Friday, January 15, 2016

inurl:intranet -intext:intranet

Access to intranet pages :


inurl:intranet -intext:intranet

What is an intranet ?

An intranet is a computer network that uses Internet Protocol technology to share information, operational systems, or computing services within an organization. This term is used in contrast to extranet, a network between organizations, and instead refers to a network within an organization.

intitle:"Shell I" inurl:revslider inurl:error.php inurl:cmd

Find shells inserted using the revslider vulnerability :


intitle:"Shell I" inurl:revslider inurl:error.php inurl:cmd

Friday, October 30, 2015

inurl:.DS_Store intitle:index.of

Sensitives directories :


inurl:.DS_Store intitle:index.of
inurl:.DS_Store intitle:index of

.DS_Store is the name of a file in the Apple OS X operating system for storing custom attributes of a folder such as the position of icons or the choice of a background image. The name is an abbreviation of Desktop Services Store, reflecting its purpose. It is created and maintained by the Finder application in every folder, and has functions similar to the file desktop.ini in Microsoft Windows. Starting with a full stop (period) character, it is hidden in Finder and many Unix utilities. Its internal structure is proprietary.

inurl:webgps intitle:"GPS Monitoring System"

GPS Monitoring System Login Portal :


inurl:webgps intitle:"GPS Monitoring System"

inurl:etc -intext:etc ext:passwd

Files containing passwords :


inurl:etc -intext:etc ext:passwd

Thursday, May 21, 2015

inurl:5000/webman/index.cgi

Synology NAS login :


inurl:5000/webman/index.cgi

inurl:logon.html "CSCOE"

Logins portals for Cisco ASA Clientless Webvpn :


inurl:logon.html "CSCOE"

Saturday, December 13, 2014

intext:admin & inurl:gov -github & filetype:sql

intext:admin & inurl:gov -github & filetype:sql

Find SQL backup from .GOV websites related to the word "admin"

filetype:sql & inurl:gov -github

filetype:sql & inurl:gov -github

Find SQL backup from .GOV websites, remove the Github entry...

Thursday, May 8, 2014

inurl:"/webcm?getpage="

inurl:"/webcm?getpage="

Actiontec (and often Qwest) branded routers' login pages

intitle:not accepted inurl:"union+select" inurl:"id?="

intitle:not accepted inurl:"union+select" inurl:"id?="

IDS and Mod security

inurl:"/public.php?service=files"

inurl:"/public.php?service=files"

Shared files from ownCloud

intext:"Hikvision" inurl:"login.asp"

intext:"Hikvision" inurl:"login.asp"

Hikvision IP Camera login page

Sunday, February 16, 2014