wordlist
9 resources across 1 kinds
References
- Open ↗Common paths wordlistdual-use
~4,700 common web paths and filenames for content discovery. Hosted here for authorized testing.
- Open ↗RAFT medium directories wordlistdual-use
~30,000 directory names (RAFT medium) for content discovery. Hosted here for authorized testing.
- Open ↗API endpoints wordlistdual-use
Common REST API route segments for endpoint discovery. Hosted here for authorized testing.
- Open ↗HTTP parameters wordlistdual-use
~6,400 common HTTP parameter names for parameter discovery. Hosted here for authorized testing.
- Open ↗GraphQL fields wordlistdual-use
Common GraphQL field names for schema exploration. Hosted here for authorized testing.
- Open ↗GraphQL arguments wordlistdual-use
Common GraphQL argument names for schema exploration. Hosted here for authorized testing.
- Open ↗Sensitive files wordlistdual-use
Exposed-file name checks (.git, .env, backups, configs). Hosted here for authorized testing.
- Open ↗
Parameter names used to probe for prototype pollution. Hosted here for authorized testing.
- Open ↗Assetnote Wordlistsdual-use
Automated and manually-curated wordlists for content and subdomain discovery, regenerated monthly (via Commonspeak2 and GitHub Actions) targeting popular internet technologies. Apache-2.0 licensed, served via CDN with a browsable DataTables interface and bulk wget download.