SecLists
SecLists copied to clipboard
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensi...
Vulnerable Line : SQL Injection has been found. Change this code to no longer construct SQL queries directly from user-controlled data. Calling method \iaDb,1::getAll(["var"]) in (216)\iaDb,1::_get(["row","MAX(order)","var","var","1"]) that outputs using tainted...
I've added some general advice for writing README entries when making a pull request. This also adds a note to the github PR template highlighting the importance of checking the...
This fixes #1014 For context, see: https://www.jetbrains.com/teamcity/
Added in https://github.com/danielmiessler/SecLists/commit/47137336242d0dd69f141e92291ac8c8a686cb03 the `subdomains-top1million-*` wordlists are now almost 10 years old. They are too outdated for detecting recent infrastructure, so I thought adding a warning about this might be...
The trickest wordlist seems to have inconsistent line-endings in the upstream. This fix will automatically normalize the line endings before commiting the wordlist update into Seclists. The pull request #1015...
The current email that seclists uses is `[email protected]`, which belongs to `throwaway-people` according to github. This account is user owned as seen in this [issue](https://github.com/nodejs/node/issues/1893) opened by that user. Should...
https://github.com/danielmiessler/SecLists/blame/0a0577d706345e3126c435338e0ca12e63ab7d62/Passwords/Pwdb-Public/Wordlists/ignis-10K.txt#L6487Dana #1017
Those OpenAPI paths have been found thanks to ChatGPT plugins. Here some examples: - https://github.com/dannyp777/ChatGPT-AI-Plugin-Manifest-Lists/blob/main/list-openapi-yaml.txt - https://github.com/dannyp777/ChatGPT-AI-Plugin-Manifest-Lists/blob/main/list-ai-plugin-json.txt