Recon Tool: Dorks collections list
Reading Time: 3 Minutes
Recon Tool: Dorks collections list
When investigating, you often need to gather as much information as possible about a topic. Advanced search techniques can help to uncover files or leads that are relevant to the questions you are trying to answer. For example, you may be able to find a company’s tax returns or a local government’s expenditure reports, information that may not appear on their websites or show up when you do a regular web search.
Google Dorking is a technique used by newsrooms, investigative reporting organizations, security auditors, and the Red Team to query search engines in order to find hidden information that might be available on public websites or to identify evidence of digital security vulnerabilities.
This technique can be used on most search engines, not just Google’s, so we typically refer to it simply as “dorking.”
Below is a list of GitHub repositories and articles with a list of dorks for different search engines.
Dorks collections list
Table of contents
DuckDuckGo dorks
GitHub dorks
Shodan dorks
Virus Total dorks
Binary Edge dorks
Yandex dorks
Google dorks
Onion dorks
CCTV dorks
Backlink dorks
Token dorks
LinkedIn dorks (X-Ray)
Carding dorks
Gaming dorks
Cryptocurrency dorks
Shopping dorks
Bug Bounty dorks
CMS dorks
Cloud Instance dorks
Tools to automate the work with dorks
Browser extensions
Online tools to work with dorks
See Also: Offensive Security Tool: malicious-pdf
DuckDuckGo dorks
GitHub dorks
https://github.com/techgaun/github-dorks
https://github.com/jcesarstef/ghhdb-Github-Hacking-Database
https://github.com/H4CK3RT3CH/github-dorks
https://github.com/Vaidik-pandya/Github_recon_dorks/blob/main/gitdork.txt (for finding files)
Many dorks for Github can also be used when searching other code hosting services (Bitbucket, Gitlab, Codeberg etc). You can use the special Google Custom Search Engine to search 20 code hosting services at a time. https://cipher387.github.io/code_repository_google_custom_search_engines/
Shodan dorks
https://github.com/blaCCkHatHacEEkr/PENTESTING-BIBLE/blob/master/1-part-100-article/google/Shodan%20Queries.txt
https://github.com/humblelad/Shodan-Dorks
https://github.com/AustrianEnergyCERT/ICS_IoT_Shodan_Dorks
https://github.com/lothos612/shodan
https://github.com/jakejarvis/awesome-shodan-queries
https://github.com/IFLinfosec/shodan-dorks
https://www.osintme.com/index.php/2021/01/16/ultimate-osint-with-shodan-100-great-shodan-queries/
Virus Total dorks
https://github.com/Neo23x0/vti-dorks
Binary Edge + Shodan + Google
https://github.com/iGotRootSRC/Dorkers
Google, Bing, Ecosia, Yahoo or Yandex
https://github.com/Zarcolio/sitedorks
See Also: Complete Offensive Security and Ethical Hacking Course
Google dorks
https://github.com/BullsEye0/google_dork_list
https://github.com/sushiwushi/bug-bounty-dorks
https://github.com/rootac355/SQL-injection-dorks-list
https://github.com/unexpectedBy/SQLi-Dork-Repository
https://github.com/thomasdesr/Google-dorks
https://github.com/arimogi/Google-Dorks
https://github.com/aleedhillon/7000-Google-Dork-List
Onion dorks
Universal for Google, Bing etc
Dorks for searching .onion sites saved in online proxies services https://github.com/cipher387/Dorks-collections-list/blob/main/onion.txt
CCTV dorks
Universal for Google, Bing etc
Dorks for search CCTV cams admin panels https://github.com/cipher387/Dorks-collections-list/blob/main/cctv.txt
Camera dorks from @tru_1veresk https://github.com/iveresk/camera_dorks/blob/main/dorks.json
Backlink dorks
(SEO Terminology) Universal for Google, Bing etc
List https://github.com/alfazzafashion/Backlink-dorks
Explanation https://www.techywebtech.com/2021/08/backlink-dorks.html
1150 dorks for forum hunting https://www.blackhatworld.com/seo/get-backlinks-yourself-1150-dorks-for-forum-hunting.380843/
Token dorks
Universal for Google, Bing etc
Discord Bots Tokens https://github.com/traumatism/get-discord-bots-tokens-with-google
LinkedIn dorks (Google X-Ray search for LinkedIn)
Universal for Google, Bing etc
Linkedin X-Ray search queries and tools https://github.com/krlabs/linkedin-dorks
Carding dorks
Universal for Google, Bing etc
1170 carding dorks https://pastebin.com/GYXLqgU0
17K carding dorks 2019 https://pastebin.com/fgdZxy74
Gaming dorks
Universal for Google, Bing etc
7K Gaming Dorks From My Shop https://pastebin.com/ajuixpY2
Minecraft https://pastebin.com/ssNgdTkC
Shopping dorks
Universal for Google, Bing etc
10k Amazon dorks https://pastebin.com/1HrmzFre
820 shopping Dorks for SQLi https://pastebin.com/1kED1FDX
Cryptocurrency dorks
15K dorks to find vulnerable pages related to cryptocurrency exchanges, cryptocurrency payments, etc. https://www.scribd.com/document/384770530/15k-Btc-Dorks
See Also: Write up: Find hidden and encrypted secrets from any website
Bug Bounty Dorks
Universal for Google, Bing etc
https://github.com/hackingbharat/bug-bounty-dorks-archive/blob/main/bbdorks
https://github.com/Vinod-1122/bug-bounty-dorks/blob/main/Dorks.txt
CMS Dorks
Universal for Google, Bing etc
WordPress https://pastebin.com/A9dsmgHQ
Magento https://pastebin.com/k75Y2QhF
Joomla https://pastebin.com/vVQFTzVC
Cloud instance dorks
Universal for Google, Bing etc
Amazon AWS https://github.com/cipher387/Dorks-collections-list/blob/main/aws.txt
Google Cloud https://github.com/cipher387/Dorks-collections-list/blob/main/googslecloud.txt
Microsoft Azure https://github.com/cipher387/Dorks-collections-list/blob/main/azure.txt
Tools to automate the work with dorks
Fast Google Dorks Scan https://github.com/IvanGlinkin/Fast-Google-Dorks-Scan
0xDork https://github.com/rlyonheart/0xdork
SDorker https://github.com/TheSpeedX/SDorker
ASHOK (osint swiss knife) https://github.com/ankitdobhal/Ashok
Padago (Automate Google Hacking Database scraping and searching) https://github.com/opsdisk/pagodo
Katana (Python tool that automates Google Hacking/Dorking and supports Tor) https://github.com/TebbaaX/Katana
GO Dork (fast google search result scanner) https://github.com/dwisiswant0/go-dork
Snitch https://github.com/Smaash/snitch
Dorks Eye https://github.com/BullsEye0/dorks-eye
Browser extensions
Google Dork Builder Firefox Add-on https://addons.mozilla.org/ru/firefox/addon/google-dork-builder/
Online tools to work with dorks
Dorksearch https://dorksearch.com/
FilePhish https://cartographia.github.io/FilePhish/
Bug Bounty Helper https://dorks.faisalahmed.me
Google Hacking tool from Pentest Tools https://pentest-tools.com/information-gathering/google-hacking
See Also: Write up: How to schedule tasks the right way in Linux, using crontab