
Little Zap of Horrors
The OWASP Podcast Series
00:00
The Bloody HUD
I was wondering whether we get more pen testers interested, not for the deep testing, but you know, when it comes down to it, I think sometimes pen testers focus on the tool too much. And the really fun vulnerabilities are actually application ones, the logic. It's not just the request and responses, how I actually working,. The sequence of events and how can you abuse the functionality rather than just therequest and responses. That is really interesting. So it's a great way when you're exploring application, you can focus on the application. You've got the HUD there and then you've got zap underneath it. Or you can proxy zap through burp and still have the
Transcript
Play full episode