Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
In Lab: CSRF with broken Referer validation, I tried the solution mentioned in (https://portswigger.net/web-security/csrf) and set Referrer-Policy: unsafe-url. But, it didn't work and the browser still sent the trimmed url...
Hello, We are trying to configure burp suite pro to scan a host that use NTLMv2 authentication however we are getting the following error in burp: "No NTLM challenge received from...". We have platform authentication...
└─$ sudo burp 2021-08-26 22:22:30 +0100: burp[2426] Could not find ssl_cert /etc/burp/ssl_cert-client.pem: No such file or directory 2021-08-26 22:22:30 +0100: burp[2426] Could not find ssl_key...
Hi, I'm getting this error log each time I run a new scan. I updated to the latest version of Burp. Please check and provide any solution. Process: JavaApplicationStub [62907] Path: ...
Hi, I have been doing the SQLi exercises and everything was going fine until I was doing this exercise:...
I solved the lab but it is still showing as not solved ...
Hi! In the last two updates, my Intruder broke down. It ignores concurrent requests in the Resource pool. It doesn't matter whether I set 10 concurrent requests or 999, the process is extremely slow, 1-3 requests per...
I am having issues when using advanced scope control top exclude certain hosts from scanning/testing. I need to use advanced scope control to specifically exclude a particular URL pattern, so that forces me to use a regex to...
I am having issues when using advanced scope control top exclude certain hosts from scanning/testing. I need to use advanced scope control to specifically exclude a particular URL pattern, so that forces me to use a regex to...
Using a standard test site: http://testphp.vulnweb.com/ <input name="searchFor" type="text" size="10"> Insert simple payload Into search box <script>alert(1);</script> Response: <h2 id='pageName'>searched for:...
Hi, Since yesterday I was able to login to the burpenterprise edition with my admin username and password and suddenly today I am not able to. I havenot forgot my password. It was the same one I was using since last few...
Hey, not sure if this a bug or a feature) So if in cookie you change username to not much token, username: carlos token: from peter Here it...
Hi, dear Support! Please help me to understand the reason of the scan failure to achieve success. I'm using the Burp Suite Enterprise Edition Version: 2021.6-7240, Java version: 11.0.10 Sites > Sites with scan failures...
Clean install, everything looks fine, but when moving to DOM Invader Tab I can activate it, but changing the value of Canary is impossible and extension just feels very buggy in general.
On Win10 last using CE 2021.5.1 without issue Upgraded to 2021.8.1 and the embedded browser would not load any https pages. Downloaded the CA cert, installed to embedded (Chromium) browser, Chrome 92.0.4515.131, Firefox...
Hi Team, I have try to install Burp Suite EE in AWS with 2 different version 2021.6 and 2021.3.1 In both the versions I have faced the same issue. Entire CF template getting created but not the Load balancers This is...
hi folks, just got my new licence and i ve noticed that even i install on linux or pc, burpcollaborator client dont work anymore burpcollaborator.net is unreachable. any way to fix this? best regards
java.lang.IndexOutOfBoundsException: Index -1 out of bounds for length 4 at java.base/jdk.internal.util.Preconditions.outOfBounds(Preconditions.java:64) at...
Hi, I have burp pro installed on a Mac (big-sur) but when I open the onboard browser it behaves in an unstable way. Just to make it clear, I do not have the intercept on. The page doesn’t show any pages but occasionally...
Hi, I can't access to any lab. I get a "not found page" with the following message: The requested item was not found. We apologize for the inconvenience.
Page 80 of 156
Your source for help and advice on all things Burp-related.