Burp Suite User Forum

Create new post

How do I run scans in headless using application login

I recorded a login and confirm it's able to do authenticated crawl and audit I'm a new scan with the UI. I'm trying to achieve an authenticated audit only of the crawled URLs in headless mode is this possible?

Last updated: Feb 12, 2022 06:23PM UTC | 0 Agent replies | 0 Community replies | How do I?

Crawler not populate certain URL to sitemap

Hi, I am using the Burp Pro, and noticed a weird behavior with Burp. In the Crawler logger, I saw that crawler sent requests to '/api/...', but that 'api' branch never get populate in the sitemap. The crawler is setup...

Last updated: Feb 11, 2022 09:42AM UTC | 1 Agent replies | 0 Community replies | How do I?

Viewing saved Intruder attacks (Burp Pro 2022.1.1)

When you close an attack window, it gives you an option to save it in the project file. However, I can see no way to pull up the 'saved' intruder entries after reloading the project. What's the trick?

Last updated: Feb 11, 2022 08:14AM UTC | 1 Agent replies | 0 Community replies | How do I?

X-Forwarded-For, Macro, Turbo Intruder

Hello,first of all wanna thank Portswigger for the learning opportunity they did present to us for learning about web security. Personally have really gained confidence, knowledge and skills through your Web Security...

Last updated: Feb 10, 2022 02:08PM UTC | 1 Agent replies | 0 Community replies | How do I?

&lt; auto decode to <

Hi Burp Team, If the response contains HTML special characters e.g (<>') with the HTML tags, they appear in encoded form. Example: ======== <h1>Profile of &lt;class &#39;type&#39;&gt;!</h1> Is there any way to...

Last updated: Feb 10, 2022 01:29PM UTC | 1 Agent replies | 0 Community replies | How do I?

REST API Scanning Using Burp Enterprise

Hi Team, APIs are not web apps where the crawler can be used to automatically discover various links, forms, sub directories and inputs fields. It's kind of point-and-shoot and it provides expected output for a given...

Last updated: Feb 10, 2022 09:50AM UTC | 3 Agent replies | 2 Community replies | How do I?

How do I intercept HTTP requests and responses using HMA Vpn with Burp Suite.

Greetings, Please guide me on How to intercept HTTP requests and responses with Burp Suite (Community) while HMA Vpn is on. Thank you in advance.

Last updated: Feb 10, 2022 07:36AM UTC | 1 Agent replies | 0 Community replies | How do I?

cookies session collaborator

Hi Team I would like ask about easy question.If I want intercept some cookies session how should looks like line with burp collaborator. ‘“><img src=x...

Last updated: Feb 09, 2022 07:40PM UTC | 3 Agent replies | 3 Community replies | How do I?

Lab Solution clarification

Lab: "Reflected XSS into HTML context with all tags blocked except custom ones" <a...

Last updated: Feb 09, 2022 02:41PM UTC | 2 Agent replies | 1 Community replies | How do I?

Lab: Username enumeration via account lock server timeout issue

I'm attempting to do this Lab, but whenever the requests reach the 400s, it keeps timing out for me, giving me a 504 error. I've tried breaking up the requests into 20, 25, and even 33/33/34 per attack, but when I do that, I...

Last updated: Feb 09, 2022 09:50AM UTC | 3 Agent replies | 3 Community replies | How do I?

Apply for a trial license

Attempting to apply for a trial license of enterprise edition, but not accepting my work email address, being prompted with "Please enter a valid business email address" Can you please assist. zhupeng@cathayjr.com Thank...

Last updated: Feb 09, 2022 08:56AM UTC | 1 Agent replies | 0 Community replies | How do I?

HTTP request tunnelling

In this tutorial(HTTP request tunnelling) : https://portswigger.net/web-security/request-smuggling/advanced/request-tunnelling should we setup a proxy server in burp suite from user options to tunnel the http requests?

Last updated: Feb 09, 2022 08:17AM UTC | 1 Agent replies | 0 Community replies | How do I?

Proxy with BurpSuite Enterprise

I'm trying to launch my BurpSuite agent with port 8090 opened for me to be able to proxy traffic through it and then run a Scan. Is this possible with BurpSuite Enterprise? Use-Case Example: I launch a burp agent with...

Last updated: Feb 08, 2022 09:11AM UTC | 6 Agent replies | 5 Community replies | How do I?

Authentication bypass via encryption oracle

I'm stuck in "Re-encode the data and copy the result into the notification cookie of the decrypt request. When you send the request, observe that an error message indicates that a block-based encryption algorithm is used"...

Last updated: Feb 07, 2022 08:39PM UTC | 3 Agent replies | 2 Community replies | How do I?

Installation of BurpSuite Professional

I was wondering if anyone knows what to do to fix the proxy host and port if BurpSuite Pro with a license is installed manually and is not set up with the host address or the port? My trial license expired so have to...

Last updated: Feb 07, 2022 06:05PM UTC | 1 Agent replies | 0 Community replies | How do I?

Lab problem solving related help

Actually I deleted the account mistakenly and now i can't login to my account in basic click jacking lab.☹ So i can't solve the lab. Please help me to solve the problem. Is there any way to bring up the credentials back...

Last updated: Feb 07, 2022 04:23PM UTC | 1 Agent replies | 0 Community replies | How do I?

remove cookie parameter from Burp suite Match and Replace

I am trying to remove unnecessary google and facebook cookies in my application request, i've tried Match: (cookie=[^;]+); Replace: but didnt work

Last updated: Feb 07, 2022 01:33PM UTC | 4 Agent replies | 3 Community replies | How do I?

burp suite not oprning on my pc

i downloaded the burp from the site today and installed, i also installed java latest version from oracle and whenever i launch the burp file it starts install wizard after installing nothing comes up... i need help please

Last updated: Feb 07, 2022 08:56AM UTC | 1 Agent replies | 0 Community replies | How do I?

reset my lab

hello admin! Could you please reset my lab? i am doing demo in my class but i cant reset to do again. thanks

Last updated: Feb 07, 2022 08:14AM UTC | 1 Agent replies | 0 Community replies | How do I?

same issue with me as well

can you please help me ASAP

Last updated: Feb 04, 2022 04:18PM UTC | 1 Agent replies | 1 Community replies | How do I?

Page 110 of 311

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image