官术网_书友最值得收藏!

Getting to know Burp Suite

Burp can be downloaded for all the major operating systems from the PortSwigger website at https://portswigger.net/burp. For Windows systems, both x64-bit and x32-bit installers are available. A standalone Java JAR file is also available in case you want to run Burp as a portable application.

When you start Burp Suite, you will be prompted to provide settings to set up your Burp project before you begin using the tool.

The three options available are as follows:

  • Temporary project: Select this if you want to use Burp for a quick inspection or a task that you do not need to save. You can get started immediately when you select this option and hit Next.
  • New project on disk: For a well-executed penetration test, it is very important to be able to record and retrieve logs of requests and responses that were part of the test. This option allows you to create a file on the disk that will store all the configuration data, requests, and responses, and proxy information that you set in Burp when you begin testing. A descriptive name can be provided to enable this file to be loaded in the future. A good rule of thumb is to create a name that provides information about the project itself. ClientName-TypeOfTest-DDMMYYYY is a good name to start with.
  • Open existing project: This option allows you to load any existing project files that have been created in the past using the New project on disk option. You can choose to pause the spider and scanner modules so that the project is loaded in a non-active state of attack.

Clicking on Next will take you to a page where you can choose any save configuration from before or continue using Burp defaults. You also get the option of disabling extensions when Burp starts.

Click Start Burp to continue.

主站蜘蛛池模板: 河源市| 兴山县| 上杭县| 昭通市| 郸城县| 永新县| 白城市| 应用必备| 新平| 靖远县| 屯门区| 祥云县| 凤凰县| 彩票| 长汀县| 阿克陶县| 高唐县| 乐陵市| 绍兴市| 高雄市| 新余市| 盐源县| 芦溪县| 丁青县| 南昌县| 分宜县| 临清市| 景德镇市| 徐闻县| 汉寿县| 连平县| 金溪县| 沈阳市| 根河市| 临安市| 明溪县| 云浮市| 平江县| 法库县| 鄂温| 固阳县|