https://portswigger.net/burp/documentation/desktop/testing-workflow/vulnerabilities/testing-for-clickjacking
Clickjacking is a web security vulnerability that allows an attacker to trick users into clicking on hidden web page elements. It's done by overlaying a ...
testingclickjackingportswigger
https://portswigger.net/research/hunting-evasive-vulnerabilities
Do you ever wonder about the vulnerabilities you've missed? Why didn't they show themselves - and will they be discovered by somebody else later?...
huntingevasivevulnerabilitiesportswiggerresearch
https://portswigger.net/burp/eula/jenkins_ci_driver
PortSwigger offers tools for web application security, testing & scanning. Choose from a wide range of security tools & identify the very latest...
terms conditionsenterprisejenkinspluginsupply
https://portswigger.net/kb/issues/00200509_content-security-policy-not-enforced
Content Security Policy (CSP) is a security mechanism designed to mitigate cross-site scripting attacks by disabling dangerous behaviours such as untrusted...
content security policyenforcedportswigger
https://portswigger.net/burp/documentation/desktop/testing-workflow/vulnerabilities/input-validation/xss
Cross-site scripting (XSS) is a web security vulnerability that enables an attacker to manipulate a vulnerable web site so that it returns malicious ...
cross site scriptingxssportswigger
https://portswigger.net/burp/vulnerability-scanner
Burp Scanner is the industry's gold standard dynamic web vulnerability scanner. Start vulnerability scanning today with a free trial of Burp Suite.
burpscannerwebvulnerabilityportswigger
https://portswigger.net/blog/portswigginar-13-july
Thank you to those who attended our recent PortSwigginar on Burp Suite Enterprise Edition. Below is the video of the session, which included; A recap on...
julyblogportswigger
https://portswigger.net/burp/documentation/dast/user-guide/scanning-web-apps/configure-authentication
Cloud Self-hosted Adding authentication credentials for web app sites enables Burp Scanner to discover and audit content that is only accessible to ...
web appsauthenticationportswigger
https://portswigger.net/research/top-10-web-hacking-techniques-of-2019
The results are in! After 51 nominations whittled down to 15 finalists by a community vote, an expert panel consisting of Nicolas Grégoire, Soroush...
topwebhackingtechniquesportswigger
https://portswigger.net/support/using-burp-to-find-clickjacking-vulnerabilities
Using Burp to find Clickjacking Vulnerabilities Clickjacking is a technique in which an attacker uses multiple transparent or opaque layers to trick a user ...
usingburpfindclickjackingvulnerabilities
https://portswigger.net/bappstore/bd98c38519144301a0a232d8e7df613c
Generates sophisticated malicious GraphQL test queries for authorized security testing. using Burp AI, featuring schema introspection, AI monitoring, and...
graphqlsecuritytesterportswigger
https://portswigger.net/blog/mobp-sucky-scanners
How many people have used a commercial scanner to look for vulnerabilities in web applications? Lots of you, right. And who thinks that the scanner they use is...
suckyscannersblogportswigger
https://portswigger.net/research/http2
In this research paper James Kettle introduces multiple new classes of HTTP/2-exclusive attacks, demonstrated on popular websites and servers.
the sequelhttpalwaysworseportswigger
https://portswigger.net/kb/issues/00200352_local-file-path-manipulation-stored-dom-based
Stored DOM-based vulnerabilities arise when user input is stored and later embedded into a response within a part of the DOM that is then processed in an...
file pathlocalmanipulationstoreddom
https://portswigger.net/blog/v13p-pro-beta-version-now-available
A beta version of the new release of Burp is now available for Professional users. The free edition will be available in two or three weeks time. If you don't...
beta versionproavailableblogportswigger
https://portswigger.net/users?returnurl=%2Fweb-security%2Flearning-paths
PortSwigger offers tools for web application security, testing & scanning. Choose from a wide range of security tools & identify the very latest...
loginportswigger
https://portswigger.net/blog/burp-suite-now-reports-blind-xxe-injection
Today's release of Burp Suite Professional updates the Scanner to find blind XML external entity (XXE) injection vulnerabilities. Burp has previously checked...
burp suitexxe injectionreportsblindblog
https://portswigger.net/burp/documentation/scanner/bchecks
BChecks are custom scan checks that you can create and import. Burp Scanner runs these checks in addition to its built-in scanning routine, helping you to ...
bcheckdefinitionsportswigger
https://portswigger.net/research/practical-web-cache-poisoning
In this paper I'll show you how to compromise websites by using esoteric web features to turn their caches into exploit delivery systems
web cachepracticalpoisoningportswiggerresearch
https://trust.portswigger.net/?itemName=network_security&source=click
SafeBase monitors your security practices to enable you to win enterprise deals.
trust centerpowered byportswigger
https://portswigger.net/research/a-hacking-hat-trick-previewing-three-portswigger-research-publications-coming-to-def-con-amp-black-hat-usa
We're delighted to announce three major research releases from PortSwigger Research will be published at both Black Hat USA and DEF CON 32. In this post,...
