官术网_书友最值得收藏!

Web application fuzzers

A fuzzer is a tool designed to inject random data into a web application. A web application fuzzer can be used to test for buffer overflow conditions, error handling issues, boundary checks, and parameter format checks. The result of a fuzzing test is to reveal vulnerabilities that cannot be identified by web application vulnerability scanners. Fuzzers follow a trial and error method and require patience while identifying flaws.

Burp Suite and WebScarab have a built-in fuzzer. Wfuzz is a one-click fuzzer available in Kali Linux. We will use all of these to test web applications in Chapter 10, Other Common Security Flaws in Web Applications.

主站蜘蛛池模板: 赤峰市| 平度市| 弥渡县| 修文县| 拜泉县| 阿克陶县| 萍乡市| 曲阳县| 平江县| 呼和浩特市| 安泽县| 沙湾县| 佛学| 红安县| 吴忠市| 阳曲县| 运城市| 清徐县| 万荣县| 高台县| 宕昌县| 黑山县| 绥德县| 萨嘎县| 临汾市| 汝阳县| 荆门市| 息烽县| 洛浦县| 获嘉县| 峡江县| 定兴县| 连南| 蓬安县| 英德市| 古丈县| 灵璧县| 睢宁县| 鸡泽县| 武穴市| 布尔津县|