# SexyBeast233/SecDictionary

实战沉淀字典

Repository: https://github.com/SexyBeast233/SecDictionary
Canonical: https://ross.abutalabs.com/products/secdictionary
License Family: other
Last push: 2026-08-16T04:29:55+00:00

## Health v2 (maintenance only)
Score: 75/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 98, release rhythm 35, longevity 92
- inputs: {"age_days": 1290, "days_push": 17, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1581, forks 200 (observed 2026-08-28T04:05:07.017897+00:00)

## What it is
A curated collection of wordlists and dictionaries for security testing, built from real-world penetration testing experience. It includes dictionaries for leaked files, backup files, API parameters, usernames/passwords, phone numbers, and character fuzzing.

## Use cases
- directory brute-forcing with ffuf or spray
- finding leaked and backup files on web servers
- fuzzing API endpoints and parameters
- testing default credentials on hardware devices
- discovering hidden paths with character enumeration
- SQL injection and XSS payload wordlists

## When to choose
- you need battle-tested Chinese-context wordlists for web fuzzing
- you want dictionaries for backup files and leaked file discovery
- you need parameter and API keyword lists for recursive path probing

## When to avoid
- you need a general-purpose English wordlist like SecLists
- you need a tool rather than dictionary data
- you require guaranteed top-password quality lists

## Facets
- artifact type: dataset
- maturity: active
- function: security, penetration-testing, data-generation
- domain: security, penetration-testing, developer-tools
- platform: cross-platform
- tags: wordlists, fuzzing-dictionaries, dirbusting, pentest-dictionaries, chinese

## Member repositories
- SexyBeast233/SecDictionary (main) score 75

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:07.017897+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:56:21.417344+00:00, confidence not recorded.
  - readme: https://github.com/SexyBeast233/SecDictionary (fetched 2026-08-28T04:05:07.017897+00:00, sha 02194fe40d4f)
- Data as of 2026-08-30T08:39:29.467469+00:00.
