From the course: Dynamic Application Security Testing

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Demo: Burp Suite

Demo: Burp Suite

- [Narrator] For the Burp Suite demo, we're going to use the Community Edition. While Community Edition doesn't contain the paid vulnerability scanner, it does contain the free proxy tool. When you go to downloads, you'll be prompted to download the latest edition based on your operating system. Again, for a web application to test, we're going to turn to the OWASP Vulnerable Web Applications Directory, pulling from the list of online applications. For this demo, the OWASP Juice Shop will work perfectly. When you open Burp, you'll be prompted whether you want a temporary project, one that will go away when you close the tool, whether you want to create a new project on disk, which is great for actual penetration tests, or open an existing project that you've already started on. So let's use Temporary Project and we're going to use the Burp defaults. No need to customize for the demo that we're doing now. When you…

Contents