Burp Suite User Forum

Create new post

What class/parameter makes the extensions be part of the scanner "Follow redirection when necessary"

dree | Last updated: Mar 14, 2019 07:26PM UTC

Hi guys, I have an extension here and I am looking for a reflective value, although when I look at flow or logger++ the 302 is hit but never followed after the POST. Is there a special trick to have the extension follow the redirects when using IScannerCheck & doActiveScan? Thank you very much!

Liam, PortSwigger Agent | Last updated: Mar 15, 2019 02:16PM UTC

Which extension are you using? Is this something you have developed?

Burp User | Last updated: Mar 15, 2019 03:08PM UTC

It is something I am currently developing yes.

Burp User | Last updated: Mar 15, 2019 03:10PM UTC

The question is really how do you ensure that the extension will get the value of the page after the redirect and not the 302 itself.

Liam, PortSwigger Agent | Last updated: Mar 18, 2019 10:58AM UTC

There is no automatic way to do this. You'll need to detect the redirect, copy the location header and perform a new request. Please let us know if you need any further assistance.

Burp User | Last updated: Mar 20, 2019 01:53PM UTC

Perfect thanks Liam :) Just wanted to be sure before going this way. Cheers!

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.