Burp-Scanner-OOB-Checks icon indicating copy to clipboard operation
Burp-Scanner-OOB-Checks copied to clipboard

This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation. Works great with XSSHunter

Out-of-band Checks

This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation.

Out-of-band Checks

Installation

Jython Setup

  1. Download the latest standalone Jython 2.7.x .jar file
  2. In Burp select Extender and then the Options tab, under the Python Environment heading click Select File ... and browse to the Jython .jar file

Out-of-bound Checks Plugin Setup

  1. In Burp select Extender and then the Extensions tab
  2. Click Add in the window that appears, select Python from the Extension Type dropdown menu
  3. Click Select File ... next to Extension File and select oob-plugin.py file
  4. Click Next and an OOB tab will appear
  5. Navigate to the OOB tab and add payloads as you would in Intruder