官术网_书友最值得收藏!

Web application fuzzers

A fuzzer is a tool designed to inject random data into a web application. A web application fuzzer can be used to test for buffer overflow conditions, error handling issues, boundary checks, and parameter format checks. The result of a fuzzing test is to reveal vulnerabilities that cannot be identified by web application vulnerability scanners. Fuzzers follow a trial and error method and require patience while identifying flaws.

Burp Suite and WebScarab have a built-in fuzzer. Wfuzz is a one-click fuzzer available in Kali Linux. We will use all of these to test web applications in Chapter 10, Other Common Security Flaws in Web Applications.

主站蜘蛛池模板: 上饶县| 公安县| 固始县| 东宁县| 宜宾市| 濮阳市| 噶尔县| 镇沅| 杂多县| 柏乡县| 疏勒县| 汨罗市| 屏边| 广宗县| 和顺县| 平原县| 郓城县| 镇安县| 诸暨市| 全椒县| 大余县| 崇文区| 普洱| 德保县| 常德市| 凤翔县| 郎溪县| 潮安县| 定边县| 莲花县| 巩义市| 高邑县| 左权县| 乳山市| 木兰县| 余干县| 大竹县| 贞丰县| 厦门市| 来安县| 辽宁省|