hat trickhackingthreeportswiggerresearch
https://portswigger.net/research/detecting-and-exploiting-path-relative-stylesheet-import-prssi-vulnerabilities
Early last year Gareth Heyes unveiled a fascinating new technique for attacking web applications by exploiting path-relative stylesheet imports, and dubbed it...
exploitingpathrelativestylesheetimport
https://portswigger.net/research/top-10-web-hacking-techniques-of-2024
Welcome to the Top 10 Web Hacking Techniques of 2024, the 18th edition of our annual community-powered effort to identify the most innovative must-read web...
topwebhackingtechniquesportswigger
https://portswigger.net/research/gotta-cache-em-all
Through the years, we have seen many attacks exploiting web caches to hijack sensitive information or store malicious payloads. However, as CDNs became more...
bending the rulesgottacacheemweb
https://portswigger.net/bappstore/f99325340a404c67a8de2ce593824e0e
Adds a custom Scanner check to identify Flex applications vulnerable to CVE-2011-2461 (APSB11-25).
portswigger
https://portswigger.net/research/how-i-accidentally-framed-myself-for-a-hacking-frenzy
It’s well known that some websites are vulnerable to IP address spoofing because they trust a user-supplied HTTP header like X-Forwarded-For to...
for aaccidentallyframedhackingfrenzy
https://portswigger.net/research/cracking-the-lens-targeting-https-hidden-attack-surface
Modern websites are browsed through a lens of transparent systems built to enhance performance, extract analytics and supply numerous additional services. This...
the lensattack surfacecrackingtargetinghttp
https://portswigger.net/burp/documentation/desktop/settings/ai
Burp's AI features only run if you explicitly activate them. The AI settings page provides an additional safeguard to prevent you from accidentally using ...
aisettingsportswigger
https://portswigger.net/burp/documentation/desktop/tools/logger/filter/view
You can use the view filter to control which captured items Burp Logger displays. For more information on which items Logger captures, see Configuring the ...
burploggerviewfilterportswigger
https://portswigger.net/blog/burp-suite-tips-from-power-user-and-hackfluencer-stok
In his own words, Stök is "that hacker that your friends told you about". In other words, he's a content creator with over 25 years of...
burp suitepower usertipsblog
https://portswigger.net/burp/documentation/scanner/authenticated-scanning
When crawling a target application, Burp Scanner attempts to cover as much of the application's attack surface as possible. Authenticated scanning enables ...
authenticatedscanningportswigger
https://portswigger.net/research/so-you-want-to-be-a-web-security-researcher
Interested in pushing hacking techniques beyond the current state of the art? Read James Kettle's guide on how to become a web security researcher.
you wantto beweb securityresearcherportswigger
https://portswigger.net/research/xss-in-hidden-input-fields
At PortSwigger, we regularly run pre-release builds of Burp Suite against an internal testbed of popular web applications to make sure it's behaving...
xsshiddeninputfieldsportswigger
https://portswigger.net/burp/documentation/scanner/authenticated-scanning/using-recorded-logins
Recorded login sequences enable Burp Scanner to audit content that only authenticated users can usually see, even on sites that use complex login mechanisms ...
recordingloginsequencesportswigger
https://portswigger.net/blog/t-shirt-competition-winners
We've just mailed out prizes to the winners of our T-shirt competition. Below are the 40 entries that won a Burp Suite T-shirt: @0xdeadb - [...]...
t shirtcompetition winnersblogportswigger
https://portswigger.net/blog/handling-application-errors-during-scans
How many times have you seen this? As we have already described, Burp's current Scanner processes each item in the scan queue in isolation. If it runs into...
handlingapplicationerrorsscansblog
https://portswigger.net/blog/new-release-cycle-for-burp-suite-free-edition
For a long time, we've released updates to Burp Suite Free Edition every year or so, when Burp gets a new major version number. The Professional Edition is...
new releaseburp suitecyclefreeedition
https://portswigger.net/bappstore/a74a1af8d70d4de9bdef1e421a628013
Performs custom scanning for vulnerabilities in web applications.
sentinelportswigger
https://portswigger.net/research/xss-without-html-client-side-template-injection-with-angularjs
Abstract Naive use of the extremely popular JavaScript framework AngularJS is exposing numerous websites to Angular Template Injection. This relatively low...
client sidexsswithouthtmltemplate
https://portswigger.net/burp/documentation/dast/user-guide/reference/settings-menu
The settings menu contains shortcuts to several of the configuration menus used in Burp Suite DAST. To access the settings menu, click the symbol in the ...
settings menuportswigger
https://portswigger.net/burp/documentation/desktop/testing-workflow/vulnerabilities/authentication-mechanisms/credential-stuffing
Credential stuffing is a form of brute-force attack in which you attempt to log into a website using known username and password combinations from other ...
