danielmiessler / SecListsLinks
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
☆67,653Updated this week
Alternatives and similar repositories for SecLists
Users that are interested in SecLists are comparing it to the libraries listed below
Sorting:
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,753Updated 2 years ago
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆72,681Updated last week
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆12,395Updated 3 months ago
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆18,947Updated this week
- Directory/File, DNS and VHost busting tool written in Go☆13,141Updated last week
- Fast web fuzzer written in Go☆15,284Updated 7 months ago
- Attack Surface Management Platform☆9,271Updated 2 months ago
- Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren…☆9,155Updated 2 years ago
- Impacket is a collection of Python classes for working with network protocols.☆15,218Updated last week
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆9,998Updated 2 months ago
- Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and n…☆10,637Updated last week
- CTF framework and exploit development library☆13,112Updated this week
- Web application fuzzer☆6,359Updated last year
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,283Updated 3 weeks ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,631Updated last year
- Most advanced XSS scanner.☆14,578Updated 7 months ago
- Nikto web server scanner☆9,909Updated 3 weeks ago
- The legacy Exploit Database repository - New repo located at https://gitlab.com/exploit-database/exploitdb☆7,831Updated 3 years ago
- A swiss army knife for pentesting networks☆8,999Updated 2 years ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,753Updated 2 years ago
- The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.☆13,859Updated last year
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,446Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆12,751Updated 5 years ago
- Next generation web scanner☆6,285Updated 2 months ago
- 🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List☆7,806Updated last year
- Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mand…☆7,435Updated 2 months ago
- Adversary Emulation Framework☆10,370Updated this week
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,268Updated 7 months ago
- Open-Source Phishing Toolkit☆13,391Updated last year
- Automated All-in-One OS Command Injection Exploitation Tool.☆5,547Updated last week