danielmiessler / SecListsLinks
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
☆65,619Updated this week
Alternatives and similar repositories for SecLists
Users that are interested in SecLists are comparing it to the libraries listed below
Sorting:
- Directory/File, DNS and VHost busting tool written in Go☆12,488Updated last week
- Fast web fuzzer written in Go☆14,736Updated 4 months ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,676Updated last year
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆12,086Updated 10 months ago
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆18,305Updated last week
- Impacket is a collection of Python classes for working with network protocols.☆14,831Updated this week
- Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren…☆9,049Updated last year
- Most advanced XSS scanner.☆14,306Updated 4 months ago
- In-depth attack surface mapping and asset discovery☆13,537Updated last week
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆69,913Updated this week
- Fast subdomains enumeration tool for penetration testers☆10,574Updated last year
- A collection of awesome penetration testing resources, tools and other shiny things☆23,934Updated 2 months ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,586Updated 2 years ago
- A swiss army knife for pentesting networks☆8,912Updated last year
- Attack Surface Management Platform☆9,065Updated 3 months ago
- Web application fuzzer☆6,280Updated last year
- Fast passive subdomain enumeration tool.☆12,262Updated this week
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆9,794Updated last month
- The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.☆12,366Updated 10 months ago
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆7,937Updated last week
- hydra☆10,847Updated 2 weeks ago
- The legacy Exploit Database repository - New repo located at https://gitlab.com/exploit-database/exploitdb☆7,817Updated 2 years ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,467Updated last year
- 🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List☆7,520Updated last year
- Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and n…☆10,314Updated this week
- PowerSploit - A PowerShell Post-Exploitation Framework☆12,601Updated 5 years ago
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,085Updated 4 months ago
- The Browser Exploitation Framework Project☆10,435Updated this week
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,379Updated 11 months ago
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆6,033Updated 3 weeks ago