The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Automatic dropping of out-of-scope requests

There are many connections to domains outside of the defined scope, like detectportal.firefox.com, safebrowsing.googleapis.com and others. Is it possible to entirely drop such requests? That they would never make it through...

Last updated: Apr 10, 2024 05:31PM UTC | 4 Agent replies | 4 Community replies | Feature Requests

Update "Insecure deserialization" topic

I was reading the "Modifying data types" (https://portswigger.net/web-security/deserialization/exploiting#modifying-data-types) section of the topic and tried to test the comparison operator in a PHP sandbox online, the "0"...

Last updated: Apr 10, 2024 11:44AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Free Trial

For how many days Burp Suite professional free trial period is valid?

Last updated: Apr 09, 2024 01:14PM UTC | 5 Agent replies | 4 Community replies | Feature Requests

Mystery Labs

hello is it possible to include all topics in the mystery labs?

Last updated: Apr 08, 2024 08:02AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

hak portswigger

I just finished ٍ , SSTI {{ get_flashed_messages.__globals__.__builtins__.open("/etc/passwd").read() }} Don't be afraid, I won't hack you

Last updated: Apr 04, 2024 01:53AM UTC | 0 Agent replies | 0 Community replies | Feature Requests

Secure Connection Failed when intercepting request via Burp Proxy

Hi Portswigger, Kindly assist to resolve this error message while trying to intercept salesforce application. This happen after I updated to the latest version of burp suite. An error occurred during a connection to...

Last updated: Apr 03, 2024 06:43AM UTC | 3 Agent replies | 2 Community replies | Feature Requests

Suggest updating header recommendations in Advisories

From "Frameable response (potential Clickjacking)", advisory recommends adding X-Frame-Options header but is it better to recommend Content Security Policy as the first choice and X-Frame-Options for compatibility...

Last updated: Mar 28, 2024 11:51AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Bambdas "store" and examples

IMO the main issue with bambdas is that it's missing a way to save, load, rename user bambdas (I mean with a nice interface like for the payload in the intruder, not by loading / saving files on the file system). Also with...

Last updated: Mar 28, 2024 11:21AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Support sorting in Burp Extension tag

Currently, sorting doesn't happen when clicking columns headers like Loaded, Type, Name. When having lots of extension,s it's very hard to navigate. https://snag.gy/38SP7T.jpg

Last updated: Mar 26, 2024 11:15AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

shortcut to clear whole http history AND option to disable confirmation dialogs globally !

shortcut to clear whole http history AND option to disable confirmation dialogs globally ! This is killing my flow every flippin' time :-) PLEASE!!!

Last updated: Mar 25, 2024 01:50PM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Scope definition using Bambdas for a unified experience

Hi, The Bambdas search is very cool. I was wondering if it would be possible to implement the bambdas search as the scope definition. This could allow users to simply copy/paster their bambda search to make it the new...

Last updated: Mar 25, 2024 10:20AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Please support hotkeys for the two new tabs.

Hi team, you may have noticed that we recently moved the `Event log` and `All issues` to the bottom of Burpsuite. However, they only work with a pure mouse, which is inconvenient. Please make it possible to toggle them...

Last updated: Mar 25, 2024 09:48AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Repeater Response Header Hiding

A QoL feature request to be able to hide response headers in the repeater tool for providing more clear screenshots. A button in the Inspector tab to hide them all and then individually would help draw the eye to where...

Last updated: Mar 24, 2024 07:54PM UTC | 1 Agent replies | 1 Community replies | Feature Requests

The authentication key does not work. Please check if it is blocked and release it.

The company's security program deleted the authentication key, so I entered the authentication key again, but authentication did not work. I need to use it right away, but please tell me how to authenticate.

Last updated: Mar 22, 2024 09:13AM UTC | 1 Agent replies | 0 Community replies | Feature Requests

Support global variables

There are extensions that have some support for variables, but they seem like overkill for handling only variables. I can also achieve some of this with Session Handling Rules in Proxy Options, but it is not as easy when...

Last updated: Mar 16, 2024 12:46AM UTC | 1 Agent replies | 2 Community replies | Feature Requests

Vulnerable Javascript Dependency

I need to inform that Burpsuite was not able to find the Momentjs vulnerability related to CVE-2022-31129 and CVE-2022-24785 in scans. Let me know if the said signatures are added in the burpsuite (in which versions). Need...

Last updated: Mar 14, 2024 11:18AM UTC | 2 Agent replies | 2 Community replies | Feature Requests

Proxy Original Request Vs Edited Request

Love the new split view on the proxy history with the request/response! The drop down to flip between the original and edited though is a pain. Going back through the proxy history for reporting and flipping between these...

Last updated: Mar 14, 2024 11:08AM UTC | 8 Agent replies | 8 Community replies | Feature Requests

Re-run specific Scanner Checks

It would be great to be able to re-run specific scanner checks to check to see if a finding was indeed fixed or not. I realize that most Scanner finding can simply be sent to the repeater and done that way, however, at...

Last updated: Mar 14, 2024 10:41AM UTC | 5 Agent replies | 5 Community replies | Feature Requests

Request Length in Proxy History

Hello, Are there any plans to make the Request lengths visible in Proxy history? When looking at a series of requests to the same endpoint, you can currently see the Response lengths listed under "Length", but...

Last updated: Mar 13, 2024 10:31AM UTC | 2 Agent replies | 1 Community replies | Feature Requests

Persist column order of Proxy -> HTTP history tab in project or user settings

Hi, In Proxy -> HTTP (WebSocket) history tab I can change the order of columns so the columns I want to see goes first (e.g. URL, request time, ...) and others goes after. However this order isn't preserved between Burp...

Last updated: Mar 13, 2024 07:47AM UTC | 8 Agent replies | 7 Community replies | Feature Requests

Page 8 of 68

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image