Burp Suite User Forum
Which API can be used to check the redirect destination in Extender's Activescan?
Hello! Not sure if this topic should be placed here or under the Burp Extender. I work as an IT-Consultant for a company, regarding the security they only want to fix a securityhole if we can prove its breachable. The...
We are attempting to create scans using the API. However, when run the curl command with a custom scan configuration (exported from pro and imported to enterprise) it says "Failed to start". When using one of the default...
I have a license key of burp suite professional which is provided by my company. where can i able to download Burp suite professional software please help me.
I purchased a license today. I forgot my email address password. I got the password again. Cannot log in. why?
Hello, Does the Burp active scanner detect if the targeted site support the HTTP request header "X-Original-URL" or "X-Rewrite-URL" ? Thank you very much in advance.
I'm trying to get insertion point programmatically from JSON request, but I don't know which method to use, I see getRequestParameter, but It will not work for JSON, is there any other suggestions, recommendations?
Hello all, I am trying to configure my burp suite professional tool to be able to scan URL’s that require cac authentication to the website. I have the PKCS11 set up and am able to insert my cac credentials and pin code...
Hi, I have a web page where access is granted only with a cookie. When I'm doing Content Discovery the cookie is not added so all requests returns with 401. Regards Marek
Hi, Please do let me know the procedure to intercept in Burp when site is accessible only via VPN for a web application. Regards, Arpita
I have not yet received the link to download burp suite. It has been more than 3 days. Can you let me know how much time does it take for the same
I have observed that extension settings are independent from project and user options. Is there a way to manually reset extension settings, either for a specific extension or in general? I already tried the...
Procedure to intercept in Burp when site is accessible only via VPN
What is the file type of Intruder saved results? I saved the file with no file type mistakenly, tried to load it, and got a file upload error. When looking at the contents of the file it plainly looks like XML so I...
Hi, I am currently experiencing some trouble with burp - out of nowhere. in the middle of my work, burp can no longer display anything. all i see is the process Icon (just like you minimize burp) , but i can't see the...
I'm making an extension where I have to show markers or found string in response. I prefer not to use the IScanner of Burp rather want to use the setSearchExpression of the TextEditor to highlight in response. But the thing...
Can I install burp on a single system using my user account and make it available for all other users accessing the system with their user account.
Good Day, Our current Burp virtual machine has crashed and we do not have a backup. Please could you assist me in resetting my BURP license activation as I have reinstalled BURP on a new virtual and cannot activate the...
Hello Team, In the custom made extension, the IMessageEditor doesn't have all the options like when we right click any request in the proxy or the repeater like the options send to repeater, send to comparer. Is there any...
The application may be vulnerable to DOM-based cross-site scripting. Data is read from location and passed to jQuery() via the following statement: jQuery(location).attr('href').split("//")[1]; How is this vulnerable?
Page 236 of 311
Your source for help and advice on all things Burp-related.