PortSwigger Burp Suite

Automated DAST for enterprise environments

Publisher

Portswigger

Average rating

Deze score is berekend door AI op basis van publiek beschikbare informatie.
4.7 / 5

About this software

Burp Suite DAST (formerly Burp Suite Enterprise Edition) is an automated dynamic application security testing (DAST) platform for scanning web applications and APIs at scale. It runs scheduled or on-demand scans, supports authenticated and browser-powered scanning, and provides dashboards and exportable reports. Deployments can be self-hosted or cloud-based and scale via distributed scanning agents. Licensing is typically managed by the number of concurrent scans allowed on the license.

Licenses & prices

Enterprise

Automated, scalable web application scanning and centralized orchestration for security teams and CI/CD pipelines.

Professional

Interactive manual testing toolkit with proxy, scanner, intruder, repeater, and extensibility for individual testers.

Purchase

PortSwigger Burp Suite

PortSwigger Burp Suite
In Stock
Delivery: 1 working day
Loading...
€528.47
Free and without obligation

Do you need more information or looking for another license?

Benefits

  • Automated DAST scans: Performs scheduled and on-demand dynamic scans across web apps and APIs.
  • Scalable scanning architecture: Uses distributed scanning agents to scale parallel scans indefinitely.
  • Authenticated and browser scans: Supports recorded logins and an embedded browser for complex applications.
  • CI/CD and tool integrations: Integrates with CI/CD pipelines and issue trackers via API and connectors.
  • Centralized results and reporting: Provides dashboards, exportable reports, and filters for prioritizing findings.

Available languages

  • English

Support information

  • Documentation and guides: Comprehensive online documentation, setup guides, and user manual are hosted on the PortSwigger site.
  • Release notes and changelogs: Public release notes and changelogs detail updates and version changes.
  • Community forum and user help: A user forum and community resources support user questions and discussions.
  • Training and learning resources: PortSwigger provides training materials and courses to help users adopt the product.
  • License management online: Licenses and concurrent scan allowances are managed through the PortSwigger account portal.

Frequently asked questions

What is PortSwigger Burp Suite?
PortSwigger Burp Suite is an integrated platform for testing web application security, providing an intercepting proxy, automated scanning, and manual analysis tools to identify and validate vulnerabilities.
What types of testing workflows does it support?
Supports both automated scanning workflows and manual, hands-on testing such as intercepting and modifying HTTP(S) traffic, replaying requests, and analyzing responses.
What skills or knowledge are helpful to use it effectively?
Familiarity with HTTP/HTTPS, web application architecture, authentication mechanisms, and common vulnerability classes helps interpret findings and perform targeted testing.
How can its output be used in security assessments and reporting?
Provides findings and exportable reports to document identified issues; outputs can feed vulnerability management, remediation tracking, and developer issue workflows.