Skip to main content

HTTP - Verb tampering

Bypass the security establishment.

1

On visiting the site, we are prompted to enter the user and password.

Let's intercept this request in Burpsuite.

2

We can now forward the request to the Intruder.

3

After we have selected the request method, we can set the payload.

For the payload, we are using all the request methods.

4

Let's send this payload and check the response.

5

Flag

a23e$dme96d3saez$$prap