

Intruder – This tool can perform automated attacks on web applications. The intruder tool can test and detect SQL Injections, Cross Site Scripting, parameter manipulation and vulnerabilities susceptible to brute-force attacks.Scanner – A web application security scanner, used for performing automated vulnerability scans of web applications.This allows the interception, inspection and modification of the raw traffic passing in both directions. HTTP Proxy – It operates as a web proxy server, and sits as a man-in-the-middle between the browser and destination web servers.In addition to basic functionality, such as proxy server, scanner and intruder, the tool also contains more advanced options such as a spider, a repeater, a decoder, a comparer, an extender and a sequencer. It was developed to provide a comprehensive solution for web application security checks.


The tool is written in Java and developed by PortSwigger Security. The free version has significantly reduced functionality. Burp or Burp Suite is a graphical tool for testing Web application security.
