Default Credentials Cheat Sheet
One place for all the default credentials to assist pentesters/blue Teamers during engagements, featuring default login/password details for various products sourced from multiple references.
P.S : Most of the credentials were extracted from changeme,routersploit and Seclists projects, you can use these tools to automate the process https://github.com/ztgrace/changeme , https://github.com/threat9/routersploit (kudos for the awesome work)
Installation & Usage
$ pip3 install defaultcreds-cheat-sheet
$ creds search tomcat
| Operating System | Tested |
|---|---|
| Linux(Kali,Ubuntu,Lubuntu) | ✔️ |
| Windows | ✔️ |
| macOS | ✔️ |
Creds script
Usage Guide
# Search for product creds
➤ creds search tomcat
+----------------------------------+------------+------------+
| Product | username | password |
+----------------------------------+------------+------------+
| apache tomcat (web) | tomcat | tomcat |
| apache tomcat (web) | admin | admin |
...
+----------------------------------+------------+------------+
# Update records
➤ creds update
Check for new updates...🔍
New updates are available 🚧
[+] Download database...
# Export Creds to files (could be used for brute force attacks)
➤ creds search tomcat export
+----------------------------------+------------+------------+
| Product | username | password |
+----------------------------------+------------+------------+
| apache tomcat (web) | tomcat | tomcat |
| apache tomcat (web) | admin | admin |
...
+----------------------------------+------------+------------+
[+] Creds saved to /tmp/tomcat-usernames.txt , /tmp/tomcat-passwords.txt 📥
Run creds through proxy
# Search for product creds
➤ creds search tomcat --proxy=http://localhost:8080
# update records
➤ creds update --proxy=http://localhost:8080
# Search for Tomcat creds and export results to /tmp/tomcat-usernames.txt , /tmp/tomcat-passwords.txt
➤ creds search tomcat --proxy=http://localhost:8080 export
Contribute
If you cannot find the password for a specific product, please submit a pull request to update the dataset.
Disclaimer
For educational purposes only, use it at your own responsibility.
Metadata
Release files for DefaultCreds_cheat_sheet 0.5.3.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| defaultcreds_cheat_sheet-0.5.3.0.tar.gz | 46.9 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 97.1 kB
Release files / defaultcreds_cheat_sheet-0.5.3.0.tar.gz
| Download URL | defaultcreds_cheat_sheet-0.5.3.0.tar.gz |
|---|---|
| Size | 46.9 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
8162486fdf31af7aa8cac0bca49904c0d672b0149a504d3fec73e90fa2062719
|
|
BLAKE2b-256 checksum How to use checksums |
f3c6ef25beca151dac84e9990825fdc82a5c8af58866fbf05eac15b479667421
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
poetry/2.0.1 CPython/3.13.2 Linux/6.12.13-amd64
|
Release files / defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl
| Download URL | defaultcreds_cheat_sheet-0.5.3.0-py3-none-any.whl |
|---|---|
| Size | 50.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
b61051a9b08c80ce3e20fee79791c64c4ae9631ba07acc34e243fe17883209b0
|
|
BLAKE2b-256 checksum How to use checksums |
7cabe4b473c763602debe015d624696ae1fcf40504f4df2ed51b1cf5d1377089
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
poetry/2.0.1 CPython/3.13.2 Linux/6.12.13-amd64
|