The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

How to scan all backend API inside a website

I used Burp Scanner to scan a web app. Inside the app, there are 3 sub domain: 1. app-ui.domain.com for store statics file, serving the view 2. be.domain.com for BE API JSON 3. be-stg.domain.com for BE API Stg...

Last updated: Nov 01, 2024 08:49AM UTC | 3 Agent replies | 2 Community replies | How do I?

License Activation

A month ago I purchased a Burp Suite Pro license. After that I've started to install it on my PC and virtual machines. And faced with activation failed issue. How can I activate Burp Pro License after reconfiguring my VM? (I...

Last updated: Oct 31, 2024 11:16AM UTC | 1 Agent replies | 0 Community replies | How do I?

Run Burp pro using batch file w/o tasks being paused.

I'm trying to run burp automatically then start scans of our websites on a schedule. But when it opens it pauses the tasks. How can I disable this behavior? Everywhere I have looked in the GUI says it's disabled.

Last updated: Oct 30, 2024 09:40AM UTC | 1 Agent replies | 0 Community replies | How do I?

Customize a scan via the Burp Pro API

I want to customize a scan, using burp pro API and run it. When I pass switches such as: \"passive_scan_only\": true, \"audit_forms\": false, \"audit_logins\": false, \"crawl_and_audit\": true, \"crawl_limitations\": {...

Last updated: Oct 30, 2024 07:58AM UTC | 2 Agent replies | 1 Community replies | How do I?

No more activations allowed for this license

Hi!! Unfortunately I have had to reinstall my pc on several occasions and now when I try to install burp suite, I get the error "No more activations allowed for this license" Could you help me...

Last updated: Oct 29, 2024 07:10PM UTC | 15 Agent replies | 17 Community replies | How do I?

I want to Reset my Labs Progress

Good Morning Portswigger Team, I would like to reset my Portswigger Labs Progress Thankyou

Last updated: Oct 29, 2024 05:00PM UTC | 7 Agent replies | 8 Community replies | How do I?

License no more activations are allowed

I’m trying to activate my Burp Suite Professional license, but I’m receiving an error indicating that no more activations are allowed. I have previously activated the license on several OSs or VMs, have tried to attempt to...

Last updated: Oct 29, 2024 12:01PM UTC | 2 Agent replies | 2 Community replies | How do I?

Academy Progress Reset

Hello :) Can you please reset my progress on the labs and learning materials?

Last updated: Oct 29, 2024 09:57AM UTC | 40 Agent replies | 46 Community replies | How do I?

Host header poisoning

Why did burp scanner discover the Host header poisoning vulnerability on this vulnerable code? ``` <?php $host = $_SERVER['HTTP_HOST']; //echo "The host is: " . $host; header('Location: ' . $host ....

Last updated: Oct 29, 2024 09:30AM UTC | 1 Agent replies | 0 Community replies | How do I?

SSRF with filter bypass via open redirection vulnerability

I have done the lab, but the IP mentioned in the lab description is not responding. the IP is http://192.168.0.12:8080/ I have done multiple times giving a 20 minute break to reset the lab. Still the same. Can anyone help me?

Last updated: Oct 29, 2024 08:51AM UTC | 2 Agent replies | 2 Community replies | How do I?

Downgrade to Burp Suite Professional v2020.9.1

Hello We have installed the Burp Suite Professional and there is a request to downgrade to an older version. Is there a possibility to do so? Current version Burp Suite Professional v2022.1.1 Thank you

Last updated: Oct 28, 2024 09:42AM UTC | 3 Agent replies | 2 Community replies | How do I?

Question about lab Reflected XSS protected by very strict CSP, with dangling markup attack

While executing the lab, found that even using the solution you provided, the lab could not execute successfully, specifically, the csrf token is not passed through collaborator or exploit-server

Last updated: Oct 28, 2024 08:52AM UTC | 1 Agent replies | 0 Community replies | How do I?

I solved reflected xss lab but showing lab not solved.

https://0ac500a6048458fcdd49c87700f000ed.web-security-academy.net/?search=%3Cscript%3Ealert%281%29%3C%2Fscript%3E

Last updated: Oct 28, 2024 08:50AM UTC | 1 Agent replies | 0 Community replies | How do I?

How do i reset my "Mystery labs"?

Forgive me if i happen to post on the wrong place. I seem to have 5/5 on my Mystery labs in the academy. Im re-reading som stuff and going for all courses/topics for the Cert later on. i want to reset the "Mystery labs"...

Last updated: Oct 28, 2024 08:48AM UTC | 1 Agent replies | 0 Community replies | How do I?

There are currently no exams available in Examinity

Greetings, I paid for BSCP on Oct 24, 2024. I want to take the exam tomorrow. There is a button to start the exam in Portswigger Certifications tab, but in Examinity it says "There are currently no exams available....

Last updated: Oct 28, 2024 08:41AM UTC | 1 Agent replies | 0 Community replies | How do I?

issue on simplelist

I send the request to intruder for the login page with username and password. While entering password as Password* it changed to Password%2A. How can i enter * in simplelist payload.

Last updated: Oct 28, 2024 08:35AM UTC | 1 Agent replies | 0 Community replies | How do I?

Reset all progress

Hi Team, I would like to reset my all PortSwigger Labs Progress.

Last updated: Oct 28, 2024 08:30AM UTC | 1 Agent replies | 2 Community replies | How do I?

Get all parameters names from http history

Hello, i was wondering if there is a way to get all parameters names from requests on http history, if not is there a way to dump all requests to a file in order to extract them from it. Thanks.

Last updated: Oct 28, 2024 07:40AM UTC | 2 Agent replies | 2 Community replies | How do I?

http smuggling

The first image in this tutorial(https://portswigger.net/web-security/request-smuggling) shows that we are sending two requests and the first one is with post methode and the second with post methode.I want to know if a...

Last updated: Oct 28, 2024 05:36AM UTC | 0 Agent replies | 2 Community replies | How do I?

No more activation is allowed

I am activating my Burp Suite professional in new virtual air gap environment, and error returns said no more activation is allowed. I have activated the license in several OSs/ VMs previously but i have tried to...

Last updated: Oct 25, 2024 12:02PM UTC | 1 Agent replies | 0 Community replies | How do I?

Page 1 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image