注入漏洞检测关键字

个人从网上和一些教程钟归纳了一些批量搜索注入点的关键字,分享给大家使用,
   内容不多,但实用性还是蛮强的,保证能找到注入点,但是有些MD5加密之后不能解开,那也没有办法。有些关键字还可以扩展,寻找注入点靠的不是其他,就是自己的想象力!
inurl:asp
目标关键字+inurl:id
英语字母及单词+inurl:id
网站域名+inurl:id
阿拉伯数字+inurl:id
inurl:asp?id=
inurl:Article_Print.asp?
EnCompHonorBig.asp?id=随便加个数字
showproduct.asp?id=随便加个数字 
inurl:ManageLogin.asp
EnCompHonorBig.asp?id= 随便加个数字
inurl: (asp?=数字) inurl: (php?=数字)
inurl:Article_Print.asp?
site 指定网站 inurl:Article_Print.asp?
NewsInfo.asp?id=
ShowNew.asp?Id=
ShowNews.asp?Id=
Show.asp?Id=
Google dorks sql injection: 
inurl:index.php?id= 
inurl:trainers.php?id= 
inurl:buy.php?category= 
inurl:article.php?ID= 
inurllay_old.php?id= 
inurl:declaration_more.php?decl_id= 
inurlageid= 
inurl:games.php?id= 
inurlage.php?file= 
inurl:newsDetail.php?id= 
inurl:gallery.php?id= 
inurl:article.php?id= 
inurl:show.php?id= 
inurl:staff_id= 
inurl:newsitem.php?num= 
inurl:readnews.php?id= 
inurl:top10.php?cat= 
inurl:historialeer.php?num= 
inurl:reagir.php?num= 
inurl:Stray-Questions-View.php?num= 
inurl:forum_bds.php?num= 
inurl:game.php?id= 
inurl:view_product.php?id= 
inurl:newsone.php?id= 
inurl:sw_comment.php?id= 
inurl:news.php?id= 
inurl:avd_start.php?avd= 
inurl:event.php?id= 
inurlroduct-item.php?id= 
inurl:sql.php?id= 
inurl:news_view.php?id= 
inurl:select_biblio.php?id= 
inurl:humor.php?id= 
inurl:aboutbook.php?id= 
inurl:fiche_spectacle.php?id= 
inurl:communique_detail.php?id= 
inurl:sem.php3?id= 
inurl:kategorie.php4?id= 
inurl:news.php?id= 
inurl:index.php?id= 
inurl:faq2.php?id= 
inurl:show_an.php?id= 
inurlreview.php?id= 
inurl:loadpsb.php?id= 
inurl:Opinions.php?id= 
inurl:spr.php?id= 
inurlages.php?id= 
inurl:announce.php?id= 
inurl:clanek.php4?id= 
inurlarticipant.php?id= 
inurl:download.php?id= 
inurl:main.php?id= 
inurl:review.php?id= 
inurl:chappies.php?id= 
inurl:read.php?id= 
inurlrod_detail.php?id= 
inurl:viewphoto.php?id= 
inurl:article.php?id= 
inurlerson.php?id= 
inurlroductinfo.php?id= 
inurl:showimg.php?id= 
inurl:view.php?id= 
inurl:website.php?id= 
inurl:hosting_info.php?id= 
inurl:gallery.php?id= 
inurl:rub.php?idr= 
inurl:view_faq.php?id= 
inurl:artikelinfo.php?id= 
inurl:detail.php?ID= 
inurl:index.php?= 
inurl:Profile_view.php?id= 
inurl:category.php?id= 
inurl:Publications.php?id= 
inurl:fellows.php?id= 
inurl:downloads_info.php?id= 
inurl:Prod_info.php?id= 
inurl:shop.php?do=part&id= 
inurl:Productinfo.php?id= 
inurl:collectionitem.php?id= 
inurl:band_info.php?id= 
inurl:Product.php?id= 
inurl:releases.php?id= 
inurl:ray.php?id= 
inurl:Produit.php?id= 
inurl:Pop.php?id= 
inurl:shopping.php?id= 
inurl:Productdetail.php?id= 
inurl:Post.php?id= 
inurl:viewshowdetail.php?id= 
inurl:clubpage.php?id= 
inurl:memberInfo.php?id= 
inurl:section.php?id= 
inurl:theme.php?id= 
inurl:Page.php?id= 
inurl:shredder-categories.php?id= 
inurl:tradeCategory.php?id= 
inurl:Product_ranges_view.php?ID= 
inurl:shop_category.php?id= 
inurl:transcript.php?id= 
inurl:channel_id= 
inurl:item_id= 
inurl:newsid= 
inurl:trainers.php?id= 
inurl:news-full.php?id= 
inurl:news_display.php?getid= 
inurl:index2.php?option= 
inurl:readnews.php?id= 
inurl:top10.php?cat= 
inurl:newsone.php?id= 
inurl:event.php?id= 
inurl:Product-item.php?id= 
inurl:sql.php?id= 
inurl:aboutbook.php?id= 
inurl:review.php?id= 
inurl:loadpsb.php?id= 
inurl:ages.php?id= 
inurl:material.php?id= 
inurl:clanek.php4?id= 
inurl:announce.php?id= 
inurl:chappies.php?id= 
inurl:read.php?id= 
inurl:viewapp.php?id= 
inurl:viewphoto.php?id= 
inurl:rub.php?idr= 
inurl:galeri_info.php?l= 
inurl:review.php?id= 
inurl:iniziativa.php?in= 
inurl:curriculum.php?id= 
inurl:labels.php?id= 
inurl:story.php?id= 
inurl:look.php?ID= 
inurl:newsone.php?id= 
inurl:aboutbook.php?id= 
inurl:material.php?id= 
inurl:Opinions.php?id= 
inurl:announce.php?id= 
inurl:rub.php?idr= 
inurl:galeri_info.php?l= 
inurl:tekst.php?idt= 
inurl:newscat.php?id= 
inurl:newsticker_info.php?idn= 
inurl:rubrika.php?idr= 
inurl:rubp.php?idr= 
inurl:Offer.php?idf= 
inurl:art.php?idm= 
inurl:title.php?id=
====================
CompHonorBig.asp?id=
inurl:articleshow.asp?articleid=任意数字
showproduct.asp?id=
inurl:ManageLogin.asp 
EnCompHonorBig.asp?id= 
inurl: (asp?=数字) inurl: (php?=数字)
inurl:Article_Print.asp?
(site inurl:Article_Print.asp?)
intitle:山西学校 inurl:asp?=    
inurl:asp
目标关键字+inurl:id
英语字母及单词+inurl:id
网站域名+inurl:id
阿拉伯数字+inurl:id
inurl:asp?id=
inurl:Article_Print.asp?
EnCompHonorBig.asp?id=随便加个数字
showproduct.asp?id=随便加个数字 
inurl:ManageLogin.asp
EnCompHonorBig.asp?id= 随便加个数字
inurl: (asp?=数字) inurl: (php?=数字)
inurl:Article_Print.asp?
site http://www.xmevs.com/ inurl:Article_Print.asp?
NewsInfo.asp?id=
ShowNew.asp?Id=
ShowNews.asp?Id=
Show.asp?Id=

