10 repositorios
Collections of character sequences and dictionaries used for testing password strength and brute-force resilience.
Explore 10 awesome GitHub repositories matching security & cryptography · Password Cracking Wordlists. Refine with filters or upvote what's useful.
Este proyecto sirve como un repositorio centralizado impulsado por la comunidad de conocimientos técnicos y recursos administrativos. Proporciona una taxonomía estructurada que agrega información dispar en un framework buscable, apoyando el aprendizaje continuo y la resolución rápida de problemas para administradores de sistemas y profesionales de ciberseguridad. Al mapear recursos a través de seguridad ofensiva, gestión de infraestructura y desarrollo de software, ofrece un camino unificado para la adquisición de habilidades y referencia profesional. El proyecto se define por una filosofía de diseño centrada en la línea de comandos, priorizando utilidades basadas en terminal e interfaces programables para facilitar una administración eficiente del sistema y flujos de trabajo de seguridad repetibles. Se distingue por un enfoque agnóstico a la plataforma, manteniendo documentación y guías operativas que siguen siendo aplicables a través de diversos entornos tipo Unix y basados en la nube. Esta integración modular de cadenas de herramientas permite a los usuarios componer entornos personalizados adaptados a tareas administrativas o de seguridad específicas. El repositorio cubre una amplia superficie de capacidades, incluyendo kits de herramientas integrales para auditoría de sistemas, gestión de redes y endurecimiento de infraestructura. Proporciona rutas de aprendizaje estructuradas para el desarrollo de habilidades en ciberseguridad, que van desde laboratorios de hacking ético y estándares de pruebas de penetración hasta evaluación de vulnerabilidades y mejores prácticas de configuración del sistema. La colección también abarca una amplia gama de herramientas de productividad, utilidades de diagnóstico y materiales educativos diseñados para agilizar el mantenimiento de rutina y mejorar la postura de seguridad general.
Manage extensive wordlists for brute-force testing to evaluate password strength and system resilience.
Hacker Roadmap is a community-driven repository that functions as a structured learning path and resource directory for cybersecurity and ethical hacking. It organizes complex security concepts into sequential modules, guiding users from fundamental knowledge to advanced technical exploitation skills through a curated collection of educational materials and professional development resources. The project distinguishes itself by acting as a centralized index that maps specialized third-party security software and isolated training environments to specific operational use cases. By aggregating
Automates credential recovery and wordlist generation to test authentication strength against brute force attempts.
This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar
Creates custom password lists based on specific patterns to facilitate brute-force recovery attacks.
Hydra is a network login password cracker and authentication tester designed to identify valid usernames and passwords through automated brute-force and dictionary attacks. It serves as a multi-protocol authentication tester capable of verifying credentials across a wide range of remote network services, including SSH, SMB, FTP, and various database listeners. The project is distinguished by its ability to execute parallelized password attacks against multiple servers and protocols simultaneously. It features a modular system for implementing diverse network authentication schemes, allowing f
Generates sequences of passwords based on specified lengths and character sets for brute-force attacks.
Probable-Wordlists is a collection of curated data resources providing password frequency lists, character masks, and common identity identifiers for security research. These resources serve as credential analysis tools to identify popular password trends and support the creation of secure credentials. The project provides password frequency wordlists and security research wordlists, including common usernames and top-level domains. It includes password recovery datasets featuring character masks and rule sets designed to analyze vulnerability patterns. The repository covers a broad range of
Provides real-world credential lists used to test the resilience of passwords against brute-force attacks.
CUPP is a suite of tools for extracting default credentials from aggregated databases, generating password dictionaries from personal data, profiling targets interactively, and expanding wordlists from dictionary sources. It functions as a password dictionary generator and target profiling tool that collects personal details through interactive questions to build custom password lists for security testing. The project distinguishes itself through a modular command pipeline architecture that chains independent subcommands for downloading remote wordlists, parsing structured credential database
Builds custom wordlists from personal details about a target for password cracking.
Patator is a multi-purpose brute force tool and modular security framework used for testing credentials, discovering network services, and fuzzing network protocols through automated payload delivery. It functions as a credential exhaustion framework and a network protocol fuzzer. The project provides specific utilities for recovering passwords from encrypted ZIP archives, enumerating DNS zones via forward and reverse queries, and identifying valid usernames and passwords across common network protocols. Its broader capabilities include web endpoint fuzzing, network service probing, and user
Recovers passwords from encrypted ZIP archives by testing a series of payload combinations.
Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe
Extracts text from social feeds to create custom password cracking dictionaries.
This project is a steganography analysis toolkit and digital forensics suite designed to detect, extract, and embed hidden data within image and audio files. It provides a dockerized security environment that bundles various analysis tools into a containerized workspace, including a media spectrogram visualizer for revealing visually hidden patterns. The toolkit features a dedicated brute force system for recovering password-protected messages using automated wordlists and candidate password testing. It distinguishes itself by providing rule-based wordlist generation that uses expansion patte
Implements rule-based generation, expansion patterns, and scraping to create custom wordlists for password recovery.
This project is a wireless network security toolkit designed for monitoring wireless traffic and exploiting vulnerabilities in network authentication protocols. It provides a suite of tools for scanning networks, capturing authentication handshakes, and testing the security of wireless access points. The toolkit includes a password wordlist generator to create custom lists for offline key recovery and a handshake cracker to recover encrypted keys using brute-force methods. It also features a vulnerability scanner specifically for testing the security of the Wireless Protected Setup pin system
Creates custom lists of potential password candidates for network key recovery.