The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

REST API. Get scan status after Burp restart: Task ID not found

Burp Suite Pro version: 2.1.05; Steps to reproduce: 1. Start Burp Suite Pro; 2. Launch new scan, using REST API, i.e. do HTTP POST scan configuration to http://127.0.0.1:1337/$apiKey/v0.1/scan; 3. Poll scan status...

Last updated: Jun 19, 2024 04:07PM UTC | 13 Agent replies | 13 Community replies | Bug Reports

Burp Browser Doesn't Work After Update

I have updated to the latest stable version v2023.5.2, and the burp browser was uninstalled from the burpbrowser directory. When trying to use the browser, the following error message pops: java.io.IOException: Cannot run...

Last updated: Jun 19, 2024 01:13PM UTC | 3 Agent replies | 3 Community replies | Bug Reports

BCheck Scanning issue with report issue and continue on scan launcher

Hey, just looking to see if its a known issue RE: Bchecks using "report issue and continue" via a host it works via the test cases tab but on running via "scan" and "launcher" and run with "Audit checks - BChecks only" and...

Last updated: Jun 18, 2024 12:42PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Repeter changes http method

If a server advertises h2 in ALPN, the repeater tool changes protocol to this and refuses to change back. To repeat, create a new tab in repeater and paste the following content: -------- GET / HTTP/1.1 Host:...

Last updated: Jun 18, 2024 11:02AM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Lab: Offline password cracking

Hi all, I'm unable to spin up that lab. I'm always met with a 504 "Page isnt working now" error code. I know some of yours labs have been under maintenance for the past days; I was wondering if thats also one the lab...

Last updated: Jun 17, 2024 09:53AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Lab: Cross-Site WebSocket hijacking

Hi BurpSuite team ! I was hoping I could practice CSWSH but the lab is not working. A new tab is opened, and eventually closed automatically. Is this lab also part of the on-going maintenance? Thank you!

Last updated: Jun 17, 2024 09:52AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Cursor Not Accurate at Request/Response Editor

Hello, i have a problem with my burp. After I installed the latest version, my cursor is not accurate. It happens at request/response editor. For example, when I try to edit a request on the repeater tab, then I click on a...

Last updated: Jun 15, 2024 03:35AM UTC | 10 Agent replies | 14 Community replies | Bug Reports

False Positive based on Last-Modified header

Hi, Burp Scanning does check for "Date" header and its modification, even though its modified in response, it wouldn't call that a "Response Modification". However, the header "Last-Modified" is not whitelisted and...

Last updated: Jun 14, 2024 03:20PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Clickjacking labs not working

I have tried some of the apprentice clickjacking labs in the past and could not complete them even though the payload aligned perfectly. I have now come across this issue again in the lab: Exploiting clickjacking...

Last updated: Jun 13, 2024 06:57AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

BurpSuite is unresponsive.

I clicked 'Compare Sitemaps' and it fills up to 100%, BurpSuite is unresponsive. Env: m3 max, I won't include the version of Java in Burp as it uses the bundler anyway (system uses openjdk 21.0.3 Zulu)

Last updated: Jun 12, 2024 11:02AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Server-side prototype pollution materials

Hi, I am going over the materials on server-side prototype pollution, and I noticed a bug. Specifically, in the `Status code override` section and the code snippet showing the `createError` function. ``` if...

Last updated: Jun 11, 2024 10:35AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Sort order Sitemap

My Sitemap stopped sorting alphabetically, and now just adds the sites in the order Burpsuite sees them. I can't find any setting to undo this. Looks like something is broken here. Started doing this since latest version...

Last updated: Jun 10, 2024 12:02PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

burpsuite chromium makes my kali linux sometimes freeze

In recent days I have switched to using Firefox as my intercept browser (with foxyproxy addons) this is because when I use the built-in Chromium from Burpsuite, sometimes my laptop freezes within a few seconds. Do you know...

Last updated: Jun 10, 2024 10:33AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Access the Lab

Hello, i have an issue with all labs, that the button (Access Lab) is hiddden i can't find it anywhere!!!

Last updated: Jun 10, 2024 10:23AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Out-of-band resource load (HTTP) reported "after" failing to connect to the Collaborator server.

Recently all of our BURP Pro. scans began detecting Out-of-band resource load HTTP (Confidence level: CERTAIN) across different apps. However, this finding only appears "after" the event log reports "Failed to connect to the...

Last updated: Jun 07, 2024 10:42AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

API Scan, use cookies from cookie.jar not working

Hi, when I start API Scan and have the session handling rule "Use cookies from Burp's cookie jar" active, no cookies are added to the requests. The Session handling tracer shows events: Applying rule: Use cookies from...

Last updated: Jun 07, 2024 10:35AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

jython "Select File" broken

Currently having an issue (v2024.4.5.) where I click the button to "Select File" for the "Location of the Jython standalone JAR file" in the Extension settings and it fails to select anything. When the window pops up to...

Last updated: Jun 07, 2024 07:54AM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Bchecks bug?

I don't understand, but this just doesn't work for me. ``` metadata: language: v2-beta name: "Sql Injection" description: "Classic SQL Injection" given query insertion point then if...

Last updated: Jun 07, 2024 07:49AM UTC | 1 Agent replies | 2 Community replies | Bug Reports

Burp Suite - missing "Drop all out-of-scope requests" in Target-Scope tab

Hi, There was a "Drop all out-of-scope requests" checkbox in the Target->Scope tab. It disappeared after an update. The workaround for now is to use the menu "Settings->Project->Scope" instead (the checkbox is still there...

Last updated: Jun 06, 2024 02:53PM UTC | 3 Agent replies | 3 Community replies | Bug Reports

Intermittent Freezing Issue During Crawling in Burp Suite Professional

I am using the latest version of Burp Suite Professional. While crawling, Burp Suite intermittently freezes for a few seconds before resuming. The duration of these freezes increases as the crawling progresses. I have also...

Last updated: Jun 06, 2024 09:47AM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Page 15 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image