

#BURP SUITE COMMUNITY EDITION 1.7 36 DOWNLOAD WINDOWS#
This could leak NetNTLM hashes on Windows systems that failed to block outbound SMB. Several months ago, we fixed an HTML injection vulnerability that could result in Burp Suite sending requests that did not respect its upstream proxy configuration. The crawler can now identify API calls triggered when the browser renders components on the page and send them for audit if necessary.This enables it to successfully scan content that is reached without sending additional requests to the server. The crawler can now recognize when a website uses URL fragments for client-side routing and adjust its behavior accordingly.This release greatly enhances Burp Scanner's ability to handle single-page applications (SPAs) built on frameworks like React. Improved scanning of single-page applications To give you a rough idea of the savings, these changes reduce the time taken to crawl our static documentation site from around 45 minutes to well under 10 minutes.įor the long-time Burp users out there, this strategy is effectively an improved version of the Spider tool from Burp Suite 1.7, emulated using the new crawling engine. We have achieved this by disabling features that are irrelevant for static content, such as automated session handling and state recovery. Ultra-fast crawling of static contentīurp Scanner's Fastest crawl strategy is now optimized for crawling static sites as quickly as possible. This release enables ultra-fast crawling of static content, enhanced scanning of single-page applications, as well as several bug fixes.
