3 रिपॉजिटरी
Curated collections of factory-set usernames and passwords for hardware and software products used in security assessments.
Distinct from Security References: Distinct from Security References: focuses specifically on default credential lookups for penetration testing, not general security references or cheat sheets.
Explore 3 awesome GitHub repositories matching part of an awesome list · Default Credential Databases. Refine with filters or upvote what's useful.
AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing. It serves as a reference resource covering common web vulnerabilities and exploitation methods for security researchers, providing a structured approach to identifying and exploiting web application security flaws in bug bounty programs. The repository covers a wide range of attack categories including authentication bypass, cross-site scripting injection, server-side request forgery, web cache poisoning, and business logic abuse. It includes techniques for bypassing access co
Includes methods for testing default credentials as part of security assessment workflows.
DefaultCreds-cheat-sheet is a searchable reference database of default usernames and passwords for thousands of hardware and software products, designed for use during security assessments. It functions as a curated directory that maps vendor products to their known factory-set login credentials, enabling rapid lookup during penetration testing and security preparation workflows. The tool is delivered as a single-file client application with no backend dependencies, serving static content from any web server or local file system for offline use. It stores credential mappings in a flat JSON da
Provides a searchable database of default usernames and passwords for thousands of products during security assessments.
CUPP is a suite of tools for extracting default credentials from aggregated databases, generating password dictionaries from personal data, profiling targets interactively, and expanding wordlists from dictionary sources. It functions as a password dictionary generator and target profiling tool that collects personal details through interactive questions to build custom password lists for security testing. The project distinguishes itself through a modular command pipeline architecture that chains independent subcommands for downloading remote wordlists, parsing structured credential database
Parses default credentials from the Alecto database for security assessments.