├── .gitignore ├── LICENSE ├── META-INF └── MANIFEST.MF ├── README.md ├── docs └── doyensec_logo.svg ├── gradle └── wrapper │ ├── gradle-wrapper.jar │ └── gradle-wrapper.properties ├── gradlew ├── gradlew.bat └── src └── main └── java └── com └── doyensec └── ClientSidePathTraversal ├── CSPTScannerTask.java ├── ClientSidePathTraversal.java ├── ClientSidePathTraversalForm.form ├── ClientSidePathTraversalForm.java ├── ClientSidePathTraversalPassiveScan.java ├── FalsePositivesForm.form ├── FalsePositivesForm.java ├── PotentialSink.java ├── PotentialSource.java ├── ProxyFilterExploitableSink.java ├── ProxyFilterPotentialSink.java └── ProxyFilterPotentialSource.java /.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/.gitignore -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/LICENSE -------------------------------------------------------------------------------- /META-INF/MANIFEST.MF: -------------------------------------------------------------------------------- 1 | Manifest-Version: 1.0 2 | 3 | -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/README.md -------------------------------------------------------------------------------- /docs/doyensec_logo.svg: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/docs/doyensec_logo.svg -------------------------------------------------------------------------------- /gradle/wrapper/gradle-wrapper.jar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/gradle/wrapper/gradle-wrapper.jar -------------------------------------------------------------------------------- /gradle/wrapper/gradle-wrapper.properties: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/gradle/wrapper/gradle-wrapper.properties -------------------------------------------------------------------------------- /gradlew: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/gradlew -------------------------------------------------------------------------------- /gradlew.bat: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/gradlew.bat -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/CSPTScannerTask.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/CSPTScannerTask.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversal.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversal.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalForm.form: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalForm.form -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalForm.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalForm.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalPassiveScan.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ClientSidePathTraversalPassiveScan.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/FalsePositivesForm.form: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/FalsePositivesForm.form -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/FalsePositivesForm.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/FalsePositivesForm.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/PotentialSink.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/PotentialSink.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/PotentialSource.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/PotentialSource.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterExploitableSink.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterExploitableSink.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterPotentialSink.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterPotentialSink.java -------------------------------------------------------------------------------- /src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterPotentialSource.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/doyensec/CSPTBurpExtension/HEAD/src/main/java/com/doyensec/ClientSidePathTraversal/ProxyFilterPotentialSource.java --------------------------------------------------------------------------------