<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-8503755746105415394.post8200585723031918197..comments</id><updated>2010-03-01T12:36:19.390Z</updated><title type='text'>Comments on PortSwigger.net - web application security: [V13P] Content discovery</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.portswigger.net/feeds/8200585723031918197/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html'/><author><name>PortSwigger</name><uri>http://www.blogger.com/profile/04744809054520271899</uri><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>6</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-8849205137795918793</id><published>2010-03-01T12:36:19.390Z</published><updated>2010-03-01T12:36:19.390Z</updated><title type='text'>In the Web Application Hacker's Handbook Chapter 4...</title><summary type='text'>In the Web Application Hacker&amp;#39;s Handbook Chapter 4, they describe how you can use the Intruder from burpsuite to achieve &amp;quot;almost&amp;quot; the same results as you would with DirBuster. You basically create a GET message and capture it with your proxy, send it to the intruder, mark the position or file paths in the HTTP GET request and indicate the payload list you want to use to replace that</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/8849205137795918793'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/8849205137795918793'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1267446979390#c8849205137795918793' title=''/><author><name>c-q-r</name><uri>http://www.blogger.com/profile/02028124011819469581</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-9068837514840766894</id><published>2009-11-24T10:14:43.290Z</published><updated>2009-11-24T10:14:43.290Z</updated><title type='text'>Looking around for some time to replace Dirbuster ...</title><summary type='text'>Looking around for some time to replace Dirbuster with a better tool, since Dirbuster is missing some needed features. It looks like this new addition to Burp will fill those gaps. Can&amp;#39;t wait to test it! Hope the custom word lists can be added soon, because unless you come up with some really good word lists I prefer to use my own ;)</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/9068837514840766894'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/9068837514840766894'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1259057683290#c9068837514840766894' title=''/><author><name>Erwin</name><uri>http://www.blogger.com/profile/06812522015913267608</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-4834150528817424154</id><published>2009-11-24T09:35:49.584Z</published><updated>2009-11-24T09:35:49.584Z</updated><title type='text'>Hey, did anything new get added related to burp pl...</title><summary type='text'>Hey, did anything new get added related to burp plugins? :-)</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/4834150528817424154'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/4834150528817424154'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1259055349584#c4834150528817424154' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-455928443677628120</id><published>2009-11-23T16:18:22.095Z</published><updated>2009-11-23T16:18:22.095Z</updated><title type='text'>@Anonymous

Custom wordlists were on the wish-list...</title><summary type='text'>@Anonymous&lt;br /&gt;&lt;br /&gt;Custom wordlists were on the wish-list, but didn&amp;#39;t quite make the initial cut. Hopefully they&amp;#39;ll get added pretty soon.</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/455928443677628120'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/455928443677628120'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1258993102095#c455928443677628120' title=''/><author><name>PortSwigger</name><uri>http://www.blogger.com/profile/04744809054520271899</uri><email>noreply@blogger.com</email><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='OpenSocialUserId' value='17119005656566588951'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-5794235161285291</id><published>2009-11-23T16:13:45.106Z</published><updated>2009-11-23T16:13:45.106Z</updated><title type='text'>Any chance of being able to use third-party test c...</title><summary type='text'>Any chance of being able to use third-party test case files, kind of like DirBuster letting you define your own files to search for</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/5794235161285291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/5794235161285291'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1258992825106#c5794235161285291' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8503755746105415394.post-2375717663432696234</id><published>2009-11-23T15:49:04.509Z</published><updated>2009-11-23T15:49:04.509Z</updated><title type='text'>Shouldn't that read dirbuster?</title><summary type='text'>Shouldn&amp;#39;t that read dirbuster?</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/2375717663432696234'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8503755746105415394/8200585723031918197/comments/default/2375717663432696234'/><link rel='alternate' type='text/html' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html?showComment=1258991344509#c2375717663432696234' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.portswigger.net/2009/11/v13p-content-discovery.html' ref='tag:blogger.com,1999:blog-8503755746105415394.post-8200585723031918197' source='http://www.blogger.com/feeds/8503755746105415394/posts/default/8200585723031918197' type='text/html'/></entry></feed>