appsec.fyi

A somewhat curated list of links to various topics in application security.

Burp Suite

LinkExcerpt
My first Burp Suite extensionI recently had a career change from the defensive side of security to the offensive which means a whole knew set of skills to develop. For those who are not familiar Burp Suite is a security tool for testing web applications.
Launching Tea Break burp extension: Reduce BurnoutFor some time, I was having severe neck pain, eye strain etc. The neck was also causing headache and dizzy feeling. I know of many people who are putting out many hours staring at terminals, using Burpsuite for continuous long hours.
BurpSuite Extensions: Some FavoritesPart of our internal mentoring and training culture at VDA includes Lunch and Learn events where engineers share helpful information about a relevant security topic.
Authentication Token Obtain and Replace (ATOR) Burp Plugin: Fast and Reliable plugin to handle Complex Login SequencesAutomated scanners require a constant flow of requests and most tools have built-in session handling logic. Automated scanning/Session Handling for web applications is tricky these days especially because of the following vectors:
[BURP] 12 tricks for Burp RepeaterRepeater is one of the most frequently used part of Burp Suite. But there is plenty of hidden features there. Do you know all of them? Check my video with 12 tricks. 0:09 Change tab name 0:24 Restore closed tab 0:44 Request history 0:55 Auto scroll 1:19 Export to XML 1:41 Create request based on UR
Integrating Burp Suite Enterprise into Jenkins CI/CD PipelineLast year, Portswigger, the company behind Burp Suite, the world’s most widely used web application security testing software, released a new product separate from Burp Suite Pro called Burp Suite Enterprise Edition. This new offering is a scalable automation and CI integration product.
Burp Share RequestsThis Burp Suite extension enables the generation of shareable links to specific requests which other Burp Suite users can import.
The top 10 best pentesting tools and extensions in Burp SuiteAt its heart, Burp Suite is an intercepting proxy. Manually proxying HTTP(S) traffic can provide a great deal of insight into a target web application's behavior.
Burp Suite Secret Finder - Burp Suite Extension To Discover Apikeys/Tokens From HTTP ResponseBurp Suite extension to discover a apikey/tokens from HTTP response.
PortSwigger Launches Web Security AcademyPortSwigger has launched a free interactive training platform in an attempt to address the global shortage of cybersecurity talent. The Web Security Academy features a vast amount of high-quality reading materials and interactive labs of varying levels of difficulty.
The Top 8 Burp Suite Extensions That I Use to Hack Web SitesWhen doing Web Application Penetration Tests, one tool dominates the desktops of most Security Consultants: Burp Suite Professional (https://portswigger.net). This comes as no surprise. It has solid performance, a ton of features, and most importantly, extensibility.
Redirecting
How i exploit out-of-band resource load (HTTP) using burp suite extension plugin (taborator)Out-of-band resource load arises when it is possible to induce an application to fetch content from an arbitrary external location, and incorporate that content into the application’s own response(s).
Simple dirty script to fuzz a SOAP request using the BURP Sniper approach using Windows authenticationSimple dirty script to fuzz a SOAP request using the BURP Sniper approach using Windows authentication - ws_soap_fuzz.py
Using Burp to Test a REST APIREST (representational state transfer) is an architectural style consisting of a coordinated set of constraints applied to components, connectors, and data elements, within a distributed hypermedia system.
Quick and Dirty BurpSuite TutorialIn this article, we are going to see another powerful framework that is used widely in pen-testing.
The Top 5 Burp Suite ExtensionsIf you’re a freelance security researcher, chances are you’ve heard of — or use — Burp Suite, a program commonly considered the gold standard for penetration testing software.
My Favorite Burp Suite ExtensionsMy new buddy Matt (https://twitter.com/matt0177), long-time SANS TA and Facilitator and all-around amazingly-smart dude, asked for my suggestions for Burp Suite extensions that I like using. This post is for him (and you).
RhinoSecurityLabs/SleuthQLSleuthQL is a python3 script to identify parameters and values that contain SQL-like syntax. Once identified, SleuthQL will then insert SQLMap identifiers (*) into each parameter where the SQL-esque variables were identified. SleuthQL requires an export of Burp's Proxy History.
Attacking Web Applications With Burp SuiteLearn to effectively and dynamically attack web applications by discovering security weaknesses and common vulnerabilities using an industry standard methodology backed by the most comprehensive suite of web application penetration testing tools available today. The Burp Suite!
snoopysecurity/awesome-burp-extensionsAwesome burp extensions is an amazing list for people who want to spice up their Burp instance with awesome plugins. The best ways to use are: Passive and Active scan plugins.
AES-Killer v3.0 - Burp Plugin To Decrypt AES Encrypted Traffic Of Mobile Apps On The FlyBurpsuite Plugin to decrypt AES Encrypted traffic on the fly.
Playing With the New Burp Suite REST APIOne of the coolest new features released in the recent beta version of Burp Suite is the introduction of a REST API. I blogged about the UI and some other feature enhancements earlier this week.
PortSwigger/param-minerThis extension identifies hidden, unlinked parameters. It's particularly useful for finding web cache poisoning vulnerabilities. It combines advanced diffing logic from Backslash Powered Scanner with a binary search technique to guess up to 65,000 param names per request.
nccgroup/AutoRepeaterAutoRepeater will only resend requests which are changed by a defined replacement.
nccgroup/BurpSuiteHTTPSmugglerA Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques. This extension has been developed by Soroush Dalili (@irsdl) from NCC Group. The initial release (v0.
SleuthQL - Burp History Parsing Tool To Discover Potential SQL Injection PointsSleuthQL is a python3 script to identify parameters and values that contain SQL-like syntax. Once identified, SleuthQL will then insert SQLMap identifiers (*) into each parameter where the SQL-esque variables were identified. SleuthQL requires an export of Burp's Proxy History.
0ang3el/EasyCSRFEasyCSRF helps to find weak CSRF-protection in WebApp which can be easily bypassed. For example, content type based protection for API (Rest API, GraphQL API, etc) or CSRF-protection based on obscure data format (binary format, etc) are known to be weak.
Writing your first Burp Suite extensionBefore we get into specifics for each language, there is some general context to bear in mind: Burp looks for a class called BurpExtender to instantiate (with no constructor parameters) and then calls registerExtenderCallbacks() on this object passing in a "callbacks" object.
The Top 8 Burp Suite ExtensionsBurp Suite is an integrated platform for attacking web applications. It contains a number of tools, and for these tools to design a number of interfaces to accelerate the process of attacking the application process.
The Top 8 Burp Suite ExtensionsBurp Suite is an integrated platform for attacking web applications. It contains a number of tools, and for these tools to design a number of interfaces to accelerate the process of attacking the application process.
Extending Burp Proxy With ExtensionsBy Chris Bush. The world of information security is awash with tools to help security practitioners do their jobs more easily, accurately and productively.
Writing your first Burp Suite extensionThe new Burp Suite extensibility makes it much easier for non-programmers to create and use Burp extensions. This post explains the basics, and we'll soon be releasing a series of examples of Burp's extensibility in action. You can create Burp extensions using Java or Python.