The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Burp - Target - Actively scan this host times out

Hello, Starting a new scan from dashboard with Crawl or Crawl and Audit works fine. However If I go to target and use "Actively scan this host" it will time out after some requests. What can I do to mitigate this? Tried...

Last updated: Jan 29, 2021 04:13PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

HTTP Mock extension can't be loaded

HTTP Mock extension loading with a error: java.util.regex.PatternSyntaxException: Unexpected internal error near index 28 ^/Dashboard/GetRepositories\ at java.base/java.util.regex.Pattern.error(Pattern.java:2029) at...

Last updated: Jan 29, 2021 02:17PM UTC | 3 Agent replies | 2 Community replies | Bug Reports

Swagger JSON file taking 20+ hours

Scanning one of our APIs. I read that if you point it at your swagger json definition ( OAS ) file that it would find all the endpoints. However my scan has now taken over 20 hours and is still going. We only have one...

Last updated: Jan 29, 2021 01:58PM UTC | 2 Agent replies | 2 Community replies | Bug Reports

Repeater requests not showing in Sitemap

Hello all, In my sitemap I have a spidered log for www.domain.com/folder/file.json with a 403 response. I sent this request to repeater, removed some headers, and file.json was succesfully returned to me. However, the...

Last updated: Jan 29, 2021 09:28AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

download

when I go through the setup wizard it does nothing. I click finish and it doesn't open the file I can't even find the file all I can find is the file that starts the setup wizard

Last updated: Jan 28, 2021 11:33AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

NullPointerException when opening existing project

My OS crashed with Burp and when trying to load my Burp project, I get: "Failed to create Burp project: NullPointerException". Anything I can try to recover it?

Last updated: Jan 28, 2021 10:12AM UTC | 2 Agent replies | 1 Community replies | Bug Reports

Lab: Authentication Bypass via OAuth implicit flow

After I enter the provided credentials within the lab, I am advised that I either typed in or pasted in the wrong information. I am unable to move forward in my first lab. Please help.

Last updated: Jan 26, 2021 12:52PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Burp Enterprise check for Cross-site scripting (reflected) encoding issue

In Burp Enterprise the "Cross-site scripting (reflected)" check is delivering findings with Confidence "certain" An example would be as...

Last updated: Jan 26, 2021 09:37AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

SHA256 checksum invalid burpsuite_community_macos_v2020_12_1.dmg

From website: SHA256: e84e694d56dcce7b7b350164e9238dbaa4b1065d83734ff4e3d4c9790bb65fd4 MD5: 7fd04859ec10cd76fe97e3f07518561a Checking file on my system: sha256sum...

Last updated: Jan 25, 2021 09:17AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

Web Security Academy - Reflected XSS into attribute with angle brackets HTML-encoded: Additional solutions

Hi together, I have some feedback for the Web Security Academy :) 1. I couldn't find where to put feedback for the labs. So I hope I'm right here. 2. In the "Reflected XSS into attribute with angle brackets...

Last updated: Jan 22, 2021 03:13PM UTC | 0 Agent replies | 0 Community replies | Bug Reports

Automatic Detection of Open Redirection Vulnerability in Portswiggers related Lab

Hi, why do Burp Professionals's automated scans not detect the open redirection vulnerability in the related "Lab: DOM-based open redirection"...

Last updated: Jan 22, 2021 02:23PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

BurpSuite Error

Was following along with an INE tutorial. Got this message. Wanted to do my small part and report the error. └─# burpsuite 127 ⨯ Jan 21, 2021 12:24:34 PM...

Last updated: Jan 22, 2021 10:17AM UTC | 1 Agent replies | 0 Community replies | Bug Reports

MSSQL Injection not being detected by scanner.

Hi PortSwigger Team, The Professional version scanner is not detecting a simple blind SQL injection in Microsoft SQL server. I know in versions 1.7 and 2.0beta this exact scenario was correctly identified several...

Last updated: Jan 22, 2021 09:37AM UTC | 5 Agent replies | 6 Community replies | Bug Reports

Burp Suite Pro Crash

Burp suite professional crash when I change my keyboard layout to Mandarin input (Pinyin) in Mac OS X 10.14.6

Last updated: Jan 22, 2021 07:43AM UTC | 4 Agent replies | 4 Community replies | Bug Reports

Burp Community Installation on Kali - Pink Screens

I'm having a strange problem on Kali. After installing Burp Community, the startup prompts are all pink and cannot be clicked. I've tried installing with the shell script, the JAR file, and via apt. I've also tried...

Last updated: Jan 21, 2021 03:36PM UTC | 4 Agent replies | 5 Community replies | Bug Reports

Burp freeze

Hi, I tried using the Scanner with the latest Burp, but the problem that the Scanner freezes and never ends when the server does not return a response seems to recur. The url says: Unauthenticated crawl. Estimating...

Last updated: Jan 21, 2021 09:17AM UTC | 3 Agent replies | 3 Community replies | Bug Reports

Burp Enterprise not able to to login using recorded login sequence & auto discover URLs

Hi, I have tried to capture login to our solution suites using burp recorded login sequencer and applied the generated json in the burp enterprise edition site settings. All the scan is getting completed with a failure...

Last updated: Jan 19, 2021 05:03PM UTC | 1 Agent replies | 0 Community replies | Bug Reports

test1

message1

Last updated: Jan 18, 2021 11:55PM UTC | 0 Agent replies | 0 Community replies | Bug Reports

Scanner application login not trying all buttons

I have a website that has the following login form: <form id="example" name="example" method="POST" target="_self" action="https://example.org/e/?login" accept-charset="UTF-8"> <input type="text" name="username"...

Last updated: Jan 18, 2021 01:19PM UTC | 2 Agent replies | 1 Community replies | Bug Reports

v2020.7 Embedded Browser Doesn't Launch on Parrot

Hello, I just wanted to report that the embedded browser in 2020.7 does not launch with a default Parrot OS (https://parrotlinux.org/) configuration. Attempts to launch it return "net.portswigger.devtools.client.a: Refusing...

Last updated: Jan 18, 2021 01:00PM UTC | 11 Agent replies | 14 Community replies | Bug Reports

Page 95 of 156

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image