Burp Suite User Forum

Create new post

Merge audit results from scans

Greg | Last updated: Oct 06, 2015 04:50PM UTC

It would be nice if we could merge results from ongoing scans, similar to static analysis results like fortify or checkmarx, such that we don't have to re-look at false positives that have previously been audited as such.

PortSwigger Agent | Last updated: Oct 07, 2015 07:42AM UTC

You can load and consolidate the results of multiple scans by loading the state files for each scan into the same instance of Burp, and selecting the option to update (not replace) the current state. We do plan a dedicated feature that will let you (a) load two state files and do a comparison of the scan results to see what has changed; (b) perform a re-scan of an existing scan to test just those issues again. We don't currently have an ETA for this feature, sorry.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.