Skip to content

This is an index of search queries (dorks) used to find secrets and credentials within GitHub, intended for pentesters and security researchers.

Notifications You must be signed in to change notification settings

bastyn/github-code-search-hacking

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 

Repository files navigation

With the introduction of GitHub Code Search in March 2023 it’s now possible to search through code from repositories by using more powerful queries, which support regular expressions. You can use different scopes for a search, such as: repository, organization or even all of GitHub. Even though this search functionality has it limitations, it is still a powerful tool that can be used to search for specific strings. Strings which may contain secrets. And thus this functionality can be used to find secrets. The GitHub dorks in this repository can be used to find secrets.

Dorks

You can find GitHub dorks in the github-dorks.md file. In the github-queries.md you can find queries you can append to an existing query to enhance your search.

Disclaimer

None of the information mentioned in this repository should be used for any illegal activity, and any such activities are not endorsed. While it isn’t illegal to use and play around with GitHub Code Search, what you do with the information you gather is what determines the legality.

About

This is an index of search queries (dorks) used to find secrets and credentials within GitHub, intended for pentesters and security researchers.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published