
Project Options - Time outs, host name resolution, out of scope requests, redirections, TLS configuration, session handling rules, cookie jar and macros 8. Proxy interception, proxy history logging 6. Platform authentication, upstream proxy servers, SOCKS proxy 2. These are some basic building blocks to get started further. Using the Burp Suite CA certificate Chapter 3: User options, project options, proxy Chapter Goal: Introduce the readers to the user options, project options and proxy tab of Burp Suite. Setting up vulnerable target web application 3. High level feature overview Chapter 2: Setting up the environment Chapter Goal: Help the readers to setup the testing environment for rest of the chapters No of pages 6 Subtopics 1. Introduction to application security testing 2. It would set the context for rest of the chapters. What You Will Learn Understand various components of Burp Suite Configure the tool for the most efficient use Exploit real-world web vulnerabilities using Burp Suite Extend the tool with useful add-ons Who This Book Is For Those with a keen interest in web application security testing, API security testing, mobile application security testing, and bug bounty hunting and quality analysis and development team members who are part of the secure Software Development Lifecycle (SDLC) and want to quickly determine application vulnerabilities using Burp SuiteĬhapter 1: Introduction to Burp SuiteChapter Goal: Introduce the Burp suite to the users explaining its need and a high-level overview. And it teaches you how to use Burp Suite for API and mobile app security testing. It also takes you through other useful features such as infiltrator, collaborator, scanner, and extender. It covers basic building blocks and takes you on an in-depth tour of its various components such as intruder, repeater, decoder, comparer, and sequencer.




The book starts with the basics and shows you how to set up a testing environment. It is widely used for manual application security testing of web applications plus APIs and mobile apps. Burp Suite is a simple, yet powerful, tool used for application security testing. The book goes beyond the standard OWASP Top 10 and also covers security testing of APIs and mobile apps. Use this comprehensive guide to learn the practical aspects of Burp Suite-from the basics to more advanced topics.
