The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

prcatice exam button dont work

do i need to buy exam first before i try to take the practice exam? there is no button to press (only the graphic of the button) no error messages of some sotr what can i do?

Last updated: Nov 07, 2022 08:16AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Cannot find Burp Collaborator client

Hi, I use BurpSuite Pro on MacOS. I don't know why but today I couldn't find a way to open Burp Collaborator client. Normally, it was under "Burp" on the top menu bar. But today it just disappeared. May anyone help??

Last updated: Nov 04, 2022 09:14AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Open redirection (DOM-based)

Findings: The application may be vulnerable to DOM-based open redirection. Data is read from window.location.href and passed to window.location.href. Static Analysis: Data is read from window.location.href and...

Last updated: Nov 03, 2022 12:08PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Cross-site scripting (DOM-based) - Data is read from location and passed to $()

Static Analysis: Data is read from location and passed to $() via the following statement: window._gaq.push(['_trackEvent', 'Cookies', 'Learn more link clicked', $(location).attr('href')]) Vulnerable Code: ...

Last updated: Nov 03, 2022 12:02PM UTC | 1 Agent replies | 1 Community replies | Bug Reports

Error on running Could not start Burp: java.lang.UnsatisfiedLinkError: no splashscreen in java.library.path

Could not start Burp: java.lang.UnsatisfiedLinkError: no splashscreen in java.library.path: [/usr/java/packages/lib, /usr/lib/x86_64-linux-gnu/jni, /lib/x86_64-linux-gnu, /usr/lib/x86_64-linux-gnu, /usr/lib/jni, /lib,...

Last updated: Nov 03, 2022 10:44AM UTC | 3 Agent replies | 4 Community replies | Bug Reports

The ui is messed up when burp Chinese input

When I type Chinese in burp, the ui is messed up.

Last updated: Nov 03, 2022 09:43AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp's embedded browser refuses to load any HTTPS site.

Hi. Opening Burp -> Proxy -> embedded chromium browser. It refuses to load any site with https. If I load a site I just get a page that says "It Works!". I've reset Burp back to default a few times. I've disabled all...

Last updated: Nov 01, 2022 02:22PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Regarding Burp Web Academy Labs

SQL injection attack, querying the database type and version on MySQL and Microsoft - this lab is not working as expected. I tried solutions as well. Could you verify if this is the case?

Last updated: Nov 01, 2022 11:33AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp Scanner

Hello, I have recently checked the work of Burp scanner on Burp Exam where Insecure Deserialization vulnerability is present exactly, but there is no issue of this vulnerability detected by Burp Scanner. As I know other...

Last updated: Oct 31, 2022 08:45AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

"Unknown Host" when DNS resolves if host is offline

I am going through a SOCKS proxy and doing DNS through that SOCKS proxy. All machines in question can resolve offline-machine.example.com to an IP address. offline-machine.example.com cannot be reached, but the DNS is...

Last updated: Oct 28, 2022 10:56AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp -Freeze

hi Team I would like as bout some issue 1.Java SE Development Kit 17.0.1(64-bit) 2.Burp Suite "JAR" 2022.8.5 3.Windows 8 4.Processor Inter Core i7-2700K 3.50GHz 5.Memory 16G The issue is about freeze .When I...

Last updated: Oct 26, 2022 07:44AM UTC | 4 Agent replies | 3 Community replies | Bug Reports

Solved Labs do not update Solved status.

I've been solving some of the vulnerability labs and have received confirmation each time, within the lab, that my solution has been accepted. However, outside of the lab, the status of the labs I've solved remains...

Last updated: Oct 26, 2022 07:08AM UTC | 5 Agent replies | 6 Community replies | Bug Reports

burp unable to report simple issues

hello everyone, I have been observing since 3-4 previous releases of the burpsuite pro-active scan script. I been ignoring the performance and issues been reported by the tool but recently, first without burp i found an...

Last updated: Oct 25, 2022 04:48PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Non-ascii http2 header value is incorrectly handled

Burp converts non-ascii http2 header value to "?" (0x3F). Example PHP code to reproduce the bug: ---------------------- <?php header("Location: https://aaa\xFF.bbb"); ---------------------- Burp...

Last updated: Oct 25, 2022 10:47AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Lab - Modifying serialized objects login fuction not working properly?

Dear Support, I think there is a problem with the lab Modifying serialized objects, if i try to log in with the credentials provided, I get the following server error: PHP Warning: require_once(User.php): failed to...

Last updated: Oct 24, 2022 03:46PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Web Academy Lab Access Error

When I try to access the labs. The link takes me "shopping page" or something irrelevant. Did you dismiss the lab pages. Regards

Last updated: Oct 24, 2022 09:03AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

SQL solutions don't work in SQL injection attack

Hello none of the labs Lab: SQL injection attack, querying the database type and version on MySQL and Microsoft and the next one after it work? i've tried using my browser and burpsuite and even had to use solution and still...

Last updated: Oct 24, 2022 08:01AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp suite using HTTP/2 when the site isn't requesting it

I am trying to visit https://opensea.io/ and burp suite changes the connection to http/2 (forces it), cloudflare automatically blocks the connection since the site doesn't support it. I want to stop burp suite of forcing...

Last updated: Oct 24, 2022 06:54AM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Clickbandit -- Can anyone explain?

I have a bit of an odd issue -- hopefully, someone can get to the bottom of it. I'm testing an application missing the X-Frame-Options header. If I run clickbandit -- It refuses to load the frame -- as it violates one of...

Last updated: Oct 24, 2022 06:24AM UTC | 0 Agent replies | 4 Community replies | Bug Reports

CVE-2022-42889 impact on Burp

Above CVE is about a vulnerability in Apache Commons Text which is fixed in version 1.10. However, Burp Enterprise uses version 1.7 of this...

Last updated: Oct 21, 2022 10:06AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Page 52 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image