SQL Injection Attacks Using OWASP Zap Fuzzer

แชร์
ฝัง
  • เผยแพร่เมื่อ 24 ม.ค. 2025

ความคิดเห็น • 20

  • @chidaruma_
    @chidaruma_ ปีที่แล้ว +4

    Nice to see some content of real value on yt

  • @HanShengLai
    @HanShengLai หลายเดือนก่อน

    1:09
    I found that in addition to FuzzDB Files , FuzzDB offensize also needs to be installed in order for fuzzDB->attack to appear.

    • @thetesttherapist
      @thetesttherapist  หลายเดือนก่อน

      Sometimes in Windows fuzz db files can be marked as threat and deleted once added that's why it only appeared when you add fuzz db offensive as well , but in other platforms (linux or mac) you can add any of them.
      Thank you :)

  • @KhalifamulyadiAbdulbari
    @KhalifamulyadiAbdulbari 8 หลายเดือนก่อน +1

    nice lesson thank you

  • @berchil
    @berchil ปีที่แล้ว +3

    thank you

  • @sathyanarayanansatzsathya
    @sathyanarayanansatzsathya 6 หลายเดือนก่อน

    Is thr any way to integrate this with existing selenium framework and run the scans in backend while ui testcases are being executed?

  • @velliangirimurugesh
    @velliangirimurugesh ปีที่แล้ว

    Nicely explained.. Please help us to learn more functionality in owasp

  • @daveeed.13aviiid
    @daveeed.13aviiid 3 หลายเดือนก่อน

    thank you bro

  • @Joud3011
    @Joud3011 9 หลายเดือนก่อน

    how do i get the page that you enter the username in?

  • @dahuynguyenphuc6586
    @dahuynguyenphuc6586 10 หลายเดือนก่อน

    I just used owasp zap to check the website and there is an "Alerts" section. I want to get data directly from it, what should I do??

    • @thetesttherapist
      @thetesttherapist  10 หลายเดือนก่อน

      If by data you mean extract a report , here how you can generate a report 👇
      From Report menu select generate report

  • @devil1238100
    @devil1238100 10 หลายเดือนก่อน

    Hey , how to add the addon FuzzDB Files from market place , Could see FUZZDB files is available in market place but i am not able to add this addon, can you help me out in adding this?

    • @thetesttherapist
      @thetesttherapist  10 หลายเดือนก่อน

      Hey , if you are using Zap on Windows , sometimes it sees fuzz db files as a virus , try to add “FuzzDB Offensive” from the marketplace it should do the same job.
      Good luck!

    • @devil1238100
      @devil1238100 9 หลายเดือนก่อน

      @@thetesttherapist
      thanks for quick response , have one more query when i try to start Fuzzer it says "Some Fuzz locations do not have any payload set. At least one payload must be added to start the fuzzer" . I have added a payload using payloads option but still i could see this warning. How do i need to resolve this?

  • @chancellenawej6605
    @chancellenawej6605 ปีที่แล้ว

    Can you do it with ldap injection too?

    • @thetesttherapist
      @thetesttherapist  ปีที่แล้ว

      You can find ldap injection under jbrofuzz