Added an 'Archive' directory for BChecks made outdated by updates to the Burp Suite Scanner #205
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Hello,
I originally created the "InsecureContentSecurityPolicy.bcheck" file back in October 2023 due to Burp Suite not possessing native CSP scanner rulesets outside of referencing "frame-ancestors" for Clickjacking attacks.
Yet as of March 1st, it appears that Burp Suite has added CSP rulesets to the native scanner.
However, I would like to keep this BCheck as publicly accessible so that anyone using 2023 versions of Burp can still retain these custom rulesets.
Even beyond this particular CSP BCheck, this same scenario may emerge for other BChecks after future updates to the Burp Suite scanner.
I would hence like an "archived" directory be set which contains BChecks for any rulesets made arbitrary by additions/modifications to Burp's own built-in rulesets.
Thank you for reading,