The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Test for MFA bypass vuln

Andy | Last updated: Mar 28, 2023 12:03PM UTC

I was just reading the article below and was wondering how one could scan for such a vulnerability. Would it show up in the default scan, or would extensions/customizations need to be made to detect? https://www.proofpoint.com/us/blog/cloud-security/technical-deep-dive-vulnerabilities-bypass-multi-factor-authentication-microsoft

Hannah, PortSwigger Agent | Last updated: Mar 28, 2023 03:54PM UTC