augustd / burp-suite-software-version-checks

Burp extension to passively scan for applications revealing software version numbers
30 stars 17 forks source link

Update match-rules.tab #88

Closed crashbrz closed 4 years ago

crashbrz commented 4 years ago

Added matches for PDF Generators JasperReports and iText

augustd commented 4 years ago

Thank you so much for your submission @crashbrz! Can you provide some examples of real life responses containing these patterns so we can add them to the unit tests?

crashbrz commented 4 years ago

Hi man! These signatures are inside of PDF files ( Generated by JasperReports and iText) unfortunately I cannot send the complete documents. References: https://community.jaspersoft.com/project/jasperreports-library https://itextpdf.com/en Following a little bit more piece of code:

<</Subtype/Type1/Type/Font/BaseFont/Helvetica/Encoding/WinAnsiEncoding>> endobj 7 0 obj <</Kids[1 0 R 8 0 R]/Type/Pages/Count 2/ITXT(7.0.0)>> endobj 14 0 obj <</Names[(JR_PAGE_ANCHOR_0_1) 12 0 R(JR_PAGE_ANCHOR_0_2) 13 0 R]>> endobj 15 0 obj <</Dests 14 0 R>> endobj 16 0 obj <</Names 15 0 R/Type/Catalog/Pages 7 0 R/ViewerPreferences<</PrintScaling/AppDefault>>>> endobj 17 0 obj <</ModDate(D:20200612085705+02'00')/Creator(JasperReports Library version 6.12.2)/CreationDate(D:20200612085705+02'00')/Producer(iText 7.0.0 by 1T3XT)>> endobj xref 0 18

On Thu, Jun 11, 2020 at 9:21 PM August Detlefsen notifications@github.com wrote:

Thank you so much for your submission @crashbrz https://github.com/crashbrz! Can you provide some examples of real life responses containing these patterns so we can add them to the unit tests?

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub https://github.com/augustd/burp-suite-software-version-checks/pull/88#issuecomment-642880786, or unsubscribe https://github.com/notifications/unsubscribe-auth/AAK7XSD52TJ72E2ZO7WKS33RWEVBXANCNFSM4N3KYTNA .

-- Ewerson Guimaraes (Crash) Pentester/Researcher DcLabs Security Team www.dclabs.com.br