官术网_书友最值得收藏!

Working with target exclusions

Just as we can add items to scope in Burp, we can also add items that need to be explicitly set out of scope. This, as is the case with in-scope items, can be added via two methods. The first is via the Proxy | History tab from the right-click context menu:

The second is from the Target scope tab in the Exclude from scope section. For example, if you want to exclude all sub-directories and files under /javascript, then the following options can be applied:

  • Protocol: HTTP
  • Host or IP range: mutillidae-testing.cxm
  • Port: ^80$
  • File: ^/javascript/.*

This will exclude all URLs under the /javascript/ directory on port 80 with the HTTP protocol.

You can also load a file containing a list of URLs that need to be excluded from scope via the Load button on the Target | Scope page. This list must be URLs/targets separated by newlines.

Both the Include in scope option and Exclude from scope option are case insensitive. /javascript/, /JavaScript/, and /jAvAscrIPt/ all mean the same for the Target | Scope feature of Burp.

主站蜘蛛池模板: 唐山市| 柳林县| 达日县| 厦门市| 琼结县| 锦屏县| 芜湖市| 兴化市| 精河县| 松溪县| 石河子市| 永仁县| 上林县| 乐安县| 科技| 新田县| 潜江市| 黎城县| 临沭县| 静宁县| 全南县| 南丹县| 甘谷县| 曲阜市| 甘谷县| 墨江| 晋城| 化德县| 萝北县| 南阳市| 潮州市| 灌南县| 富阳市| 垣曲县| 平利县| 新竹县| 来宾市| 石首市| 台州市| 新巴尔虎左旗| 大田县|