In April of 2015, Portswigger released Burp Collaborator, a tool focused on testing for out of band web app vulnerabilities. Almost a year later, it is still either largely unused, or not understood. This talk covers the basics of how Burp Collaborator works, the vulnerabilities it can help discover, how they can be exploited, and the requirements to set up a private Burp Collaborator server.