login

Burp Suite, the leading toolkit for web application security testing

Payloads

This tab is used to configure one or more payload sets. The number of payload sets depends on the attack type defined in the Positions tab. For many common tasks, such as fuzzing parameters, brute force guessing a user's password, or cycling through page identifiers, only a single payload set is needed.

The configuration steps needed to configure a payload set are as follows:

Support Center

Get help and join the community discussions at the Burp Suite Support Center.

Visit the Support Center ›

Wednesday, November 2, 2016

1.7.10

This release adds some new APIs that extensions can use to easily implement powerful scan checks and other logic that involves response diffing.

On Friday, to coincide with our Backslash Powered Scanning talk at Black Hat EU, we will be releasing an extension to the BApp Store that demonstrates how the new APIs can be used to create powerful new scanning capabilities.

See all release notes ›

Copyright © 2016 PortSwigger Ltd. All rights reserved.