{"id":66,"date":"2014-09-19T04:42:00","date_gmt":"2014-09-19T04:42:00","guid":{"rendered":"http:\/\/onlinelab.info\/2014\/09\/19\/burp-suite-tutorial-web-application-penetration-testing-part-1\/"},"modified":"2014-09-19T04:42:00","modified_gmt":"2014-09-19T04:42:00","slug":"burp-suite-tutorial-web-application-penetration-testing-part-1","status":"publish","type":"post","link":"https:\/\/www.asianux.org.vn\/index.php\/2014\/09\/19\/burp-suite-tutorial-web-application-penetration-testing-part-1\/","title":{"rendered":"Burp Suite Tutorial \u2013 Web Application Penetration Testing (Part 1)"},"content":{"rendered":"<p><\/p>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><a href=\"http:\/\/portswigger.net\/burp\/\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" title=\"Burp Suite\" target=\"_blank\" rel=\"noopener\">Burp Suite<\/a>&nbsp;from Portswigger is one of my favorite tools to use when performing a Web Application Penetration Test. The following is a step-by-step Burp Suite Tutorial. I will demonstrate how to properly configure and utilize many of Burp\u2019s features. After reading this, you should be able to perform a thorough web application penetration test. This will be the first in a two-part article series.<br \/><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><\/span><\/div>\n<div style=\"background: rgb(0, 0, 0); color: #999999; float: left; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 6px 12px 10px 0px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 189px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/2013-02-06-TOS_CHARTS.jpg\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"2013 02 06 TOS CHARTS Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"wp-image-1682 \" height=\"240\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/2013-02-06-TOS_CHARTS.jpg\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"189\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Don\u2019t Go To Jail!<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px 0px 0px 210px; text-align: justify; vertical-align: baseline;\"><strong style=\"font-family: inherit; font-style: inherit; font-variant: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">&nbsp; &nbsp;<span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">What we will cover:<\/span><\/strong><\/div>\n<ul style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px 0px 12px; padding: 0px 0px 0px 240px; vertical-align: baseline;\">\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-align: justify; vertical-align: baseline;\">Outbound SOCKS Proxy Configuration<\/span><\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">&nbsp;Intercept &amp; Scope Configuration<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Manual Application Walkthrough<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Using The Spider &amp; Discover<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Using The Repeater Tab<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Using The Intruder Tab<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Text Specific Searching<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Using The Automated Scanner<\/li>\n<\/ul>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px 0px 0px 210px; vertical-align: baseline;\"><span style=\"color: #888888; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><strong style=\"font-family: inherit; font-style: inherit; font-variant: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><em style=\"font-family: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">Disclaimer: Testing web applications that you do not have written authorization to test is illegal and punishable by law.<\/em><\/strong><\/span><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><\/h4>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><\/h4>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Configure Outbound SOCKS Proxy<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Depending on the scope of your engagement, it may be necessary to tunnel your burp traffic through an outbound socks proxy. This ensures that testing traffic originates from your approved testing environment.&nbsp; I prefer to use a simple SSH which works nicely for this purpose. SSH out to your testing server and setup a socks proxy on your localhost via the \u2018\u2013D\u2019 option like this.<\/div>\n<blockquote style=\"border-left-color: rgb(153, 153, 153); border-left-style: solid; border-left-width: 3px; color: #999999; font-family: OpenSansRegular, Tah \n<p> oma, sans-serif; font-size: 13px; font-style: italic; line-height: 20px; margin: 12px 0px; padding: 0px 0px 0px 18px; vertical-align: baseline;\"><\/p>\n<div style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><span style=\"color: red; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><strong style=\"font-family: inherit; font-style: inherit; font-variant: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">ssh \u2013D 9292 \u2013l username servername<\/strong><\/span><\/div>\n<\/blockquote>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Navigate to the Options tab located near the far right of the top menu in Burp.&nbsp; From the \u201cConnections\u201d sub-tab, Scroll down to the third section labeled \u201cSOCKS Proxy\u201d.&nbsp; Type in localhost for the host option and 9292 for the port option.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 441px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/1-socks-proxy-settings.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img decoding=\"async\" alt=\"1 socks proxy settings Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" height=\"275\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/1-socks-proxy-settings.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"100%\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #1 \u2013 SOCKS Proxy Settings<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Now burp is configured to route traffic through your outbound SSH tunnel. Configure your browser\u2019s proxy settings to use burp. Navigate to www.whatismyip.com and ensure your IP address is coming from your testing environment.