+
inurl: conf/fastcgi.conf
1232+
inurl:conf/nginx.conf
1233+
site:com intitle:"index of" .env
1234+
intitle:"Index of" *.xlsx
1235+
inurl:pastebin "SHODAN_API_KEY"
1236+
inurl:*gov intitle:"index of/documents"
1237+
inurl:.php?=*php site:.nic.in
1238+
intitle:"index of" "/students"
1239+
site:com "rfp" filetype:pdf
1240+
site:.edu intext:"index of" "logs"
1241+
intext:"Index of /chatlogs"
1242+
inurl:pastebin "CVV"
1243+
site: com intext " organisation data" filetype:xls
1244+
intitle:"index of" "default.asp "
1245+
intitle:"index of" " fileadmin "
1246+
intitle:"index of" " YaBB.pl "
1247+
intitle:"index of" " htsearch "
1248+
intitle:"index of" " glimpse "
1249+
intitle:"index of" " webdriver "
1250+
intitle:"index of" " index.php.bak "
1251+
intitle:"index of" " sendmail.inc "
1252+
intitle:"index of" " login.jsp "
1253+
intitle:"index of" " mod_auth_mysql "
1254+
intitle:"index of" "test.bat "
1255+
intitle:"index of" "msadcs.dll "
1256+
intitle:"index of" "browser.inc "
1257+
intitle:"index of" "hello.bat "
1258+
intitle:"index of" "dvwssr.dll "
1259+
intitle:"index of" Servlet"
1260+
intitle:"index of" upload.asp "
1261+
inurl:pastebin "API_KEY"
1262+
inurl:pastebin "Windows 10 Product Keys*"
1263+
intitle:"index of" "data*"
1264+
intitle:"index of" "document*.pdf"
1265+
inurl:linkedin.com "view my resume" facebook
1266+
intitle.index of .log
1267+
intitle:"index of" "sysinfo"
1268+
intitle.index of .exe
1269+
intitle.index of API*.txt
1270+
intitle:"index of" site:gov.np
1271+
intitle:"index of" "*.mp4"
1272+
intitle:"index of" "admin*.txt"
1273+
site:.nic.in inurl:.php?id=
1274+
inurl:.org intitle index.of "inflation"
1275+
site:*/admin-portal/
1276+
intitle:"index of" site:gov.ru
1277+
intitle:"index of" site:gov.gr
1278+
site:.in | .com | .net intitle:"index of" ftp
1279+
inurl:forgotpassword.php
1280+
intitle:"index of" site:gov.*
1281+
intitle:"index of" "/public_html"
1282+
inurl:node_modules/ua-parser-js
1283+
intitle:"index of" "/public/js"
1284+
site:drive.google.com "*.pdf"
1285+
intitle:"index of "/key/" "key.txt"
1286+
intitle:"index of" "/products"
1287+
intitle:"index of" "/mysql"
1288+
site:*.ng intitle:index of
1289+
site:*.edu.in intitle:index of
1290+
inurl:*gov intitle:"index of" "docker-compose"
1291+
inurl:pastebin "SHODAN_API_KEY"
1292+
inurl:*gov intitle:"index of/documents"
1293+
intitle"index of" "php"
1294+
intitle:"index of" site:gov.in
1295+
site:*.github.io intext:cheatsheet+offensive+pentesting
1296+
intitle:"index of" "admin.js"
1297+
inurl:gov.in & inurl:admin
1298+
intitle:"index of" "wp-inc"
1299+
allintext"account number"
1300+
site:.edu intext:"index of" "payroll"
1301+
intitle:"index of" "*.yaml"
1302+
site:*.se intitle:"index of"
1303+
site:*.id intitle:"index of" "screenshot*.jpg"
1304+
intitle:"index of" "*.vcf"
1305+
intitle:"index of" "apache.log" | "apache.logs"
1306+
inurl:admin filetype:txt
1307+
inurl:admin filetype:xls site:gov.in
1308+
site:pastebin.com intitle:"cpanel"
1309+
intitle:index of settings.py
1310+
site:postman.com + keyword
1311+
inurl:admin filetype:xlsx site:gov.*
1312+
db_password filetype:env
1313+
inurl: /wp-content/uploads/ inurl:"robots.txt" "Disallow:" filetype:txt
1314+
inurl:admin filetype:xls
1315+
site:gov.* intitle:"index of" *.apk
1316+
site:gov.* intitle:"index of" *.csv
1317+
Fwd: intitle:"Index of /" intext:"resource/"
1318+
Google to wordpress
1319+
Fwd: intitle:"atvise - next generation"
1320+
site:papaly.com + keyword

0 commit comments

Comments
 (0)