danielmiessler / SecListsLinks
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
☆66,630Updated this week
Alternatives and similar repositories for SecLists
Users that are interested in SecLists are comparing it to the libraries listed below
Sorting:
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆71,299Updated 3 weeks ago
- Fast web fuzzer written in Go☆15,007Updated 6 months ago
- Directory/File, DNS and VHost busting tool written in Go☆12,778Updated 2 weeks ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,709Updated last year
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆18,606Updated this week
- Fast subdomains enumeration tool for penetration testers☆10,666Updated last year
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆12,227Updated last month
- In-depth attack surface mapping and asset discovery☆13,705Updated last month
- Impacket is a collection of Python classes for working with network protocols.☆15,019Updated last week
- Web application fuzzer☆6,316Updated last year
- A swiss army knife for pentesting networks☆8,951Updated last year
- Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren…☆9,093Updated 2 years ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,549Updated last year
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,657Updated 2 years ago
- Six Degrees of Domain Admin☆10,387Updated 3 months ago
- Web path scanner☆13,591Updated last week
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆8,058Updated last month
- Next generation web scanner☆6,148Updated 2 weeks ago
- Fast passive subdomain enumeration tool.☆12,465Updated last week
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,405Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆12,670Updated 5 years ago
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆6,097Updated 2 months ago
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,185Updated last month
- Attack Surface Management Platform☆9,160Updated last month
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆8,491Updated this week
- The Browser Exploitation Framework Project☆10,525Updated this week
- Nikto web server scanner☆9,762Updated last month
- Metasploit Framework☆36,820Updated this week
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆7,946Updated last month
- Adversary Emulation Framework☆10,147Updated this week