{"id":786,"date":"2023-10-06T18:57:58","date_gmt":"2023-10-06T18:57:58","guid":{"rendered":"https:\/\/hacking.cool\/?p=786"},"modified":"2023-10-06T19:15:11","modified_gmt":"2023-10-06T19:15:11","slug":"burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results","status":"publish","type":"post","link":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/","title":{"rendered":"Burp Intruder and Cluster bomb attack &#8211; how to set up and filter the results."},"content":{"rendered":"\n<p class=\"has-black-color has-text-color\">The Cluster bomb attack can be very useful when you need to use more than one payload. For instance, we are going to retrieve the administrator password via triggering conditional responses through SQL statement. We already know that the length of the password is 20 characters. Our statement is:<\/p>\n\n\n\n<p class=\"has-black-color has-text-color\"><strong>&#8216; AND (SELECT SUBSTRING(password,1,1) FROM users WHERE username=&#8217;administrator&#8217;)=&#8217;a<\/strong><\/p>\n\n\n\n<p class=\"has-black-color has-text-color\">Lets send our request to Intruder and chose the Cluster bomb attack:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"163\" height=\"72\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-1.png\" alt=\"\" class=\"wp-image-795\"\/><\/figure>\n\n\n\n<p class=\"has-black-color has-text-color\"> Add the payload points:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"954\" height=\"105\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-2.png\" alt=\"\" class=\"wp-image-798\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-2.png 954w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-2-300x33.png 300w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-2-768x85.png 768w\" sizes=\"auto, (max-width: 954px) 100vw, 954px\" \/><\/figure>\n\n\n\n<p class=\"has-black-color has-text-color\">Now time to set the payload. Go to &#8220;Payloads&#8221; &#8211; &#8220;Payload sets&#8221; &#8211; &#8220;Payload set&#8221; and chose &#8220;1&#8221;. In our case we need to use only numbers from 1 to 20.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"485\" height=\"354\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-3.png\" alt=\"\" class=\"wp-image-803\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-3.png 485w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-3-300x219.png 300w\" sizes=\"auto, (max-width: 485px) 100vw, 485px\" \/><\/figure>\n\n\n\n<p>For the second set we will use simple list a-z and numbers 0-9:<\/p>\n\n\n\n<p><img decoding=\"async\" src=\"data:image\/png;base64,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\" alt=\"\"><\/p>\n\n\n\n<p>Lets start our attack \ud83d\ude42 When attack will be finished we can see the result:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"741\" height=\"472\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-4.png\" alt=\"\" class=\"wp-image-817\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-4.png 741w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-4-300x191.png 300w\" sizes=\"auto, (max-width: 741px) 100vw, 741px\" \/><\/figure>\n\n\n\n<p>But how we can filter it to see which letter is correct? If you have difference in status codes of responses you can filter it by status code:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"705\" height=\"311\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-5.png\" alt=\"\" class=\"wp-image-818\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-5.png 705w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-5-300x132.png 300w\" sizes=\"auto, (max-width: 705px) 100vw, 705px\" \/><\/figure>\n\n\n\n<p>But in this case we&#8217;ve got the difference by the Length of responses (5383 for incorrect and 5444 for correct letter), that&#8217;s why we need only sort it by number of &#8220;Payload 1&#8221; and the &#8220;Length&#8221;:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"739\" height=\"438\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-6.png\" alt=\"\" class=\"wp-image-819\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-6.png 739w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-6-300x178.png 300w\" sizes=\"auto, (max-width: 739px) 100vw, 739px\" \/><\/figure>\n\n\n\n<p>More interesting case is when we handle the injection which triggered time delays. How we can filter the result now?<\/p>\n\n\n\n<p>Before starting attack, go to &#8220;Resource pool&#8221;  and Create a new resource pool with Maximum concurrent request set to 1:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"414\" height=\"98\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-7.png\" alt=\"\" class=\"wp-image-826\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-7.png 414w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-7-300x71.png 300w\" sizes=\"auto, (max-width: 414px) 100vw, 414px\" \/><\/figure>\n\n\n\n<p>When attack will be finished go to &#8220;Columns&#8221; and add &#8220;Response received&#8221; one. Then sort the results by &#8220;Response received&#8221; decreasing. Voila, we retrieve a password and just need it to rewrite from 1 to 20: <\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"658\" height=\"343\" src=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-9.png\" alt=\"\" class=\"wp-image-837\" srcset=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-9.png 658w, https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/image-9-300x156.png 300w\" sizes=\"auto, (max-width: 658px) 100vw, 658px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>The Cluster bomb attack can be very useful when you need to use more than one payload. For instance, we are going to retrieve the administrator password via triggering conditional responses through SQL statement. We already know that the length of the password is 20 characters. Our statement is: &#8216; AND (SELECT SUBSTRING(password,1,1) FROM users<span class=\"post-excerpt-end\">&hellip;<\/span><\/p>\n<p class=\"more-link\"><a href=\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\" class=\"themebutton\">Read More<\/a><\/p>\n","protected":false},"author":2,"featured_media":841,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_mi_skip_tracking":false,"footnotes":""},"categories":[4],"tags":[],"class_list":["post-786","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-articles"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v19.3 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool\" \/>\n<meta property=\"og:description\" content=\"The