The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

OAuth authentication

At the moment, burp enterprise does not support Authenticated scanning with OAUTH and SSO. Going forward it is good to have a login sequence recorder to overcome such issues

Last updated: Sep 17, 2020 10:54AM UTC | 7 Agent replies | 9 Community replies | Feature Requests

Burp Infiltrator for PHP

I've seen that many softwares have IAST tools like Infiltrator (AcuSensor, WebInspect Sensor, etc) and many support only .net and java backends except for AcuSensor that has PHP support too. What about adding support for...

Last updated: Sep 14, 2020 12:36PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Contributing to the Academy ??

I was recently going over some labs, more specifically XXE. I was wondering can I add to that, or maybe suggest some new ideas. I was thinking of something a little more complicated, something that really makes you think and...

Last updated: Sep 14, 2020 08:44AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

CSRF Generator Doesn't work

Today i attempted a CSRF attack using the generator however turns out that document.forms[0].submit() Doesn't work, it did not submit the request. So i tweaked the code a bit to the following: ...

Last updated: Sep 11, 2020 07:34AM UTC | 3 Agent replies | 2 Community replies | Feature Requests

Vertical / Horizontal / Combined Layout View for Session Handling Tracer?

Could you please add the new buttons for Vertical / Horizontal / Combined View also to the Session handling tracer functionality?

Last updated: Sep 10, 2020 10:18AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

multiple tabs proxy history and highlight requests with regex

It would be a good idea to have multiple proxy history windows with different scopes and the ability to highlight requests using regular expressions

Last updated: Sep 09, 2020 08:12AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Navigation & View.

May we have ability to open any tab in new window?

Last updated: Sep 07, 2020 08:11AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

More compact display for new HTTP editor

I like the changes in the new HTTP editor, but it would be really nice if there was an option to make the new UI elements a little more compact. In repeater, you now have: The Send/Cancel/Target bar The icons to change...

Last updated: Sep 04, 2020 11:14AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Search feature for named repeater tabs

Hi there, I generally create a lot of Repeater tabs, and the possibility to name these tabs is really useful. In addition to that, a search feature for the tab names would be great, since it (quicly) becomes tedious to...

Last updated: Sep 04, 2020 10:29AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

HTTP message editor layout for other tools

Hi, v2020.9 is a perfect update:) could you please add HTTP message editor layout options for "Issues", "Issue Activity", "Intruder Attack X" as well? Thanks:)

Last updated: Sep 04, 2020 07:16AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

BurpSuite Pro support for Open JDK

Hi, Does burpsuite pro support open jdk? if yes, which version? Also please let me know if it support any open source java zulu Open JDK?

Last updated: Sep 02, 2020 08:04AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Screenshot capability | Aquatone equivalent - Extender or Intruder

Can you implement a feature similar to Aquatone in Burp suite? (Aquatone is basically a screenshot taking application written in Go-lang) During my initial recon of a target, I have used Burp Intruder and the "Response"...

Last updated: Aug 27, 2020 07:00PM UTC | 1 Agent replies | 1 Community replies | Feature Requests

Double click on Request or Response tab in the Target View for full screen view

When I double click on the Request or Response tab in the Target View, I would like to see this tab in full screen to better read the contents.

Last updated: Aug 25, 2020 01:31PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Option to ask to keep previous settings during upgrade

I'm using latest version of BurpSuitePro executable on windows 10 system on an external monitor with 125% scaling. In order for BurpSutePro to scale properly on my computer I have to modify the C:\Program...

Last updated: Aug 25, 2020 08:39AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Web Server/Application Analyzer

Hi, I know there are some extentions that analyze http headers and contents (like vulnerability software reporter or http headers analyser), but what about a built-in analyzer to adapt burp payloads/engine to web...

Last updated: Aug 24, 2020 01:42PM UTC | 3 Agent replies | 2 Community replies | Feature Requests

Burp Repeater Request

Hi there, For the burp repeater, is there a way to show the request vertically instead of horizontally, just like owasp zap proxy. Request Response instead of Request | Response. On top of which, is it possible...

Last updated: Aug 24, 2020 10:24AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Feature request regarding the Lab.

If I may request a "Prototype Pollution" category for our Lab. Naturally PortSwigger stays ahead of competition, and is always on point with it's research, and because of that reason I've found it strange that such popular...

Last updated: Aug 21, 2020 08:24AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Slow Loris Test in BURP?

Hello, Do you think you will add a Slow Loris Test feature ? Regards

Last updated: Aug 20, 2020 01:39PM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Pre-defined extension list

Hi, I don't know if it has been suggested before, but a nice feature would be some way to load some extensions by default (like a whitelist/allowlist). Like I would to load by default "content type converter", "logger++"...

Last updated: Aug 19, 2020 07:21PM UTC | 2 Agent replies | 2 Community replies | Feature Requests

Target Site in the Intruder

Hi, Is it possible to add the option to change the target site in the intruder, to be able to set a payload set for it as well?

Last updated: Aug 19, 2020 10:29AM UTC | 4 Agent replies | 3 Community replies | Feature Requests

Page 41 of 68

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image