GitHub 中文社区
回车: Github搜索    Shift+回车: Google搜索
论坛
排行榜
趋势
登录

©2025 GitHub中文社区论坛GitHub官网网站地图GitHub官方翻译

  • X iconGitHub on X
  • Facebook iconGitHub on Facebook
  • Linkedin iconGitHub on LinkedIn
  • YouTube iconGitHub on YouTube
  • Twitch iconGitHub on Twitch
  • TikTok iconGitHub on TikTok
  • GitHub markGitHub’s organization on GitHub
danielmiessler

danielmiessler / SecLists

星标63.6 k
复刻24.41 k

SecLists 是安全测试员工作伴侣。该仓库整理了大量用于安全测试的清单集合,清单中包括弱口令,常用用户名,敏感数据特征码、模糊测试载荷等。


问题 官网
 
Loading

关于

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

owasp.org
创建时间

2012-02-19

是否国产

否

  修改时间

2025-06-24T00:31:11Z


语言

  • PHP53.1%
  • Python15.6%
  • Classic ASP11.7%
  • Shell7.4%
  • Perl3.9%
  • Java2.8%
  • ASP.NET2.5%
  • ColdFusion1.9%
  • HTML1.1%
  • 其他0.01%


该仓库已收录但尚未编辑。项目介绍及使用教程请前往 GitHub 阅读 README


0 条讨论

登录后发表评论

danielmiessler 的其他开源项目

danielmiessler/fabric
Daniel Miessler
fabric
Daniel Miessler@danielmiessler

Fabric is an open-source framework for augmenting humans using AI. It provides a modular system for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.

人工智能augmentationflourishinglifework
JavaScript31.59 k
4 天前
Daniel Miessler
RobotsDisallowed
Daniel Miessler@danielmiessler

A curated list of the most common and most interesting robots.txt disallowed directories.

Shell1.45 k
3 年前
Daniel Miessler
Source2URL
Daniel Miessler@danielmiessler

Parse source code directories and output list of URLs that are then sent through a proxy.

145
3 年前

您可能感兴趣的

swisskyrepo/PayloadsAllTheThings
Swissky
PayloadsAllTheThings
Swissky@swisskyrepo

#夺旗赛 (CTF) 和网络安全资源#该仓库整理了Web安全相关攻击示例代码和资源

pentestpayloadbypassWeb appHacking
Python66.17 k
1 个月前
grok-1
@xai-org

大模型Grok-1开源

Python50.29 k
10 个月前
ffuf
@ffuf

Fast web fuzzer written in Go

fuzzerpentestingCybersecurityWeb
Go14.16 k
2 个月前
OJ Reeves
gobuster
OJ Reeves@OJ

Gobuster是一款用于网站目录/文件、DNS、虚拟主机vhost暴力穷举的工具,使用Go编写

Gopentesting工具dnsWeb
Go12.03 k
7 天前
Lissy93/web-check
web-check
@Lissy93

🕵️‍♂️ All-in-one OSINT tool for analysing any website

OSINT隐私安全sysadmin
TypeScript25.31 k
2 个月前
peass-ng/PEASS-ng
PEASS-ng
@peass-ng

Windows、Linux/Unix*、MacOS 提权脚本合集

enumerationLinuxUnixBashShell
C#17.75 k
18 天前
ProjectDiscovery
nuclei
ProjectDiscovery@projectdiscovery

Nuclei 是一个基于YAML模板,自定义的漏洞扫描工具。

cve-scannersubdomain-takeovernuclei-enginevulnerability-detectionvulnerability-assessment
Go23.74 k
5 小时前
Open-Sora
@hpcaitech

Open-Sora: 完全开源的高效复现类Sora视频生成方案

Python26.74 k
2 个月前
trimstray
the-book-of-secret-knowledge
trimstray@trimstray

#夺旗赛 (CTF) 和网络安全资源#该仓库收集了一堆有用的工具、链接、技术博客、CheatSheet等等

Awesome ListslistsmanualsHackathon-Kit
174.21 k
7 个月前
dirsearch
@maurosoria

Web path scanner

fuzzerFuzzing/Fuzz testingPython安全dirsearch
Python13.03 k
7 天前
awesome-osint
@jivoi

#夺旗赛 (CTF) 和网络安全资源#😱 A curated list of amazingly awesome OSINT

Awesome ListsOSINTWebsite
21.72 k
3 天前
FuzzDB Project
fuzzdb
FuzzDB Project @fuzzdb-project

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP8.56 k
2 年前
Openwall
john
Openwall@openwall

John the Ripper jumbo - advanced offline password cracker, which supports hundreds of hash and cipher types, and runs on many operating systems, CPUs, GPUs, and even some FPGAs

johnCripperpasswordjtr
C11.52 k
4 天前
screenshot-to-code
@abi

上传截图通过GPT生成HTML/Tailwind/JavaScript代码

Python70.22 k
5 天前
sqlmapproject
sqlmap
sqlmapproject@sqlmapproject

#安全#sqlmap 是一个开源的渗透测试工具,可以用来自动化的检测,利用SQL注入漏洞,获取数据库服务器的权限。它具有功能强大的检测引擎,针对各种不同类型数据库的渗透测试的功能选项,包括获取数据库中存储的数据,访问操作系统文件甚至可以通过带外数据连接的方式执行操作系统命令。

sql-injectiondetectionexploitationtakeoverPython
Python34.57 k
2 天前
Awesome-Hacking
@Hack-with-Github

#安卓#关于安全、黑客、渗透测试相关资源链接

Hacking安全Bug BountyAwesome ListsAndroid
93.96 k
5 个月前
OpenHands
@All-Hands-AI

#大语言模型#🙌 OpenHands: Code Less, Make More

agent人工智能大语言模型ChatGPTclaude-ai
Python59.07 k
11 分钟前
danielmiessler/fabric
Daniel Miessler
fabric
Daniel Miessler@danielmiessler

Fabric is an open-source framework for augmenting humans using AI. It provides a modular system for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.

人工智能augmentationflourishinglifework
JavaScript31.59 k
4 天前
OWASP/wstg
Web应用程序安全项目
wstg
Web应用程序安全项目@OWASP

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

best-practicesguideowaspBug Bountypenetration-testing
Dockerfile8.05 k
18 天前
Sublist3r
@aboul3la

Fast subdomains enumeration tool for penetration testers

Python10.42 k
1 年前