SecLists Official Repository banner
danielmiessler danielmiessler

SecLists Official Repository

Security community intermediate

Description

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more. The goal is to enable a security te

Installation

This entry records only its repository, not the path inside it, so there is no exact command to give. Open the source below and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

README

About SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more. The goal is to enable a security tester to pull this repository onto a new testing box and have access to every type of list that may be needed.

This project is maintained by [Daniel Miessler](https://danielmiessler.com/), [Jason Haddix](https://twitter.com/Jhaddix), [Ignacio Portal](https://github.com/ItsIgnacioPortal) and [g0tmi1k](https://blog.g0tmi1k.com/).


Repository details


Install

**Zip**

wget -c https://github.com/danielmiessler/SecLists/archive/master.zip -O SecList.zip && unzip SecList.zip && rm -f SecList.zip

**Git: No commit history (faster)**

git clone --depth 1 https://github.com/danielmiessler/SecLists.git

**Git: Complete**

git clone https://github.com/danielmiessler/SecLists.git

**Kali Linux** ([Tool Page](https://www.kali.org/tools/seclists/))

apt -y install seclists

**BlackArch** ([Tool Page](https://blackarch.org/tools.html))

sudo pacman -S seclists

Attribution

See [CONTRIBUTORS.md](CONTRIBUTORS.md)


Contributing

See [CONTRIBUTING.md](CONTRIBUTING.md)


Similar Projects

  • Assetnote Wordlists: High quality wordlists for content and subdomain discovery which are automatically updated every month.
  • fuzz.txt: Wordlists of "potentially dangerous" files.
  • FuzzDB: Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
  • PayloadsAllTheThings: A list of useful payloads and bypass for Web Application Security and Pentest/CTF

...