Avneesh Hota
Avneesh Hota
[Update 2] Burp has acknowledged the [issue](https://forum.portswigger.net/thread/montoyaapi-v2023-12-1-invalid-url-exception-in-includeinscope-api-22aee5ae) and have released a fix in their `early-adopter` release channel. Akto Burp plugin will work pre [v2023.10.1](https://portswigger.net/burp/releases/professional-community-2023-10-1) or post [v2024.1.1.1](https://portswigger.net/burp/releases/professional-community-2024-1-1-1)
@falconcode16 Good job on the blog. Loved the creative analogy to explain CRLF in "The Hitchhiker’s Guide to CRLF Injection" part.
Hi @Vishalk91-4. @falconcode16 has already submitted a blog for it and it looks pretty good. Can you please pick some other issue
@sivangbagri your test template is invalid. Please run your template on an API and see if it works before making a PR.
@sivangbagri your template still seems invalid. Request header is nested inside query params in api_selection_filter. Also you should detect and modify in request payload too. Please run the template on...
@saitejavarma-7 I have assigned it to you too. Happy hacking
Hey.. still invalid. Your logic requires SSN or UPI id to be present in query, headers AND body param. Instead it should be a OR. Please refer CSRF test by...
What is the logic for `response_code: gte: 400` ? Shouldn't you check if it returns 2xx
Done @professorabhay
I've assigned it to you, @rashmibharambe . Happy hacking! Feel free to join our [Discord](https://discord.com/channels/1070706429402562733/1095281477748543618) if you need assistance.