Advertisement · 728 × 90
#
Hashtag
#burpsuite
Advertisement · 728 × 90
Post image

🔎 Introduction à BurpSuite : un outil pour le debug et le pentest web

Dans ce tutoriel :
👉 Pourquoi utiliser un proxy web local
👉 Comment installer et configurer BurpSuite sur Windows et Firefox

📖 www.it-connect.fr/tuto-burpsui...

#Cybersécurité #Pentest #BurpSuite #ProxyWeb #Dev

0 0 0 0
Preview
Burp Suite Master Cheat Sheet 🌓 Burp Suite Master Cheat Sheet The Ultimate 2026 Reference for Penetration Testers Shortcuts & Hotkeys Proxy & Setup Intruder Mastery Repeater & WebSocket Top Payloads 2026 Regex for Burp Essential BApps Collaborator Keyboard Shortcuts & Hotkeys Speed is everything. Memorize these to navigate Burp without touching the mouse. Navigation

Burp Suite Cheat Sheet 🔍
Intercept. Analyze. Exploit (ethically).
One sheet, all the essentials every security researcher needs.
Learn smart. Hack responsibly. 🛡️

#BurpSuite #EthicalHacking #WebSecurity #CyberSecurity #BugBounty

0 0 0 0
Preview
Top 10 web hacking techniques of 2025 Welcome to the Top 10 Web Hacking Techniques of 2025, the 19th edition of our annual community-powered effort to identify the most innovative must-read web security research published in the last year

Originally from PortSwigger: Top 10 web hacking techniques of 2025 ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Awakari App

AI-Assisted Web and Cloud Penetration Testing with Cursor + MCP HexStrike and Burp Suite MCP. A Complete Guide to Modern AI-Powered Security Testing. From One Prompt to Full Attack Surface Coverage...

#cybersecurity #hexstrike #burpsuite #cloud-computing #ai

Origin | Interest | Match

0 0 0 0
Preview
Guía Burp Suite Pro: Domina el Pentesting Web Profesional Domina el pentesting web con nuestra guía de Burp Suite Pro. Aprende a usar Proxy, Scanner, Intruder y Repeater. ¡Audita como un profesional!

¿Listo para llevar tu pentesting al siguiente nivel? Nuestra guía de Burp Suite Pro te enseña a dominar Scanner, Intruder y más. ¡Audita como un profesional! #BurpSuite #PentestingWeb #Ciberseguridad

0 0 0 0
Preview
Top 10 web hacking techniques of 2025: call for nominations Over the last year, security researchers have shared a huge amount of work with the community through blog posts, presentations, and whitepapers. This is great, but it also means genuinely reusable te

Originally from PortSwigger: Top 10 web hacking techniques of 2025: call for nominations ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

1 0 0 0
Awakari App

DOM XSS Using Web Messages and Javascript URL (window.postMessage → innerHTML Sink) DOM XSS via Web Messages: Exploits unsafe postMessage handling and innerHTML injection to execute arbitrary Jav...

#burpsuite #cross-site-scripting #ctf #xs #cybersecurity

Origin | Interest | Match

0 0 0 0
Original post on infosecwriteups.com

DAST Automation Using BurpSuite MCP Recently Portswigger team introduced Burp MCP, which help to automate the Dynamic security assessment with one prompt. Recently MCP is booming, which is really ...

#artificial-intelligence #application-security #cybersecurity #penetration-testing #burpsuite […]

0 0 0 0
Awakari App

DOM XSS in jQuery href Attribute Sink (location.search → jQuery.attr) DOM XSS in jQuery anchor href attribute sink using location.search source Continue reading on System Weakness »

#cybersecurity #burpsuite #xs #dom-xss #cross-site-scripting

Origin | Interest | Match

0 0 0 0
Awakari App

DOM XSS in jQuery href Attribute Sink (location.search → jQuery.attr) DOM XSS in jQuery anchor href attribute sink using location.search source Continue reading on System Weakness »

#cybersecurity #burpsuite #xs #dom-xss #cross-site-scripting

Origin | Interest | Match

0 0 0 0
Post image

Burp Suite's ActiveScan++ now detects critical React2Shell vulnerabilities, enhancing web app security. Stay protected! #CyberSecurity #BurpSuite #React2Shell #WebSecurity Link: thedailytechfeed.com/burp-suite-u...

0 0 0 0
Original post on infosec.exchange

In this latest article in our long-running series on #BurpSuite #Extension #Development, Federico Dotta illustrates how to extend the Active and Passive Scanner in your favorite #WebApplication #PenetrationTesting tool with Custom Scan Checks […]

1 1 0 0
Preview
The Fragile Lock: Novel Bypasses For SAML Authentication TLDR This post shows how to achieve a full authentication bypass in the Ruby and PHP SAML ecosystem by exploiting several parser-level inconsistencies: including attribute pollution, namespace confusi

Originally from PortSwigger: The Fragile Lock: Novel Bypasses For SAML Authentication ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Preview
Introducing HTTP Anomaly Rank HTTP Anomaly Rank If you've ever used Burp Intruder or Turbo Intruder, you'll be familiar with the ritual of manually digging through thousands of responses by repeatedly sorting the table via length,

Originally from PortSwigger: Introducing HTTP Anomaly Rank ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Original post on infosec.exchange

#Brida 0.6 is here! The bridge between #BurpSuite and #Frida is now fully compatible with Frida 17+.

