We start off by picking up a request from our captured requests:
- Right-click the request and select Send to Intruder:
- Switch to the Intruder tab and then specify a payload position. Select the place we want our payload to be at and then click the Add button:
- Since we are performing a brute-force login, we will use the Pitchfork attack type:
- Switch to the Payloads tab; this is where we will enter our payloads.
- Choose the ...