Join us on May 15 for a live demo of how Burp Suite DAST solves real-world security challenges.            Register Now

Using AI to find web app vulnerabilities: hacking expert John Hammond takes Burp AI for a spin

Amelia Coen | 30 April 2025 at 13:23 UTC

1000s of pentesters are currently using Burp AI features to hack smarter by eliminating tedious tasks and delivering instant insights, right inside Burp Suite.


Security Researcher John Hammond took Burp AI for a test drive - and his new video is the perfect way to see what the buzz is all about.


In this walkthrough, John explores how Burp AI brings a new level of intelligence to web application testing. He demonstrates Burp AI's ability to identify subtle vulnerabilities automatically, dramatically reduce false positives, and supercharge security assessments without replacing the human tester.


Watch John Hammond’s walkthrough



What is Burp AI?


Whether you're a seasoned pentester, a bug bounty hunter, or just learning about web security, Burp AI is here to augment your testing - not replace it. All features are designed to simplify the tasks you're already doing, rather than disrupt your existing workflow. By reducing friction and enhancing efficiency, it allows security professionals to focus on the strategic and creative aspects of testing, ensuring deeper and more impactful assessments.


How can I access Burp AI?


In case you haven't had a chance to try it out for yourself yet, getting started with Burp AI is simple:


  1. Update to the latest version of Burp Suite Professional
  2. Enjoy 10,000 free AI credits on us

Not a Burp Suite Pro user yet? Request a free trial.


Win an exclusive Burp AI t-shirt


Are you already using Burp AI? We’re giving away exclusive Burp AI t-shirts to celebrate the launch of AI-powered features in Burp Suite.



To enter, just share how you're using Burp AI to level up your testing - whether it's uncovering hidden vulnerabilities, saving time, or getting smarter insights.


Post on X, LinkedIn, or the PortSwigger Discord with your story, use #burp-ai and tag us for a chance to win. You can join the PortSwigger Discord here.


Competition deadline - Sunday 4th May.


Share your experience, show us your best tips, and rep the future of web security in style!