Google Hacking Database (GHDB)

Search the Google Hacking Database or browse GHDB categories

Files containing juicy info

No usernames or passwords, but interesting stuff none the less.

DATE Title Summary
2005-04-26 ext:plist filetype:plist inurl:bookmarks.plist These Safari bookmarks that might show very interesting info about a user's surfing habits...
2005-04-26 ext:ics ics ICalender Fileder that can contain a lot of useful information about a possible target....
2005-04-26 "MacHTTP" filetype:log inurl:machttp.log MacHTTP is an webserver for Macs running OS 6-9.x. It's pretty good for older Macs but the defa...
2005-03-30 WebLog Referrers ExpressionEngine is a modular, flexible, feature-packed web publishing system that adapts to a ...
2005-02-28 "#mysql dump" filetype:sql 21232f297a57a... this is a mod of one of the previous queries posted in here. the basic thing is, to add this:21...
2005-02-15 filetype:ora tnsnames This searches for tns names files. This is an Oracle configuration file that sets up connectio...
2005-03-02 inurl:getmsg.html intitle:hotmail These pages contain hotmail messages that were saved as HTML. These messages can contain anythi...
2005-02-28 +"HSTSNR" -"netop.com" This search reveals NetOp license files. From the netop website: "NetOp Remote Control is ...
2005-02-15 intitle:"web server status" SSH Telnet simple port scanners for most common ports...
2005-02-15 -site:php.net -"The PHP Group" inurl:sou... scripts to view the source code of PHP scripts running on the server. Can be very interesting i...
2005-01-27 inurl:netscape.hst History for Netscape - So an attacker can read a user's browsing history....
2005-01-27 inurl:"bookmark.htm" Bookmarks for Netscape and various other browsers....
2005-01-27 inurl:netscape.hst Netscape Bookmark List/History: So an attacker would be able to locate the bookmark and history...
2005-01-27 inurl:netscape.ini There's a bunch of interesting info in netscape.ini1. Viewers: which multimedia viewers the fir...
2005-01-27 intitle:"edna:streaming mp3 server" -for... Edna allows you to access your MP3 collection from any networked computer. This software stream...
2005-01-27 ext:reg "username=*" putty Putty registry entries. Contain username and hostname pairs, as well as type of session (sftp, ...
2005-01-22 ext:txt inurl:dxdiag This will find text dumps of the DirectX Diag utility. It gives an outline of the hardware of t...
2005-01-13 intitle:"FTP root at" This dork will return some FTP root directories. The string can be made more specific by adding...
2005-01-02 intext:gmail invite intext:http://gmail.google.com... This is a dork I did today. At first, I wanted to find out the formula for making one, but ... ...
2005-01-02 Peoples MSN contact lists This will give msn contact lists .. modify the "msn" to what ever you feel is messeng...
2005-01-02 filetype:ctt Contact This is for MSN Contact lists......
2004-12-30 intitle:"index.of" .diz .nfo last modifi... File_id.diz is a description file uploaders use to describe packages uploaded to FTP sites. Alt...
2004-12-30 filetype:blt "buddylist" AIM buddylists....
2004-12-30 filetype:cnf inurl:_vti_pvt access.cnf The access.cnf file is a "weconfigfile" (webconfig file) used by Frontpage Extentions...
2004-12-19 intitle:"welcome.to.squeezebox" squeezebox is the easiest way for music lovers to enjoy high-quality playback of their whole di...
2004-12-19 inurl:preferences.ini "[emule]" This finds the emule configuration file which contains some general and proxy information.Somet...
2004-12-19 ext:conf inurl:rsyncd.conf -cvs -man rsync is an open source utility that provides fast incremental file transfer.rsync can also tal...
2004-12-13 inurl:ds.py Affordable Web-based document and content management application lets businesses of every size ...
2004-12-13 ext:dat bpk.dat Perfect Keylogger is as the name says a keylogger :)This dork finds the corresponding datafiles...
2004-12-04 intitle:"Multimon UPS status page" Multimon provide UPS monitoring services...
2004-12-05 php-addressbook "This is the addressbook for... php-addressbook shows user address information without a password....
2004-12-05 "Generated by phpSystem" PhpSystem shows info about unix systems, including: General Info (kernel, cpu, uptime), Connect...
2004-12-04 inurl:"/axs/ax-admin.pl" -script This system records visits to your site. This admin script allows you to display these records ...
2004-12-03 ext:vmx vmx VMWare allows PC emulation across a variety of platforms. Theseconfiguration files describe a v...
2004-12-03 ext:vmdk vmdk VMWare allows PC emulation across a variety of platforms. These files are VMWare disk images wh...
2004-12-03 ext:pqi pqi -database PQ DriveImage allows administrators to create hard rive images for lots of purposes including b...
2004-12-03 ext:gho gho Norton Ghost allows administrators to create hard rive images for lots of purposes including ba...
2004-11-28 intitle:"PHP Advanced Transfer" (inurl:i... PHP Advacaned Transfer is GPL'd software that claims to be the "The ultimate PHP download ...
2004-11-28 intitle:"DocuShare" inurl:"docushar... some companies use a Xerox Product called DocuShare. The problem with this is by default guest ...
2004-11-28 ext:txt "Final encryption key" IPSec debug/log data which contains user data and password hashes.Can be used to crack password...