No more typing reviews! Try our Samantha, our new voice AI agent.

PortSwigger Burp Suite Professional vs ReversingLabs comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

PortSwigger Burp Suite Prof...
Ranking in Application Security Tools
6th
Average Rating
8.6
Reviews Sentiment
6.3
Number of Reviews
65
Ranking in other categories
Static Application Security Testing (SAST) (5th), Fuzz Testing Tools (1st)
ReversingLabs
Ranking in Application Security Tools
43rd
Average Rating
9.2
Reviews Sentiment
7.0
Number of Reviews
4
Ranking in other categories
Anti-Malware Tools (44th), Container Security (48th), Software Composition Analysis (SCA) (25th), Threat Intelligence Platforms (TIP) (30th), Software Supply Chain Security (19th)
 

Mindshare comparison

As of April 2026, in the Application Security Tools category, the mindshare of PortSwigger Burp Suite Professional is 2.8%, up from 2.0% compared to the previous year. The mindshare of ReversingLabs is 0.7%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Security Tools Mindshare Distribution
ProductMindshare (%)
PortSwigger Burp Suite Professional2.8%
ReversingLabs0.7%
Other96.5%
Application Security Tools
 

Featured Reviews

MH
Penetration Tester & Information Security Expert at a comms service provider with 11-50 employees
Dedicated browser and repeater have improved my proxy testing and manual vulnerability checks
I'm hoping perhaps for something to make it easier, such as to define things where if a message or a response is such and such, automatically make a request that is such and such. Perhaps something like this because otherwise, nowadays we have to do it manually. Perhaps they can automate it a bit more. Perhaps they could add some automation to things, to see what we do manually, which it has the tools to do manually, and perhaps enable with a click of a button to do things automatically. I'm not too sure which, but I'm sure they can from a product management point of view, do things that we need to do two, three, or four steps manually regarding specific testing. For instance, we want to check something specific if it's this or if it's that. Perhaps to define it once and have it more automatic, perhaps.
CSOInfor4e0d - PeerSpot reviewer
CSO - Information Security at a financial services firm with 1,001-5,000 employees
We use the product for data enrichment or downloading malicious programs that we are otherwise unable to find
It's integrated in our product. We leverage the API, but it doesn't contribute to increasing the release time of the product itself. While the company is very helpful, it would be very much appreciated to have extensive proof of concept scripts for the different APIs available, though not for all the APIs that we have purchased. Respective scripts are available, but those scripts which are available are typically not of very high quality. This could be an area where the company can generally improve. It is not a big issue for us, since we have our own development team, but it could be an issue for other companies who are less mature.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's good testing software."
"Return on investment is good because it's a globally known product."
"This solution has done a lot to improve our organization, allowing us to be proactive and solve issues before our external auditors find them."
"I am impressed with the tool's detailed analysis for penetration testing. AppScan can give only visibility, but it can't do the PT part. But the PortSwigger Burp Application can do both, and it gives much more visibility on the PT rating."
"The product has a good learning hub."
"The free version is one of the best proxy tools for manual testing."
"The Spider is the most useful feature. It helps to analyze the entire web application, and it finds all the passes and offers an automated identification of security issues."
"When we compare it to other programs that we have such as OWAP Zap, we found Burp to be more suitable."
"As far as static analysis information is concerned, we use most of the information that is available in order to determine whether or not we might be dealing with a malware variant. This includes information that is related to Java rules. This is also related to malware families indicated or specific malicious software variants that are labeled by name."
"As far as the malware repository is concerned, it's extensive. It's a good source for finding samples, where we are unable to find them on other channels or by leveraging other sources."
"It offers reports on a great many more file types than the other analysis solutions we have. It can give us a more in-depth analysis and better reporting on a larger number of file types. It also gives us a more comprehensive score on a number of things as well, and that's why we're using it as a front-end filter. It gives us more information... It's valuable because of its depth of information, as well as the breadth it gives us. There aren't a lot of tools that cover all of the different file types."
"The automated static analysis of malware is the most valuable feature. Its detection abilities are very good. It hits all of the different platforms out there, platforms that see the items in the wild."
"We have complete faith that it can do that for us, and can do it at scale."
"As far as the availability of the content is generally concerned and the number of malicious programs that can be looked up in the repository, these are very extensive."
"ReversingLabs has a large sample size."
"We had nothing in the environment to do such analysis, so it's been a savior in many ways."
 

