Ross ROSS = Recommend OSS · open-source software intelligence for agents

TheKingOfDuck/fuzzDicts resource

You Know, For WEB Fuzzing ! observed · 2026-08-28

github.com/TheKingOfDuck/fuzzDicts · Python observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2664
  • days_rel: n/a
  • days_push: 1024
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

8422 stars · 2474 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

A curated collection of Chinese-community-maintained wordlists for web penetration testing, covering parameters, XSS payloads, usernames, passwords, directories, SQLi, SSRF, XXE, subdomains, and more. It is designed to be used with fuzzing tools like Burp Suite, wfuzz, and ffuf.

Use cases

  • brute force login forms with username and password wordlists
  • fuzz hidden directories and files on a web server
  • discover hidden API parameters
  • test for XSS vulnerabilities with payload lists
  • enumerate subdomains during reconnaissance
  • find default credentials for routers and security appliances

When to choose

  • you need a comprehensive, categorized set of fuzzing dictionaries for web pentesting
  • you want wordlists tuned for Chinese web applications and common Chinese passwords
  • you use tools like Burp Intruder, wfuzz, or ffuf and need payload sources

When to avoid

  • you need actively maintained wordlists with frequent updates
  • you require a license-clarified redistribution of the data
  • you need non-web fuzzing dictionaries (e.g., binary or protocol fuzzing)

Facets

dataset · maturity maintenance

fuzzing security penetration-testing security penetration-testing web-development cross-platform wordlists dictionary brute-force pentesting burpsuite wfuzz

1 source

Member repositories

RepositoryRoleHealth v2
TheKingOfDuck/fuzzDictsmain32

For agents

markdown · JSON · MCP: product_card(name="TheKingOfDuck/fuzzDicts")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem