A SquidSec Open Source Project
SquidOffense.com ·
GitHub
Burp Suite extension that exposes a loopback MCP and JSON HTTP API so an authorized LLM agent can use the live Burp project.
Built and maintained by SquidSec.
| Organization | SquidSec |
| Website | https://squidoffense.com/ |
| Version | 2.0.0 |
| License | Apache 2.0 |
| Build | JDK 17+ |
Default bind: http://127.0.0.1:9877. Token is generated on first load. Copy it from the AI Bridge suite tab.
Scanner and Collaborator need Burp Suite Professional. They fail cleanly on Community Edition.
This extension does not call an LLM. It does not use Burp AI or third-party AI APIs. Agents connect to the local API themselves.
SquidSec is a U.S. veteran-owned cybersecurity company. We build tools for authorized pentesting and red team work.
- Website: https://squidoffense.com/
- This project: https://github.com/SquidSec/SquidSec_BurpAIBridge
- MCP tool discovery:
GET /mcp/toolsand JSON-RPCPOST /mcp - Scope check / include / exclude
- Proxy history, intercept, WebSocket history
- Match/replace rewrite rules
- Send to Repeater, Intruder, Organizer, Comparer, Decoder
- HTTP send through Burp (optional via the proxy listener so it lands in Proxy History)
- Sitemap, cookies, annotations, search
- Scanner crawl / audit / issues / report (Pro)
- Collaborator payload + poll (Pro)
- Engagement helpers: curl, finding draft, endpoint map, CSRF PoC, decode, program-JSON scope, evidence pack
./gradlew test jarOutput: build/libs/burp-ai-bridge-2.0.0.jar
- Extensions → Installed → Add
- Type: Java
- Select the JAR
- Open the AI Bridge tab and copy the token / LLM connection info
- Health check (no auth):
GET http://127.0.0.1:9877/health
Keep listen host on 127.0.0.1 unless you need WSL. Do not expose the listener to untrusted networks.
curl -sS http://127.0.0.1:9877/mcp/tools
curl -sS -H "Content-Type: application/json" \
-d '{"jsonrpc":"2.0","id":1,"method":"tools/list"}' \
http://127.0.0.1:9877/mcp
curl -sS -H "Authorization: Bearer YOUR_TOKEN" \
-H "Content-Type: application/json" \
-d '{"name":"burp_bridge_health","arguments":{}}' \
http://127.0.0.1:9877/mcp/callTurn Proxy intercept off before automated /http/send or the call will hang.
- Loopback only by default
- Token required for mutating and reading project data
- No CORS wildcard (browser pages cannot call the API from other origins)
- Treat HTTP message bodies as untrusted
- Finding helpers redact common secret headers
- Use only against systems you are authorized to test
See BappManifest.bmf, BappDescription.html, BAPP_ACCEPTANCE.md, and SUBMISSION.md.
Apache License 2.0. SquidSec — U.S. Veteran-Owned. https://www.SquidOffense.com