Assessing Authentication Schemes

In this chapter, we will cover the following recipes:

  • Testing for account enumeration and guessable accounts
  • Testing for weak lock-out mechanisms
  • Testing for bypassing authentication schemes
  • Testing for browser cache weaknesses
  • Testing the account provisioning process via REST API

Get Burp Suite Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.