To wrap up @Burp_Suite Extensibility Month initiatives, I just released AI Reporter, a Burp Suite extension that brings AI-powered automation to penetration test reporting using Burp AI or a local Ollama instance.
More details:
https://t.co/mit8dYKc67
As part of @Burp_Suite Extensibility Month initiatives, last week I gave a talk titled “Restoring testability: Handling complex scenarios in Burp Suite with a custom extension”.
Video, slides and code can be found here:
https://t.co/DEqvBo5V8J
🚀 Want to build your own Burp Suite extensions?
As part of Burp Extensibility Month, we’re sharing Burp Ambassador Federico Dotta's (@apps3c) 10-part guide to extending Burp Suite with the Montoya API.
Start here 👇
https://t.co/mWaIl5YEqv
#BurpSuite#BurpExtensibility
I’ll be hosting a live session during @Burp_Suite Extensibility Month on the @PortSwigger Discord on May 14 at 4 PM BST / 5 PM CEST. Topic: “Restoring Testability: Handling Complex Scenarios in Burp Suite with a Custom Extension”. Join us live!
https://t.co/IkWyvmMMQ2
To celebrate the @Burp_Suite Extensibility Month, the tenth article of the series "Extending Burp Suite for fun and profit - The Montoya way" is out! The topics of this tenth part is "Burp AI"!
Stay tuned for a new extension on the topic on @BApp_Store!
https://t.co/BwMuePkrSu
Highlights include:
✨ Our new Burp Ambassadors, @apps3c and @0xTib3rius, present sessions covering creating custom extensions for complex testing scenarios and a Bambda generation framework.
🔬 A deep dive with PortSwigger researcher @zakfedotkin on vibecoding Burp extensions.
🚀 Extensibility Month is launching on the PortSwigger Discord!
Join us for a month of events, resources, and community discussion all about creating, sharing, and getting more from Extensibility in Burp Suite.
#BurpSuite#BurpExtensibility
The ninth article of the series "Extending Burp Suite for fun and profit - The Montoya way" is out! The topics of this ninth part is "Custom scan checks - An improved quick way to extend Burp Suite Active and Passive Scanner"!
https://t.co/hPONObgjiz
I released an updated version of Brida (0.6), fully compatible with @fridadotre >= 17! You can download the new release from GitHub and soon from the @Burp_Suite BAppStore.
https://t.co/OHXuYMkhNu
The unattainable unicorn in fault injection!
Our latest article reveals that single-bit faults are possible on ESP32. Discover how some bits are easier to flip and why lowest voltage isn't always best.
Join @0x696e6f6465 in his #hardwarehacking quest.
https://t.co/ngnctBv6ys
Eighth article of the series "Extending @Burp_Suite for fun and profit - The Montoya way" is out! Topic: BChecks - A quick way to extend Burp Suite Active and Passive Scanner!
https://t.co/p6SWwo0x5S
Seventh article of the series "Extending
@Burp_Suite
for fun and profit - The Montoya way" is out! Topic: using the Collaborator in Burp Suite plugins!
https://t.co/Lw52zupNNU
Display responses that came from a server-side cache (Varnish/Cloudfront) with this filter bambda:
return requestResponse.response().headerValue("X-Cache").toLowerCase().contains("hit");
Sixth article of the series "Extending @Burp_Suite for fun and profit - The Montoya way" is out! Topic: adding new checks to Burp Suite Active and Passive Scanner!
https://t.co/GevlR4nP6n
@InsiderPhD 4. Brida, Burp to Frida bridge
Bridges Burp and Frida, enabling traffic manipulation across multiple platforms. Simplifies mobile testing with direct function usage for data encryption/decryption, offering custom plugins, tabs, menu options and more.
https://t.co/Mk2PMjG6Tt
Fifth article of the series "Extending @Burp_Suite for fun and profit - The Montoya way" is out! Topic: adding new functionalities to the context menu!
https://t.co/ibkcL0T1Qr