Use for: discovering files
This list is automatically updated by a github action whenever any of the lists it's composed by is modified.
This list is a combination of the following wordlists:
big.txt
common.txt
raft-large-words-lowercase.txt
raft-large-words.txt
raft-medium-words-lowercase.txt
raft-medium-words.txt
raft-small-words-lowercase.txt
raft-small-words.txt
combined_directories.txt
Use for: discovering files and directories
This list is automatically updated by a github action whenever any of the lists it's composed by is modified.
This list is a combination of the following wordlists:
Perfect wordlist to discover directories and files on target site with tools like ffuf.
It was collected by parsing Alexa top-million sites for .DS_Store files (https://en.wikipedia.org/wiki/.DS_Store), extracting all the found files, and then extracting found file and directory names from around 300k real websites.
Then sorted by probability and removed strings with one occurrence.
resulted file you can download is below. Happy Hunting!
vulnerability-scan_j2ee-websites_WEB-INF.txt
Use for: discovering sensitive j2ee files exploiting a lfi