ランキングに戻る

ayoubfathi/leaky-paths

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.

fuzzingreconbugbountypentestsecuritysecurity-toolsnucleidirsearchffufdirbusterappsecpenetration-testing
スター成長
スター
1.2k
フォーク
171
週間成長
Issue
0
5001k
2021年1月2022年11月2024年9月2026年7月
README

About

A collection of special paths linked to major web frameworks and infrastructure projects, known juicy APIs, misconfigurations.. etc. These could be used for web-content discovery as the fastest way to find quick wins.

Goal

With the goal of providing the community with high-quality wordlists, I opened up this repository for contributions from anyone. This should be your go-to for quick hits on any targets, whether you're a Pentester using it for assessments, a security engineer using it as part of your external attack surface scanning, or a bug bounty hunter scanning a large number of subdomains/hosts for quick wins using high-quality wordlists. It contains:

  • PATHS associated with known misconfigurations, endpoints leaking sensitive data, granting access to some special parts of the app, etc.

  • Paths that typically expose API endpoints or server data. Perfect for finding more "hidden" APIs, interesting and verbose endpoints.

  • The direction this wordlist is taking is shifting away from CVEs, and focusing mostly on infrastructure and web-related paths from modern tech stacks, which often yield better returns.

Contribution

You are welcome to create a new pull request if you have a new endpoint to include or simply any unique paths that typically return juicy information.

Please keep in mind that the wordlist is intentionally kept short in order to focus only on high-quality endpoints, so it is not comprehensive enough for active scanning.

Please see Assetnote and SecLists for extended and large wordlists

関連リポジトリ
Hack-with-Github/Awesome-Hacking

A collection of various awesome lists for hackers, pentesters and security researchers

Creative Commons Zero v1.0 Universalhackingsecurity
116.6k10.5k
maurosoria/dirsearch

Web path scanner

PythonPyPIfuzzerfuzzing
14.5k2.4k
google/oss-fuzz

OSS-Fuzz - continuous fuzzing for open source software.

ShellApache License 2.0fuzzingsecurity
google.github.io/oss-fuzz
12.5k2.8k
foundry-rs/foundry

Foundry is a blazing fast, portable and modular toolkit for Ethereum application development written in Rust.

Rustcrates.ioApache License 2.0rustsolidity
getfoundry.sh
10.5k2.6k
spacejam/sled

the champagne of beta embedded databases

Rustcrates.ioApache License 2.0incredibly-spicydatabase
9.1k427
HypothesisWorks/hypothesis

The property-based testing library for Python

PythonPyPIOtherpythontesting
hypothesis.works
8.8k660
TheKingOfDuck/fuzzDicts

You Know, For WEB Fuzzing !

PythonPyPIfuzzingfuzz-testing
8.4k2.5k
AFLplusplus/AFLplusplus

The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!

CGNU Affero General Public License v3.0aflafl-fuzz
aflplus.plus
6.7k1.3k
google/syzkaller

syzkaller is an unsupervised coverage-guided kernel fuzzer

GoGo ModulesApache License 2.0linuxkernel
6.3k1.4k
secfigo/Awesome-Fuzzing

A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.

Creative Commons Zero v1.0 Universalawesome-listawesome
5.9k840
elceef/dnstwist

Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation

PythonPyPIApache License 2.0phishingtyposquatting
dnstwist.it
5.7k849
google/clusterfuzz

Scalable fuzzing infrastructure.

PythonPyPIApache License 2.0fuzzingsecurity
google.github.io/clusterfuzz
5.6k622