Cluster bomb attack can be very useful when you need to use more than one payload. For instance, we are going to retrieve the administrator password via triggering conditional responses through SQL statement. We already know that the length of the password is 20 characters. Our statement is: &#8216; AND (SELECT SUBSTRING(password,1,1) FROM users&hellip;Read More\" \/>\n<meta property=\"og:url\" content=\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\" \/>\n<meta property=\"og:site_name\" content=\"hacking.cool\" \/>\n<meta property=\"article:published_time\" content=\"2023-10-06T18:57:58+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-10-06T19:15:11+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"1200\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Anya\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Anya\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/#website\",\"url\":\"https:\/\/hacking.cool\/atomanya\/\",\"name\":\"hacking.cool\",\"description\":\"is the hacking school \ud83d\udc69\ud83c\udffb\u200d\ud83d\udcbb\ud83e\uddd1\ud83c\udffb\u200d\ud83d\udcbb\ud83d\uddfa\ud83d\udcda\ud83d\udcd6\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/hacking.cool\/atomanya\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#primaryimage\",\"url\":\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg\",\"contentUrl\":\"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg\",\"width\":1200,\"height\":1200},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\",\"url\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\",\"name\":\"Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool\",\"isPartOf\":{\"@id\":\"https:\/\/hacking.cool\/atomanya\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#primaryimage\"},\"datePublished\":\"2023-10-06T18:57:58+00:00\",\"dateModified\":\"2023-10-06T19:15:11+00:00\",\"author\":{\"@id\":\"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/1c3060c2c9f3493114afde50f9b22bc6\"},\"breadcrumb\":{\"@id\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/hacking.cool\/atomanya\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Burp Intruder and Cluster bomb attack &#8211; how to set up and filter the results.\"}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/1c3060c2c9f3493114afde50f9b22bc6\",\"name\":\"Anya\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e2e99aa0c5e7264f948b910a22231aa9?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e2e99aa0c5e7264f948b910a22231aa9?s=96&d=mm&r=g\",\"caption\":\"Anya\"},\"url\":\"https:\/\/hacking.cool\/atomanya\/author\/anya\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/","og_locale":"en_US","og_type":"article","og_title":"Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool","og_description":"The Cluster bomb attack can be very useful when you need to use more than one payload. For instance, we are going to retrieve the administrator password via triggering conditional responses through SQL statement. We already know that the length of the password is 20 characters. Our statement is: &#8216; AND (SELECT SUBSTRING(password,1,1) FROM users&hellip;Read More","og_url":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/","og_site_name":"hacking.cool","article_published_time":"2023-10-06T18:57:58+00:00","article_modified_time":"2023-10-06T19:15:11+00:00","og_image":[{"width":1200,"height":1200,"url":"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg","type":"image\/jpeg"}],"author":"Anya","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Anya","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebSite","@id":"https:\/\/hacking.cool\/atomanya\/#website","url":"https:\/\/hacking.cool\/atomanya\/","name":"hacking.cool","description":"is the hacking school \ud83d\udc69\ud83c\udffb\u200d\ud83d\udcbb\ud83e\uddd1\ud83c\udffb\u200d\ud83d\udcbb\ud83d\uddfa\ud83d\udcda\ud83d\udcd6","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/hacking.cool\/atomanya\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#primaryimage","url":"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg","contentUrl":"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg","width":1200,"height":1200},{"@type":"WebPage","@id":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/","url":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/","name":"Burp Intruder and Cluster bomb attack - how to set up and filter the results. - hacking.cool","isPartOf":{"@id":"https:\/\/hacking.cool\/atomanya\/#website"},"primaryImageOfPage":{"@id":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#primaryimage"},"datePublished":"2023-10-06T18:57:58+00:00","dateModified":"2023-10-06T19:15:11+00:00","author":{"@id":"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/1c3060c2c9f3493114afde50f9b22bc6"},"breadcrumb":{"@id":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/hacking.cool\/atomanya\/burp-intruder-and-cluster-bomb-attack-how-to-set-up-and-filter-the-results\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/hacking.cool\/atomanya\/"},{"@type":"ListItem","position":2,"name":"Burp Intruder and Cluster bomb attack &#8211; how to set up and filter the results."}]},{"@type":"Person","@id":"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/1c3060c2c9f3493114afde50f9b22bc6","name":"Anya","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/hacking.cool\/atomanya\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e2e99aa0c5e7264f948b910a22231aa9?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e2e99aa0c5e7264f948b910a22231aa9?s=96&d=mm&r=g","caption":"Anya"},"url":"https:\/\/hacking.cool\/atomanya\/author\/anya\/"}]}},"jetpack_featured_media_url":"https:\/\/hacking.cool\/atomanya\/wp-content\/uploads\/2023\/10\/1200x1200bf-60.jpg","_links":{"self":[{"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/posts\/786","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/comments?post=786"}],"version-history":[{"count":13,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/posts\/786\/revisions"}],"predecessor-version":[{"id":838,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/posts\/786\/revisions\/838"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/media\/841"}],"wp:attachment":[{"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/media?parent=786"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/categories?post=786"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hacking.cool\/atomanya\/wp-json\/wp\/v2\/tags?post=786"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}