Ross ROSS = Recommend OSS · open-source software intelligence for agents

PortSwigger/turbo-intruder

Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results. observed · 2026-08-28

github.com/PortSwigger/turbo-intruder · homepage · Kotlin · AGPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

66/100

  • Activity 97
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2786
  • days_rel: n/a
  • days_push: 20
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1796 stars · 239 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests at exceptional speed and analyzing the results. It uses a hand-coded high-performance HTTP stack, is configured via Python scripts, and supports headless command-line runs for multi-day attacks.

Use cases

  • send thousands of http requests fast for fuzzing
  • test race conditions with single-packet attack
  • brute-force endpoints at high request rates
  • run multi-day http attacks with flat memory usage
  • fuzz with signed requests or multi-step sequences
  • filter boring responses automatically during attacks

When to choose

  • you need to send huge volumes of requests to a single host faster than Burp Intruder or async Go scripts
  • you need complex attack logic like signed requests or multi-step sequences via Python scripting
  • you want to exploit race conditions using the single-packet attack
  • you need headless, long-running attacks with reliable memory usage

When to avoid

  • you want to send a single request to many hosts - use ZGrab instead
  • you are a beginner - it is harder to use than Burp Intruder
  • you need a battle-tested, reliable network stack for critical work
  • you need personal support - the author provides none

Facets

plugin · maturity active

http-client security developer-tools cli security penetration-testing web-development cross-platform jvm cli burp-suite-extension race-conditions http-fuzzing single-packet-attack python-scripting bug-bounty

10 sources

Member repositories

RepositoryRoleHealth v2
PortSwigger/turbo-intrudermain66

For agents

markdown · JSON · MCP: product_card(name="PortSwigger/turbo-intruder")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem