Web-Fuzzing-Box - A curated collection of fuzzing dictionaries & payloads for web security testing. Brute force, directory enumeration, vulnerability exploitation — all in one place.
Passwords, usernames, paths, API endpoints, XSS/SQLi payloads, file upload bypasses, 403 bypasses, and more.
Many dictionaries are battle-tested — extracted from real-world engagements via the CaA project (Collector and Analyzer), not randomly generated wordlists.
Ready for Burp Intruder, ffuf, dirsearch, or any tool you throw at it.
Free. Open source.
https://t.co/eQizJvVkgS
#bugbounty #infosec #pentesting #fuzzing #wordlists