CompTIA PenTest+ (PT0-003)Reconnaissance and EnumerationMedium

A penetration tester is analyzing a web application using Burp Suite. They notice that a specific parameter in a POST request, 'userID', seems to control the data displayed to the user. To test for Insecure Direct Object Reference (IDOR) vulnerabilities, they want to systematically increment the 'userID' value and observe the responses. Which Burp Suite Intruder attack type is best suited for this scenario?

  1. ACluster Bomb
  2. BBattering Ram
  3. CPitchfork
  4. DSniper
Show answer & explanation

Correct answer: D. Sniper

The Sniper attack type in Burp Intruder uses a single set of payloads and inserts them into one defined position at a time, making it ideal for systematically incrementing a single parameter like 'userID' to test for IDOR.

Why the other options are wrong

  • A. Cluster Bomb uses multiple payload sets and iterates through every possible combination of payloads across all defined positions, which is overkill and inefficient for a single parameter increment.
  • B. Battering Ram uses a single payload set and inserts the same payload into all defined positions simultaneously, not suitable for incrementing a single value.
  • C. Pitchfork uses multiple payload sets and inserts payloads from each set into a different position in a synchronized fashion (e.g., payload 1 from set A, payload 1 from set B).

Burp Intruder Sniper Attack

An Intruder attack type that uses a single payload set and inserts each payload into one defined position at a time, making it suitable for testing a single parameter.

  • One payload set, one position at a time.
  • Efficient for testing single parameters.
  • Commonly used for IDOR, SQL injection, or XSS on a single input.

Memory trick: Sniper targets one spot, Battering Ram hits everywhere at once.

More Reconnaissance and Enumeration questions