SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Browse cluster: Claude AI Agent Frameworks & MCP Tools →SecLists is a comprehensive collection of multiple types of lists used during security assessments, including usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, and web shells. The repository contains specialized datasets for testing language models' safety boundaries—such as jailbreak prompts collected from platforms like Reddit and a forbidden question set covering 13 ethical scenarios derived from OpenAI's usage policies—as well as wordlists for discovering DNS subdomains, fuzzing web application APIs, and testing legacy systems like CGI scripts and Content Management Systems. The LLM testing materials, particularly those in the Ethical and Safety Boundaries directory, originate from research by Xinyue Shen, Zeyuan Chen, Michael Baces, Yun Shen, and Yang Zhang for an ACM CCS 2024 paper on jailbreak prompts.