Cons

"It is expensive for us in Brazil because the currency exchange rate from a dollar to a Brazilian Real is quite steep."
"There is not much automation in the tool."
"I would like to see a more optimized solution, as it currently uses a lot of CPU power and memory."
"PortSwigger Burp Suite Professional could improve the static code review."
"There needs to be better documentation provided."
"The initial setup was somewhat complex, to be honest."
"We'd like to have more integration potential across all versions of the product."
"There needs to be better documentation provided. Currently, we need to buy books, or we need to review online some use cases from other professionals who have been using the solution to find out their experience. It is not easy to find out how to properly do a security assessment."
"We would really like further integration with our threat intelligence platform, which is called ThreatConnect. We would also really like further integrations with an endpoint protection product we use called Tanium. The reason I mentioned both of these is that ReversingLabs claims to have extensive integrations with both of them, but they did not work for us."
"While the company is very helpful, it would be very much appreciated to have extensive proof of concept scripts for the different APIs available, though not for all the APIs that we have purchased. Respective scripts are available, but those scripts which are available are typically not of very high quality."
"While the company is very helpful, it would be very much appreciated to have extensive proof of concept scripts for the different APIs available, though not for all the APIs that we have purchased."
"The solution needs to improve integrations."
"The product support could be better at times. Sometimes, the resources that they provide could be of higher quality."
"We would really like further integration with our threat intelligence platform, which is called ThreatConnect. We would also really like further integrations with an endpoint protection product we use called Tanium."
"I would like to see if we could do a little bit more of bulk uploading of hash sets."
"I would like to see if we could do a little bit more of bulk uploading of hash sets. Right now, I can only do them individually."
 

Pricing and Cost Advice

"The platform's pricing is reasonable."
"At $400 or $500 per license paid annually, it is a very cheap tool."
"Burp Suite is affordable."
"The price for the solution is expensive and could be cheaper. We pay an annual license and our team has several of them."
"Pricing is not very high. It was around $200."
"This solution requires a license. It is expensive but you receive a lot of functionality for the price."
"We are using the community version, which is free."
"It's a lower priced tool that we can rely on with good standard mechanisms."
"Currently, the license number of lookups that we purchased has not been reached yet, because the integration has only recently been completed. However, our usage is expected and planned to increase over the next couple of months."
"We have a yearly contract based on the number of queries and malicious programs which can be processed."
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Government
10%
Financial Services Firm
10%
Manufacturing Company
8%
Computer Software Company
8%
Construction Company
14%
Financial Services Firm
13%
Computer Software Company
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise14
Large Enterprise35
No data available
 

Questions from the Community

Is OWASP Zap better than PortSwigger Burp Suite Pro?
OWASP Zap and PortSwigger Burp Suite Pro have many similar features. OWASP Zap has web application scanning available with basic security vulnerabilities while Burp Suite Pro has it available with ...
What do you like most about PortSwigger Burp Suite Professional?
The solution helped us discover vulnerabilities in our applications.
What is your experience regarding pricing and costs for PortSwigger Burp Suite Professional?
The cost of PortSwigger Burp Suite Professional is reasonable at approximately $500 per year per user.
Ask a question
Earn 20 points
 

Also Known As

Burp
ReversingLabs Titanium, ReversingLabs secure.software
 

Overview

 

Sample Customers

Google, Amazon, NASA, FedEx, P&G, Salesforce
Financial services, healthcare, government, manufacturing, oil & gas, telecommunications, information technology
Find out what your peers are saying about PortSwigger Burp Suite Professional vs. ReversingLabs and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.