Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
It's quite limiting that a ScanCheck can only be registered across all of Burp Suite rather than being attached to a specific audit instance. For instance, if I have an audit that requires an additional ScanCheck, I don't...
Dear Team, it would be helpful if I could add comments/remarks to each separate request within a tab in the repeater tool (the same way as items can be commented in the proxy history). Zsolt
After working with the Enterprise trial version for a short period, I'm baffled how a company with such experience with web application (security) details, can have so many (usability) details done so bad. I'll start with...
Currently, only two BuiltInAuditConfigurations are available: - LEGACY_PASSIVE_AUDIT_CHECKS - LEGACY_ACTIVE_AUDIT_CHECKS There is no option to create a custom Audit Configuration that runs only specific or pre-created...
It would be nice if there was a setting to increase the size of the fonts in tabs like Proxy, Repeater, Intruder, etc. I haven't see this option, but maybe I missed it. I'm using the Community Edition.
hiding selected text in the request response view for taking screenshots for reporting will be helpful as sometimes the requests can be too long and when trying to show interesting content.
would be nice to add intruder column to show the URL for reporting purposes.
Hello, I'm currently using a professional license, but I can't certify my liscense key now. Can I request an update of the number of certifications? Thank you.
I run into a situation with testing apps where I can invisible proxy most of the HTTP traffic but some of the requests are missing Hosts headers. Right now, Burp just fails for these requests with the following error: No...
Hi Team, I’m currently ranked #178 worldwide on the PortSwigger Hall of Fame, and I'd love to share this achievement on social media. However, I can't see my name on the list, as it only displays the top 50 individuals....
Hi. currently solving some labs is limited but if you would whitelist exploit servers as well then people would not need to skip "pro only" labs. what do u think?
The proxy intercept switch is a core feature of burp and it's kinda buried in the UI. It's hard to even get a "muscle memory" for it because when you turn it off the view changes to the blank screen with the binoculars or...
Hi, I noticed that there are no mystery labs for Prototype pollution. Not sure if this is just missing or was done on purpose. Would be very helpful if included. Thanks!
I really enjoyed the BSCP experience. The labs felt challenging, and even though I've had 15+ years of web app testing experience, the exercises put me through my paces. I've never felt as frustrated with a web application...
In the lab process you reach a point which it tells you invalid filed --> now i though field --> means you must find the field's name --> but the name was field --> and i Spent alot of time trying to find it by brute...
Can you please add the ability to Decoder to encode the special URL and HTML characters only? The need to do this comes up quite often during application testing. For example, when looking at the first lab of the burp...
Hello Can I ask if there any possibility that you guys provide a Burp Suite Professional for students that can't pay for Burp Suite Professional and actually 1 month of trial is not enough, so can you provide like 3 months...
Hi Portswigger-Team, I would love to see, that chromium settings (open last tabs etc.) are saved in the project/save files and only applied if I reopen the project (only for the built-in browser of course). Like when I...
I want to reset all labs to practiceI want to reset all labs to practice
Hey Portwigger team, I would like to make a request to reset all my lab's progress
Page 4 of 68
Your source for help and advice on all things Burp-related.