469 Commits

Author SHA1 Message Date
lxb
844400b9b0
Golang common routes 2016-12-20 10:01:31 +11:00
DarrenRainey
bf6cb3bb46 Create top-20-common-SSH-passwords
Added 20 common SSH passwords
2016-11-19 22:01:08 +00:00
ajazevedo
2d0ffa68fe Update web-extensions.txt
added .css and .js
2016-11-08 13:33:38 -02:00
Wojtek Przibylla
5b3ed33eeb Added string sap/admin/index.html that bypasses the guest
authentication for the ICM Administration interface. Related to the URL sap/admin/default.html string which requires authentication.
2016-11-07 16:20:52 +01:00
Vitaly Salnikov
e9d1637b1f Hi, I think this curl's supported protocols should be here. For example it can be useful for finding SSRF vulnerabilities.
* SSRF bible. Cheatsheet https://docs.google.com/document/d/1v1TkWZtrhzRLy0bYXBcdLUedXGb9njTNIJXa3u9akHM/edit
* cURL's protocols https://curl.haxx.se/libcurl/c/CURLOPT_PROTOCOLS.html
2016-11-02 00:59:15 +03:00
Alex Lauerman
0f44883574 Merge pull request #2 from alexlauerman/LinuxFileList
Created Linux File List
2016-10-29 20:51:01 -05:00
Alex Lauerman
0097d1823b Created Linux File List
Generated a trimmed list of common Linux files, useful in blindly fuzzing path traversal and XXE.
2016-10-29 20:50:31 -05:00
Alex Lauerman
3782512cda Merge pull request #1 from alexlauerman/xxe
Improved test cases
2016-10-29 20:12:19 -05:00
Alex Lauerman
382c44dd97 Improved test cases
Includes parameter entities and OOB test case.
2016-10-29 20:11:36 -05:00
ethicalhack3r
f5b24cca1e Add .pht extention 2016-10-27 12:06:48 +02:00
Dax Labrador
e3b31c897c added word alpha iteration 2016-10-26 09:46:24 +08:00
Dax Labrador
de4038fdf6 added word bankaccount to iteration 2016-10-26 09:32:18 +08:00
Dax Labrador
a3394e3bc0 added word iteration tikbalang 2016-10-26 09:30:34 +08:00
Dax Labrador
d7c16afc93 added word honda, suzuki, semperfi 2016-10-26 09:28:25 +08:00
Dax Labrador
8683713d27 added word starwars 2016-10-26 09:24:33 +08:00
Dax Labrador
1025fb2e3f added word baseball 2016-10-26 09:22:55 +08:00
Dax Labrador
9e6d6c75de added word qwerty 2016-10-26 09:21:53 +08:00
Rbcafe
249d5690f3 Create symphony_267_xslt_cms.txt
Files inside "Symphony XSLT CMS 2.6.7"

Best regards
@rbcafe
2016-10-13 10:32:38 +02:00
Rbcafe
7c60ee37bc Create symfony_315_demo.txt
Files inside "Symfony Demo Application"
2016-10-13 10:24:23 +02:00
Anthony Cozamanis
a6c42fe12b Update names.txt
- Added names
- Converted to lowercase as most manipulation will happen with app rules, like hashcat
- Sorted
2016-10-11 11:36:58 +08:00
Anthony Cozamanis
fe52420bc0 Merge pull request #2 from danielmiessler/master
updating local fork
2016-10-11 11:27:43 +08:00
Rbcafe
859a46344c Create nginx.txt 2016-10-10 10:49:35 +02:00
Dax Labrador
e37110ac58 added password iteration 2016-10-09 05:56:56 +08:00
Daniel Miessler
a823fad248 Mirai botnet creds. 2016-10-08 02:07:25 +01:00
espreto
2d6a10df13 Add a wordlist for medical devices. 2016-09-30 02:38:20 -03:00
Jan Rude
1ae36cced4 Lizard Squad Passwords
passwords from the lizard squad hack by anonymous.
