Bug Bounty When to use Zap VS Burp

Поделиться
HTML-код
  • Опубликовано: 11 сен 2024
  • All my videos are for educational purposes with bug bounty hunters and penetration testers in mind RUclips don't take down my videos 😉
    When to use Zap VS Burp
    📖 Udemy Course = www.udemy.com/...
    📚 All My Courses = www.phdsec.com/
    🛍 shop merch @ merch.phdsec.com
    🐦Follow me on Twitter = / phd_security

Комментарии • 34

  • @alucardtech2136
    @alucardtech2136 Год назад +7

    Hydra is meant for bruteforcing logins and passwords through different protocols, whereas burpsuite and zap are made specifically for intercepting and updating requests.

  • @Free.Education786
    @Free.Education786 Год назад +11

    How to bypass CMS and WAF protection that stops HTML, SQL, and XSS injection payloads? How to find the real origin IP of secured websites behind Cloudflare, Akamai, ModSecurity, AWS CDN, etc. ? How to bypass WAF using SQLMAP? How to find hidden vulnerable parameters and endpoints inside the .js files? How to find hidden admin panels, cPanel and WHM panels? Please cover these important topics. Thanks

  • @thelostlogan
    @thelostlogan Год назад +4

    You should add a donation link in your description for people who want to support you for your amazing work.

  • @0xrohit54
    @0xrohit54 Год назад +7

    Sir please make a tutorial on OWASP ZAP as this tool contains more options than BURP

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 Год назад +6

    I prefer Zap it’s faster but does consume more resources and can lag and even freeze your system if all you do is scan.

    • @slipknot9966
      @slipknot9966 Год назад

      Freezing system? Sorry? Can you make it clear?

  • @nocturne2172
    @nocturne2172 5 месяцев назад +1

    When to use Burpsuite: When your company pays for it.
    Else: zap.

  • @mellowgeekstudio
    @mellowgeekstudio 11 месяцев назад +1

    Misleading title. It suggests it will also show situations where burp is better than zap, and multiple examples of both.
    Instead it just shows one case scenario where zap does something that burp doesn't, bruteforce passwords.

  • @Peaker20
    @Peaker20 Год назад

    I don't know how to describe the video, I hope it's fantastic ❤️ enough great video as always

  • @user-zm4dm9ry2p
    @user-zm4dm9ry2p 7 месяцев назад

    Thanks for sharing, save me a lot of time and money!

  • @BobBob-qm2bm
    @BobBob-qm2bm Год назад

    Thank PhD Security

  • @firosiam7786
    @firosiam7786 Год назад

    Cool could u do vedios on av edr evasion msfvenom payloads usualy get easily flaged by any defense right

  • @mnageh-bo1mm
    @mnageh-bo1mm Год назад

    Ayo , Really Great video ... Thanks a lot

  • @tjoleary8738
    @tjoleary8738 Год назад

    Great video and info!

  • @candylanebiscuit
    @candylanebiscuit 6 месяцев назад

    almost had you at 4:15

  • @Retnuh1974
    @Retnuh1974 Год назад

    AWESOME Video!

  • @user-wv4ni7ie5i
    @user-wv4ni7ie5i 10 месяцев назад

    Thanks you!!

  • @OthmanAlikhan
    @OthmanAlikhan 11 месяцев назад

    Thanks for the video =)

  • @themynamesb
    @themynamesb 11 месяцев назад

    What about csrf poc generation? Burp pro does that but community version doesn't.

  • @ClipClips4k
    @ClipClips4k 10 месяцев назад

    how to set 2 payloads in zap (like ,on burp suit intruder we can choose "cluster bomb")

  • @gokul5582
    @gokul5582 Год назад

    Thank u so much

  • @varunfoodvlog9215
    @varunfoodvlog9215 Год назад

    zap is osm i like this thank's man keep grow and make video for api hacking

  • @sqfdjgslkfdjgs
    @sqfdjgslkfdjgs Год назад

    Most of the WordPress site now limit login attempts and server blocks your IP with 3 attempts.

  • @0xM2r
    @0xM2r Год назад

    Awesome!

  • @Frogstomp_actual
    @Frogstomp_actual Год назад

    Gday, wfuzz is my go to

    • @ryan_phdsec
      @ryan_phdsec  Год назад

      I like ffuf and gobuster as fuzzers

  • @netbin
    @netbin 11 месяцев назад

    Zap is good tool, but it is eating way too much RAM

  • @pramodgurlhosur5215
    @pramodgurlhosur5215 Год назад

    Can cracked burpsuite be used for bug bounty targets?

    • @Amazon-Insider
      @Amazon-Insider Год назад +5

      No it's have a virus in it don't install it

    • @gammech2107
      @gammech2107 3 месяца назад

      obviously lol whos stopping you from using different tools

  • @AVENGERS_ENDGAME_74
    @AVENGERS_ENDGAME_74 Год назад +1

    Umbrella zap is better

  • @razmjumehdi9069
    @razmjumehdi9069 Год назад

    🙂👌👍