Burp AI takes on a vulnerable web app: watch Tib3rius put Burp’s new agentic capabilities to the test
Tib3rius演示了Burp AI在测试易受攻击的Web应用时的自主能力,包括利用漏洞、标记误报及智能构造攻击。用户可通过自然语言提示实时指导AI行为。 2025-10-22 12:59:5 Author: portswigger.net(查看原文) 阅读量:11 收藏

Amelia Coen | 22 October 2025 at 12:59 UTC


What happens when you set Burp AI loose on a deliberately vulnerable web app? In his latest video, Tib3rius takes Burp’s new agentic Burp AI capabilities for a spin - and the results are seriously cool.

Watch as Burp AI autonomously exploits discovered vulnerabilities, flags false positives, and even uses its new agentic mode in Repeater to craft smarter, more targeted exploits.


Watch the video

How can the new agentic Burp AI help me?

Burp AI’s new agentic capabilities bring an entirely new level of interactivity to web app testing.

You can now direct Burp AI with natural language prompts inside Repeater; ask it to modify payloads, explain behavior, or try a different approach - and it’ll adapt in real time. It’s like having an expert pentesting assistant baked right into your workflow.

Learn more about Burp AI’s new agentic features in our blog post Welcome to AI Pentesting.


Ready to get started?

Getting started with Burp AI is simple:


  1. Update to the latest version of Burp Suite Professional.
  2. If you’re new to Burp AI, enjoy 10,000 free AI credits on us.

Or explore more about Burp AI.


文章来源: https://portswigger.net/blog/burp-ai-takes-on-a-vulnerable-web-app-watch-tib3rius-put-burps-new-agentic-capabilities-to-the-test
如有侵权请联系:admin#unsafe.sh