danielmiessler / SecListsLinks
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
☆67,038Updated this week
Alternatives and similar repositories for SecLists
Users that are interested in SecLists are comparing it to the libraries listed below
Sorting:
- Fast web fuzzer written in Go☆15,141Updated 6 months ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,725Updated 2 years ago
- In-depth attack surface mapping and asset discovery☆13,777Updated this week
- Directory/File, DNS and VHost busting tool written in Go☆12,894Updated last week
- Impacket is a collection of Python classes for working with network protocols.☆15,102Updated last week
- Fast subdomains enumeration tool for penetration testers☆10,706Updated last year
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆71,768Updated last week
- Web application fuzzer☆6,336Updated last year
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆18,771Updated last week
- Attack Surface Management Platform☆9,207Updated last month
- Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren…☆9,115Updated 2 years ago
- Nikto web server scanner☆9,829Updated last week
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆25,614Updated this week
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆12,311Updated 2 months ago
- Fast passive subdomain enumeration tool.☆12,572Updated this week
- A collection of awesome penetration testing resources, tools and other shiny things☆24,501Updated 4 months ago
- CTF framework and exploit development library☆13,050Updated last week
- Web path scanner☆13,679Updated last month
- Next generation web scanner☆6,190Updated last month
- Adversary Emulation Framework☆10,237Updated this week
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,586Updated last year
- A swiss army knife for pentesting networks☆8,973Updated last year
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,227Updated last month
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,689Updated 2 years ago
- Automated All-in-One OS Command Injection Exploitation Tool.☆5,518Updated last week
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,188Updated 6 months ago
- A little tool to play with Windows security☆21,008Updated 6 months ago
- The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.☆18,453Updated 3 weeks ago
- Most advanced XSS scanner.☆14,487Updated 6 months ago
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆8,558Updated last week