官术网_书友最值得收藏!

Web application fuzzers

A fuzzer is a tool designed to inject random data into a web application. A web application fuzzer can be used to test for buffer overflow conditions, error handling issues, boundary checks, and parameter format checks. The result of a fuzzing test is to reveal vulnerabilities that cannot be identified by web application vulnerability scanners. Fuzzers follow a trial and error method and require patience while identifying flaws.

Burp Suite and WebScarab have a built-in fuzzer. Wfuzz is a one-click fuzzer available in Kali Linux. We will use all of these to test web applications in Chapter 10, Other Common Security Flaws in Web Applications.

主站蜘蛛池模板: 汉阴县| 绥阳县| 永仁县| 兰溪市| 江永县| 景东| 闸北区| 页游| 阿勒泰市| 仁布县| 江陵县| 广灵县| 芦山县| 汝阳县| 香格里拉县| 青河县| 水富县| 壤塘县| 光泽县| 疏勒县| 许昌县| 石楼县| 东源县| 庄河市| 龙门县| 抚远县| 瑞丽市| 页游| 乐安县| 平果县| 郯城县| 额尔古纳市| 涪陵区| 松原市| 缙云县| 招远市| 常宁市| 中卫市| 体育| 和静县| 巴塘县|