Burp Intruder (auth bypass)
burp (GUI); patrón Sniper/Cluster bomb sobre parámetros de auth
Use of Burp Intruder tool to test multiple credential or parameter combinations in authentication mechanisms.
When you want to test credential brute force, authentication parameters (e.g., OTP, secret questions), or login bypass via injections. Burp Intruder allows configuring Sniper attacks (single payload) or Cluster bomb (combinations of multiple payloads) to test different values.
If the site has IP blocking or CAPTCHA. Also if the application has rate limiting protection and you don't want to get blocked.