Security passwords
Skill Eyadkelleh/awesome-skills-security/skills/security-passwords
Top password lists for authorized security testing: common passwords, darkweb leaks, worst passwords. Curated essentials (<10MB).From its SKILL.md
npx -y skills add Eyadkelleh/awesome-skills-security --skill security-passwordsAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- no licenseNo license file was found in the repository. Code published without one is not open source by default, so using it at work is a question for whoever answers licensing questions where you are.
SKILL.md
2.5 KB, 563 tokens by cl100k_base, as published. Nobody here has run it
SecLists Passwords (Curated)
Description
Top password lists for authorized security testing: common passwords, darkweb leaks, worst passwords. Curated essentials (<10MB).
Source: SecLists/Passwords Repository: https://github.com/danielmiessler/SecLists License: MIT
When to Use This Skill
Use this skill when you need:
- Password spraying (authorized)
- Credential testing
- Password policy validation
- Brute force testing (authorized)
- Authentication testing
⚠️ IMPORTANT: Only use for authorized security testing, bug bounty programs, CTF competitions, or educational purposes.
Key Files in This Skill
500-worst-passwords.txt - 500 worst passwords10k-most-common.txt - 10K common passwords100k-most-used-passwords-NCSC.txt - 100K passwordsdarkweb2017_top-10000.txt - 10K from breachesprobable-v2_top-12000.txt - 12K probable passwords
Usage Example
# Access files from this skill
import os
# Example: Load patterns/payloads
skill_path = "references/Passwords"
# List all available files
for root, dirs, files in os.walk(skill_path):
for file in files:
if file.endswith('.txt'):
filepath = os.path.join(root, file)
print(f"Found: {filepath}")
# Read file content
with open(filepath, 'r', errors='ignore') as f:
content = f.read().splitlines()
print(f" Lines: {len(content)}")
Security & Ethics
Authorized Use Cases ✅
- Authorized penetration testing with written permission
- Bug bounty programs (within scope)
- CTF competitions
- Security research in controlled environments
- Testing your own systems
- Educational demonstrations
Prohibited Use Cases ❌
- Unauthorized access attempts
- Testing without permission
- Malicious activities
- Privacy violations
- Any illegal activities
Complete SecLists Collection
This is a curated subset of SecLists. For the complete collection:
- Full repository: https://github.com/danielmiessler/SecLists
- Size: 4.5 GB with 6,000+ files
- All categories: Passwords, Usernames, Discovery, Fuzzing, Payloads, Web-Shells, Pattern-Matching, AI, Miscellaneous
Generated by Skill Seeker | SecLists Passwords Collection License: MIT - Use responsibly with proper authorization
What ships with it: 10 files
1087.5 KB alongside SKILL.md
references/
- Passwords/Common-Credentials/100k-most-used-passwords-NCSC.txt816.0 KB
- Passwords/Common-Credentials/10k-most-common.txt71.3 KB
- Passwords/Common-Credentials/2024-197_most_used_passwords.txt1.6 KB
- Passwords/Common-Credentials/500-worst-passwords.txt3.4 KB
- Passwords/Common-Credentials/best1050.txt7.8 KB
- Passwords/Common-Credentials/darkweb2017_top-10000.txt80.7 KB
- Passwords/Common-Credentials/darkweb2017_top-1000.txt8.0 KB
- Passwords/Common-Credentials/darkweb2017_top-100.txt802 B
- Passwords/Common-Credentials/probable-v2_top-12000.txt97.9 KB
- Passwords/Common-Credentials/top-passwords-shortlist.txt194 B