Skip to content

Instantly share code, notes, and snippets.

@SakiiR
Forked from S42X/dorksMe.js
Last active May 10, 2021 03:03
Show Gist options
  • Star 3 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save SakiiR/5d33f5187a6ba193dfd90c9aebab2474 to your computer and use it in GitHub Desktop.
Save SakiiR/5d33f5187a6ba193dfd90c9aebab2474 to your computer and use it in GitHub Desktop.
Compilation of some dorks when doing bug bounty or pentest on a scope. This script will open like 37 tabs with all theses dorks. you can add yours.
/*
* You can test this script by opening your favorite console browser
* Then launch just 3 dorks with: dorksMe(`example.com`).slice(5,8).map( el => window.open(el))
* Or all the dorks with: dorksMe(`example.com`).map( el => window.open(el))
* Enjoy :)
* @_SaxX_
*/
function dorksMe(site) {
return [
`https://www.google.com/search?q=site:${site}+intitle:index.of`,
`https://www.google.com/search?q=site:${site}+ext:xml+|+ext:conf+|+ext:cnf+|+ext:reg+|+ext:inf+|+ext:rdp+|+ext:cfg+|+ext:txt+|+ext:ora+|+ext:ini`,
`https://www.google.com/search?q=site:${site}+ext:sql+|+ext:dbf+|+ext:mdb`,
`https://www.google.com/search?q=site:${site}+ext:bkf+|+ext:bkp+|+ext:bak+|+ext:old+|+ext:backup|+ext:log`,
`https://www.google.com/search?q=site:${site}+inurl:login`,
`https://www.google.com/search?q=site:${site}+intext:"sql+syntax+near"+|+intext:"syntax+error+has+occurred"+|+intext:"incorrect+syntax+near"+|+intext:"unexpected+end+of+SQL+command"+|+intext:"Warning:+mysql_connect()"+|+intext:"Warning:+mysql_query()"+|+intext:"Warning:+pg_connect()"`,
`https://www.google.com/search?q=site:${site}+ext:doc+|+ext:docx+|+ext:odt+|+ext:pdf+|+ext:rtf+|+ext:sxw+|+ext:psw+|+ext:ppt+|+ext:pptx+|+ext:pps+|+ext:csv`,
`https://www.google.com/search?q=site:${site}+inurl:wp-content+|+inurl:wp-includes`,
`https://www.google.com/search?q=site:${site}+ext:php+intitle:phpinfo+"published+by+the+PHP+Group"`,
`https://www.google.com/search?q=site:${site}+inurl:wp-+|+inurl:wp-content+|+inurl:plugins+|+inurl:uploads+|+inurl:themes+|+inurl:download`,
`https://www.google.com/search?q=site:${site}+inurl:shell+|+inurl:backdoor+|+inurl:wso+|+inurl:cmd+|+shadow+|+passwd+|+boot.ini+|+inurl:backdoor`,
`https://www.google.com/search?q=site:${site}+inurl:readme+|+inurl:license+|+inurl:install+|+inurl:setup+|+inurl:config`,
`https://www.google.com/search?q=site:${site}+inurl:redir+|+inurl:url+|+inurl:redirect+|+inurl:return+|+inurl:src=http+|+inurl:r=http`,
`https://www.google.com/search?q=site:${site}+ext:action+|+ext:struts+|+ext:do`,
`https://www.google.com/search?q=site:${site}+inurl:"/phpinfo.php"+|+inurl:".htaccess"+|+inurl:"/.git"+${site} -github`,
`https://www.google.com/search?q=site:pastebin.com+${site}`,
`https://www.google.com/search?q=site:linkedin.com+employees+${site}`,
`https://www.google.com/search?q=site:*.${site}`,
`https://www.google.com/search?q=site:*.*.${site}`,
`https://github.com/search?q="*.${site}"&type=host`,
`http://threatcrowd.org/domain.php?domain=${site}`,
`https://web.archive.org/cdx/search?url=${site}/&matchType=domain&collapse=urlkey&output=text&fl=original&filter=mimetype:application/x-shockwave-flash&limit=100000`,
`https://web.archive.org/web/*/(.${site})`,
`https://web.archive.org/web/*/${site}/*`,
`https://crt.sh/?q=%25.${site}`,
`https://www.openbugbounty.org/search/?search=${site}&type=host`,
`https://www.reddit.com/search/?q=${site}&source=recent`,
`http://wwwb-dedup.us.archive.org:8083/cdx/search?url=${site}/&matchType=domain&collapse=digest&output=text&fl=original,timestamp&filter=urlkey:.*wp[-].*&limit=1000000&xx=`,
`https://censys.io/ipv4?q=${site}`,
`https://censys.io/domain?q=${site}`,
`https://censys.io/certificates?q=${site}`,
`https://www.shodan.io/search?query=${site}`,
];
}
dorksMe(`example.com`)
.slice(5, 8)
.map((el) => window.open(el));
//dorksMe(`example.com`).map( el => window.open(el))
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment