Burp Suite User Forum

Create new post

Support multiple alphabets/custom alphabets for Base64 encoding/decoding detection

Decoder would be a lot more powerful if custom alphabets could be used against Base64 encoding out of the box. Several cases of Base64 encoding have been overlooked from my testing before because the parser for the server...

Last updated: Sep 20, 2023 08:22AM UTC | 2 Agent replies | 2 Community replies | Feature Requests

Facing issue with a CSRF attack

CSRF vulnerability with no defenses Can you reset this lab in my account.. I am unable to use wiener:peter as the login credentials. I am trying from last two days. I will be waiting for a positive respond.

Last updated: Sep 19, 2023 08:01AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Prevent out of scope from appearing in Proxy>HTTP History

Hello folks! I was wondering if there could be an enhancement to where if a host/IP is explicitly added to the "Exclude from scope" section within Project>Scope tab, that host/IP will not show up or appear within the...

Last updated: Sep 15, 2023 09:22AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Bchecks Export button

would it be possible to add an export button for Bchecks to be able to export one or many of the scripts.

Last updated: Sep 15, 2023 08:15AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Burp Search -> Show this Request in HTTP History

Hello! I enjoy the main Burp search functionality (Burp -> Search menu option) which allows you to look for a particular search term within the requests/responses in the Proxy history. It's great when trying to find the...

Last updated: Sep 14, 2023 12:11PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

No more activation allowed for this license

ライセンスキーを入力後、以下メッセージが出力します。 "No more activation allowed for this license" サポートをお願いいたします。 新しいライセンスキーの再発行でも構いません。 よろしくお願いいたします。

Last updated: Sep 12, 2023 06:15AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Missing parameter 'csrf' as response to my request to upload php file

Hi Team, I am trying to solve lab "Web shell upload via Content-Type restriction bypass" I am facing an issue. I am changing the content type to "images/jpeg" and then sending the request to get my php exploit file...

Last updated: Sep 11, 2023 11:27AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Sitemap Presentation View

When writing reports for clients, I always try to show the client what I was able to discover while enumerating. It would be nice to have multiple ways of viewing the sitemap. Not only for presentation purposes but also for...

Last updated: Sep 11, 2023 08:28AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Unique URL

Hi Burp Suite team! Just wondering if you could add another filter in the HTTP history under Proxy tab where it would only show unique URLs(no duplicates).

Last updated: Sep 08, 2023 03:37PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

burp suite professional

Dear Sir/Madam, My coworker had made a request for a Burp Professional Trial but it was not approved. Actually. we have already purchased one license of Burp Professional, now our management is considering purchasing...

Last updated: Sep 08, 2023 12:37PM UTC | 1 Agent replies | 1 Community replies | Feature Requests

Possibility to call extensions from Organizer

Hi there, The new Organizer feature looks promising. What I miss right now is the ability to select requests in Organizer and call an extension for those requests. So ContextMenuEvent should fire when a context menu is...

Last updated: Sep 08, 2023 08:45AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Two-step Intruder attacks

I'm testing a site where a PUT is altering a record, but the site only returns 202 Accepted. In order to find out if each payload ends up intact, altered, or causes an error, a separate request has to be made to the...

Last updated: Sep 08, 2023 08:23AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

burp doesn't work Connection: close

I configured burp correctly, the latest version, however, after turning on the proxy, the page does not load, the handwheel is spinning around and in burp I have the following info: what should I do? GET /...

Last updated: Sep 07, 2023 02:15PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Platform Authentication

My app is using NTML authentication and set the platform authentication but unable to ntml authorization header in the burp request .

Last updated: Sep 05, 2023 11:04AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Saved/Personalized Intruder Attacks

Hi there! I think it would be very useful/helpful if Burp had an option to save custom intruder settings. For example, if as a researcher I tend to scan IP ranges using a sniper attack with numbers ranging from 1-255, I...

Last updated: Sep 01, 2023 06:47AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Filter by method

Currently the view filter supports status code but it would be helpful to also be able to filter by request method (GET, POST, PUT, etc). Thank you, Micah

Last updated: Aug 29, 2023 05:05PM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Add HTTP Method as a value to the filter scope

The current scope dialog uses protocol, host/ip, port and file as a filter, however, there are times when it would be useful to filter on HTTP method too. For example when working with a RESTful interface that uses the...

Last updated: Aug 29, 2023 05:03PM UTC | 7 Agent replies | 7 Community replies | Feature Requests

Adding Discovery to the Montoya API

Hi, I'd like to write an extension that fits into the Content Discovery functionality. At the moment there's no Montoya API for the functionality I can find. Are Discovery overrides on the current API roadmap?

Last updated: Aug 29, 2023 09:41AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Resetting Labs and learning materials

hello,i want to reset all my progress(labs,learning path). Can u do that?

Last updated: Aug 28, 2023 07:06AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Accessibility

Hello, I have been using Burp Suite for some months now, and I would like to share my experience as a blind user. First of all, the majority of the interface is not navigable with a screen reader. This is due to the fact...

Last updated: Aug 24, 2023 10:54AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Page 7 of 64

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image