Google hacking also named Google dorking is a hacker technique that uses Google search and other Google applications to find security holes in the configuration and computer code that websites are using. Google dorking could also be used for OSINT.
Some of the Google dorking are:
- To view Unprotected WebCams in Internet.
1. inurl: viewerframe?mode=motion
2. inurl"view index.shtml"
3. inurl:"viewerframe?mode=refresh"
4. intitle:"i -Catcher Console - Web Monitor"
5. intitle:"Toshiba Network Camera" user login
6. intitle:"Live View / - AXIS 210?
2. To Download Movies and Games.
1. indexof:"<Movie name>"
2. indexof:"endgame movie"
3. indexof:"tamil songs 2019"
4. indexof:"<Game name>"
3. Checking for leaked database usernames and passwords.
1. indexof:"username password"
2. "Index of /admin"
3. "Index of /backup"
4. "Index of /mail"
5. "Index Of /network" "last modified"
6. "Index of /password"
4. Searching for wordpress websites.
1. allinurl:"wp-content/plugins/"2. inurl:"/xmlrpc.php?rsd" + scoping restrictions3. intitle:"WordPress" inurl:"readme.html" + scoping restrictions = general wordpress detection4. allinurl:"wp-content/plugins/" + scoping restrictions = general wordpress detection
5. Checking for Logs or files on website.
1. inurl:"<site name>" filetype:log
2. intitle:"report" ("nessus") filetype:pdf