Skip to main content

Default Credentials Cheat Sheet

One place for all the default credentials to assist pentesters/blue Teamers during engagements, featuring default login/password details for various products sourced from multiple references.

P.S : Most of the credentials were extracted from changeme,routersploit and Seclists projects, you can use these tools to automate the process https://github.com/ztgrace/changeme , https://github.com/threat9/routersploit (kudos for the awesome work)

Installation & Usage

$ pip3 install defaultcreds-cheat-sheet
$ creds search tomcat
Operating System Tested
Linux(Kali,Ubuntu,Lubuntu) ✔️
Windows ✔️
macOS ✔️

Creds script

Usage Guide

# Search for product creds
➤ creds search tomcat                                                                                                      
+----------------------------------+------------+------------+
| Product                          |  username  |  password  |
+----------------------------------+------------+------------+
| apache tomcat (web)              |   tomcat   |   tomcat   |
| apache tomcat (web)              |   admin    |   admin    |
...
+----------------------------------+------------+------------+

# Update records
➤ creds update
Check for new updates...🔍
New updates are available 🚧
[+] Download database...

# Export Creds to files (could be used for brute force attacks)
➤ creds search tomcat export
+----------------------------------+------------+------------+
| Product                          |  username  |  password  |
+----------------------------------+------------+------------+
| apache tomcat (web)              |   tomcat   |   tomcat   |
| apache tomcat (web)              |   admin    |   admin    |
...
+----------------------------------+------------+------------+

[+] Creds saved to /tmp/tomcat-usernames.txt , /tmp/tomcat-passwords.txt 📥

Run creds through proxy

# Search for product creds
➤ creds search tomcat --proxy=http://localhost:8080

# update records
➤ creds update --proxy=http://localhost:8080

# Search for Tomcat creds and export results to /tmp/tomcat-usernames.txt , /tmp/tomcat-passwords.txt
➤ creds search tomcat --proxy=http://localhost:8080 export

Contribute

If you cannot find the password for a specific product, please submit a pull request to update the dataset.

Disclaimer

For educational purposes only, use it at your own responsibility.

Metadata

Release files for DefaultCreds_cheat_sheet 0.5.3.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for DefaultCreds_cheat_sheet 0.5.3.0
File Size Uploaded
defaultcreds_cheat_sheet-0.5.3.0.tar.gz 46.9 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for DefaultCreds_cheat_sheet 0.5.3.0
File Interpreter ABI Platform
defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl Python 3 none any Details

Total release size: 97.1 kB

Release files / defaultcreds_cheat_sheet-0.5.3.0.tar.gz

Download URL defaultcreds_cheat_sheet-0.5.3.0.tar.gz
Size 46.9 kB
Tags Source
SHA-256 checksum
How to use checksums
8162486fdf31af7aa8cac0bca49904c0d672b0149a504d3fec73e90fa2062719
BLAKE2b-256 checksum
How to use checksums
f3c6ef25beca151dac84e9990825fdc82a5c8af58866fbf05eac15b479667421
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via poetry/2.0.1 CPython/3.13.2 Linux/6.12.13-amd64

Release files / defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl

Download URL defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl
Size 50.2 kB
Tags Python 3
SHA-256 checksum
How to use checksums
b61051a9b08c80ce3e20fee79791c64c4ae9631ba07acc34e243fe17883209b0
BLAKE2b-256 checksum
How to use checksums
7cabe4b473c763602debe015d624696ae1fcf40504f4df2ed51b1cf5d1377089
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via poetry/2.0.1 CPython/3.13.2 Linux/6.12.13-amd64

Release history Release notifications | RSS feed

This release

0.5.3.0 This release

2 release files

0.4

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page