Basic Burp Suite Overview For Web Penetration Testers

1 month ago
1

Now that we've installed the Burp Suite Community software on Windows, Linux and Mac I can present an overview of its main features like the spider, the intruder, the repeter and the decoder.

The Burp Suite software has been developed by Portswigger, it's a proxy that allows you to intercept and manipulate all of the data from HTTP requests, that is web requests.
It's the industry standard software used in offensive information security to test and exploit web application vulnerabilities.

Study with the best ethical hacking courses in the world: https://primeradsec-global.teachable.com

00:00 Downloading and setting up Web For Pentester from Vulnhub
02:46 Setting up Burp on Kali
05:10 First intercept with the Burp proxy and the HTTP History tab
07:05 The target tab: adding and removing elements to the project scope
09:55 Exploiting a command injection flaw
10:30 Sending a request to the Burp repeater
13:00 Launching the first semi-automatic attack using the intruder tool
15:00 The importance of encoding URL characters
18:07 Other Burp Suite features

Loading comments...