Copy-ready Google search operators and dorks for authorized recon, plus equivalents for GitHub code search, Shodan, and Censys. (30 payloads)
site:example.comsite:*.example.com -site:www.example.cominurl:admin site:example.comintitle:"index of" site:example.comfiletype:pdf site:example.comintext:"password" site:example.com("confidential" OR "internal use only") site:example.comintitle:"index of" ("backup" OR "bak" OR "old") site:example.comsite:example.com ext:sql | ext:dbf | ext:mdbsite:example.com ext:env | ext:ini | ext:conf | ext:cfg | ext:ymlsite:example.com ext:log | ext:bak | ext:old | ext:swp | ext:~site:example.com ext:xls | ext:xlsx | ext:csv intext:emailintitle:"index of" ".git" site:example.comsite:example.com inurl:login | inurl:signin | inurl:admin | inurl:portalintitle:"phpMyAdmin" "Welcome to phpMyAdmin" site:example.comintitle:"Grafana" inurl:/login site:example.comintitle:"Dashboard [Jenkins]" site:example.cominurl:"/wp-login.php" | inurl:"/wp-admin" site:example.comsite:example.com ext:env intext:DB_PASSWORDintext:"-----BEGIN RSA PRIVATE KEY-----" site:example.comsite:example.com intext:"AKIA" ext:txt | ext:log | ext:envfiletype:json intext:"api_key" | intext:"client_secret" site:example.comorg:exampleorg AWS_SECRET_ACCESS_KEYfilename:.env DB_PASSWORDorg:exampleorg path:**/config language:yaml "password:"org:exampleorg "-----BEGIN PRIVATE KEY-----"hostname:example.com http.title:"Login"ssl.cert.subject.cn:example.com port:443 http.status:200product:"Apache httpd" country:US http.title:"Index of"services.tls.certificates.leaf_data.subject.common_name=example.com and services.service_name=HTTPLevel up your security testing
Install the CLI
npx payload-playgroundExplore All Tools
Encoding, hashing, JWT & more
Browse Cheat Sheets
Quick-reference payload guides
It's a quick-reference collection of 30 Google Dorks payloads for testing Google Dorking vulnerabilities during authorized penetration testing, bug bounties, and CTFs. Every payload is copy-ready and grouped by attack context.
Copy any payload straight into your authorized test, or use the Search Dork Generator to apply them interactively. Only test systems you have explicit permission to assess.
Yes — this cheat sheet and all Google Dorks payloads are completely free, with no account required. Everything runs in your browser.