BSides Iowa 2018 - Track 1 Speaker: Brad Beltman From time-to-time most pentesters get asked which Burp Suite plugins are useful and which ones they use on a regular basis. Loading Burp with too many plugins can have a significant impact on its performance, so choosing the right ones for the job is important. As a professional application penetration tester I use a slew of plugins daily to help me be more efficient, and have dumped others along the way. This talk will focus on which plugins I find especially useful, and how they can help anyone improve their testing. I will also touch briefly on how to write your own plugins using Python. Attendees will leave with ideas on how they can improve their own effectiveness and efficiency in future tests, and write their own plugins when the need arises.