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><em style=\"font-family: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><span style=\"color: red; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">#ProTip<\/span>&nbsp;I use a separate browser for web application testing.&nbsp; This ensures I don\u2019t accidently pass any personal data to one of my client\u2019s sites such as the password to my gmail account for example.<\/em><\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">I also prefer to use a proxy switching addon such as \u201c<a href=\"https:\/\/chrome.google.com\/webstore\/detail\/proxy-switchysharp\/dpplabbmogkhghncfbfdeeokoefdjegm?hl=en\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" title=\"SwitchySharp\" rel=\"noopener\">SwitchySharp<\/a>\u201d for Google Chrome. This allows me to easily switch back and forth between various proxy configurations that I might need during different engagements. Here is what my configuration settings look like for Burp.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 787px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/2-switchysharp-proxy-addon.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"2 switchysharp proxy addon Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1631\" height=\"360\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/2-switchysharp-proxy-addon.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"787\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #2 \u2013 SwitchySharp Proxy Settings<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Configure Intercept Behavior<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">The next thing I do is configure the proxy intercept feature. Set it to only pause on requests and responses to and from the target site.&nbsp; Navigate to the \u201cProxy\u201d tab under the \u201cOptions\u201d sub-tab. The second and third headings display the configurable options for intercepting requests and responses. Uncheck the defaults and check \u201cURL Is in target scope\u201d.&nbsp; Next turn intercept off as it is not needed for the initial application walkthrough. From the \u201cIntercept\u201d sub-tab ensure that the toggle button reads \u201cIntercept is off\u201d<\/div>\n<div s\ntyle=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 841px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/3-proxy-intercept-settings.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"3 proxy intercept settings Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1635\" height=\"648\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/3-proxy-intercept-settings.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"841\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #3 \u2013 Proxy Intercept Settings<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Application Walkthrough<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">For some reason, a lot of people like to skip this step. I don\u2019t recommend this. During the initial walkthrough of your target application it is important to manually click through as much of the site as possible.&nbsp; Try and resist the urge to start analyzing things in burp right a way. Instead, spend a good while and click on every link and view every page. Just like a normal user might do. Think about how the site works or how it\u2019s \u201csupposed\u201d to work.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">You should be thinking about the following questions:<\/div>\n<ul style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px 0px 12px; padding: 0px 0px 0px 18px; vertical-align: baseline;\">\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">What types of actions can someone do, both from an authenticated and unauthenticated perspective?<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Do any requests appear to be processed by a server-side job or database operation?<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Is there any information being displayed that I can control<\/li>\n<\/ul>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">If you stumble upon any input forms, be sure to do some manual test cases. Entering a single tick and hit submit on any Search form or zip code field you come across. You might be surprised at how often security vulnerabilities are discovered by curious exploration and not by automated scanning.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Configure Your Target Scope<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Now that you have a good feel for how your target application works its time to start analyzing some GETs and Posts. However, before doing any testing with burp it\u2019s a good idea to properly define your target scope.&nbsp; This will ensure that you don\u2019t send any potentially malicious traffic to websites that you are not authorized to test.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><em style=\"font-family: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\"><span style=\"color: red; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">#ProTip<\/span>&nbsp;I am authorized to test www.pentestgeek.com.&nbsp;<strong style=\"font-family: inherit; font-style: inherit; font-variant: inherit; line-height: inherit; margin: 0px; padding: 0px; vertical-align: baseline;\">*You*&nbsp;<span style=\"color: red; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">are not<\/span><\/strong>.<\/em><\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Head over to the \u201cTarget\u201d tab and then the \u201cSite map\u201d sub-tab.&nbsp; Select your target website from the left display pane.&nbsp; Right click and choose \u201cAdd to scope\u2019.&nbsp; Next highlight all other sites in the display pane, right click and select Remove from scope.&nbsp; If you\u2019ve done this correctly your scope should look something like the image below.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 800px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/4-scope_sub-tab.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-va\nriant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"4 scope sub tab Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1648\" height=\"406\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/4-scope_sub-tab.