Burp Suite MCP Server Extension logo

Burp Suite MCP Server Extension

by PortSwigger

The Burp Suite MCP Server Extension integrates Burp Suite with AI Clients using the Model Context Protocol (MCP). It allows you to connect Burp Suite to AI clients through MCP, enabling interaction with Burp through your client.

View on GitHub

Last updated: N/A

What is Burp Suite MCP Server Extension?

The Burp Suite MCP Server Extension is a Burp Suite extension that enables communication between Burp Suite and AI clients using the Model Context Protocol (MCP). It includes a packaged Stdio MCP proxy server and supports automatic installation for Claude Desktop.

How to use Burp Suite MCP Server Extension?

To use the extension, install it in Burp Suite, configure your Burp MCP server in the extension settings, configure your MCP client to use the Burp SSE MCP server or stdio proxy, and then interact with Burp through your client.

Key features of Burp Suite MCP Server Extension

  • Connect Burp Suite to AI clients through MCP

  • Automatic installation for Claude Desktop

  • Comes with packaged Stdio MCP proxy server

  • Supports both SSE and Stdio MCP servers

Use cases of Burp Suite MCP Server Extension

  • Integrating AI-powered tools with Burp Suite for enhanced security testing

  • Automating tasks within Burp Suite using AI clients

  • Leveraging AI for vulnerability analysis and exploitation

  • Using Claude Desktop with Burp Suite for AI-assisted security workflows

FAQ from Burp Suite MCP Server Extension

What is MCP?

MCP stands for Model Context Protocol. It is a protocol for communication between applications and AI models.

How do I install the extension?

You can build the extension from source using Gradle and then load the JAR file into Burp Suite through the Extensions tab.

How do I configure the extension?

Configuration is done through the Burp Suite UI in the MCP tab, where you can toggle the MCP server, enable config editing, and configure the port and host.

How do I use the Stdio MCP Proxy Server?

Extract the proxy server jar using the extension's installer option and then add the command and arguments to your client configuration.

Where can I find the source code for the proxy server?

The source code for the proxy server can be found at https://github.com/PortSwigger/mcp-proxy