官术网_书友最值得收藏!

Chapter 3. Setting the Scope and Dealing with Upstream Proxies

In the preceding chapter, we saw how to set up Mozilla Firefox with the FoxyProxy Standard add-on to create a selective, pattern-based forwarding process. This allows us to ensure that only white-listed traffic from our browser reaches Burp. This is something that Burp allows us to set with its configuration options itself. Think of it like this: less traffic reaching Burp ensures that Burp is dealing with legitimate traffic, and its filters are working on ensuring that we remain within our scope.

As a security professional testing web application, scope is a term you hear and read about everywhere. Many times, we are expected to test only parts of an application, and usually, the scope is limited by domain, subdomain, folder name, and even certain filenames. Burp gives a nice, simple-to-use interface to add, edit, and remove targets from the scope.

主站蜘蛛池模板: 偏关县| 上虞市| 溧水县| 兰州市| 麻江县| 年辖:市辖区| 和政县| 沙湾县| 龙里县| 长治县| 湖南省| 嘉鱼县| 武清区| 巴南区| 灵武市| 晋江市| 佛学| 康定县| 石景山区| 石家庄市| 郧西县| 南安市| 东丰县| 鄂州市| 伊川县| 永胜县| 威信县| 志丹县| 台湾省| 彰化市| 玛多县| 河西区| 富源县| 台北县| 鹤山市| 比如县| 孟村| 宜宾市| 名山县| 鹤壁市| 灵寿县|