This is an extension for Burp Suite designed to help you launch HTTP Request Smuggling attacks. It supports scanning for Request Smuggling vulnerabilities, and also aids exploitation by handling cumbersome offset-tweaking for you.

Use

Right click on a request and click 'Launch Smuggle probe', then watch the extension's output pane. For more advanced use watch the video, and check out the documentation.

Practice

We've also released free online labs to practise against.

Copyright © 2018-2025 PortSwigger Ltd.