Burp community forum

How to flag only new issues when Burp is run on a continuous basis

Marina | Last updated: Jun 17, 2015 03:14AM UTC

Hi, I am trying to run Burp tests automatically from a test suite. I want to re-run these test suites every two weeks. I want to flag only the new issues when I re-run the burp tests. Is there a way to do this? The only thing I could find in the documentation is: http://portswigger.net/burp/help/scanner_reporting.html The serialNumber element: contains a long integer that is unique to that individual issue instance. If you export issues several times from the same instance of Burp, you can use the serial number to identify incrementally new issues. However this does not work since I restore my Burp state to a clean state before running the tests

PortSwigger Agent | Last updated: Jun 17, 2015 08:29AM UTC

Thanks for your query. There isn't currently a way to perform a diff analysis of two different scans. We may add this type of feature in a future release, to support use cases where people want to scan the same applications regularly and just identify what has changed. We can't promise an ETA for this feature, sorry.

You need to Log in to post a reply. Or register here, for free.