Wednesday, December 2, 2015

SQLI Oriented Dorking

1) SQLI Hunter


SQLI Hunter is an automation tool to scan for an Sql Injection vulnerability in a website. It automates the search of sqli vulnerable links from Google using google dorks! SQLI Hunter can also find admin page of any website by using some predefined admin page lists.


2) ICFsqLi CRAWLER


This tool helps u to scan sql injection vulnerablity on 1000s of websites , by just giving the ip of the server .

This is one of the best & worlds fastest mass sqli scanner , coded by INDiAn CyBER FORCE (b47chguru)

Friday, October 30, 2015

inurl:.DS_Store intitle:index.of

Sensitives directories :


inurl:.DS_Store intitle:index.of
inurl:.DS_Store intitle:index of

.DS_Store is the name of a file in the Apple OS X operating system for storing custom attributes of a folder such as the position of icons or the choice of a background image. The name is an abbreviation of Desktop Services Store, reflecting its purpose. It is created and maintained by the Finder application in every folder, and has functions similar to the file desktop.ini in Microsoft Windows. Starting with a full stop (period) character, it is hidden in Finder and many Unix utilities. Its internal structure is proprietary.

inurl:webgps intitle:"GPS Monitoring System"

GPS Monitoring System Login Portal :


inurl:webgps intitle:"GPS Monitoring System"

inurl:etc -intext:etc ext:passwd

Files containing passwords :


inurl:etc -intext:etc ext:passwd

Tuesday, June 9, 2015

intext:powered by joomla & filetype:sql -github

Find SQL dumps from Joomla :

intext:powered by joomla & filetype:sql -github

intext:powered by joomla & filetype:sql -github