Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

<!--Removed after seeing response about automating tool-->

You can script the scanner to auto-decode B64 cookie once you found them: http://blog.portswigger.net/2012/12/sample-burp-suite-extens...

It all boils down to: how can you be so sure if your tool/process is finding most vulnerabilities than others, and can you prove it?

If I were your client, I would be very worried by now.



You've got me. I've only ever tested up to 49 dynamic forms, and only 42 insertion points.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: