logo

Applescript for HTTP BruteForcing..

ID: 30dd1d6a-5104-5765-ba97-42dd6eb5be8c

STIX ID: report--30dd1d6a-5104-5765-ba97-42dd6eb5be8c

Feed Name: SensePost Blog

Date Published: 2008-01-01

Date Updated: 2026-04-29

...
...

The document describes a technique for brute-forcing a complex, multi-stage web application login by automating Safari with AppleScript to handle cookies, 302 redirects, and JavaScript. The script iterates usernames, fills and submits forms via injected JavaScript, captures result screenshots, and later uses colon-delimited username:password pairs as a simple dictionary—presented as a practical workflow rather than a formal incident report.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.