credential stuffingburp suiteportswigger
https://portswigger.net/research/web-storage-the-lesser-evil-for-session-tokens
I was recently asked whether it was safe to store session tokens using Web Storage (sessionStorage/localStorage) instead of cookies. Upon googling this I found...
the lesser evilweb storagesessiontokensportswigger
https://portswigger.net/research/exploiting-cors-misconfigurations-for-bitcoins-and-bounties
(or CORS misconfiguration misconceptions) In this post, I'll show how to identify and exploit misconfigured CORS. This is a greatly condensed version of...
exploitingcorsbitcoinsbountiesportswigger
https://portswigger.net/research/backslash-powered-scanning-hunting-unknown-vulnerability-classes
Abstract Existing web scanners search for server-side injection vulnerabilities by throwing a canned list of technology-specific payloads at a target and...
backslashpoweredscanninghuntingunknown
https://portswigger.net/bappstore/db62b6a29eb24765a9225890b3ad769b
Adds a context menu item to quickly add hosts to TLS pass through.
add totlspassportswigger
https://portswigger.net/research/bypassing-wafs-and-cracking-xor-with-hackvertor
You might not be aware of the Hackvertor extension I've been working on lately. It features tag based conversion that is far more powerful than the inbuilt...
bypassingwafscrackingxorportswigger
https://portswigger.net/research/saml-roulette-the-hacker-always-wins
Introduction In this post, we’ll show precisely how to chain round-trip attacks and namespace confusion to achieve unauthenticated admin access on...
the hackersamlroulettealwayswins
https://portswigger.net/bappstore/371cebe47d8d4049a92dc03b66e1105f
Integrates Crawljax, Selenium and JUnit into Burp.
burpcsjportswigger
https://portswigger.net/burp/documentation/dast/user-guide/ci-cd/plugins/teamcity/burp-scan
Configuring a Burp scan in TeamCity involves largely the same process as in previous versions of Burp Suite DAST. In this section, we'll provide ...
burpscanteamcityportswigger
https://portswigger.net/research/how-to-build-custom-scanners-for-web-security-research-automation
In this post, I'll share my approach to developing custom automation to aid research into under-appreciated attack classes and (hopefully) push the...
how toweb securitybuildcustomscanners
https://portswigger.net/research/hackability-inspector
The Hackability inspector enables you to quickly enumerate objects and discover interesting functions to exploit.
inspectorportswiggerresearch
https://portswigger.net/bappstore/33e4402eee514724b768c0342abadb8a
Customizable payload generator to detect and exploit command injection flaws during blind testing.
command injectionattackerportswigger
https://portswigger.net/burp/documentation/dast/user-guide/api-documentation
Burp Suite DAST provides two APIs that you can use to interact with the system from other third-party software. The GraphQL API offers the broadest range of ...
apioverviewportswigger
https://www.zaproxy.org/blog/2022-03-29-portswigger-lab-brute-force-password-change/
The world’s most widely used web app scanner. Free and open source. ZAP is a community project actively maintained by a dedicated international team, and a...
brute forcezapndashportswiggerlabs
https://portswigger.net/careers
Find out why joining PortSwigger, a cybersecurity firm in the North West of England and creators of Burp Suite, could be the best career choice for you
careersportswigger
https://portswigger.net/research/web-cache-entanglement
Caches are woven into websites throughout the net, discreetly juggling data between users, and yet they are rarely scrutinized in any depth. In this paper,...
web cacheentanglementnovelpathwayspoisoning
https://portswigger.net/bappstore/34db77290bca46f1b2321bbe5e116ff2
Identifies previously submitted inputs appearing in hashed form.
burphashportswigger
https://portswigger.net/burp/documentation/desktop/testing-workflow/vulnerabilities/access-controls/horizontal-access-controls
When a user logs in to an application, they usually only have access to their own functions and resources. If access controls are incorrectly set, a user ...
access controlstestinghorizontalportswigger
https://portswigger.net/research/websocket-turbo-intruder-unearthing-the-websocket-goldmine
Many testers and tools give up the moment a protocol upgrade to WebSocket occurs, or only perform shallow analysis. This is a huge blind spot, leaving many...
the goldminewebsocketturbointruderunearthing
https://portswigger.net/research/javascript-without-parentheses-using-dommatrix
Every once a while, you'll find what looks like a healthy XSS vulnerability, only to bash your head against a limited charset that prevents exploitation....
javascriptwithoutparenthesesusingportswigger
https://portswigger.net/blog/dom-invader-and-the-case-of-direct-eval-vs-indirect-eval
What is DOM Invader? DOM Invader is a browser extension that makes it easy to find DOM based XSS by instrumenting various JavaScript functions. You can find...
the casedominvaderdirecteval
https://portswigger.net/blog
Articles and product insights from the PortSwigger team. Keep up to date with Burp Suite and the world of web security by visiting our blog.
web securityblogportswigger
https://portswigger.net/bappstore/b324647b6efa4b6a8f346389730df160
Copies selected request(s) as Python-Requests invocations.
python requestscopyportswigger