Burp Suite User Forum

Create new post

how we can capture API activity through a webpage scan.

SATHIREDDY | Last updated: Dec 03, 2020 10:43AM UTC

We are Scanning a webpage and it contains both Web elements and API, When we do scan and Crawling tool is able to Parse the API's and we are not able to see any kind of request and response related to API. Please suggest how we can capture API activity through a webpage scan.

Uthman, PortSwigger Agent | Last updated: Dec 03, 2020 11:13AM UTC

Hi Sathireddy, If you manually send the API requests, do they show up in the Target > Site map? Can you see the requests in Flow or Logger++? Does your API use the Swagger/OpenAPI specification?

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.