The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

the lab could not be started in a timely manner

Apologies, the lab could not be started in a timely manner. Please try again or contact us if the problem persists. I have tried in different browsers but iti is not working

Last updated: Jan 25, 2023 08:52AM UTC | 9 Agent replies | 12 Community replies | Bug Reports

log4j2 vulnerability for Burp Suite Enterprise Edition Version: 2022.11-11262, Java version: 17.0.5

Hi, Our company is using Burp Suite Enterprise Edition Version: 2022.11-11262, Java version: 17.0.5. Could you please clarify if is this version or Burp Suite Enterprise affected by newly discovered log4j vulnerability....

Last updated: Jan 24, 2023 09:28PM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Lab not getting marked as solved: Reflected XSS into HTML context with most tags and attributes blocked

After submitting the payload in the exploit server exactly as the lab answer specifies, the lab is still not getting marked as complete. I even tested it using "view exploit" which executes the xss, but delivering the...

Last updated: Jan 24, 2023 10:34AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

mouse click ignored

Hello, I can't click any button, including installer; It seems like mouse click is ignored :( I'm using macOS high sierra, and burp professional version 2.1.03. Is there any solution for this? Thanks!

Last updated: Jan 24, 2023 07:50AM UTC | 6 Agent replies | 6 Community replies | Bug Reports

mystery labs "solved labs only" filter broken

When doing mystery labs with the "solved labs only" feature enabled, I recieved two expert level labs despite having never solved any expert level labs. Is anyone else experiencing this issue?

Last updated: Jan 23, 2023 12:19PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

HELP WITH XSS and BURPSUITE!!!

Hello everyone, hope u are all great... I am having trouble replicating an issue that burp alerts too.. I have a reflected xss works fine in burp but is not reproducible in the browser due to modern browsers encoding input...

Last updated: Jan 23, 2023 09:30AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Reflected XSS in a JavaScript URL with some characters blocked - unintentional xss

Hi team, not sure if labs are built with only one particular and intended vulnerability per lab but in "Reflected XSS in a JavaScript URL with some characters blocked" there is other xss not related to the theme/scope of...

Last updated: Jan 20, 2023 04:09PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Blocked From Accessing Websites

Access to a numerous number of websites is blocked using the built in browser (Chromium), for example: https://nevion.com Can you detect what's the problem with the browser and fix it?

Last updated: Jan 18, 2023 09:40AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Android Apps crashing when trying to capture traffic using burp Suit Community Edition

Hello guys, I am having some issues when trying to capture traffic from an android emulator (NOX PLAYER), I installed the certificate in the system path (/system/etc/security/cacerts),etc etc...my issue comes when I try...

Last updated: Jan 17, 2023 06:53PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Certificate does not show up in Settings > General > About > Certificate Trust Settings on iOS

I am trying to capture traffic from my iOS device. I have successfully set the Proxy server in the Wi-Fi settings, downloaded the certificate from http://burp and imported it into General -> VPN & Device Management. However,...

Last updated: Jan 17, 2023 10:16AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Possible unintended behaviour in "SameSite Lax bypass via cookie refresh" lab

Lab: SameSite Lax bypass via cookie refresh: https://portswigger.net/web-security/csrf/bypassing-samesite-restrictions/lab-samesite-strict-bypass-via-cookie-refresh Hi, While solving this lab, I happened to notice that...

Last updated: Jan 16, 2023 04:03PM UTC | 1 Agent replies | 2 Community replies | Bug Reports

burpsuite not running

I have been trying to badly to search for a way to fix this issue, I cannot open burpsuite from the menu nor can I open it from the terminal. every time I try to open burpsuite from the terminal I am only left with "invalid...

Last updated: Jan 16, 2023 10:27AM UTC | 6 Agent replies | 10 Community replies | Bug Reports

JWT Editor Keys extension not working properly

Hello, I'm not able to Modify/Sign/Verify jwts with the JWT editor Keys extension. Buttons just can't be clicked. Can you explain why? Here's a screenshoot: https://ibb.co/tbRkRHK

Last updated: Jan 12, 2023 04:35PM UTC | 1 Agent replies | 3 Community replies | Bug Reports

burp 2022.12.5 can't use browser

I click "Open browser" buttom to open browser, then negative to url anything then got the message alert Title : Burp Browser Error Content : net.portswigger.browser.yh: Timeout expired while waiting for response to...

Last updated: Jan 12, 2023 11:50AM UTC | 3 Agent replies | 3 Community replies | Bug Reports

Burp Enterprise services won't start after install

When I install Burpsuite Enterprise or an agent, de services are created, but can't be started. Nor by the installer or manually afterwards. Instead there is a faillure like: # systemctl status...

Last updated: Jan 11, 2023 05:45PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

BurpSuite Browser Built In Browser isn't launching

I'm currently using BurpSuite community on Kali Linux. When clicking open browser I receive this error message: "net.portswigger.devtools.client.impl.connection.local.f: Failed to read dev tools web socket" When I run a...

Last updated: Jan 11, 2023 02:20PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Web Cache poisoning: URL normalization lab can be solved as basic XSS lab

Hello, Wanted to inform you that when you submit this URL payload: `https://YOUR-LAB-ID.web-security-academy.net/post/comment/confirmation?test=g&postId=%22%3E%3C/a%3E%3Cscript%3Ealert(1)%3C/script%3E` It validates...

Last updated: Jan 11, 2023 10:28AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Web Security Academy Labs

The more labs I complete, the more labs I need to complete to become an Apprentice. Seriously. The counter displaying how many labs I need to complete increases by one for every lab I complete.

Last updated: Jan 11, 2023 09:11AM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Cannot Re-take Practice Exam

I am unable to re-take the practice exam. When I try, the site says its building the web application but when I click the link to begin the exam, I get the error message below telling me I need to retry. If I click Try...

Last updated: Jan 10, 2023 05:58PM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Browser

When I have interceptor turned on the browser acts as expected. And then when I turn off interceptor the browser still acts as though it's on it seems. Like it doesn't open the web page. It does this even if I'm using it to...

Last updated: Jan 10, 2023 11:37AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Page 47 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image