官术网_书友最值得收藏!

Working with target exclusions

Just as we can add items to scope in Burp, we can also add items that need to be explicitly set out of scope. This, as is the case with in-scope items, can be added via two methods. The first is via the Proxy | History tab from the right-click context menu:

The second is from the Target scope tab in the Exclude from scope section. For example, if you want to exclude all sub-directories and files under /javascript, then the following options can be applied:

  • Protocol: HTTP
  • Host or IP range: mutillidae-testing.cxm
  • Port: ^80$
  • File: ^/javascript/.*

This will exclude all URLs under the /javascript/ directory on port 80 with the HTTP protocol.

You can also load a file containing a list of URLs that need to be excluded from scope via the Load button on the Target | Scope page. This list must be URLs/targets separated by newlines.

Both the Include in scope option and Exclude from scope option are case insensitive. /javascript/, /JavaScript/, and /jAvAscrIPt/ all mean the same for the Target | Scope feature of Burp.

主站蜘蛛池模板: 北碚区| 沙洋县| 金门县| 安达市| 怀仁县| 呈贡县| 江城| 兰西县| 即墨市| 冕宁县| 青河县| 涡阳县| 巴东县| 中西区| 锡林浩特市| 临泽县| 无极县| 高邑县| 遂溪县| 石门县| 上饶县| 乐安县| 昆山市| 荃湾区| 鄂伦春自治旗| 安达市| 海淀区| 阿瓦提县| 宝鸡市| 涪陵区| 大石桥市| 神池县| 白水县| 镇赉县| 双流县| 淮北市| 安泽县| 江安县| 云和县| 溧阳市| 屏东县|