Understanding the insertion points

Burp Scanner is a very efficient scanner, as it targets various insertion points. It targets the input fields, a set of headers, such as cookie, referrer, user agent, and so on. Burp Scanner analyzes the targets individually by sending payloads individually to see how the application handles the payloads. A better understanding to see the insertion points is as follows:

Burp also handles data encoding for various parameters. It understands the parameter in use and any encoding if it follows. Once it detects the encoding, it fuzzes the parameter by fuzzing the payloads by encoding them as shown in the following ...

Get Hands-On Application Penetration Testing with Burp Suite now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.