DAY 3 · MODULE 4
Burp Suite Fundamentals
Understand how an intercepting proxy sits between a browser and an authorized training application.
Understand the concept
Proxy
Intercept
Request
Response
Repeater concept
Headers
Parameters
Scope
Why this matters
A proxy gives students a structured way to inspect and modify training web traffic, but must remain scoped to authorized applications.
See what happens internally
Interactive visualization loads here.
Stage 2 Interactive Lab
Open Interactive LabOperate this concept in a larger realtime simulation and save your practical score.
Perform the activity
- Use the proxy visualization.
- Identify which data would be visible to a proxy.
- Later, intercept only the provided training application when the isolated lab is enabled.
Workshop safety: Activities involving scanning, web vulnerabilities or security testing must be performed only on the assigned training target or intentionally vulnerable lab.
Read and understand the working example
Browser -> Burp Proxy -> Authorized Training AppThis example is shown for guided learning. Real host/network execution is reserved for the isolated cyber-range stage.
Prove your understanding
Explain what changes when traffic passes Browser → Proxy → Training App instead of directly to the app.