Burp Suite User Forum

Create new post

Intruder: Alternative Position Markers

Safuat | Last updated: Aug 22, 2018 09:24AM UTC

Hello, How should I proceed if a request (e.g. in the body of a POST request) contains the character "§"? Since this character is the default intruder position marker, the intruder seems to get confused about that in certain scenarios (e.g. when the first occurrence of "§" appears before the intended intrusion position). In my specific case it was a binary payload, so URL-encoding was not an option. As far as I can see, "§" is fixed as position marker - are there plans to enable configuration of position markers, or how could I cope with this?

PortSwigger Agent | Last updated: Aug 22, 2018 11:26AM UTC

Unfortunately, Intruder does not support alternative markers. There are some potential workarounds - you could select a binary payload that doesn't contain that character, or base64 encode the binary chunk, and write an extension that base64 decodes it. In the longer term, Intruder is due some work and when we do this we will try to provide a proper solution for this issue.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.