Same website, same product, different scan time required

Jasmine | Last updated: Apr 07, 2021 10:29AM UTC

Now my company have 2 branch in 2 different cities working on the same project. We active scan the same page, same manipulation by the same person (me), with the same version of BurpSuite. The computer at my branch have better hardware configuration, higher connection speed but its scan time is 10 times more than the other branch, and the number of issues found also higher. Why this happen? I expected 2 computers scan results would be the same.

Michelle, PortSwigger Agent | Last updated: Apr 07, 2021 01:54PM UTC

Can you email support@portswigger.net with some more details of the scans (e.g. the configuration you are using and the differences in the scan results), please?

Are you manually crawling the site and then performing an Audit-Only scan or are you using Burp to perform an automated crawl of the site as well? Are the same number of locations scanned on each machine? Do you see any errors or timeouts on either of the machines during the scan?

