We performed a comparison between PortSwigger Burp Suite Professional and Synopsys Defensics based on real PeerSpot user reviews.
Find out what your peers are saying about PortSwigger, GitLab, OWASP and others in Fuzz Testing Tools."I have found this solution has more plugins than other competitors which is a benefit. You are able to attach different plugins to the security scan to add features. For example, you can check to see if there are any payment systems that exist on a server, or username and password brute force analysis."
"The feature that we have found most valuable is that it comes with pre-set configurations. They have a set of predefined options where you can pick one and start scanning. We also have the option of creating our own configurations, like how often do the applications need to be scanned."
"The solution has a great user interface."
"The most valuable feature of PortSwigger Burp Suite Professional is the advanced features, user-friendly interface, and integration with other tools."
"It was easy to learn."
"PortSwigger Burp Suite does not hamper the node of the server, and it does not shut down the server if it is running."
"The most valuable features are Burp Intruder and Burp Scanner."
"The Spider is the most useful feature. It helps to analyze the entire web application, and it finds all the passes and offers an automated identification of security issues."
"We have found multiple issues in our embedded system network protocols, related to buffer overflow. We have reduced some of these issues."
"The product is related to US usage with TLS contact fees, i.e. how more data center connections will help lower networking costs."
"Whatever the test suit they give, it is intelligent. It will understand the protocol and it will generate the test cases based on the protocol: protocol, message sequence, protocol, message structure... Because of that, we can eliminate a lot of unwanted test cases, so we can execute the tests and complete them very quickly."
"PortSwigger Burp Suite Professional could improve the static code review."
"The reporting needs to be improved; it is very bad."
"It should provide a better way to integrate with Jenkins so that DAST (dynamic application security testing) can be automated."
"In the Professional version, we cannot link it with the CI/CD process."
"There should be a heads up display like the one available in OWASP Zap."
"The price could be better. The rest is fine."
"I need the solution to be more user-friendly. The solution needs to be user-friendly."
"Scanning needs to be improved in enterprise and professional versions."
"It does not support the complete protocol stack. There are some IoT protocols that are not supported and new protocols that are not supported."
"Sometimes, when we are testing embedded devices, when we trigger the test cases, the target will crash immediately. It is very difficult for us to identify the root cause of the crash because they do not provide sophisticated tools on the target side. They cover only the client-side application... They do not have diagnostic tools for the target side. Rather, they have them but they are very minimal and not very helpful."
"Codenomicon Defensics should be more advanced for the testing sector. It should be somewhat easy and flexible to install."
More PortSwigger Burp Suite Professional Pricing and Cost Advice →
Earn 20 points
PortSwigger Burp Suite Professional is ranked 1st in Fuzz Testing Tools with 55 reviews while Synopsys Defensics is ranked 5th in Fuzz Testing Tools. PortSwigger Burp Suite Professional is rated 8.6, while Synopsys Defensics is rated 8.6. The top reviewer of PortSwigger Burp Suite Professional writes "The solution is versatile and easy to deploy, but it needs to give more detailed security reports". On the other hand, the top reviewer of Synopsys Defensics writes "Technical support provided protocol-specific documentation to prove that some positives were not false". PortSwigger Burp Suite Professional is most compared with OWASP Zap, Fortify WebInspect, Acunetix, HCL AppScan and Qualys Web Application Scanning, whereas Synopsys Defensics is most compared with Snyk, SonarQube, Fortify on Demand, Invicti and Checkmarx One.
See our list of best Fuzz Testing Tools vendors.
We monitor all Fuzz Testing Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.