login

Burp Suite, the leading toolkit for web application security testing

Target Analyzer

This function can be used to analyze a target web application and tell you how many static and dynamic URLs it contains, and how many parameters each URL takes. This can help you assess how much effort a penetration testing engagement is likely to involve, and can help you decide where to focus your attention during the test itself.

To access this feature, select one or more hosts or branches within the site map, and choose "Analyze site map" within "Engagement tools" in the context menu.

The Target Analyzer dialog contains the following tabs:

The following points are worth noting about the target analyzer:

User Forum

Get help from other users, at the Burp Suite User Forum:

Visit the forum ›

Tuesday, April 15, 2014

v1.6

Burp Suite Free Edition v1.6 contains significant new features added since v1.5, including support for WebSockets messages, PKCS#11 client SSL certificates contained in smart cards and physical tokens, a new Extender tool, allowing dynamic loading and unloading of multiple extensions, and the BApp Store, allowing quick and easy installation of extensions written by other Burp users.

Burp Suite Professional contains a number of bugfixes and tweaks, added since the last beta version.

See all release notes ›

Copyright © 2014 PortSwigger Ltd. All rights reserved.