Ross ROSS = Recommend OSS · open-source software intelligence for agents

ihebski/DefaultCreds-cheat-sheet resource

One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️ observed · 2026-08-28

github.com/ihebski/DefaultCreds-cheat-sheet · homepage · Python · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

64/100

  • Activity 91
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2070
  • days_rel: 543
  • days_push: 55
  • n_releases_24m: 1

Full methodology

Adoption not part of the score

6725 stars · 784 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

A searchable dataset and CLI tool aggregating default usernames and passwords for thousands of products and vendors, sourced from projects like changeme, routersploit, and SecLists. It helps pentesters find default credentials during engagements and blue teams identify devices that still use factory passwords.

Use cases

  • look up default credentials for tomcat or other products during a pentest
  • find devices on the network still using factory default passwords
  • search default login password pairs for a vendor
  • audit company infrastructure for default credential vulnerabilities
  • get a default password list for bug bounty recon

When to choose

  • you need a quick CLI lookup of default creds for a specific product
  • you want a curated, regularly updated dataset of vendor default credentials
  • you're doing OWASP WSTG-ATHN-02 default credential testing

When to avoid

  • you need automated credential spraying against live targets - use changeme or routersploit instead
  • you need brute-forcing or password cracking rather than known default credentials

Facets

dataset · maturity active

search-engine security cli security penetration-testing developer-tools windows cli python default-credentials cheat-sheet pentesting red-team blue-team password-database bugbounty linux macos

3 sources

Member repositories

RepositoryRoleHealth v2
ihebski/DefaultCreds-cheat-sheetmain64

For agents

markdown · JSON · MCP: product_card(name="ihebski/DefaultCreds-cheat-sheet")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem