We performed a comparison between Invicti and PortSwigger Burp Suite Professional based on real PeerSpot user reviews.
Find out in this report how the two Application Security Tools solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Scan, proxify the application, and then detailed report along with evidence and remediations to problems."
"The most valuable feature of Invicti is getting baseline scanning and incremental scan."
"When we try to manually exploit the vulnerabilities, it often takes time to realize what's going on and what needs to be done."
"Invicti is a good product, and its API testing is also good."
"Invicti's best feature is the ability to identify vulnerabilities and manually verify them."
"It correctly parses DOM and JS and has really good support for URL Rewrite rules, which is important for today's websites."
"The scanner and the result generator are valuable features for us."
"I like that it's stable and technical support is great."
"PortSwigger Burp Suite Professional has an intercept tab that helps us to scan our APIs, set the response, and request errors."
"The solution has a pretty simple setup."
"It helps in API testing, where manual intervention was previously necessary for each payload."
"PortSwigger Burp Suite Professional is one of the best user-friendly solutions for getting the proxy set up."
"This solution has helped a lot in finding bugs and vulnerabilities, and the scanner is good enough for simple web apps."
"The extension that it provides with the community version for the skills mapping is excellent."
"The solution helped us discover vulnerabilities in our applications."
"The most valuable features are Burp Intruder and Burp Scanner."
"Netsparker doesn't provide the source code of the static application security testing."
"The higher level vulnerabilities like Cross-Site Scripting, SQL Injection, and other higher level injection attacks are difficult to highlight using Netsparker."
"The custom attack preparation screen might be improved."
"The scanner itself should be improved because it is a little bit slow."
"The license could be better. It would help if they could allow us to scan multiple URLs on the same license. It's a major hindrance that we are facing while scanning applications, and we have to be sure that the URLs are the same and not different so that we do not end up consuming another license for it. Netsparker is one of the costliest products in the market. The licensing is tied to the URL, and it's restricted. If you have a URL that you scanned once, like a website, you cannot retry that same license. If you are scanning the same website but in a different domain or different URL, you might end up paying for a second license. It would also be better if they provided proper support for multi-factor authentications. In the next release, I would like them to include good multi-factor authentication support."
"Invicti takes too long with big applications, and there are issues with the login portal."
"The solution needs to make a more specific report."
"Right now, they are missing the static application security part, especially web application security."
"The Auto Scanning features should be updated more frequently and should include the latest attack vectors."
"It should provide a better way to integrate with Jenkins so that DAST (dynamic application security testing) can be automated."
"Sometimes the solution can run a little slow."
"The solution lacks sufficient stability."
"There is a lot to this product, and it would be good if when you purchase the tool, they can provide us with a more extensive user manual."
"It would be good if the solution could give us more details about what exactly is defective."
"The scanner and crawler need to be improved."
"One thing that is not up to the mark in PortSwigger is web application testing. I found some issues with its performance and reporting. They should work on these and give us a better outcome."
More PortSwigger Burp Suite Professional Pricing and Cost Advice →
Invicti is ranked 20th in Application Security Tools with 25 reviews while PortSwigger Burp Suite Professional is ranked 9th in Application Security Tools with 57 reviews. Invicti is rated 8.2, while PortSwigger Burp Suite Professional is rated 8.6. The top reviewer of Invicti writes "A customizable security testing solution with good tech support, but the price could be better". On the other hand, the top reviewer of PortSwigger Burp Suite Professional writes "The solution is versatile and easy to deploy, but it needs to give more detailed security reports". Invicti is most compared with OWASP Zap, Acunetix, Qualys Web Application Scanning, Veracode and Fortify WebInspect, whereas PortSwigger Burp Suite Professional is most compared with OWASP Zap, Fortify WebInspect, Acunetix, HCL AppScan and Veracode. See our Invicti vs. PortSwigger Burp Suite Professional report.
See our list of best Application Security Tools vendors and best Static Application Security Testing (SAST) vendors.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.