As of this release, Brida 0.6 supports only Frida 17 and later. For users who still rely on older Frida versions, Brida 0.6pre remains available on GitHub.

Get the latest release here […]

0 1 0 0
Video

Free Tools for Cybersecurity Enthusiasts 🛠️🧠
#CyberSecurityTools #FreeTools #InfoSec #Wireshark #Nmap #BurpSuite #Metasploit #SecurityOnion #EthicalHacking #CyberSecTraining #TechTools #NetworkSecurity #OpenSourceSecurity

0 0 0 0
Awakari App

SQL Injection UNION Attack — Oracle Database Version SQL Injection UNION Attack — Oracle Database Version Lab Objective Use UNION-based SQL injection to retrieve and display the Oracle...

#cybersecurity #pentesting #web-security #sql-injection #burpsuite

Origin | Interest | Match

0 0 0 0
Preview
HTTP/1.1 must die: the desync endgame Abstract Upstream HTTP/1.1 is inherently insecure and regularly exposes millions of websites to hostile takeover. Six years of attempted mitigations have hidden the issue, but failed to fix it. This p

Originally from: PortSwigger: HTTP/1.1 must die: the desync endgame ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Preview
Beware the false false-positive: how to distinguish HTTP pipelining from request smuggling Sometimes people think they've found HTTP request smuggling, when they're actually just observing HTTP keep-alive or pipelining. This is usually a false positive, but sometimes there's actually a real

Originally from: PortSwigger: Beware the false false-positive: how to distinguish HTTP pipelining from request smuggling ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Preview
Inline Style Exfiltration: leaking data with chained CSS conditionals I discovered how to use CSS to steal attribute data without selectors and stylesheet imports! This means you can now exploit CSS injection via style attributes! Learn how below: Someone asked if you c

Originally from: PortSwigger: Inline Style Exfiltration: leaking data with chained CSS conditionals ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

1 0 0 0
Preview
Cookie Chaos: How to bypass __Host and __Secure cookie prefixes Browsers added cookie prefixes to protect your sessions and stop attackers from setting harmful cookies. In this post, you’ll see how to bypass cookie defenses using discrepancies in browser and serve

Originally from: PortSwigger: Cookie Chaos: How to bypass __Host and __Secure cookie prefixes ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0
Preview
WebSocket Turbo Intruder: Unearthing the WebSocket Goldmine Many testers and tools give up the moment a protocol upgrade to WebSocket occurs, or only perform shallow analysis. This is a huge blind spot, leaving many bugs like Broken Access Controls, Race condi

Originally from: PortSwigger: WebSocket Turbo Intruder: Unearthing the WebSocket Goldmine ( :-{ı▓ #PortSwigger #Burpsuite #cyberresearch

0 0 0 0

ISP IPTV boxes exposed accounts where username = device MAC and password = admin@123; combined with ADB access and SSL‑pin bypass (apk‑mitm) this enables account takeover and broad enumeration. #IPTV #SSLpinning #BurpSuite https://bit.ly/41Wx55N

0 0 0 0
Pentest-Tools.com Burp Suite extension

Pentest-Tools.com Burp Suite extension

🟠 Burp findings → report-ready in seconds with Pentest-Tools.com 🔵

Our new Burp Suite extension lets you send Audit Issues straight into Pentest-Tools.com with a single right-click.

#pentesting #burpsuite #appsec #cybersecurity #infosec

1 0 1 0
Post image

We use @jameskettle.com Burp extension Collaborator Everywhere daily. Now our upgrades are in v2: customizable payloads, storage, visibility. Perfect for OOB bugs like SSRF.

Find out more here: blog.compass-security.com/2025/09/coll...

#AppSec #BurpSuite #Pentesting

8 6 0 0
Preview
💥 Exploiting Vulnerabilities in LLM APIs Weaponizing LLM prompt injection to hijack user deletion logic — an offensive deep dive into excessive agency abuse.

Exploiting Vulnerabilities in LLM APIs Weaponizing LLM prompt injection to hijack user deletion logic — an offensive deep dive into excessive agency abuse. Continue reading on System Weakness...

#ctf #ai-hacking #burpsuite #cybersecurity #ctf-writeup

Origin | Interest | Match

0 0 0 0
Preview
खतरनाक Hacker Tools 2025 | Metasploit, Nmap, Aircrack & More – सीखें सुरक्षित इस्तेमाल यहाँ से सीखें कि कैसे knowledge ही सबसे बड़ा हथियार है, और कैसे इन powerful tools की ताकत को समझकर आप ethical hacking में मास्टर बन सकते हैं।

Hacker Tools 2025 Metasploit Nmap Aircrack-ngऔर अन्य खतरनाक टूल्स के बारे में जानें viraltak12.blogspot.com/2025/08/hack... viraltak12.blogspot.com/2025/08/hack...

#HackerTools #EthicalHacking #CyberSecurity #Metasploit #Nmap #AircrackNg #JohnTheRipper #Hydra #BurpSuite

0 1 0 0