2016-09-23 13:37:51 +02:00
Tiago Sintra
2fc85ee68e Update Sucuri_Top_Wordpress_Passwords.txt
Remove prefixed space
2016-09-11 20:15:40 +02:00
Michael Henriksen
d3ade37799 Fix spelling of my name in README 2016-09-09 14:14:40 +02:00
Michael Henriksen
7c63242d0c Update and reorder default passwords list 2016-09-09 14:14:22 +02:00
Jan Rude
e5c9f1409e Merge pull request #1 from whoot/version_install-files
Version and Install files
2016-09-08 09:32:42 +02:00
Jan Rude
1ac97d75e5 Version and Install files
Added new Changelog/install files as seen in Typo3 and Tomcat
2016-09-08 09:31:49 +02:00
Dax Labrador
2d17c896fc added banana 1337speak 2016-08-18 02:34:59 +08:00
Daniel Miessler
32fafb3508 Merge branch 'master' of github.com:danielmiessler/SecLists 2016-08-17 11:14:26 -07:00
Daniel Miessler
8ef8694256 Merge pull request #67 from henshin/patch-1
Support for CVE-2007-1860 mod_jk double encoding
2016-08-17 11:09:14 -07:00
Daniel Miessler
6b18f7ed45 Merge pull request #68 from DarkLighting/master
added a couple of folders to Vignette lists
2016-08-17 11:09:02 -07:00
Daniel Miessler
04544c7127 Merge pull request #71 from semprix/master
Create 1337speak.txt
2016-08-17 11:08:37 -07:00
Daniel Miessler
738b017f70 Merge pull request #72 from radarhere/patch-1
Fixed typo
2016-08-17 11:08:02 -07:00
Daniel Miessler
aed4305f68 Merge branch 'master' of github.com:danielmiessler/SecLists 2016-08-17 11:03:24 -07:00
Andrew Murray
96aae467b3 Fixed typo 2016-08-07 16:24:15 +10:00
Dax Labrador
54970eab02 Create 1337speak.txt
Collection of 1337sp34k passwords
2016-08-02 07:41:10 +08:00
Ailton Caetano
022b00b4c9 added a couple of folders to Vignette lists 2016-07-29 19:04:07 -03:00
Tiago Sintra
fff5faa976 Support for CVE-2007-1860 mod_jk double encoding
Added paths that will check access control bypass using double encoding (CVE-2007-1860) that could allow a remote user to access Tomcat's administration panel.
Based on the scenario demonstrated on https://pentesterlab.com/exercises/cve-2007-1860/course
2016-07-28 14:10:42 +02:00
Daniel Miessler
c8741490de Merge pull request #65 from kurobeats/master
Update snmp.txt with Nipper snmp lists
2016-07-25 12:18:05 -07:00
Anthony Cozamanis
28b13864aa Update snmp.txt
Added snmp word lists from Nipper. Sorted list with the exception of public and private
2016-07-21 11:21:56 +08:00
Anthony Cozamanis
6095c4198f Merge pull request #1 from danielmiessler/master
updating local
2016-07-21 11:16:00 +08:00
Daniel Miessler
a70bd0234d Merge pull request #61 from ethicalhack3r/master
Add common router IPs
2016-07-20 10:59:58 -07:00
Daniel Miessler
bd2ffdc833 Merge pull request #60 from vortexau/master
Added default passwords for Kodi, OSMC and Supercook
2016-07-20 10:59:41 -07:00
Daniel Miessler
6e49f44c8e Updated credits with a name correction. 2016-07-20 10:59:20 -07:00
Daniel Miessler
7fe8372205 Merge pull request #64 from 0x90shell/master
MuslimMatch
2016-07-20 10:57:19 -07:00
Daniel Miessler
b012b32ee4 Added 0xsobky's Ultimate XSS Polyglot. 2016-07-20 10:54:35 -07:00