# Viralmaniar/Passhunt

Passhunt is a simple tool for searching of default credentials for network devices, web applications and more. Search through 523 vendors and their 2084 default passwords.

Repository: https://github.com/Viralmaniar/Passhunt
Canonical: https://ross.abutalabs.com/products/passhunt
Homepage: https://github.com/Viralmaniar/Passhunt
Language: Python
License: GPL-3.0
License Family: copyleft
Topics: password, default-credentials, default-password, security, pentest-tool, penetration-testing, security-testing, cybersecurity
Last push: 2018-12-23T06:58:11+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3153, "days_push": 2810, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1303, forks 188 (observed 2026-08-28T04:04:18.396278+00:00)

## What it is
Passhunt is a Python-based command-line tool for searching default credentials across 523 vendors and 2084 default passwords for network devices, web applications, and more. It provides an interactive menu to list supported vendors and look up their factory-default usernames and passwords, with data sourced from cirt.net.

## Use cases
- find default passwords for network devices before a pentest engagement
- look up factory default credentials for a router or switch vendor
- search default logins for web applications during a security audit
- check which vendors are covered by a default credential database
- verify that deployed hardware no longer uses vendor default passwords
- quickly retrieve default username and password pairs from the command line

## When to choose
- you need an offline, scriptable lookup of vendor default credentials during penetration testing
- you want a lightweight Python tool with no heavy dependencies to check default passwords
- you are auditing network devices or web apps for unchanged factory-default logins

## When to avoid
- you need active credential testing or brute-forcing rather than passive lookup of known defaults
- you require an up-to-date credential database with ongoing vendor updates, as the project has seen little activity since 2018
- you need a GUI or web interface instead of an interactive terminal menu

## Facets
- artifact type: cli-tool
- maturity: maintenance
- function: security, penetration-testing, search-engine, cli
- domain: security, penetration-testing, developer-tools
- platform: python, cli, cross-platform, windows
- tags: default-credentials, default-passwords, password-search, pentest-tool, network-devices, web-applications, vendor-database, security-testing, interactive-menu, cirt-net, command-line, linux, macos

## Member repositories
- Viralmaniar/Passhunt (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:18.396278+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:51:10.773017+00:00, confidence not recorded.
  - readme: https://github.com/Viralmaniar/Passhunt (fetched 2026-08-28T04:04:18.396278+00:00, sha 8e16c5ca60fd)
  - homepage: https://github.com/Viralmaniar/Passhunt (fetched 2026-08-29T12:09:17.140526+00:00, sha 17df71a2f30f)
- Data as of 2026-08-30T08:39:29.467469+00:00.
