awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
techgaun avatar

techgaun/github-dorks

0
View on GitHub↗
3,140 stars·637 forks·Python·apache-2.0·16 views

Github Dorks

This project is a GitHub secret scanner and dorking tool designed to identify leaked credentials and private keys within repositories. It functions as an API reconnaissance utility that uses curated search queries and automated dorks to locate sensitive data across public and enterprise GitHub instances.

The tool enables security vulnerability research and enterprise auditing by targeting both public cloud instances and private enterprise installations via configurable base URLs. It utilizes token-based authentication to access private repository content and bypass API rate limits.

The system orchestrates parametric searches to automate leak detection and provides data export capabilities to save discovered findings into CSV files for offline analysis and reporting.

Features

  • Credential Leak Detection - Systematically finds leaked credentials across multiple GitHub accounts using programmed search terms.
  • GitHub Dorking Techniques - Uses advanced search queries and dorks to find exposed secrets and sensitive code in GitHub repositories.
  • Reconnaissance and Dorking - Provides automated advanced search queries and dorks to discover sensitive data on GitHub.
  • GitHub Reconnaissance Tools - Targets public and enterprise GitHub instances to identify exposed secrets using API authentication.
  • Repository Content Scanning - Interfaces with the GitHub API to programmatically search codebase contents and organization metadata for leaked secrets.
  • Git Secret Scanners - Detects hardcoded credentials and private keys within GitHub repositories using curated search queries.
  • Automated Secret Discovery - Scans repositories and organization accounts using curated search queries to locate leaked credentials.
  • Secret Pattern Matching - Uses a library of predefined regular expression patterns to identify leaked credentials and sensitive data.
  • Parametric Secret Discovery - Combines user targets and curated query lists to automate the discovery of exposed secrets.
  • Enterprise Instance Connectors - Provides specialized connectivity to self-hosted GitHub Enterprise server instances for internal secret scanning.
  • GitHub Configuration Audits - Scans private enterprise installations to find exposed sensitive data within internal organization repositories.
  • Private Repository Access - Uses access tokens to authenticate and retrieve data from non-public GitHub repositories.
  • Vulnerability Research - Locates exposed secrets in public repositories to investigate and document potential security breaches.
  • Token-Based Authentication - Uses personal access tokens to authenticate API requests and bypass rate limits.
  • Sensitive Data Scanners - Automatically detects leaked credentials and sensitive data in source code for exfiltration into analysis files.
  • Open Source Intelligence - CLI tool for finding sensitive information leaks in repositories.
  • Open Source Intelligence - Scanner for identifying sensitive information leaks in public repositories.
  • OSINT and Reconnaissance - CLI tool for scanning GitHub for sensitive information leaks.
  • Search Engine Queries - Queries for finding sensitive information exposed in public repositories.

Star history

Star history chart for techgaun/github-dorksStar history chart for techgaun/github-dorks

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with Github Dorks

These projects share indexed features with Github Dorks. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • nsonaniya2010/subdomainizernsonaniya2010 avatar

    nsonaniya2010/SubDomainizer

    1,874View on GitHub↗

    SubDomainizer is a security scanning utility designed to map web infrastructure and identify sensitive information exposure. It functions as a reconnaissance tool that aggregates data from web pages, local files, and remote code hosting services to provide a comprehensive assessment of a target's attack surface. The tool specializes in discovering hidden subdomains and infrastructure entry points through recursive web crawling and the analysis of SSL certificate metadata. It further secures environments by scanning source code and external repositories for exposed API keys, passwords, and oth

    Pythonbug-bountybugbountycloud-storage-services
    View on GitHub↗1,874
  • arimogi/google-dorksarimogi avatar

    arimogi/Google-Dorks

    53View on GitHub↗

    I'm uploading dorks here.

    View on GitHub↗53
  • ilektrojohn/creepyilektrojohn avatar

    ilektrojohn/creepy

    1,452View on GitHub↗

    A geolocation OSINT tool. Offers geolocation information gathering through social networking platforms.

    Python
    View on GitHub↗1,452
  • jgor/dork-clijgor avatar

    jgor/dork-cli

    153View on GitHub↗

    Command-line Google dork tool. This is an early predecessor to dorkbot, which may be more useful: https://github.com/utiso/dorkbot

    Python
    View on GitHub↗153
Compare all 30 related projects→

Frequently asked questions

What does techgaun/github-dorks do?

This project is a GitHub secret scanner and dorking tool designed to identify leaked credentials and private keys within repositories. It functions as an API reconnaissance utility that uses curated search queries and automated dorks to locate sensitive data across public and enterprise GitHub instances.

What are the main features of techgaun/github-dorks?

The main features of techgaun/github-dorks are: Credential Leak Detection, GitHub Dorking Techniques, Reconnaissance and Dorking, GitHub Reconnaissance Tools, Repository Content Scanning, Git Secret Scanners, Automated Secret Discovery, Secret Pattern Matching.

Which projects share features with techgaun/github-dorks?

Projects with overlapping indexed features include: nsonaniya2010/subdomainizer — SubDomainizer is a security scanning utility designed to map web infrastructure and identify sensitive information… laramies/metagoofil — Metadata harvester. ilektrojohn/creepy — A geolocation OSINT tool. Offers geolocation information gathering through social networking platforms. arimogi/google-dorks — I'm uploading dorks here. k3170makan/goodork — Command line go0gle dorking tool. jgor/dork-cli — Command-line Google dork tool. This is an early predecessor to dorkbot, which may be more useful:…