Tuesday, November 26, 2024
HomeWebapp PentestingNew Burp Suite Version 1.7.30 Released that adds Support to Scan for...

New Burp Suite Version 1.7.30 Released that adds Support to Scan for Individual Issues

Published on

Burp Suite is a graphical tool for testing Web application security. The tool is composed in Java and created by PortSwigger Security.

Burp Scanner is composed of industry-driving penetration testers. Burp Scanner incorporates a full static code investigation engine for the discovery of security vulnerabilities.

Burp’s scanning logic is persistently refreshed with upgrades to guarantee it can locate the most recent vulnerabilities.

- Advertisement - SIEM as a Service

Also Read Web Application Penetration Testing Checklist – A Detailed Cheat Sheet

New with Burp Suite Version 1.7.30

With the Burp Suite Version 1.7.30, they added granular configurations which allows to select scan type or individually and for Individual scan you can even select detection methods which make the job easier and saves time.

For example, in scan type, before there be only option “server-side code injection” and now we can select individually (“PHP code injection,” “Perl code injection,” etc.).

Also with the new update issues are subdivided into the light, medium, and intrusive based upon the vulnerability nature.

Burp Suite

If you select individual issues, then you have options to choose the detection methods, and it gives complete control and customization methods.

Burp Suite

Minor Enhancements

1. Cancel Button for Long-running scans.
2. New option for SSL / TLS Negotiation to disable SSL session resume.
3. “Copy as curl command” function no longer ignores any request headers.
4. A bug that caused automatically added SSL pass-through entries not to appear in the UI config has been fixed.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Blue Yonder Ransomware Attack Impacts Starbucks & Multiple Supermarkets

A ransomware attack on Blue Yonder, a leading supply chain management software provider, has...

Dell Wyse Management Suite Vulnerabilities Let Attackers Exploit Affected Systems Remotely

Dell Technologies has released a security update for its Wyse Management Suite (WMS) to...

CISA Details Red Team Assessment Including TTPs & Network Defense

The Cybersecurity and Infrastructure Security Agency (CISA) recently detailed findings from a Red Team...

IBM Workload Scheduler Vulnerability Stores User Credentials in Plain Text

IBM has issued a security bulletin warning customers about a vulnerability in its Workload...

Free Webinar

Protect Websites & APIs from Malware Attack

Malware targeting customer-facing websites and API applications poses significant risks, including compliance violations, defacements, and even blacklisting.

Join us for an insightful webinar featuring Vivek Gopalan, VP of Products at Indusface, as he shares effective strategies for safeguarding websites and APIs against malware.

Discussion points

Scan DOM, internal links, and JavaScript libraries for hidden malware.
Detect website defacements in real time.
Protect your brand by monitoring for potential blacklisting.
Prevent malware from infiltrating your server and cloud infrastructure.

More like this

Web Server Penetration Testing Checklist – 2024

Web server pentesting is performed under three significant categories: identity, analysis, and reporting vulnerabilities such as...

ReconAIzer: OpenAI-based Extension for Burp Suite

Burp Suite, the renowned Bug Bounty Hunting and Web Application Penetration Testing tool, has...

HackerOne Lays off 12% of Its Employees as a One-Time Event 

HackerOne is a renowned cybersecurity company that offers bounty and penetration testing platforms to...