Subscribe to the CyberThreatPOV Podcast

Episode 174: Web Application Penetration Testing Tools & Techniques with Jordan

In this episode host Brad Causey sits down with web app pen testing expert Jordan Natter to walk through the tools and Burp Suite Pro extensions that security professionals rely on day to day.

From foundational platforms like Burp Suite Pro and OWASP ZAP to specialized extensions like CSP Auditor, Retire.js, and the JWT extension — plus custom tools like Proxy Forge and GraphQL Hunter — this is a practical toolkit rundown for anyone working in web application security.

Burp Suite is an integrated platform for attacking web applications. http://portswigger.net/burp/

Blog: https://offsec.blog/
Youtube: https://www.youtube.com/@cyberthreatpov
Twitter: https://x.com/cyberthreatpov

Work with Us: https://securit360.com | Find vulnerabilities that matter, learn about how we do internal pentesting here.