Skip to main content
Category: Integrations
Load this context Ask your agent:

Summary

BurpMCP is a Model Context Protocol (MCP) server that exposes Burp Suite’s full capabilities to AI agents, bridging the gap between agent-driven reasoning and Burp’s interception, scanning, and manipulation tools.
  • Phase 0 provides a complete tool catalog covering proxy history, scope, HTTP requests, Intruder, Scanner, Sitemap, encoding, and Collaborator tools
  • Phase 1 covers setup and scope configuration before any testing begins
  • Phase 2 uses Burp’s accumulated data for recon — endpoint mapping, high-value target discovery, and annotation
  • Phases 3–4 cover manual request testing (Repeater) and automated fuzzing (Intruder) — IDOR, credential brute-force, injection fuzzing, endpoint discovery
  • Phase 5 runs Burp’s active scanner with fine-grained audit check control and issue triage
  • Phase 6 handles out-of-band detection via Collaborator for blind SSRF, XSS, XXE, and command injection
  • Phases 7–9 enforce a validation gate, false positive filter, and structured reporting handoff to finding-writer, cvss-scorer, and pentest-report skills

CONTEXT.md

When to Use This Context

Load this context when:
  • Controlling Burp Suite programmatically through MCP tool calls
  • Sending, intercepting, or replaying HTTP requests via the agent
  • Retrieving and analysing proxy history, scanner issues, or sitemap data
  • Running active scans or Intruder attacks from the agent
  • Automating repetitive pentest tasks (brute-forcing, fuzzing, parameter testing)
  • Building end-to-end pentest workflows entirely through MCP tool calls
  • Integrating Burp findings with finding-writer, cvss-scorer, or pentest-report skills
Decision flow — where to start:
  1. First engagement on a target → Phase 1 (Setup & Scope) then Phase 2 (Recon via Proxy History and Sitemap)
  2. Specific endpoint to test → Phase 3 (Request Crafting and Repeater) then Phase 5 (Active Scanning)
  3. Have a list of endpoints → Phase 4 (Intruder / Fuzzing Automation)
  4. Burp Scanner already ran → Phase 6 (Issue Triage and Reporting)
  5. Uncertain what’s possible → read the full Tool Catalog in Phase 0
Key principle: Always work within scope. Add targets to Burp scope before any active testing. Every active scan, Intruder attack, and brute-force must be explicitly scoped.

Phase 0 — Tool Catalog

Proxy & HTTP History

Scope Management

HTTP Request Tools

Intruder / Fuzzing

Active Scanner

Sitemap, Encoding & Collaborator


Phase 1 — Setup and Scope Configuration

Before any testing begins, configure Burp and establish scope.

Phase 2 — Reconnaissance via Burp

Use Burp’s accumulated data to map the attack surface before any active testing.

Phase 3 — Manual Request Testing (Repeater)


Phase 4 — Automated Fuzzing (Intruder)

Intruder attack types:

Phase 5 — Active Scanning


Phase 6 — Out-of-Band (OOB) Detection


Phase 7 — Validation Gate

Before reporting any finding, validate it is real, reproducible, and impactful.

Phase 8 — False Positive Filter

Do not report without additional exploitation evidence:

Phase 9 — Reporting


Quick Reference — Tool by Attack Class


Troubleshooting

BurpMCP tools not available: Check Burp → Extensions → Installed, confirm BurpMCP is loaded. Check ~/.claude/mcp.json port matches extension config. Reload the extension and check the output tab for errors. send_http_request returns connection errors: Burp proxy must be running on 127.0.0.1:8080. Install Burp CA certificate in the system trust store for HTTPS targets. get_proxy_history returns empty: Traffic is not routing through Burp. Configure browser or app to use 127.0.0.1:8080. Check Burp Proxy → Options → Proxy Listeners. Intruder is slow (Community Edition): Burp Community limits Intruder to 1 thread with throttling. Burp Pro removes this — set concurrent_threads to 20+. Collaborator shows no interactions: Target server may not have internet access — use interactsh as an alternative. Increase time.sleep before polling. Verify the payload was injected by checking proxy history. Scanner issues are all “Tentative”: Always replay tentative findings manually with send_http_request. Run a thorough scan on specific endpoints for higher-confidence results.

web-app-pentest

Full web application pentest methodology: recon, auth, injection, business logicRifteo-Community/contexts

cloud-audit

AWS, Azure, and GCP security — IAM, storage, networking, secrets, and loggingRifteo-Community/contexts