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"800\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #4 \u2013 Scope Settings<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Initial Pilfering<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Click on the \u201cTarget\u201d tab and the \u201cSite Map\u201d sub tab.&nbsp; Scroll down to the appropriate site branch and expand all the arrows until you get a complete picture of your target site.&nbsp; This should include all of the individual pages you browsed as well as any javascript and css files. Take a moment to soak all of this in, try and spot files that you don\u2019t recognize from the manual walkthrough.&nbsp; You can view the response of each request in a number of different formats located on the \u201cResposne\u201d tab of the bottom right display pane. Browse through each respond searching for interesting gems. Things you might be surprised to find include:<\/div>\n<ul style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px 0px 12px; padding: 0px 0px 0px 18px; vertical-align: baseline;\">\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Developer comments<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Email addresses<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Usernames &amp; passwords if you\u2019re lucky<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Path disclosure to other files\/directories<\/li>\n<li style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: 18px; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\">Etc\u2026<\/li>\n<\/ul>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Search Specific Keywords<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">You can also leverage burp to do some of the heavy lifting for you. Right click on a node, from the \u201cEngagement tools\u201d sub-menu select \u201cSearch\u201d. One of my favorite searches is to scan for the string \u201cset-cookie\u201d. This lets you know which pages are interesting enough to require a unique cookie. Cookies are commonly used by web application developers to differentiate between requests from multiple site users. This ensures that user \u2018A\u2019 doesn\u2019t get to view the information belonging to user \u2018B\u2019. For this reason it is a good idea to identify these pages and pay special attention to them.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 924px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/55-Search-Feature.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"55 Search Feature Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1656\" height=\"329\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/55-Search-Feature.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"924\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #5 \u2013 Search Specific Keywords<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Using Spider and Discover<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">After a good bit of manual poking and prodding it\u2019s usually beneficial to allow burp to spider the host.&nbsp; Just right click on the target\u2019s root branch in the<br \/>\n sitemap and select \u201cSpider this host\u201d.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 417px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/6-spidering-a-host.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"6 spidering a host Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1660\" height=\"333\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/6-spidering-a-host.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"417\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #6 \u2013 Spider Feature<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Once the spider has finished, go back to your site-map and see if you picked up any new pages.&nbsp; If you have, take a manual look at them in your browser and also within burp to see if they produce anything interesting.&nbsp; Are there any new login prompts, or input boxes for example? If you\u2019re still not satisfied with all that you have found you can try Burp\u2019s discovery module.&nbsp; Right click on the target site\u2019s root branch and from the \u201cEngagement tools\u201d sub-menu select \u201cDiscover Content\u201d.&nbsp; On most sites this module can and will run for a long time so it\u2019s a good practice to keep an eye on it. Make sure that it completes or shut it off manually before it runs for too long.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Using The Repeater<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">The Repeater tab is arguably one of the most useful features in Burp Suite. I use it hundreds of times on every web application that I test. It is extremely valuable and also incredibly simple to use. Just right click on any request within the \u201cTarget\u201d or \u201cProxy\u201d tab and select \u201cSend to Repeater\u201d. Next click over to the \u201cRepeater\u201d tab and hit \u201cGo\u201d. You will see something like this.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 1227px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/7-repeater-screen.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"7 repeater screen Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1663\" height=\"359\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/7-repeater-screen.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"1227\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #7 \u2013 The Repeater<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Here you can manipulate any part of the HTTP request headers and see what the response looks like. I recommend spending some good time here playing with every aspect of the HTTP request. Especial any GET\/POST parameters that are besting sent along with the request.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\"><\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Using The Intruder<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">If you are limited on time and have too many requests and individual parameters to do a thorough manual test. The Burp Intruder is a really great and powerful way to perform automated and semi-targeted fuzzing. You can use it against one or more parameters in an HTTP request. Right click on any request just as we did before and this time select \u201cSend to Intruder\u201d. Head over to the \u201cIntruder\u201d tab and click on the \u201cPositions\u201d sub-tab. You should see something like this.