Web Wordlists

This project provides a collection of curated wordlists optimized for web pentesting. It can help you during the discovery part, or to bypass a WAF by finding an unfiltered keyword.

Drupal

Scenario: Use the plugins list to discover which plugins are installed on the targeted Drupal server.

HTML

Scenario: Use the HTML tags/events list to enumerate which tags/events are allowed/blocked by a WAF.

SQL Keywords

Scenario: Use the SQL keywords list to enumerate which keywords are allowed/blocked by a WAF.