login

Burp Suite, the leading toolkit for web application security testing

Attack Target

This tab is used to configure the details of the target server for the attack. The required options are:

The easiest way to configure these details is to select the request you want to attack anywhere within Burp, and choose the "Send to Intruder" option on the context menu. This will send the selected request to a new tab in Intruder, and will automatically populate the Target and Positions tabs. 

Support Center

Get help and join the community discussions at the Burp Suite Support Center.

Visit the Support Center ›

Thursday, July 16, 2015

1.6.22

This release adds a new scan check for external service interaction and out-of-band resource load via injected XML doctype tags.

Burp Scanner now modifies XML in requests to inject a doctype tag that references a Burp Collaborator URL, and reports an appropriate issue based on any observed interactions (DNS or HTTP) that reach the Burp Collaborator server.

See all release notes ›

Copyright © 2015 PortSwigger Ltd. All rights reserved.