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 682px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/8-Intruder-1.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"8 Intruder 1 Burp Suite Tutorial   Web Application Penetrat\nion Testing (Part 1)\" class=\"size-full wp-image-1667\" height=\"387\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/8-Intruder-1.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"682\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #8 \u2013 Intruder Positions<\/div>\n<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">I recommend using the \u201cClear\u201d button to remove what is selected at first. The default behavior is to test everything with an \u2018=\u2019 sign. Highlight the parameters you wan\u2019t to fuzz and click \u201cAdd\u201d. Next you need to go to the \u201cPayloads\u201d sub-tab and tell Burp which test cases to perform during the fuzzing run. A good one to start off with is \u201cFuzzing \u2013 full\u201d. this will send a number of basic test cases to every parameter that you highlighted on the \u201cPositions\u201d sub-tab.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 682px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/9-Intruder-21.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"9 Intruder 21 Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1668\" height=\"387\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/9-Intruder-21.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"682\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #9 \u2013 Intruder Payloads<\/div>\n<\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 Automated Scanning<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">The last thing that I do when testing a web application is perform an automated scan using Burp. Back on your \u201cSite map\u201d sub-tab, right click on the root branch of your target site and select \u201cPassively scan this host\u201d. This will analyze every request and response that you have generated during your burp session. It will produce a vulnerability advisor on the \u201cResults\u201d sub-tab located on the \u201cScanner\u201d tab. I like to do the passive scan first because it doesn\u2019t send any traffic to the target server. Alternatively you can configure Burp to passively analyze requests and responses automatically in the \u201cLive scanning\u201d sub-tab. You can also do this for Active Scanning but I do not recommend it.<\/div>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">When doing an active scan I like to use the following settings.<\/div>\n<div style=\"background: rgb(0, 0, 0); clear: both; color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin: 0px auto 10px; max-width: 100%; padding: 0px; position: relative; text-align: center; vertical-align: baseline; width: 1241px;\"><a href=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/10-Active-Scan-Settings.png\" style=\"border-bottom-color: transparent; border-bottom-style: dotted; border-bottom-width: 1px; color: #ed1c24; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: none; vertical-align: baseline;\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" alt=\"10 Active Scan Settings Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" class=\"size-full wp-image-1671\" height=\"365\" src=\"https:\/\/www.pentestgeek.com\/wp-content\/uploads\/2014\/07\/10-Active-Scan-Settings.png\" style=\"border: 0px none; display: inline-block; font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; height: auto; line-height: inherit; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline; width: auto;\" title=\"Burp Suite Tutorial   Web Application Penetration Testing (Part 1)\" width=\"1241\" \/><\/a><\/p>\n<div style=\"background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial; background-repeat: initial; background-size: initial; font-family: inherit; font-size: 11px; font-style: italic; font-variant: inherit; font-weight: inherit; line-height: inherit; padding: 6px 12px; vertical-align: baseline;\">Figure #10 \u2013 Active Scan Settings<\/div>\n<\/div>\n<h4 style=\"clear: both; color: white; font-family: FrancoisOneRegular, OpenSansRegular, Tahoma, sans-serif; font-size: 18px; font-weight: inherit; line-height: 1.6em; margin: 0px 0px 6px; padding: 0px; vertical-align: baseline;\"><span style=\"font-family: inherit; font-style: inherit; font-variant: inherit; font-weight: inherit; line-height: inherit; margin: 0px; padding: 0px; text-decoration: underline; vertical-align: baseline;\">Burp Suite Tutorial \u2013 End Of Part1<\/span><\/h4>\n<div style=\"color: #999999; font-family: OpenSansRegular, Tahoma, sans-serif; font-size: 13px; line-height: 20px; margin-bottom: 12px; margin-top: 12px; padding: 0px; vertical-align: baseline;\">Hopefully you\u2019ve learned some useful techniques for performing Web Application Penetration Testing. In part #2, we will go over some more of Burp\u2019s features. We will cover reporting and exporting session data for collaboration with other pentesters. I look forward to seeing you there. Thank you for reading and as always, Hack responsibly.<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Burp Suite&nbsp;from Portswigger is one of my favorite tools to use when performing a Web Application Penetration Test. The following is a step-by-step Burp Suite Tutorial. I will demonstrate how to properly configure and utilize&hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-66","post","type-post","status-publish","format-standard","hentry","category-pentest"],"_links":{"self":[{"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/posts\/66","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/comments?post=66"}],"version-history":[{"count":0,"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/posts\/66\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/media?parent=66"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/categories?post=66"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.asianux.org.vn\/index.php\/wp-json\/wp\/v2\/tags?post=66"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}