dreadnode/burpference
A research project to add some brrrrrr to Burp
This tool helps web penetration testers and security researchers automatically identify potential vulnerabilities during web application engagements. It takes HTTP requests and responses captured by Burp Suite and sends them to a Large Language Model (LLM) for automated analysis. The output is security findings, rated by severity, integrated directly into Burp Suite's issue reporting.
207 stars.
Use this if you are a penetration tester looking to leverage AI to augment your web application security assessments by automating vulnerability discovery and reporting within Burp Suite.
Not ideal if you are looking for a standalone security scanner that doesn't require integration with Burp Suite or if you prefer manual analysis without LLM assistance.
Stars
207
Forks
11
Language
Python
License
Apache-2.0
Category
Last pushed
Feb 16, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/llm-tools/dreadnode/burpference"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
Algiras/skillz
Self-extending MCP server - build and execute custom AI tools at runtime
damienbod/McpSecurity
Research MCP, OAuth, security
R00T-Kim/awesome-offensive-mcp
A curated list of Offensive Security MCP Servers for Red Teaming & Pentesting.
Kitware/vtk-mcp
MCP server for VTK
pluveto/daan
✨Lightweight LLM Client with MCP 🔌 & Characters 👤