Burp Suite User Forum

Create new post

Scan for .DS_Store files

Jack | Last updated: Mar 16, 2018 09:30AM UTC

Check out this writeup: https://en.internetwache.org/scanning-the-alexa-top-1m-for-ds-store-files-12-03-2018/ It would be cool if burp suite could automatically check for .DS_Store files on websites, parse the content, spider the files and check for more .DS_Store files in subfolders.

PortSwigger Agent | Last updated: Mar 16, 2018 09:56AM UTC

Hi Jack, Thanks for the suggestion. This sounds like a good idea. There's a few variations we could consider too - .git folders are another one that sometimes leak information. I'm going to add this to our development plan. The dev team are pretty busy already, so it will be a little while until this is looked at. I will link your support case to the development story, and we'll let you know when we make progress.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.