PYTHON [ DorkMe : Tool designed with the purpose of making easier the searching of vulnerabilities with Google Dorks, such as SQL Injection vulnerabilities ] - Intech Network

Ethical-Hacking & penetration testing & network security assessments

12/20/2018

PYTHON [ DorkMe : Tool designed with the purpose of making easier the searching of vulnerabilities with Google Dorks, such as SQL Injection vulnerabilities ]

DorkMe

Dependencies

 pip install -r requirements.txt
It is highly recommended to add more dorks for an effective search, keep reading to see how

Usage

python DorkMe.py --help
Examples:
python DorkMe.py --url target.com --dorks vulns -v (recommended for test)
python DorkMe.py --url target.com --dorks Deprecated,Info -v (multiple dorks)
python DorkMe.py --url target.com --dorks all -v (test all)

About

DorkMe is a tool designed with the purpose of making easier the searching of vulnerabilities with Google Dorks, such as SQL Injection vulnerabilities.
Any idea, failure etc please report to telegram: blueudp
dork folder contains -> dorks to search, result folder contains -> results of DorkMe execution
Tested in ParrotOS and Kali Linux 2.0

Beta Version

Remember DorkMe is beta, to avoid bans DorkMe wait about 1 minute on each request and 3 minutes every 100 requests

Add Dorks

If you want to add new dorks put it in one of the files in the dorks folder (preferable in its category), if it is not, you can add it to mydorks.txt. to add it: in the first line add the dork, in the second the severity: high , medium or low, and finally its description, look at the other files to do it correctly Dork List:
http://www.conzu.de/en/google-dork-liste-2018-conzu/
https://www.exploit-db.com/google-hacking-database/
Find admin Panels: https://starhackx.blogspot.com/2014/02/list-of-dorks-to-find-admin-panels_23.html#.W27U5uFKjV0
EXAMPLE:
inurl:php?id= [enter]

high [enter]

SQLi [enter]

(space)

another dork

Termux

To install on termux run pip2 and python2 instead of pip and python

Well... WTF is dorking?

Google hacking, also named Google dorking, is a computer hacking technique that uses Google Search and other Google applications to find security holes in the configuration and computer code that websites use.
For example, SQL injection usually has this structure in the url "file.php? Id = [vuln]", to look for pages vulnerable to SQLi we can use the operator "inurl:", which only shows results with X string in the url , we can also use the "filetype: [extension]" operator to search for sensitive files, a hyphen in front of a word so that the word does not appear in the search, quote a phrase or word to ALWAYS appear in the search results, etc.


5 commentaires:

  1. Are you sure you know who your spouse really is? i doubt cause i trusted my wife with my life i never knew my wife plays under ground games by cheating on me but thank God for the help of cyberknighthacker@gmail.com who i asked and paid to hack into my wife phone. and in the space of 3 hours the hack was done and i received all my wife text messages, imessages, whats-app, Facebook, Instagram and many more on my phone that was how i was able to find out who my wife really is. A big thank you to my best hacker cyberknighthacker@gmail.com

    RépondreSupprimer
  2. They HACKERS SHOW proofreader's OF WORK AND THIS IS EVIDENT FROM THE TESTIMONIES OF OUR NUMEROUS CLIENTS FROM ALL OVER THE WORLD THAT WE HAVE HELPED PUT SMILE TO THEIR FACES.

    CONTACT US FOR YOUR:

    -University grades changing

    -Facebook hack

    -email interception hack

    -email accounts hack

    -Grade Changes hack

    -Website crashed hack

    -Word Press Blogs hack

    -Retrieval of lost file/documents

    -Erase criminal records hack

    -Databases hack

    -Sales of Dumps cards of all kinds

    -Untraceable Ip

    -Bank accounts hack

    -Individual computers hack

    -Websites hack

    -Control devices remotely hack

    -Burner Numbers hack

    -Verified Paypal Accounts hack

    -Any social media account hack

    -Android & iPhone Hack

    -server crashed hack

    -Text message interception hack

    -Twitters hack

    -Skype hack

    -Credit cards hacker

    -We can drop money into bank accounts.

    - credit score hack
    blank credit card sale

    We can also teach you how to do the following

    with our e-book and online tutorials

    * Hack and use Credit Card to shop online

    * Monitor any phone and email address

    * Tap into anybody's call and monitor their

    conversation

    CONTACT: btclord15@gmail.com

    RépondreSupprimer
  3. Hurry Up!!! Get your credit report fixed so that you can be able to let your Xmas and New Year fabulous for your family. Any Late Payments, Collections, Evictions, Tax liens, Repossessions, Identity theft, Foreclosures, Judgments, Medical Bills, Student Loans, Public Records, Bankruptcy, Hard Inquiries, Student Loan, Credit Card Debt with Bank Account Debt And Restore Your Credit Score. Aaron Swartz gives you the Best service in the Hacking world. Contact Hacker:btclord15@gmail.comHit him up

    RépondreSupprimer
  4. If you really need a professional hackers to hack your cheating boyfriend's/girlfriend's/spouse phone, whatsapp, facebook, bank account hack etc. Or credit score upgrade, I would recommend hack.truth team  have proven to be trustworthy, their jobs are fast and affordable. they have carried out over 3 job for me including helping me hack my ex wife's mobile phone and i can't forget when they cleared my credit card debts and improved my credit score to 750. I can put my money on them at anytime!. they are one of the best out there. Spreading the word as my little favor to them for all have done for me. Thank you hack.truth team you can reach here hack.truth77@gmail.com

    RépondreSupprimer
  5. This blog have good information and it full concentrated in the topic. Thanks for sharing this kind of blog. Looking forward for more content.
    Data Science Course in Chennai
    Ethical Hacking Course in Chennai

    RépondreSupprimer