Google Hacking Database (GHDB) -

Name

Total

Info 

Footholds

(74)

Examples of queries that can help an attacker gain a foothold into a web server

Files Containing Usernames

(21)

These files contain usernames, but no passwords... Still, Google finding usernames on a web site.

Vulnerable Servers

(94)

These searches reveal servers with specific vulnerabilities. These are found in a different way than the searches found in the "Vulnerable Files" section.

Web Server Detection

(101)

These links demonstrate Googles awesome ability to profile web servers.

Sensitive Directories

(167)

Googles collection of web sites sharing sensitive directories. The files contained in here will vary from sensitive to über-secret!

Vulnerable Files

(62)

HUNDREDS of vulnerable files that Google can find on websites.

Files Containing Passwords

(274)

PASSWORDS!!! Google found PASSWORDS!

Sensitive Online Shopping Info

(11)

Examples of queries that can reveal online shopping infomation like customer data, suppliers, orders, credit card numbers, credit card info, etc

Error Messages

(100)

Really verbose error messages that say WAY too much!

Various Online Devices

(386)

This category contains things like printers, video cameras, and all sorts of cool things found on the web with Google.

Files Containing Juicy Info

(554)

No usernames or passwords, but interesting stuff none the less.

Advisories and Vulnerabilities

(2017)

These searches locate vulnerable servers. These searches are often generated from various security advisory posts, and in many cases are product or version-specific.

Network or Vulnerability Data

(86)

These pages contain such things as firewall logs, honeypot logs, network information, IDS logs... All sorts of fun stuff!

Pages Containing Login Portals

(497)

These are login pages for various services. Consider them the front door of a websites more sensitive functions.