Importance of burp history analysis to bypass 403

Vuk Ivanovic
InfoSec Write-ups
Published in
3 min readJun 15, 2021

--

or, how I learned that specific Referer header can make all the difference

When it comes to bug hunting, directory brute force is a necessary part, if you want to cover all the bases. And, at times, depending on bug bounty programs’ policy, or simply how the servers are configured, things like captcha or 429, or just blocking your ip completely will happen. There are ways around…

--

--

IT Security and bug bounty hunting, knowledge collector especially anything with word quantum, and sometimes writer of fiction.