Ross ROSS = Recommend OSS · open-source software intelligence for agents

Stardustsky/SaiDict resource

弱口令,敏感目录,敏感文件等渗透测试常用攻击字典 observed · 2026-08-28

github.com/Stardustsky/SaiDict observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2854
  • days_rel: n/a
  • days_push: 1721
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1219 stars · 270 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A curated collection of attack dictionaries for penetration testing, including weak passwords, common usernames, sensitive directory and file name lists, and injection fuzzing payloads. It is organized into categories such as account credentials, middleware and service default passwords, and webshell passwords.

Use cases

  • brute forcing weak passwords on ssh, mysql, ftp, and remote desktop services
  • directory and file brute forcing to find sensitive files like backups, archives, and source code
  • fuzzing web applications for sql injection, xss, xxe, and ldap injection payloads
  • testing default credentials on middleware like tomcat, weblogic, and zabbix
  • guessing webshell passwords during authorized penetration tests

When to choose

  • you need a comprehensive Chinese-language-oriented wordlist collection for penetration testing
  • you want ready-made dictionaries for common services, middleware, and sensitive file discovery
  • you are doing authorized security assessments and need credential and fuzzing wordlists

When to avoid

  • you need actively maintained wordlists with recent updates
  • you require a tool that automates attacks rather than raw wordlist data
  • your target environment is unrelated to the Chinese web ecosystem covered by many entries

Facets

dataset · maturity maintenance

penetration-testing security fuzzing security penetration-testing developer-tools cross-platform wordlist dictionary brute-force fuzzing-dictionaries weak-passwords sensitive-files dirbusting

1 source

Member repositories

RepositoryRoleHealth v2
Stardustsky/SaiDictmain32

For agents

markdown · JSON · MCP: product_card(name="Stardustsky/SaiDict")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem