How to do it...

  1. Browse to the login screen of Mutillidae and attempt to log into the application. For example, type a username of admin and a password of adminpass.
  2. Find the login attempt in the Proxy | HTTP history tab. Your request number (that is, the # sign on the left-hand side) will be different from the one shown next. Select the message that captured your attempt to log in.
  1. As the login attempt message is highlighted in the HTTP history table, right-click the Request tab, and select Send to Intruder:

Get Burp Suite Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.