Burp Suite User Forum

Create new post

Complete the OS Injection Labs?

Hello all! How can I complete the OS Injection labs without Burp Suite Pro? The instructions instruct me to use the public Burp Collaborator server...

Last updated: Jun 21, 2024 10:30PM UTC | 1 Agent replies | 2 Community replies | How do I?

Lab: Broken brute-force protection, multiple credentials per request CSRF Token issue

When trying to do this lab whenever I send any credentials I get the following error. "Invalid CSRF token (session does not contain a CSRF token)" Even when I just send one credential as a test to see the format. Is...

Last updated: Jun 21, 2024 07:52PM UTC | 9 Agent replies | 11 Community replies | How do I?

Order Status (Paid already)

Hello there team, I'm working on a pentest engagement limited in time that I've got to finish within 48 hours. I requested a pro license a few hours ago and while I understand a manual process is required, I was wondering...

Last updated: Jun 21, 2024 07:21PM UTC | 0 Agent replies | 0 Community replies | How do I?

Lab: Developing a custom gadget chain for Java deserialization

Been going through the labs and finding the following 505 error on the following lab. java.lang.ClassCastException: Cannot cast data.productcatalog.ProductTemplate to...

Last updated: Jun 21, 2024 04:29PM UTC | 0 Agent replies | 2 Community replies | How do I?

crawl links

Hi Team I would like ask about crawl .Katana software in Linux allow crawl and save links and endpoint to file . It is any way to save in Burp crawl website links to file .?

Last updated: Jun 21, 2024 02:45PM UTC | 1 Agent replies | 1 Community replies | How do I?

How do i retore Target tab?

The target tab has disappeared from the tabs section and even from the view menu so I can't restore it.

Last updated: Jun 21, 2024 07:20AM UTC | 1 Agent replies | 0 Community replies | How do I?

Shared "management account" without a license?

Greetings, A former employee at my company created our PortSwigger "team," and we each had a license. They have since left and we had to recover PortSwigger account management. Is it possible to have a "management...

Last updated: Jun 20, 2024 10:02PM UTC | 1 Agent replies | 1 Community replies | How do I?

Automated scan does not recognize javascript

I have added our application login url under Urls to scan section,When I am executing Auto Web Application scan , I am getting below error- paused task due to : could not connect to any seed URLs. After checking request...

Last updated: Jun 20, 2024 12:18PM UTC | 9 Agent replies | 12 Community replies | How do I?

Lab: Reflected XSS protected by very strict CSP, with dangling markup attack

I can't complete the lab. After I "Deliver the exploit" to victim, I get nothing in the Collaborator. No response at all. I follow everything it says in the solution, I tried several videos with people doing it, but nothing...

Last updated: Jun 20, 2024 12:09PM UTC | 4 Agent replies | 7 Community replies | How do I?

Reset all my labs and progress

How i resrt all my labs and progress to solve them again ?

Last updated: Jun 20, 2024 06:58AM UTC | 83 Agent replies | 95 Community replies | How do I?

Academy Lab "Reflected XSS in canonical link tag" will not marked solved

Hi, i made my own solution for solving the Lab: `https://[web-academy]/post?postId=4&test=2%27accesskey=%27X%27onclick=%27javascript:alert(1)` and it does not work. Also the official answer does not work for me. But both...

Last updated: Jun 20, 2024 06:57AM UTC | 1 Agent replies | 0 Community replies | How do I?

How to Start Learning Web application testing on PortSwigger

Hi Team, I am new to Web application testing , I am unsure how to start . Can you please guide me step by step how can I download Burpe suite(Free and where to download is it Kali Linux or Machine . I am unable to find...

Last updated: Jun 19, 2024 04:14PM UTC | 1 Agent replies | 0 Community replies | How do I?

No more activations allowed error

Hi Team, I'm using burpsuite professional in my windows installation as well as inside my VMware linux setup whenever needed. Recently my vmware image got corrupted and I'm trying to install burp pro inside my new linux...

Last updated: Jun 19, 2024 12:22PM UTC | 1 Agent replies | 0 Community replies | How do I?

Find "Target" tab as in v2024.5.3 it's missing

I have updated Burp Suite Professional to the latest version today (18.06.2023). After Burp restarted it was stuck on burp loading image screen. After I reinstalled it, I can't find "Target" tab. It neither visible in Burp,...

Last updated: Jun 19, 2024 11:02AM UTC | 1 Agent replies | 1 Community replies | How do I?

Issues with localhost connection in Burp Suite v2024.4.5 on Windows 11 with Firefox (Angular localhost)

Hello everyone, I have a problem and hope for your support. System Information: - Windows 11 - Burp Suite Community Edition v2024.4.5 - Firefox 127.0 Problem: I cannot connect to localhost via HTTP proxy on...

Last updated: Jun 19, 2024 10:59AM UTC | 5 Agent replies | 4 Community replies | How do I?

Burp method

I am running burp pro web app scan for a site by providing url and credentials using chrome extension but it seems burp is not injecting it's payload to attack surfaces that are there example search box after doing login and...

Last updated: Jun 19, 2024 07:16AM UTC | 1 Agent replies | 0 Community replies | How do I?

"Lab: Basic clickjacking with CSRF token protection", not working properly?

Sorry to bother, but I am really keen to know why does this lab not accept this as a valid answer. I just want to know what am i doing wrong. Thank you! :) ANSWER: <head> <style> #target_website...

Last updated: Jun 19, 2024 06:37AM UTC | 1 Agent replies | 0 Community replies | How do I?

Burp Suite Pro browser unable to detect the security key

Hi Team, I'm trying to test the one of our application which is enabled with SSO (security key functionality) while I'm trying to access the application using the open browser it is not able to detect the security key....

Last updated: Jun 19, 2024 06:16AM UTC | 1 Agent replies | 0 Community replies | How do I?

No more activations allowed for this license

Hello sir, Yesterday I unknowingly tried to use burpsuite professional version on two pc. Then it shows the error "No more activations allowed for this license" and does not work. Please help me...

Last updated: Jun 19, 2024 06:09AM UTC | 1 Agent replies | 1 Community replies | How do I?

Portswigger Login Automation

Hello there, I was trying to write a python script to solve a lab problem where I wanted to login to my Portswigger account in the process. But I am not being able to login using the script and unable to find out where the...

Last updated: Jun 19, 2024 05:05AM UTC | 1 Agent replies | 0 Community replies | How do I?

Page 1 of 317

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image