Applescript for HTTP BruteForcing..
ID: 30dd1d6a-5104-5765-ba97-42dd6eb5be8c
STIX ID: report--30dd1d6a-5104-5765-ba97-42dd6eb5be8c
Feed Name: SensePost Blog
The document describes a technique for brute-forcing a complex, multi-stage web application login by automating Safari with AppleScript to handle cookies, 302 redirects, and JavaScript. The script iterates usernames, fills and submits forms via injected JavaScript, captures result screenshots, and later uses colon-delimited username:password pairs as a simple dictionary—presented as a practical workflow rather than a formal incident report.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
