Initiating a Burp Scan

This guide walks you through how to initiate a Burp Scan on a target using the Strobes platform. Make sure you’ve already configured your Burp Suite credentials before starting the scan.

Step-by-Step Instructions

Step 1: Navigate to Burp Connector

  1. Go to the Connectors section.
  2. Under Dynamic Application Scanners, click on Burp Suite REST API.
    Screenshot_2022-04-29_at_3.43.48_PM.png

Step 2: Set Up the Configuration

  1. Fill in the following fields:
    • Configuration Name – Any name to identify your config.
    • Burp Suite Credential – Choose from the credentials you’ve already configured.
    • Baseline – Select the baseline where you want vulnerabilities to be logged.
  2. Click Next.
    Screenshot_2022-04-29_at_3.45.10_PM.png

Step 3: Choose Target and Scheduling

  1. Select the Asset that the scan should be linked to.
  2. In the Batch Target field, enter the URLs or endpoints you want to scan.
  3. Choose the Scan Frequency (e.g., One-time, Daily, Weekly).
  4. Click Next.
    Screenshot_2022-04-29_at_3.46.47_PM.png

Step 4: Optional – Add Tracking & Notification Tools

  1. If needed, select any Tracking or Notification tool configurations.
  2. Click Submit to create the configuration.

Screenshot_2022-04-29_at_3.50.12_PM.png

Initiate the Burp Scan

Once your configuration is ready:

  1. Click on New Scan within the Burp connector.
  2. In the popup window, enter the specific URL you want to scan.
  3. Click Scan.

 Note: Only the URL entered in this step will be scanned during the run.

Scan Completion

  • The scan will be triggered immediately.
  • Once complete, all discovered vulnerabilities will be automatically linked to the selected Asset.

     

Was this article helpful?