Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
When I have a name of the cookie which is changing with different sessions (cookie name is dynamic as well), Burp stores each new name in the cookie jar and then sends it within the requests. Within a session management,...
Hello, Authorization checks with Burp could be faster if it was possible to have multiple creds, with checkboxes, for a same host in Platform Authentication. You'd be able to do your tests using creds A then uncheck them...
BURP 2.0.18Beta issued a finding about our site's SSL certificate. I believe it found a seeming inconsistency between the "alt" DNS names allowed by the certificate and the host name. But the site presents a different,...
I'm trying to do active scanning on my current test but I've got a problem that the login session occasionally dies for no apparent reason and when it does this in the middle of a scan the results from that point on are...
To scan "selected items", i.e. HTTP calls I already went through in a browser and/or SoapUI with using BURP as a Proxy, I have to navigate to the Target tab, right-click the target, select Scan, choose "scan selected...
Hello! I use hotkeys a lot, but some trainees use them even more, either by choice (nerds) or not (disabled people). Everybody love Control + "=" (on by default, navigate between Intruder tabs) and Control + "G" (off by...
It would be really helpful to be able to specify proxy history searches to be limited to either requests or responses.
Could the API be adjusted to allow extenders to have the information, if request is coming from Macros? https://github.com/nccgroup/BurpSuiteLoggerPlusPlus/issues/69
Hey, in Burp Beta we now have the possibility to start an active scan using "extensions only". Most of us have more than one extensions enabled, so starting "extension only" scan will result in a lot of requests which are...
What about making burp infiltrator also for PHP? As I understand Infiltrator is like acusensor of Acunetix, or not? Did you ever think of doing Infiltrator for PHP? I'm sure it will be really cool and would help a lot for...
how to avoid "timeout in transmission xxx.xxx.x.x website " alert, during scanning the webpages in burp suite ..?
burp Scanner taking too much time to scan the urls. How to avoid the slow scanning issue in scanner ?? and also let me know, that how to close the connection request, once response received ..
Isn't it a problem to use community editions for business consulting? I would like to ask you if you would like to use it for external consulting diagnoses, not for internal work. As far as I know, there are no...
I know you are now using Chromium browser. However, the environment I test on simply tells me "Your browser is not supported" and the default crawling doesn't work (gives up after 10 requests to / ). Would it be possible...
.
Hello, Burp is awesome, it would be even more awesome if it were possible, when searching for a string, to restrict the search only in requests or responses. For example, searching for an auth token only in the responses,...
It would be really great if the decoder tool could be made to use the font specified in the HTTP Message Display setting instead of the one used for the general UI, this would also improve the hex representation, thanks!
How do get online course?
i am getting this ISSUE when using the burp suite in ALERT tab :Software cause the connection abort : recv failed. Please could you give me the solution for this ISSUE ? and Please tell me the step by step process the to...
Hi, Many times, I need to test authenticated and unauthenticated stuff manually in Repeater. I know that I can go to settings and check the checkbox to use cookies/session management rules for Repeater, but that is pretty...
Page 51 of 68
Your source for help and advice on all things Burp-related.