DVWA-BruteFoce- Impossible

0x01 preliminary analysis

After two consecutive logins, it will prompt, too many failed logins, try again in 15 minutes

Inclusion structure

 

There is no difference between the parameters and the previous DVWA-hight. If you reuse a token, it will still be 302. Continue to use the pitchfork mode to try

Just when I saw that the return was 200, I thought it was successful. I thought the difficulty of this impossible was the same as that of hight.

 

Since it is a target site, we know that the user name is admin and the password is password, but the result returned here is still  too many failed logins, try again in 15 minutes, it seems that things are not that simple

Guess you like

Origin blog.csdn.net/claysystem/article/details/118278363