Burp Suite Cookbook
上QQ阅读APP看书,第一时间看更新

Grep - Extract

Grep - Extract, when enabled, is another option for adding a column in the attack table whose label is specific to a string found in the response. This option differs from Grep - Match, since Grep - Extract values are taken from an actual  HTTP response, as opposed to an arbitrary string.

For the purpose of this recipe, leave the default settings as-is: