In this module, we are going to see how to do reconnaissance to detect files and folders in the application via Burp. This phase is important because it helps in mapping the entire site structure, since there could be certain folders that aren't available via site hyperlinks but are at times available on the application. Often people end up finding a lot of sensitive folders and files hosted on the web application under the scope. The capability to detect such files and folders totally depends upon the strength of the wordlist available. Let us go ahead and see how we can do this using Burp Suite.
Reconnaissance and file discovery
Using Burp for content and file discovery
For this module, we are going to use OWASP BWA...