很多:CompHonorBig.asp?id=







///









黑客常用的谷歌高级语法及关键字

inurl:关键字   (在url链接中所含的关键字,如:inurl:asp?id=)

 

site:关键字  (在所在范围内的关键字,如:site:kr)

 

intext:关键字 (在网页内容中的关键字,如:intext:123)

 

intitle:关键字 (在网页标题中的关键字,如:intitle:123123123)

 

以下是个人收集的关键字

 

mysql的:list.php?lid= 

 

inurl:Company.asp?id= 

inurl:CompHonorBig.asp?id=xx

inurl:CompHonorBig.asp?id=XX

 

site:Xx.com 

 

inurl:Newsx.asp?id= 

inurl:show.asp?id= 

 

inurl:.asp?id= and intitle:?????

 

inurl:asp?readid=

inurl:asp

 

目标关键字+inurl:id

 

英语字母及单词+inurl:id

网站域名+inurl:id

阿拉伯数字+inurl:id

inurl:asp?id=

inurl:Article_Print.asp?

EnCompHonorBig.asp?id=随便加个数字

showproduct.asp?id=随便加个数字 

inurl:ManageLogin.asp

EnCompHonorBig.asp?id= 随便加个数字

inurl: (asp?=数字) inurl: (php?=数字)

inurl:Article_Print.asp?

site 指定网站 inurl:Article_Print.asp?

NewsInfo.asp?id=

ShowNew.asp?Id=

ShowNews.asp?Id=

Show.asp?Id=

 


  • 0
    点赞
  • 1
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值