API Discovery / Reco
Google Dorking
Google Dorksinurl:"/wp-json/wp/v2/users"
intitle:"index.of" intext:"api.txt"
inurl:"/api/v1" intext:"index of /"
ext:php inurl:"api.php?action="
intitle:"index of" api_key OR "api key" OR apiKey -poolGit Dorking
Git Dorksfilename:swagger.json
extension: .jsonTruffleHog
$ sudo docker run -it -v "$PWD:/pwd" trufflesecurity/trufflehog:latest github --org=target-nameWayback Machine
Amass
Fuzzing
Documentation
Docs - subdomains
API Subdomains
API endpoints
Known API
https://raw.githubusercontent.com/coffinxp/payloads/refs/heads/main/api.txtraw.githubusercontent.com
API Detector
Kiterunner
GraphQL endpoint
Detect the Programming Language
Finding hidden parameters
Fuzzing
Burp - Param Miner
Burp - Content Discovery Tool
Interesting Books
Interesting BooksSupport this Gitbook
Last updated


