THC-Hydra Docker image with SecLists pre-installed for penetration testing and security assessments.
359
A lightweight, secure Docker image of THC-Hydra built on Debian Bookworm with full protocol support (SSH, RDP, HTTP, SMB, etc.) and bundled SecLists wordlists.
docker run --rm -it lushirong/hydra:latest hydra -h
docker run --rm --network=host -it \
-v /tmp:/tmp \
lushirong/hydra:latest \
hydra -L /opt/usernames/top-usernames-shortlist.txt \
-P /opt/passwords/Common-Credentials/top-20-common-SSH-passwords.txt \
-vV -t 2 -o /tmp/ssh_result.txt 192.168.1.100 ssh
# Start and name the container
docker run -d --name hydra \
--network=host \
-v /tmp:/tmp \
-it lushirong/hydra:latest
# Execute commands inside the container
docker exec -it hydra bash
# Inside the container:
# hydra -L /opt/usernames/... -P /opt/passwords/... target ssh
💡 Tip: Use
--network=hostto avoid NAT overhead during local/internal network testing. For isolated environments, consider explicit port mapping (note: not all protocols support this).
| Type | Path |
|---|---|
| Usernames | /opt/usernames/ |
| Passwords | /opt/passwords/ |
| Common SSH passwords | /opt/passwords/Common-Credentials/top-20-common-SSH-passwords.txt |
| Default credentials | /opt/passwords/Default-Credentials/ |
🔍 Explore available files:
docker run --rm -it lushirong/hydra:latest ls -l /opt/usernames/ /opt/passwords/
This tool is intended solely for authorized security testing. Unauthorized use against systems you do not own or lack explicit written permission to test is illegal and unethical. Users are solely responsible for compliance with applicable laws and regulations.
Content type
Image
Digest
sha256:22b721d40…
Size
553.4 MB
Last updated
11 months ago
docker pull lushirong/hydra