Detailed description can be found in our blog post about this plugin.
Feature | Log4Shell scanner (this one) | ActiveScan++ (PortSwigger/active-scan-plus-plus@b485a07) |
---|---|---|
Synchronous detection | ✔️ | ✔️ |
Asynchronous detection | ✔️ | ❌ |
Hostname detection | ✔️ | ❌ |
Username detection | ✔️ | ❌ |
Execute ./gradlew build
and you'll have the plugin ready in
build/libs/burp-log4shell.jar
The whole project is available under the GNU General Public License v3.0,
see LICENSE.md
.