The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Beta Crawler does not work

I attempt to crawl a webpage by giving the crawler the root of a website. However it does not find anything and says "1 locations crawled". I have tried different settings such as changing the crawl strategy to "Most...

Last updated: Mar 07, 2019 10:11AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Link manipulation and Open rediraction (DOM-based) - JQuery Mobile

Hi all, we use jquery.mobile-1.4.5.min.js in our application. Burp scan found a Link manipulation (DOM-based) and Open redirection (DOM-based) vulnerabilities in JQuery Mobile sources: Open redirection...

Last updated: Mar 06, 2019 10:57AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

The JavaScript file 'jquery.mobile-1.4.5.min.js' includes a vulnerable version of the library

Hi all, We faced an issue from Burp Report: "Issue detail The library jquery-mobile version 1.4.5.min has known security issues. For more information, visit those...

Last updated: Mar 06, 2019 10:54AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp does not set SNI on the outgoing connection to an SSL enabled web server

Hi there, We run into the following situation the other day: We were testing an SSL enabled application and kept getting connection resets when accessing it via intercepting Burp and correct connections and...

Last updated: Mar 06, 2019 08:41AM UTC | 14 Agent replies | 16 Community replies | Bug Reports

embedded browser initialisation failed

Burp pro v 2.0.18beta java version "1.8.0_201" run as root: java -jar ./burpsuite_pro_v2.0.18beta.jar I do any request via burp proxy and try to render response. And got message "Embedded browser initialisation...

Last updated: Mar 05, 2019 10:40AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp Enterprise 500 Error with Logstash http_poller Plugin

Hi, Since I was thinking the Burp Enterprise API could be easily ingestible from Logstash I'm attempting to use HTTP_Poller plugin to ingest scan results into Elasticsearch. My script is basically what's recommended...

Last updated: Mar 04, 2019 04:11PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

It's inpossible to work!

Hello Dear Burp Community, we are very upset, because we can't more work with BurpSuite, every time we start work on Windows 10 or on MacOS X after last 2 update, burpsuite freeze by self( We start 3 scans, burpsuite work,...

Last updated: Mar 01, 2019 09:30AM UTC | 1 Agent replies | 2 Community replies | Bug Reports

Burp Enterprise 500 Error with Logstash http_poller Plugin

Hi, Since I was thinking the Burp Enterprise API could be easily ingestible from Logstash I'm attempting to use HTTP_Poller plugin to ingest scan results into Elasticsearch. My script is basically what's recommended...

Last updated: Feb 27, 2019 12:28PM UTC | 0 Agent replies | 0 Community replies | Bug Reports

Graphical glitch when loading project

Hi, i would like to report a graphical glitch that sometimes happens when loading a project that takes some time to fully load. This doesn't happen all the time, i would say 1 every 15/20 runs, and i can't find a way to...

Last updated: Feb 26, 2019 08:18AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

New extension-driven passive audit task being created automatically

I noticed that with v2.0.17beta, while performing an audit, for example "Audit coverage - Thorough", a new "Extension driven passive audit" task is created and started automatically without interaction and it mostly sit...

Last updated: Feb 25, 2019 08:01PM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Connect abort software thrown

Hai , I receiving connection abort in alert tab while scanning all the target. I could not find the root cause of the issue. Please help me. I even downloaded new version but still not helpful to scan.

Last updated: Feb 22, 2019 11:41AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Unable to create projects on a network drive

Hello, Up just updated to the Burp Suite Professional v2.0.17beta and tried to create a new project located on a network drive. On the first attempt, it stated that the project was corrupt and needed to be repaired. I...

Last updated: Feb 22, 2019 08:19AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp suite submitting blank username and passwords when doing an authenticated crawl

Right now, I get locked out of my account because burp suite is trying to login with blank user names and passwords. I get locked out because it tried multiple times with the same IP. How can I see further into the issue...

Last updated: Feb 19, 2019 08:18PM UTC | 4 Agent replies | 4 Community replies | Bug Reports

Burp Professional 1.7.0.4 / Null Pointer Exception

java.lang.NullPointerException at java.util.Hashtable.put(Hashtable.java:459) at javax.swing.JEditorPane.registerEditorKitForContentType(JEditorPane.java:1247) at...

Last updated: Feb 18, 2019 07:19AM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Blank Raw (Empty)

My Config ---------------------------- BurpSuite v1.7.35 - Community Edition Java 8 I'm using firefox and I tested with others navigators like chrome... My local access proxy ip is 127.0.0.1:8080(default) My Proxy is...

Last updated: Feb 15, 2019 05:43PM UTC | 1 Agent replies | 2 Community replies | Bug Reports

Burp 2.x does not passively scan certain content types it did in 1.7

In Burp 1.7.x Burp would find issues like 'Email address disclosed' on non-HTML content types. For example if the following was served in 'emails.txt' with Tomcat: test@gmail.com fake@gmail.com Burp 1.7.x would...

Last updated: Feb 15, 2019 02:23PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Maybe not a bug, xss reported by Burp

I came across an xss found by the scanner and reported as Certain. test74666'%3balert(1)%2f%2f901vivg94 I was not able to reproduce it manually until I put a ) between the ' and the ; -> %3b. I'm wondering why Burp...

Last updated: Feb 15, 2019 08:29AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

report issue

How many Types of reports available in burp suite report..? and what are the possible test cases are present in the burp scanning report..?

Last updated: Feb 14, 2019 10:09AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp suite submitting blank username and passwords when doing an authenticated crawl

Right now, I get locked out of my account because burp suite is trying to login with blank user names and passwords. I get locked out because it tried multiple times with the same IP. How can I see further into the issue...

Last updated: Feb 11, 2019 07:57PM UTC | 0 Agent replies | 0 Community replies | Bug Reports

External Service Interaction - Bug Bounty?

I have found an external service interaction issue on a website that is listed in hacker one, I want to send a report, but, I'm not sure how to come up with a proof of concept to send to them. I have recently reported an...

Last updated: Feb 06, 2019 11:51AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Page 131 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image