官术网_书友最值得收藏!

Web application fuzzers

A fuzzer is a tool designed to inject random data into a web application. A web application fuzzer can be used to test for buffer overflow conditions, error handling issues, boundary checks, and parameter format checks. The result of a fuzzing test is to reveal vulnerabilities that cannot be identified by web application vulnerability scanners. Fuzzers follow a trial and error method and require patience while identifying flaws.

Burp Suite and WebScarab have a built-in fuzzer. Wfuzz is a one-click fuzzer available in Kali Linux. We will use all of these to test web applications in Chapter 10, Other Common Security Flaws in Web Applications.

主站蜘蛛池模板: 高唐县| 莱阳市| 尉犁县| 新巴尔虎右旗| 兴山县| 禹城市| 开江县| 南乐县| 邵阳市| 五大连池市| 台北市| 丹棱县| 定安县| 四子王旗| 金阳县| 濮阳市| 遂溪县| 奈曼旗| 鲜城| 贺州市| 文山县| 交城县| 阳原县| 盐城市| 浦东新区| 寻乌县| 招远市| 琼海市| 乃东县| 左云县| 孝感市| 桃源县| 张家界市| 灌阳县| 新蔡县| 屯门区| 康保县| 西昌市| 永安市| 牙克石市| 信阳市|