Description: Burp Suite is an integrated platform for performing security testing of web applications. Its various tools work seamlessly together to support the entire testing process, from initial mapping and analysis of an application's attack surface, through to finding and exploiting security vulnerabilities.
Burp gives you full control, letting you combine advanced manual techniques with state-of-the-art automation, to make your work faster, more effective, and more fun.
Burp Suite contains the following key components:
An intercepting proxy, which lets you inspect and modify traffic between your browser and the target application.
An application-aware spider, for crawling content and functionality.
An advanced web application scanner, for automating the detection of numerous types of vulnerability.
An intruder tool, for performing powerful customized attacks to find and exploit unusual vulnerabilities.
A repeater tool, for manipulating and resending individual requests.
A sequencer tool, for testing the randomness of session tokens.
The ability to save your work and resume working later.
Extensibility, allowing you to easily write your own plugins, to perform complex and highly customized tasks within Burp.
source : http://portswigger.net/burp/
this video is all about installing and configuring burp suit on window. this also includes its configuration with firefox to get desired result. we can perform number of task with burp suit. some related videos on securitytube is following.
http://www.securitytube.net/video/1510
http://www.securitytube.net/video/4205
Disclaimer: We are a infosec video aggregator and this video is linked from an external website. The original author may be different from the user re-posting/linking it here. Please do not assume the authors to be same without verifying.
we can do wireless mitm also with this burp suit. please check this
http://www.securitytube.net/video/1783
Lots of features not available in free version of brup suit almost all good features are in pro version . like Target Analyzer, Content Discovery, etc etc