more updates

patch-1
sandeep 2021-10-10 07:02:57 +05:30
parent 4a303b89e8
commit 34543ded24
1 changed files with 4 additions and 12 deletions

View File

@ -20,19 +20,12 @@ requests:
j_username={{username}}&j_password={{password}}&from=%2F&Submit=Sign+in
- |
POST /j_spring_security_check HTTP/1.1
Host: {{Hostname}}
Content-Type: application/x-www-form-urlencoded
Cookie: {{cookie}}
j_username={{username}}&j_password={{password}}&from=%2F&Submit=Sign+in
- |
GET / HTTP/1.1
Host: {{Hostname}}
Cookie: {{cookie}}
attack: pitchfork
payloads:
username:
- admin
@ -40,7 +33,6 @@ requests:
password:
- admin
- password
attack: pitchfork
extractors:
- type: regex
@ -53,7 +45,7 @@ requests:
req-condition: true
matchers:
- type: dsl
dsl:
- 'contains(body_4, "/logout")'
- 'contains(body_4, "Dashboard [Jenkins]")'
condition: and
dsl:
- 'contains(body_3, "/logout")'
- 'contains(body_3, "Dashboard [Jenkins]")'