ZAP allows you to try to brute force directories and files.
A set of files are provided which contain a large number of file and directory names.
ZAP attempts to directly access all of the files and directories listed in the selected file directly rather than relying on finding links to them.
Brute Force is configured using the
Options Brute Force screen.
This functionality is based on code from the OWASP DirBuster project.
Brute Force tab | ||
Sites tab | 'Attack/Brute Force site' right click menu item |
UI Overview | for an overview of the user interface | |
Features | provided by ZAP |
http://www.owasp.org/index.php/Category:OWASP_DirBuster_Project | OWASP DirBuster homepage |