Burp Suite User Forum
Hello I just wanted to be sure. Is the Content Discovery tool passive?
I am facing difficulty in tracing the request and response from device sqllite db interactions as well as device interaction with internet. Application works with both local as well as online DB. How to configure Burp...
Scan fails in burp enterprise throwing an error message "10 consecutive audit items have failed" Please suggest how can we resolve this in Burp Enterprise
Hi, I am doing the WebSocket section of WebSecurityAcademy, but it said "DISCONNECTED:-Chat has ended-" and cannnot proceed. Access the chat without Burp worked. I unloaded all Extender and unchecked Strip...
Hello support, I have been working on getting Burp to run inside a docker container and ran into an issue stating the activations had been exceeded. There was a post on the internet stating there is a way to add the...
Hello, I have to deploy BurpEnterprise with 10 to 20 agents for the moment on 1 machine. I have 2 questions : - Which sizing should I chose for the machine, you have reco for sizing for base and agents do I have to sum...
I ran an active scan and the issue activity does not contain all of the issue activities detected/reporting from the dashboard. Is there a way to combine the two into one report?
Hello, I've been using the labs to practice cache poisoning. So far I've completed some of them, but since I tried the one that explotes DOM-based vulnerability, my requests made on burpsuite never receive a "X-Cache: hit"...
hello team burp I face some problems in special challenges, in cache poisoning description When the cache is poisoned, the exploit works properly, but when the proxy is closed, the exploit does not work as a...
Basic click jacking with CSRF token protection, vulnerability lab login credentials are not working error:login failed
Hello everyone, I was going through the SQL injection learning materials, and I didn't quite understand a sentence I need some explanation to understand, that sentence follows, "In some situations, an attacker can...
Hi, I am connected with a VPN (Cisco AnyConnect Secure Mobile Client v4.8.00175) I have put proxy in my android phone (Marshmallow) I can intercept all https requests when I am NOT connected to vpn BUT i am facing...
Hello Support, When I performing a scan from Jenkins, by the REST API. There is no report functionality like "add email recipient". Normally in Burp Suite Enterprise, this is configured by site. But how I configure...
How do I test an application using Server-Sent Events? I tried turning off 'Set "Connection close" on incoming requests in proxy options, but it seems like the streaming response data never gets into burp and never gets...
Hi, How can I download the software with my account? My colleauge has arranged the license for our company, but I don't have his login credentials.
HI team , I've burp pro product key ,i want to download and activate burp professional edition. could you please help me out?
Hello there How are you? Would you be so kind to nudge me in the right direction; how can I make use of this feature: Quote: from...
I expect to see authentication details in /var/log/BurpSuiteEnterpriseEdition/enterpriseAgentAccess.log - however, for my scans I do not see any details being populated for scans that I provide login details. Need to...
Hi, I'm Lorenzo. I've followed the entire guide to install the CA certificate generated by Burp for Safari. https://portswigger.net/support/installing-burp-suites-ca-certificate-in-safari I've followed each step but it...
I made the mistake of activating the license on a computer in which I would not use burp, when I carry out the process again it appears that this license does not have any more activations, I appreciate you can help me with...
Page 227 of 311
Your source for help and advice on all things Burp-related.