The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Reset progress

Hi, can you please reset all my learning paths and completed labs? Thanks.

Last updated: Sep 02, 2024 06:48AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Lab reset

Hi Team, Could you please reset all my labs

Last updated: Sep 02, 2024 06:32AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Unable to intercept Https traffic in firefox and pre configured browser , not able to open any websites like google ,fb etc.

Unable to intercept Https traffic in firefox and pre configured browser , not able to open any websites like google ,fb etc. I've installed the certificate on firefox, still facing same issue.

Last updated: Aug 30, 2024 09:12AM UTC | 2 Agent replies | 2 Community replies | Feature Requests

Tagging in Burp Enterprise

Hi Team, We'd like to propose a feature which will add up to the usability of Burp Enterprise in Enterprise environments - Tagging. Currently we can group our sites\targets in folders and subfolders, which allows us to...

Last updated: Aug 29, 2024 09:05AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Mystic Labs: A suggestion for more variety

After completing 100 Mystic Labs at PortSwigger, I noticed that some labs appear very frequently, while others hardly appear at all. This repetition can limit the variety of challenges and affect the learning experience....

Last updated: Aug 29, 2024 08:55AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Feature enhancement request to hide uninteresting headers

First of all, thank you for your fantastic Tool burp suite. I would like to ask for improved functionality to hide uninteresting headers. Could you add in the options or where you think is best a list where you indicate...

Last updated: Aug 28, 2024 01:58PM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Side-by-side View

Hi! Currently, displaying a request+response pair side-by-side is only possible in Repeater ("Repeater -> View -> Left/right split" from the menu bar) or via extensions like Flow or Logger++. I use this layout a lot and...

Last updated: Aug 28, 2024 09:24AM UTC | 5 Agent replies | 13 Community replies | Feature Requests

Hiding "non-interesting" headers in requests

Hi, Creating PoC pictures from Burp properly takes some effort to minimize requests (I know, there is extension for it). Also, on smaller screens (e.g. laptop), one sees the same headers over and over again, which for all...

Last updated: Aug 27, 2024 08:59PM UTC | 2 Agent replies | 2 Community replies | Feature Requests

About "Discover content"

In "Discover content," under what circumstances do you consider content to have been discovered? My guess is that it's when a status code other than 404 is returned. Is there any other logic behind this? Also, I don't...

Last updated: Aug 27, 2024 03:01PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Support TLS decryption with pre-master secret

We are currently building a tool for extracting pre-master secret (PMS) values from memory of mobile devices. It would be great if Burp supported the decryption of TLS traffic with a list of PMS values just like Wireshark...

Last updated: Aug 27, 2024 12:03PM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Reset progress

Hi, I want to reset both my lab progress and my learning path progress. Thanks

Last updated: Aug 27, 2024 10:04AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

to reset all my progress

i want to rest all my progress and labs

Last updated: Aug 27, 2024 07:25AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Make 'WebSockets history' able to filter opcodes

Hi, in an assessment I had to pentest an application which uses websockets. After a bit of fuzzing I found out, that a invalid payload caused the application to close the websocket-connection with an...

Last updated: Aug 22, 2024 09:56AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Add cookie authentication to active scan

When doing an Active Scan, you can enter a username/password combination or record requests that will authenticate. MFA disrupts this workflow. I suggest adding an option to add a header (eg. authorization) or authentication...

Last updated: Aug 20, 2024 01:56PM UTC | 2 Agent replies | 1 Community replies | Feature Requests

HttpRequest Transformation to Convert HTTP_MODE

I noticed the withTransformationApplied method and would like to suggest adding a potential HttpTransformation.HTTP_VERSION to the backlog. This could facilitate switching HTTP versions more seamlessly. For example, you...

Last updated: Aug 20, 2024 11:45AM UTC | 4 Agent replies | 3 Community replies | Feature Requests

Lab: SameSite Lax bypass via cookie refresh

i Solve this Lab by just submiting this code since it Redirect us automaticly to social-login page and complete oauth flow when trying to change the email: <html> <body> <form...

Last updated: Aug 19, 2024 06:44PM UTC | 0 Agent replies | 0 Community replies | Feature Requests

Save Bambdas in Project/User settings, or import with Montoya

Hi, I feel I may have asked about this before but mainly just want to see if its something on the radar. We have a few company-wide Bambdas, and would like to have these imported by default to each consultant. I can't see...

Last updated: Aug 19, 2024 11:18AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

I need to add two identical headers.

... X-Forwarded-For: 1.1.1.1 X-Forwarded-For: ... In this form, i need to add two identical headers, but the session processing rules will only apply to one put the same header. I've looked for extensions, but...

Last updated: Aug 16, 2024 11:02AM UTC | 3 Agent replies | 3 Community replies | Feature Requests

repeater tab log

Would be great to have a log side tab for each repeater tab (e.g. next to the Inspector and notes side tabs). I know you can kind of navigate through previous requests with the arrows/dropdowns next to the Send and Cancel...

Last updated: Aug 15, 2024 10:55AM UTC | 1 Agent replies | 1 Community replies | Feature Requests

Edit Paused Scans

Hello! I was wondering if it would be feasible to add the ability to alter requests in paused scans. The main use case I've run into where this would be helpful is scanning requests in apps with short session times where...

Last updated: Aug 15, 2024 09:55AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Page 3 of 68

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image