The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

SQLi Lab for login bypass not working

Hello, as many times as i type administrator’— this solution just does not seem to be working. I’ve tried spelling it differently etc. but I just get notified that it is an “invalid username or password” Thanks

Last updated: May 25, 2023 07:02AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

ToolType.valueOf No enum Constant

Hi, I get the following error when trying to use the valueOf() method of ToolType: No enum constant burp.api.montoya.core.ToolType.Scanner With the following code: ToolType.valueOf("Scanner"); I get the...

Last updated: May 24, 2023 03:50PM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Lab: Cache key injection

Hi, it seems that this lab can be solved without key injection, simply by caching this at the redirect: GET /login?lang=en?utm_content='/><script>alert(1)</script><' HTTP/1.1 Host:...

Last updated: May 24, 2023 07:41AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Burp hotkey not working

Hey I installed the last version v2023.4.4, and the Hot key not response... for example: Ctrl + Shift + B or Ctrl + Shift + U and others... I checked the Hotkeys in Burp settings and they are exist, even if i tried to...

Last updated: May 24, 2023 07:31AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

HTTP Request Smuggling Extension Can't Be Used After Last Update

Hello, Before attempting the BSCP exam, I updated Burp on my MacBook, and I found out that I could not use the 'HTTP Request Smuggling' extension. This occurred because, after opening the extension, the UI took almost the...

Last updated: May 24, 2023 07:01AM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Web Cache Poisoning Lab Hanging Response

I'm currently attempting the following lab: Lab: Targeted web cache poisoning using an unknown header The steps I have currently done: 1. Intercepted a GET / HTTP/1.1 request to the lab URL 2. Sent the intercepted...

Last updated: May 23, 2023 03:09PM UTC | 3 Agent replies | 3 Community replies | Bug Reports

Active Scans halt indefinitely for no apparent reason

Hi, it happens from time to time that active scans halt for no known reason. Status of the "running" scan configuration is set to "Currently auditing [...]" and no new requests are being made (request counter is not...

Last updated: May 23, 2023 07:47AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Burp Collaborator can't be removed

Hi, I'm not sure whether there are other plugins having the same issue. I personally have only experienced this with the Collaborator Everywhere plugin. Unloading and removing this extension in the "Extensions" tab somehow...

Last updated: May 23, 2023 07:32AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

The embedded browser don't open

I see this issue when i'm attempting to use the lab, it shows this message: "Burp browser error".

Last updated: May 23, 2023 07:09AM UTC | 1 Agent replies | 4 Community replies | Bug Reports

IBurpExtenderCallbacks#getToolName returns NULL

The burpsuite 2.0beta and 2.0.01beta returns NULL when `IBurpExtenderCallbacks#getToolName` is invoked with the value `IBurpExtenderCallbacks#TOOL_SPIDER` of variable toolFlag. How to reproduce: Please load this Python...

Last updated: May 22, 2023 02:11PM UTC | 4 Agent replies | 2 Community replies | Bug Reports

A problem with the license.

Hello. Something happened to the license at info@sm-hub.com ? The activation dropped on all accounts connected to the internet.

Last updated: May 22, 2023 02:08PM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Activation Error

Hi everyone! When opening Burp Suite Professional today our instances consistently crashed. After restarting the license activation window opened. However our license (which is still valid for about half a year) was...

Last updated: May 22, 2023 10:34AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Activation Failure

Two out of five of my activated Burp Suite Pro instances have been deactivated, and when attempting to reactivate them, I encounter an "Activation Failed" error.

Last updated: May 22, 2023 10:21AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Burp Collaborator Default Servers Showing SSL Issue

Hi folks, When I (and other colleagues) run "Health Check" for Burp Collaborator on v2023.4.3 we are getting a significant amount of errors rendering Default Collaborator not functional. Is this a known issue affecting...

Last updated: May 22, 2023 08:32AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

No category "Gifts" on website

The lab revolves around a SQL injection on the category "Gifts", but there is none. https://portswigger.net/web-security/sql-injection/lab-retrieve-hidden-data

Last updated: May 22, 2023 08:03AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Лабораторная работа: контрабанда HTTP-запросов, базовая TE.CL уязвимость

I tried to solve it myself several times, then your decision, and then as in the video. Nothing helps

Last updated: May 22, 2023 07:59AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

No more activations allowed

Hi Team, I am trying to reactivate my Burp Pro license several times on my different machines due to environmental issues. I unable to reactivate as I am getting "No more activations allowed for this license" message....

Last updated: May 22, 2023 07:36AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Lab Bug

I am facing trouble with 'Lab: SQL injection attack, querying the database type and version on MySQL and Microsoft' lab. Firstly, somehow lab asks me to 'Make the database retrieve the string: '8.0.32-0ubuntu0.20.04.2'' when...

Last updated: May 21, 2023 07:58AM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Workaround for Java errors opening Burp on a secondary display on Linux

I encountered this and worked through it before I could blame Burp, so I want to post about it here for search-engine happiness. Using openjdk-17 on Linux with multiple monitors, Burp will start just fine on the first...

Last updated: May 19, 2023 09:04AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

TE.CL smuggling labs - official solutions do not work

The following labs don't seem to work / work stably. https://portswigger.net/web-security/request-smuggling/lab-basic-te-cl https://portswigger.net/web-security/request-smuggling/lab-obfuscating-te-header To reproduce...

Last updated: May 19, 2023 07:30AM UTC | 1 Agent replies | 3 Community replies | Bug Reports

Page 38 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image