Skip to content

Releases: ozzi-/JWT4B

2.7

12 Aug 12:49
Compare
Choose a tag to compare
  • Feature: Consider request header values with a JWT such as "Token: ey.ey.ey"
  • Fix: Height of about window

2.6

23 Jul 08:10
Compare
Choose a tag to compare
2.6

fix: cookie parse bug introduced in 2.5
improve: make extension aware of burp font

2.5

14 Jun 12:22
eb3442d
Compare
Choose a tag to compare
2.5
  • improve: Using Burp Montaya API

  • improve: header detection now checks all headers that start with "Bearer"

  • fix: jwts in cookies that contain a = (valid b64) now parsed correctly

  • fix: prevent resign key field to break on small window sizes

  • cleaning up about tab

2.4

08 Jan 14:31
Compare
Choose a tag to compare
2.4

Fixed: Cookie data HTML not rendered within Intercept tab
HTML rendering has been disabled within Burp extensions and needs to be re-enabled on a per-component basis.

Thanks https://github.com/DolphFlynn for the PR

2.3

31 Aug 06:33
0ffb36d
Compare
Choose a tag to compare
2.3

Fixed: Displaying HTML formatted text properly again with new Burp versions
Fixed: Changed JSON library to prevent erroneous encoding when pretty printing JWT contents
Feature: Support for o365 JWT attack
Feature: Support for keys in hexadecimal form
Misc: Refactoring

2.2

11 Feb 14:29
Compare
Choose a tag to compare
2.2
  • Support for BURPs dark theme
  • Bugfixes & Refactoring
  • Updating old libraries

Big thanks to @DolphFlynn

image

Bugfix

07 Jan 07:12
6d02b00
Compare
Choose a tag to compare

Added by @DolphFlynn
Fixed NPE when key null and using JWT tokens with RS256 or ES256 algorithms

Realtime Intercept Tab

26 Nov 17:28
b6b1fdc
Compare
Choose a tag to compare
  • The intercept tab now provides realtime updates to the JWT
  • Redesigned intercept tab GUI elements
  • Bug fixes

Compability with Pro v2021.2

17 Feb 15:14
Compare
Choose a tag to compare

JWT4B is now compatible with Burp Pro v2021.2 and doesn't require a restart of burp after initializing the plugin anymore, in order to be able to type in the JWT text areas.

Furthermore, the UI layout was improved in order to work better with smaller window sizes / scaling and text area border frames (due to the new look and feel of burp).

Bugfix

19 Nov 16:26
Compare
Choose a tag to compare
  • Addressing #45 by removing a change that stripped newlines in secrets