Skip to main content
Burp Suite

Burp Suite

SoftwareWikipedia

Search complete. 26 mentions across 13 episodes found for "Burp Suite".

Oct 9, 2026

Mashal KhanPANELIST
48:10
The amount of guesses I have is the number of floors, you know, times the number of rooms per floor.
Mashal KhanPANELIST
48:16
I can automate that guess or guessing process using Burp Suite and go through every single iteration, and the one that Pops up as yes, that's your room number.
Mashal KhanPANELIST
48:26
There you go.
Mashal KhanPANELIST
48:26
Through the Wi-Fi portal, I've identified where you are.
Andrew CrottyGUEST
57:21
'Cause the, the path directories and the training I'm gonna recommend you, the training I might tell someone to get into GRC compliance is completely separate than what I'd tell someone to get into pen testing.
Andrew CrottyGUEST
57:30
I might recommend them toward like Burp Suite or Nmap or BloodHound or Metasploit.
Andrew CrottyGUEST
57:35
But then on the GRC path, I'd be recommending all the frameworks, going to nist.org, SimplyCyber's GRC mastery course, um, ISC2 GRC certification, SISA.
Andrew CrottyGUEST
57:46
Like, those are gonna be c- completely different avenues and paths, but the thing that is hard is when you're preparing to break in and you don't know what you wanna do, that's the hardest portion I think when it comes into trying to break in.

9 MINS LATER

Andrew CrottyGUEST
66:50
Um, I'm constantly asking, like, "Hey," 'cause recruiters and hiring managers are talking and looking at roles all the time for either filling positions or getting folks into a role.
Andrew CrottyGUEST
66:58
I'll reach out to 'em monthly saying, "Hey, what are the top five things managers are looking for?" And when you're doing that type of research or if even you're looking across and scraping the job board saying, "Okay, well, what does a junior pen tester need to know right now?" Okay, they need to know Metasploit.
Andrew CrottyGUEST
67:11
They need to know Burp Suite.
Andrew CrottyGUEST
67:12
They need to know how to write reports.
Flamroc DagreatGUEST
32:27
So that, that's what I'm into as far as music goes.
Flamroc DagreatGUEST
32:32
Um, and, and also, like I said, I, I work in the cybersecurity world too, so I'm a ethical hacker, you know? And, uh, I do a lot of stuff with different cyber tools that, you know, you probably haven't heard of, Burp Suite and Wireshark-
Wheelchair RickHOST
32:48
Mm
Flamroc DagreatGUEST
32:48
... and, you know, all this stuff, and yeah.
AkankshaHOST
2:59
These professionals, often called white hat hackers, legally simulate cyber attacks to find weaknesses in the systems before malicious criminals do.
AkankshaHOST
3:09
They operate with permissions and follow strict guidelines using the same tools as malicious hackers, such as Metasploit, Nmap, or Burp Suite, but with the goal of protecting rather than harming.
AkankshaHOST
3:21
Ethical hacking plays a crucial role in proactive identification or vulnerabilities, which can prevent massive data leaks, financial losses, and reputational damage.
AkankshaHOST
3:32
It's also essential for compliance with standards like PCI DSS or ISO twenty-seven thousand one, which often require regular security testing.
speaker_1HOST
0:26
Makes sense.
speaker_0HOST
0:27
Okay, so let's dive into this toolbox, shall we? First up, Burp Suite.
speaker_0HOST
0:32
This one's a bit of a chameleon.
speaker_1HOST
0:34
Ooh, how so?
speaker_0HOST
0:48
You got it.
speaker_0HOST
0:48
It's not just listening though.
speaker_0HOST
0:50
Burp Suite can actually manipulate that communication.
speaker_1HOST
0:53
Manipulate.
Geoff WaltonHOST
37:20
It's going to work on, on the same situations where.
Geoff WaltonHOST
37:26
a human with a copy of Burp Suite Pro would also work.
Geoff WaltonHOST
37:29
And it's probably not going to work as well on those situations that really call for, you know, an advanced participant threat model who's going to sit there and pick away and dwell and all of those things.
Justin ElzeGUEST
37:41
You're going to see in the next several months, I'm sure, and I've talked to people at IR, we have our own IR team, like you're going to see a bunch of like, hey, they used AI to breach this company and do like traditional ransomware attack.
Geoff WaltonHOST
41:17
And it basically just kind of rolls through like that.
Geoff WaltonHOST
41:19
It's all sits on its own Kali VM.
Geoff WaltonHOST
41:22
Everything, you know, it's supposed to be pushing everything into using again, the little Go server to make requests that then go through Burp Suite.
Geoff WaltonHOST
41:30
So it all gets logged.
James WilsonHOST
0:16
In this interview, we're going to be talking about Burp AT.
James WilsonHOST
0:19
That is the agentic way to drive the well-known and very popular Burp Suite pen testing tool.
James WilsonHOST
0:26
Burp AT was in beta for a while.
James WilsonHOST
0:28
It's now out of, out of beta, and it was released in, at, uh, at Black Hat.
James WilsonHOST
0:42
Is it a harness? Can I connect it to other things? Do I bring my own LLMs? So we started off there.
James WilsonHOST
0:48
We started off by getting a grounding in what exactly is Burp AT, how does it work, what is it, what is it not? And then Kieran and Andrzej talked me through some of the things that they learned while it was in beta, some of the interesting stories that they've had from customers about how they've been able to use Burp AT.
James WilsonHOST
1:05
But then we zoom out also to ask, so what? What does it mean to have an autonomous mode for such a well-established pen testing tool? What does this mean for the industry? So I'll drop you here into the interview where Kieran starts off by giving us an introduction to exactly what Burp AT is and how it sits on top of Burp Suite.
James WilsonHOST
1:26
Enjoy.
Jorian WoltjerGUEST
27:53
It should just proxy the request back and forth.
Jorian WoltjerGUEST
27:56
Uh, and then I took a look at the, uh, Burp Suite, uh, like the HTTP proxy-
JustinHOST
28:04
Mm-hmm
Jorian WoltjerGUEST
28:04
... request that's actually sent from access-leaks.dev and example.com, uh, and they looked identical except for one single header.
Herman PoppleberryHOST
7:45
98 papers in a corpus of 5,859 papers across CCS, IMC, NDSS, POPETS, USENIX Security, the WebConf, and ITE-SMP from 2010 through this year.
Herman PoppleberryHOST
7:59
Burp Suite appears in 18.
Herman PoppleberryHOST
8:01
Fiddler in 15.
Herman PoppleberryHOST
8:03
Charles in 5.
Dan Le BatardHOST
37:46
Cody, I wanted to get back for a second to your catchphrases, because I have a number of different questions here.
Dan Le BatardHOST
37:51
Uh, the Burp Suite.
Greg CotePANELIST
37:53
Yeah.
Dan Le BatardHOST
37:54
Uh, I'd like you to explain that to the audience and Trista.
Dan Le BatardHOST
37:57
The Burp Suite, uh, you have four different words-
Greg CotePANELIST
38:01
Right
Dan Le BatardHOST
38:01
...
Dan Le BatardHOST
38:01
in one category in your top 10, correct?

3 more episodes mention Burp Suite.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.