How to brute force efficiently without Burp Pro

Eray Mitrani
InfoSec Write-ups
Published in
3 min readJul 2, 2018


Wfuzz and SecLists a match made in heaven.

Over the past month I’ve tried to distinguish my recon game from other hackers. Even though these are not revolutionary tips I believe they are criminally underutilized. However, do be warned that these will create some noise and might get you blacklisted across CDNs or even ISPs, so try to not go too crazy with…

