SecWiki / SecLists
SecLists is the security tester's companion. It is a collection of multiple types of lists used during security assessments. List types include usernames, passwords, URLs, sensitive data grep strings, fuzzing payloads, and many more.
☆13Updated 9 years ago
Alternatives and similar repositories for SecLists:
Users that are interested in SecLists are comparing it to the libraries listed below
- This is a webshell open source project☆28Updated 9 years ago
- Curated list of public penetration testing reports released by several consulting firms☆12Updated 8 years ago
- check cmd execute☆13Updated 7 years ago
- Simple script to automate brutforcing blind sql injection vulnerabilities☆51Updated 7 years ago
- Struts2 Vuls Scanner base perl script☆21Updated 8 years ago
- A collection of tools found on Github☆27Updated 9 years ago
- Flash XSS Scanner☆52Updated 8 years ago
- ppsx file generator for cve-2017-8570 (based on bhdresh/cve-2017-8570)☆67Updated 6 years ago
- scripts used in my pentest work.☆44Updated 9 years ago
- 投诉太狠啊,换个地方自己下吧☆15Updated 8 years ago
- CVE-2017-7269 to webshell or shellcode loader☆87Updated 7 years ago
- Struts2 S2-045-Nmap NSE script☆50Updated 7 years ago
- CVE-2018-2628 & CVE-2018-2893☆78Updated 6 years ago
- ☆4Updated 2 years ago
- Java Untrusted Deserialization Exploits Tools☆67Updated 9 years ago
- 用于还原svn仓库,支持1.6,1.7☆25Updated 8 years ago
- MS17-010 exploits, payloads, and scanners☆93Updated 7 years ago
- A simple script for exploit RCE for Struts 2 S2-053(CVE-2017-12611)☆36Updated 7 years ago
- CVE20178570☆94Updated 7 years ago
- MS17-010 multithreading scanner written in python.☆75Updated 7 years ago
- a poc framework to test hosts via zoomeye sdk☆32Updated 7 years ago
- shodan☆20Updated 7 years ago
- A cms discover recognize tool in python☆19Updated 9 years ago
- A weaponized version of CVE-2018-9206☆62Updated 6 years ago
- Burp Suite plugin which implement PyJFuzz for fuzzing web application.☆56Updated 7 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 8 years ago