BurpSuite supports external components to be integrated into the tools suite to enhance its capabilities. These external components are called BApps. These work just like browser extensions. These can be viewed, modified, installed, uninstalled in the Extender window. Some of them are supported on the community version, but some require the paid professional version.
Burp Suite was developed by PortSwigger and started in 2003 by creator Dafydd Stuttard, who wrote the first version of Burp, with actual burping sounds. A favorite of bug bounty hunters, Burp is a collection of web application testing tools designed for penetration testing.
Each tool has its uses, with Invicti Enterprise specializing in automated vulnerability scanning with development workflow integration and Burp Suite Professional (and Community) being intended for manual penetration testing. Tools designed for penetration testing are better suited for use by individual security professionals and tend to be more customizable but less user-friendly and hard to use at scale. A solution like Invicti Enterprise is more scalable and uses proof-based scanning to provide automatic confirmation for many common vulnerabilities to cut down on false positives, allowing vulnerability reports can go directly into issue trackers.
08ab062aa8