<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Re-login plugin for Burp Suite</title>
	<atom:link href="http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/feed/" rel="self" type="application/rss+xml" />
	<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/</link>
	<description>a blog with scattered thoughts on security.</description>
	<lastBuildDate>Fri, 03 Sep 2010 13:45:08 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Ch0pstick</title>
		<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/comment-page-1/#comment-290</link>
		<dc:creator>Ch0pstick</dc:creator>
		<pubDate>Sat, 26 Jun 2010 18:46:16 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=10#comment-290</guid>
		<description>In theory, this should work for all requests. The plugin looks for a specific pattern in the response body, if found, then it knows that the session has been invalidated. Then, the plugin will attempt to re-login to the web app. In my case, the login process was tedious and time consuming.  The plugin cut my testing time by a third; mainly because the F5 BigIP was set to &#039;anal&#039; mode.</description>
		<content:encoded><![CDATA[<p>In theory, this should work for all requests. The plugin looks for a specific pattern in the response body, if found, then it knows that the session has been invalidated. Then, the plugin will attempt to re-login to the web app. In my case, the login process was tedious and time consuming.  The plugin cut my testing time by a third; mainly because the F5 BigIP was set to &#39;anal&#39; mode.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: yarrrr</title>
		<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/comment-page-1/#comment-289</link>
		<dc:creator>yarrrr</dc:creator>
		<pubDate>Sat, 26 Jun 2010 16:13:43 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=10#comment-289</guid>
		<description>I take it this doesn&#039;t rewrite queued requests in the scanner? as in, this is purely for manual poking?</description>
		<content:encoded><![CDATA[<p>I take it this doesn&#39;t rewrite queued requests in the scanner? as in, this is purely for manual poking?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chirashi Security &#187; I&#8217;m speaking at Hack In The Box 2009!</title>
		<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/comment-page-1/#comment-68</link>
		<dc:creator>Chirashi Security &#187; I&#8217;m speaking at Hack In The Box 2009!</dc:creator>
		<pubDate>Tue, 04 Aug 2009 10:01:07 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=10#comment-68</guid>
		<description>[...] Training track precedes the con and is another great way of picking up some m4d l33t sk1llz.  I wrote a post on Burp Suite that talked a little bit about the Web Application Hackers Handbook and one of its [...]</description>
		<content:encoded><![CDATA[<p>[...] Training track precedes the con and is another great way of picking up some m4d l33t sk1llz.  I wrote a post on Burp Suite that talked a little bit about the Web Application Hackers Handbook and one of its [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chopstick</title>
		<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/comment-page-1/#comment-6</link>
		<dc:creator>Chopstick</dc:creator>
		<pubDate>Wed, 13 May 2009 05:39:00 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=10#comment-6</guid>
		<description>Herro!&lt;br /&gt;&lt;br /&gt;Arigato gozaimasu!  You&#039;re too kind.</description>
		<content:encoded><![CDATA[<p>Herro!</p>
<p>Arigato gozaimasu!  You&#8217;re too kind.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://chirashi.zensay.com/2009/05/re-login-plugin-for-burp-suite/comment-page-1/#comment-5</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Tue, 12 May 2009 16:17:00 +0000</pubDate>
		<guid isPermaLink="false">http://chirashi.zensay.com/?p=10#comment-5</guid>
		<description>Hey!&lt;br /&gt;&lt;br /&gt;Nice stuff man. &lt;br /&gt;&lt;br /&gt;You should realeaze this under your own moniker for phun and proaphit.</description>
		<content:encoded><![CDATA[<p>Hey!</p>
<p>Nice stuff man. </p>
<p>You should realeaze this under your own moniker for phun and proaphit.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
