Not all dorks are created equal. Here is why inurl:php?id=1 consistently delivers high-value targets for penetration testers and bug bounty hunters.
The database user associated with the website should only have the permissions necessary to do its job. It shouldn't be able to drop tables or access sensitive configuration files. The Role of Ethical Hacking Using "Google Dorks" (advanced search strings like ) is a legitimate part of Reconnaissance