Threat Level: green Handler on Duty: Didier Stevens

SANS ISC: BURP 1.6.10 Released - SANS Internet Storm Center SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms:

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
BURP 1.6.10 Released

The fine folks at Portswigger released the lastest version of BURP last week - v1.6.10

New checks include:

  • Server-side include (SSI) injection
  • Server-side Python code injection
  • Leaked RSA private keys
  • Duplicate cookies set

Also new APIs are added to Burp Extender, and changes to SSL handling in newer versions of Java (SNI handling in the handshake)

Full details at:

Rob VandenBrink

Rob VandenBrink

577 Posts
ISC Handler
Feb 8th 2015

Sign Up for Free or Log In to start participating in the conversation!