Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
Hi there, When I try to upgrade from 2021_8_3 to 2021_8_4 via the in-app upgrade button (where it asks you to restart), it fails silently. When I download the installer and try to reinstall from the command line I get...
Hello. I found a bug in the title below on the academy site. "Exploiting cross-site scripting to steal cookies" procedure: 1.Click "View post" in Festivals 2.Enter the following payload in "Comment" and click...
I'm using Burp community edition 2021.8.4 the .jar version The proxy feature to automatically add entries on tls failure is not working... To check that wasn't my mistake I downloaded older version of burp...
Why Burp Suite shows different result between Crawl & Audit and (Doing Crawl and Audit at Target Site map tab after)? I cannot see the difference on crawl, but it shows different number of bugs.
Hello, I am attempting to create and use a recorded login sequence in a scan in my enterprise trial edition burp suite. I recorded the record sequence using the chrome extension and added it as the login sequence as...
Burp Suite Error on Start up: An error occurred when starting a project with the selected options. Failed to create Burp project: Cannot invoke burp.gqv.aF() because the return value of burp.bvz.aQ() is null
I have burp community version that come pre install on Kali Linux .I have installed Kali on 1st of July till 8 October it was working well now when i used to do it is showing failed to connect port 8090 i have tried...
I updated from 8.3 to 8.4 in Burp Professional and get a Malformed Reply from SOCKS Server trying to load a page
Not sure if this is the correct place to raise this but I believe there is a small issue with the learning material on this page - https://portswigger.net/web-security/request-smuggling/finding. Specifically the request...
Hello, Cache server don't reflect any hit messages, even when changing the headers as indicated by the lab solution I don't receive any hits, I think the bug is related to cache server. Thank you for fixing the...
Lab: https://portswigger.net/web-security/sql-injection/examining-the-database/lab-querying-database-version-mysql-microsoft this lab is not working, i tried a lot and then i tried the solutions given by portswigger but...
Hi, I purchased the Pro version and have the following specifications on my VM. My VM has 8192MB of memory, 40,9GB hard drive. I have checked your article, but it doesn't help. The issue is that scanning takes a very...
iam using firefox ,i changed proxy and imported CA certificate. when i try to intercept iam getting error message Secure Connection Failed An error occurred during a connection to www.google.com. SSL received a record...
Hi there, I hope you are doing well. I am trying to complete a lab called "Lab: Web cache poisoning with an unkeyed header" and I am doing fully what I am being requested. My steps are: GET /...
There are 4 vulnerabilities impacting Linux servers. These go by OMIGOD. CVE-2021-38647 – Unauthenticated RCE as root (Severity: 9.8) CVE-2021-38648 – Privilege Escalation vulnerability (Severity: 7.8) CVE-2021-38645 –...
Description: On changing password both session using which user changes password and old sessions in any other browser or device does not expire and remains active STEPS TO REPRODUCE: 1. Log in to Browser A and make...
Hi, Purchased a license 3 days ago. I've sent emails to both "office" and "hello," with no response. Please advise. Thanks
Description: On changing password both session using which user changes password and old sessions in any other browser or device does not expire and remains active STEPS TO REPRODUCE: 1. Log in to Browser A and make...
The script is activated through a link, which sends a request to a website with a vulnerability that enables execution of malicious scripts. POC : Step 1: Open the website : https://portswigger-labs.net/ and insert payload...
Hi, How do i can reset my license key from my account page via web site? I lost access to my HDD and I forgot to press "Remove Burp license key" on a old HDD and now can not install Burp on a new machine. Please any...
Page 77 of 156
Your source for help and advice on all things Burp-related.