Last updated 7 months ago
Capture the request then sent it to intruder
Choose 10k wordlist for password
ORRRRRRRRR
just use ffuf like a normal being
click copy to file
change password paramter to fuzz
ffuf -request req.txt -request-proto http -w /usr/share/wordlists/seclists/SecLists-master/Passwords/xato-net-10-million-passwords-10000.txt -fs 1814