If you are interested in learning how to test web applications and the web part of mobile applications using Burp, then this is the book for you. It is specifically designed to meet your needs if you have basic experience in using Burp and are now aiming to become a professional Burp user.
What you will learn
Get to grips with the userdriven workflow so that you can test any kind of web application
Get acquainted with the use of each of the components in Burpa?”Target, Proxy, Intruder, Scanner, and Repeater
Search, extract, and match patterns for requests and responses using response extraction rules, URLmatching rules, and Grep Match
Set up and test SSLenabled applications without any errors
Intercept SSL traffic from all kinds of web and mobile applications
Develop customized Burp Extensions to suit your needs using Java, Python, and Ruby
Who this book is for
Table of Contents
Getting Started with Burp
Configuring browsers to proxy through Burp
Setting the scope, dealing with upstream proxies
SSL and other advanced settings
Using Burp Tools as a power user 1
Using Burp Tools as a power user 2
Searching, extracting, pattern matching and more
Using Engagement Tools
Using Burp Extensions and writing your own
Saving securely, backing up and other maintenance activities