Tuesday, November 26, 2024
HomeWebapp PentestingNew Burp Suite Version 1.7.30 Released that adds Support to Scan for...

New Burp Suite Version 1.7.30 Released that adds Support to Scan for Individual Issues

Published on

Burp Suite is a graphical tool for testing Web application security. The tool is composed in Java and created by PortSwigger Security.

Burp Scanner is composed of industry-driving penetration testers. Burp Scanner incorporates a full static code investigation engine for the discovery of security vulnerabilities.

Burp’s scanning logic is persistently refreshed with upgrades to guarantee it can locate the most recent vulnerabilities.

- Advertisement - SIEM as a Service

Also Read Web Application Penetration Testing Checklist – A Detailed Cheat Sheet

New with Burp Suite Version 1.7.30

With the Burp Suite Version 1.7.30, they added granular configurations which allows to select scan type or individually and for Individual scan you can even select detection methods which make the job easier and saves time.

For example, in scan type, before there be only option “server-side code injection” and now we can select individually (“PHP code injection,” “Perl code injection,” etc.).

Also with the new update issues are subdivided into the light, medium, and intrusive based upon the vulnerability nature.

Burp Suite

If you select individual issues, then you have options to choose the detection methods, and it gives complete control and customization methods.

Burp Suite

Minor Enhancements

1. Cancel Button for Long-running scans.
2. New option for SSL / TLS Negotiation to disable SSL session resume.
3. “Copy as curl command” function no longer ignores any request headers.
4. A bug that caused automatically added SSL pass-through entries not to appear in the UI config has been fixed.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

200,000 WordPress Sites Exposed to Cyber Attack, Following Plugin Vulnerability

A critical security vulnerability has been discovered in the popular WordPress plugin Anti-Spam by CleanTalk,...

Beware Of SpyLoan Apps Exploits Social Engineering To Steal User Data

SpyLoan apps, a type of PUP, are rapidly increasing, exploiting social engineering to deceive...

Researchers Detailed Tools Used By Hacktivists Fueling Ransomware Attacks

CyberVolk, a politically motivated hacktivist group, has leveraged readily available ransomware builders like AzzaSec,...

Blue Yonder Ransomware Attack Impacts Starbucks & Multiple Supermarkets

A ransomware attack on Blue Yonder, a leading supply chain management software provider, has...

Free Webinar

Protect Websites & APIs from Malware Attack

Malware targeting customer-facing websites and API applications poses significant risks, including compliance violations, defacements, and even blacklisting.

Join us for an insightful webinar featuring Vivek Gopalan, VP of Products at Indusface, as he shares effective strategies for safeguarding websites and APIs against malware.

Discussion points

Scan DOM, internal links, and JavaScript libraries for hidden malware.
Detect website defacements in real time.
Protect your brand by monitoring for potential blacklisting.
Prevent malware from infiltrating your server and cloud infrastructure.

More like this

Web Server Penetration Testing Checklist – 2024

Web server pentesting is performed under three significant categories: identity, analysis, and reporting vulnerabilities such as...

ReconAIzer: OpenAI-based Extension for Burp Suite

Burp Suite, the renowned Bug Bounty Hunting and Web Application Penetration Testing tool, has...

HackerOne Lays off 12% of Its Employees as a One-Time Event 

HackerOne is a renowned cybersecurity company that offers bounty and penetration testing platforms to...