A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting
site:example.com -www -shop -share -ir -mfa site:example[.]com ext:php? | ext:asp? | ext:jsp? | ext:aspx? | ext:jspx? | ext:do? | ext:action? site:example[.]com inurl:"http=" | inurl:"https=" site:example[.]com inurl:"?q=" | inurl:"?s=" | inurl:"?search=" | inurl:"?id=" | inurl:"?lang=" | inurl:"?keyword=" | inurl:"?query=" | inurl:"?page=" | inurl:"?keywords=" | inurl:"?year=" | inurl:"?view=" | inurl:"?email=" | inurl:"?type=" | inurl:"?name=" | inurl:"?p=" | inurl:"?month=" | inurl:"?image=" | inurl:"?list_type=" | inurl:"?url=" | inurl:"?terms=" | inurl:"?categoryid=" | inurl:"?key=" | inurl:"?login=" | inurl:"?begindate=" | inurl:"?enddate" site:example[.]com inurl:"?id=" | inurl:"?page=" | inurl:"?dir=" | inurl:"?search=" | inurl:"?category=" | inurl:"?file=" | inurl:"?class=" | inurl:"?url=" | inurl:"?news=" | inurl:"?item=" | inurl:"?menu=" | inurl:"?lang=" | inurl:"?name=" | inurl:"?ref=" | inurl:"?title=" | inurl:"?view=" | inurl:"?topic=" | inurl:"?thread=" | inurl:"?type=" | inurl:"?date=" | inurl:"?form=" | inurl:"?join=" | inurl:"?main=" | inurl:"?nav=" | inurl:"?region=" site:example[.]com inurl:"?cat=" | inurl:"?dir=" | inurl:"?action=" | inurl:"?board=" | inurl:"?date=" | inurl:"?detail=" | inurl:"?file=" | inurl:"?download=" | inurl:"?path=" | inurl:"?folder=" | inurl:"?prefix=" | inurl:"?include=" | inurl:"?page=" | inurl:"?inc=" | inurl:"?locate=" | inurl:"?show=" | inurl:"?doc=" | inurl:"?site=" | inurl:"?type=" | inurl:"?view=" | inurl:"?content=" | inurl:"?document=" | inurl:"?layout=" | inurl:"?mod=" | inurl:"?conf=" site:example[.]com inurl:"?cmd=" | inurl:"?exec=" | inurl:"?command=" | inurl:"?execute=" | inurl:"?ping=" | inurl:"?query=" | inurl:"?jump=" | inurl:"?code=" | inurl:"?reg=" | inurl:"?do=" | inurl:"?func=" | inurl:"?arg=" | inurl:"?option=" | inurl:"?load=" | inurl:"?process=" | inurl:"?step=" | inurl:"?read=" | inurl:"?function=" | inurl:"?req=" | inurl:"?feature=" | inurl:"?exe=" | inurl:"?module=" | inurl:"?payload=" | inurl:"?run=" | inurl:"?print=" site:example[.]com inurl:api | site:*/rest | site:*/v1 | site:*/v2 | site:*/v3 site:"example[.]com" ext:log | ext:txt | ext:conf | ext:cnf | ext:ini | ext:env | ext:sh | ext:bak | ext:backup | ext:swp | ext:old | ext:~ | ext:git | ext:svn | ext:htpasswd | ext:htaccess | ext:json inurl:conf | inurl:env | inurl:cgi | inurl:bin | inurl:etc | inurl:root | inurl:sql | inurl:backup | inurl:admin | inurl:php site:example[.]com inurl:"error" | intitle:"exception" | intitle:"failure" | intitle:"server at" | inurl:exception | "database error" | "SQL syntax" | "undefined index" | "unhandled exception" | "stack trace" site:example[.]com inurl:q= | inurl:s= | inurl:search= | inurl:query= | inurl:keyword= | inurl:lang= inurl:& site:example.com inurl:url= | inurl:return= | inurl:next= | inurl:redirect= | inurl:redir= | inurl:ret= | inurl:r2= | inurl:page= inurl:& inurl:http site:example.com inurl:id= | inurl:pid= | inurl:category= | inurl:cat= | inurl:action= | inurl:sid= | inurl:dir= inurl:& site:example.com inurl:http | inurl:url= | inurl:path= | inurl:dest= | inurl:html= | inurl:data= | inurl:domain= | inurl:page= inurl:& site:example.com inurl:include | inurl:dir | inurl:detail= | inurl:file= | inurl:folder= | inurl:inc= | inurl:locate= | inurl:doc= | inurl:conf= inurl:& site:example.com inurl:cmd | inurl:exec= | inurl:query= | inurl:code= | inurl:do= | inurl:run= | inurl:read= | inurl:ping= inurl:& site:example.com site:example.com ”choose file” inurl:apidocs | inurl:api-docs | inurl:swagger | inurl:api-explorer site:"example[.]com" inurl:login | inurl:signin | intitle:login | intitle:signin | inurl:secure site:example[.]com inurl:test | inurl:env | inurl:dev | inurl:staging | inurl:sandbox | inurl:debug | inurl:temp | inurl:internal | inurl:demo site:example.com site:example.com ext:txt | ext:pdf | ext:xml | ext:xls | ext:xlsx | ext:ppt | ext:pptx | ext:doc | ext:docx intext:“confidential” | intext:“Not for Public Release” | intext:”internal use only” | intext:“do not distribute” inurl:email= | inurl:phone= | inurl:password= | inurl:secret= inurl:& site:example[.]com inurl:/content/usergenerated | inurl:/content/dam | inurl:/jcr:content | inurl:/libs/granite | inurl:/etc/clientlibs | inurl:/content/geometrixx | inurl:/bin/wcm | inurl:/crx/de site:example[.]com site:openbugbounty.org inurl:reports intext:"example.com" site:groups.google.com "example.com" site:pastebin.com "example.com" site:jsfiddle.net "example.com" site:codebeautify.org "example.com" site:codepen.io "example.com" site:s3.amazonaws.com "example.com" site:blob.core.windows.net "example.com" site:googleapis.com "example.com" site:drive.google.com "example.com" site:dev.azure.com "example[.]com" site:onedrive.live.com "example[.]com" site:digitaloceanspaces.com "example[.]com" site:sharepoint.com "example[.]com" site:s3-external-1.amazonaws.com "example[.]com" site:s3.dualstack.us-east-1.amazonaws.com "example[.]com" site:dropbox.com/s "example[.]com" site:box.com/s "example[.]com" site:docs.google.com inurl:"/d/" "example[.]com" site:jfrog.io "example[.]com" site:firebaseio.com "example[.]com" "submit vulnerability report" | "powered by bugcrowd" | "powered by hackerone" site:*/security.txt "bounty" site:*/server-status apache inurl:/wp-admin/admin-ajax.php intext:"Powered by" & intext:Drupal & inurl:user site:*/joomla/login Medium articles for more dorks:
https://thegrayarea.tech/5-google-dorks-every-hacker-needs-to-know-fed21022a906
https://infosecwriteups.com/uncover-hidden-gems-in-the-cloud-with-google-dorks-8621e56a329d
https://infosecwriteups.com/10-google-dorks-for-sensitive-data-9454b09edc12
Top Parameters:
https://github.com/lutfumertceylan/top25-parameter
Proviesec dorks:
