Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
cook — A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers. | Kitploit
Tools/GitHubGitHub/glitchedgitz/cook
Password CrackingFuzzingPenetration TestingUtilities & Frameworks
GitHubglitchedgitz/cook

cook

A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

View Repository
1.4k140137 months agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
Website

COOK

An overpowered wordlist generator, splitter, merger, finder, saver, create words permutation and combinations, apply different encoding/decoding and everything you need.

Frustration killer! & Customizable!

Index

  • Installation
    • Configuration
  • Basic
    • Ranges
    • Param Approach
  • COOK's Ingredients
    • Categories
    • Save wordlists/lists/chars everything in my.yaml
    • Functions
    • Customize my.yaml
      ▸ Add/Update
      ▸ Delete
    • Local File / Fetch URL
  • Methods
    • Multiple Encoding
    • Break naming conventions 💫
    • All methods cook help methods
  • Some Usecases Examples
    • Join wordlists line-by-line
    • Print at every step
    • Combine with tools
  • ULTIMATE USAGE
    • Real life usage example:
  • Repeat Operator * and **
  • Parsing Rules
  • Flags
  • Use as library
  • Share your recipies/ingredients in cook-ingredients
  • Contribute

Installation

Use Go or download latest builds

go install -v github.com/glitchedgitz/cook/v2/cmd/cook@latest

Configuration

From version v2.2 cook save cook-ingredients at $home/.config/cook/cook-ingredients

To change create a path variable name COOK=[YOUR PATH]

Basic

Without basics, everything is complex.

Ranges

Param Approach

Name them anything and use them to generate the pattern. This will be more useful when you apply encoding column-wise using methods.

cook -start intigriti,bugcrowd  -sep _,- -end users.rar,secret.zip  / start sep end
Note: you must include parameter in the pattern, otherwise it will not print anything.

COOK's Ingredients

Cook depends on cook-ingredients, which are .yaml files collections of wordsets, functions, ports, wordlists from assetnotes, seclist, fuzzdb, 15+ etc.

Categories

CategoryDescription
listsArray of values to directly use when called out
filesArray of urls
portsRanges of numbers
raw-filesArray of local files
functionsFunctions are used to generate patterns

Save wordlists/lists/chars everything in my.yaml

Functions

cook -dob date[17,Sep,1994] elliot _,-, dob

Customize my.yaml

Edit my.yaml manually or use these commands.

▸ Add/Update

If keyword doesn't exist it will create it. Otherwise it will update it and add the new value in the same variable.

# Syntax
cook add [keyword]=[value1, value2, ..., valueN] in [category]

# Command
cook add unique_name=word1,word2,word3 in lists

▸ Delete

cook delete [keyword]

Local File / Fetch URL

use : after param name.

cook -f: live.txt f
cook -f: https://example.com/wordlist.txt f

Access Wordlists from databases

Cook has fetched multiple repositories and can directly use wordlist from these repos...

assetnotes, seclist, fuzzdb, etc.

Methods

Using methods you can encode, decode, reverse, split, sort, extract and can do much more...

Methods can be applied on final output or column-wise

  • -m/-method to apply methods on the final output
  • -mc/-methodcol to apply column-wise.
  • param.methodname apply to any parameter-wise, will example this param thing later.

Multiple Encoding

  • Overlapping Encodings:
    • Use dot .
    • md5.b64e.urle apply multiple methods one by one.
    • Output Logic:
      • Generated Pattern > md5 hashing > base 64 encoding > URL Encoding.
  • Different Encodings:
    • Use comma ,
    • md5,sha1,sha256 apply different encoding to the same generated pattern.
    • Output Logic:
      • Generated Pattern > md5 hashing
      • Generated Pattern > sha1 hashing
      • Generated Pattern > sha256 hashing

Break naming conventions 💫

Special focus on these 2 methods, these will be great help everytime you use any wordlist.

Smart Break -m smart

▶ cook adminNew,admin_new -m smart
Output:

admin
New
admin
new

Smart Join -m smartjoin[<case>:<char>]

It breaks and join back with the supplied character.

▶ cook adminNew,admin-old -m smartjoin[:_]
Output:

admin_New
admin_old

Apply Cases over separated

Here we applied camlecase

▶ cook suppose_this_is_long_text -m smartjoin[c:_]
Output:

suppose_This_Is_Long_Text

All methods cook help methods

sort                           - Sort them
sortu                          - Sort them with unique values only
reverse                        - Reverse string
leet                           - a->4, b->8, e->3 ...
                                    leet[0] or leet[1]

smart                          - Separate words with naming convensions
                                    redirectUri, redirect_uri, redirect-uri  ->  [redirect, uri]
smartjoin                      - This will split the words from naming convensions &
                                    param.smartjoin[c,_] (case, join)
                                    redirect-uri, redirectUri, redirect_uri ->  redirect_Uri

u          upper               - Uppercase
l          lower               - Lowercase
t          title               - Titlecase

String Operations

split                          - split[char]
splitindex                     - splitindex[char:index]
replace                        - Replace All replace[this:tothis]

JSON

Download Tool