Burp Suite User Forum

Create new post

Active Scan++: Applinks in /.well-known/apple-app-site-association identified as Issue

Declan | Last updated: Nov 15, 2022 03:05PM UTC

Hi, this Burp extension is identifying as an issue that the file: /.well-known/apple-app-site-association is containing 'applinks', which is indeed the goal of such file. In the issue detail there is an "interesting" link pointing to: https://developer.apple.com/library/archive/documentation/General/Conceptual/AppSearch/UniversalLinks.html which only confirms that that file is supposed to contains the applinks sections. Why is this an issue?

Hannah, PortSwigger Agent | Last updated: Nov 17, 2022 09:47AM UTC

Hi. This issue has been raised to flag a potentially interesting finding. I've double-checked with the extension developer, and the fact that it has been reported as a high-severity finding is a bug. This should be reported as an informational-level item. The extension will be getting updated in the near future to make that change.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.