PortSwigger Burp Suite Enterprise Edition offers features like dynamic and active scanning, CMDB and device discovery, CI/CD integration, ease of use, and extensions. Users appreciate automated scanning, vulnerability identification, parallel scans, and the ability to intercept and modify calls. Its integration capabilities and automation efficiency save time and money. Regular updates and custom script uploads enhance functionality, while its interface aids in vulnerability assessment and escalations, facilitating a comprehensive testing process.
- "The most valuable part is that a beginner can run those scans and the V scanning of that particular vulnerability."
- "We are in the early stage of using the solution making it difficult to fully determine the best features; however, we have noticed the CMDB and device discovery features look valuable at this time."
- "I like normal dynamic scanning, general web applications scanning, and vulnerability assessments."
PortSwigger Burp Suite Enterprise Edition faces challenges with false positives and scan instability. Users find its implementation complex and costly, suggesting the need for a cloud-based option. Static code analysis, better scalability, and predefined attack payloads are requested. Many find performance inefficient, demanding excessive resources. The lack of code analysis and mobile features leaves unmet needs in competitive markets. They desire improvements in vulnerability detection and dynamic security testing integration.
- "The stability is a big issue. So many times the scans fail."
- "The implementation of the solution is quite complicated and could be easier."
- "It's not a stable product. Sometimes, it takes a lot of time to scan."