Automated Dorking for Fun and Profit^WSalary

DEF CON 24

Presented by: Filip Reesalu
Date: Friday August 05, 2016
Time: 16:10 - 17:00
Location: Packet Hacking Village

A dork is a specialized search engine query which reveals unintentional data leaks and vulnerable server configurations. In order to catalogue vulnerable hosts with minimal manual intervention we’re now introducing an open-source framework for grabbing newly published dorks from various sources and continuously executing them in order to establish a database of exposed hosts. A similar project (SearchDiggity, closed source, Windows only) had its latest release in 2013 and the latest blog post was published in 2014.

Filip Reesalu

Filip Reesalu (Twitter: @p1dgeon) is a Security Researcher at Recorded Future. He joined the Threat Intelligence team after switching over from a data scientist role and is now responsible for analyzing malware samples and traffic as well as creating tools that benefit the community at large.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats