You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
g0tmi1k d5271820d0
Merge pull request #503 from Paradoxis/master
5 days ago
Discovery Merge pull request #465 from dee-see/patch-1 6 days ago
Fuzzing Removed destructive SQL statements 5 days ago
IOCs Fix #259 - Recover from bad merge 1 year ago
Miscellaneous Fix and extend German word list 4 weeks ago
Passwords Merge pull request #478 from LethargicLeprechaun/master 6 days ago
Pattern-Matching Update Angular dangerous functions 7 months ago
Payloads Add more zip-bombs 1 year ago
Usernames Fix issues with wordlists 2 months ago
Web-Shells standardisze line endings 3 months ago
.gitattributes added git attributes to keep line ends standardised 3 months ago
.gitignore Update Angular dangerous functions 7 months ago Update 2 years ago Update 2 months ago
LICENSE Create LICENSE 2 years ago Update credit URLs 4 months ago


About SecLists

SecLists is the security tester’s companion. It’s a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more. The goal is to enable a security tester to pull this repository onto a new testing box and have access to every type of list that may be needed.

This project is maintained by Daniel Miessler, Jason Haddix, and g0tmi1k.



wget -c -O \
  && unzip \
  && rm -f

Git (Small)

git clone --depth 1

Git (Complete)

git clone

Kali Linux (Tool Page)

apt -y install seclists





Similar Projects


This project is licensed under the MIT license.

MIT License

NOTE: Downloading this repository is likely to cause a false-positive alarm by your anti-virus or anti-malware software, the filepath should be whitelisted. There is nothing in SecLists that can harm your computer as-is, however it’s not recommended to store these files on a server or other important system due to the risk of local file include attacks.