Detailed scanner activity

Alessandro | Last updated: May 20, 2018 09:34AM UTC

Hello, it often happens that Burp causes 100% CPU usage when the Static Code Analysis is enabled, which is to be expected to a certain degree. Something that would really help understanding what's going on would be some kind of indicator detailing what the scanner is trying to do and where—ie, in the Scan Queue, reporting "Passive / Static Analysis on [URL/File]", so that I can choose to terminate one particularly resource-heavy thread and proceed with my work. Thanks!

Liam, PortSwigger Agent | Last updated: May 21, 2018 08:22AM UTC

Have you tried using the Logger++ extension from the BApp store? This extension can be used to log the requests and responses made by all Burp tools, and display them in a sortable table. - https://portswigger.net/bappstore/470b7057b86f41c396a97903377f3d81

Burp User | Last updated: May 25, 2018 09:54AM UTC

That's an interesting approach, I wonder if it would help at all with Passive and Static scans; I'll try regardless : )

Liam, PortSwigger Agent | Last updated: May 25, 2018 09:58AM UTC

Thanks for the request. We do have additional features in the pipeline which should resolve your issues.

Burp User | Last updated: May 26, 2018 09:23AM UTC

Alas, as I thought, there's still no way to understand what the scanner is "passively" doing. I'd like to restate my suggestion for this feature, as I strongly believe that a "task manager" for the running threads would be invaluable in debugging slowdowns and heavy loads. Thanks!

