aress31/burpgpt

A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables running traffic-based analysis of any type.

47
/ 100
Emerging

This tool helps cybersecurity professionals enhance their web application security assessments by identifying vulnerabilities that traditional scanners might miss. It takes live web traffic from Burp Suite and sends it to an AI model (like OpenAI's GPT) for in-depth analysis. The output is an automated security report within Burp Suite, highlighting potential security issues for further investigation. It's designed for security testers and penetration testers to broaden their attack surface coverage.

2,282 stars. No commits in the last 6 months.

Use this if you are a cybersecurity professional using Burp Suite and want to leverage AI to perform a more comprehensive, traffic-based analysis for discovering subtle or bespoke security vulnerabilities in web applications.

Not ideal if you have strict privacy policies preventing web traffic from being sent to third-party AI services, or if you are looking for a fully automated, hands-off vulnerability scanner without any need for professional review.

cybersecurity penetration-testing vulnerability-assessment web-application-security security-auditing
Stale 6m No Package No Dependents
Maintenance 0 / 25
Adoption 10 / 25
Maturity 16 / 25
Community 21 / 25

How are scores calculated?

Stars

2,282

Forks

281

Language

Java

License

Apache-2.0

Category

gpt-domain-tools

Last pushed

Jun 09, 2024

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/llm-tools/aress31/burpgpt"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.