Burp Suite User Forum
How do I close dynamic intruder tabs such as 1, 2, 3 etc through Burp extender API?
Under "Proxy >> Options Proxy Listeners", I see that there are three options under Certificate. 1. Use a self-signed certificate 2. Generate CA-signed per-host certificates 3. Generate a CA-signed certificate with a...
How to import python libraries installed from third party sources like requests module in burp extender API.It is not recognizing entire the path "C:\Python27\Lib\site-packages" set in environmental variables
I want to send each request from Intruder attack result box to repeater through API? And, How to get all requests in HTTP proxy tab without using def menu_item clicked method() ?
Hi When I try to use browse the HTTS websites via Burp proxy using Chrome(v45.x) and Android apps (v5.11), I got the following problem: "Server has a weak ephemeral Diffie-Hellman public...
When doing an active scan, there is an option to remove items with no parameters. What are these URL parameters? Should we scan them or not necessarily?
When doing an active scan, there is the option to remove items with no parameters. What are these URL parameters? Should we scan them or not necessarily?
Hi all, I have some weird issues with Burp for the last two days. It first started that some of my Extensions stopped reporting to Issues tab. I shut down Burp, restared it again and all suddent these problems...
I see that in Pro version feature (I don't have a Pro version), it can filter Intruder results by regex. Is this regex matched against the HTTP body or head or both? Is this regex matched against the HTTP response or...
Hi, Is there any difference between "Options >> Automatic Backup" and "Options >> Scheduled Tasks >> save state"? Are they saving the same identical thing? Are they just two ways of doing the same thing?
Hi, On Linux is it possible to get/logging the data coming from a web socket on a file ? Thanks in advance, Francesco.
How can I select each and every request from HTTPproxy tab and send to Intruder and start attack button through burp extender API? And, how can I filter 200 OK from intruder attack result box through burp extender API?
Typically if I wanted to use intruder to try and use common passwords to log in to an account I would take the following steps: 1) With site running through Burp Proxy I would make a login attempt 2) I would then find...
https://portswigger.net/burp/help/proxy_options.html#interception writes that "Spider >> Options >> CrawlerSettings >> Maximum Link Depth" accepts zero values: "A value of zero will cause the Spider to request seed URLs...
Hi, Is it possible to spider a specific path without going to any other previous ones? For example, I would like to spider anything after https://example.com/1/2/3/4/* without spidering anything under the 1,2 and...
Hi, is there a portable version of Burp that doesn't write to my Windows Registry? Something that I can bring on a thumbdrive and plug into systems without leaving any "trails".
Isn't setting 5000 milliseconds in "Pause before retry" the same thing as setting 5000 milliseconds in "throttle between requests"? Or is "throttle" a cumulative function giving us a delay of 5000 miliseconds multiplied...
https://portswigger.net/burp/help/spider_options.html writes "Because of the function that authentication plays in web applications, you will often want Burp to handle login forms in a different way than ordinary...
Good afternoon, I see that there's a way to delete items in the site map. But how can we Add items into this site map manually? For example, I would like to add the request "http://example.org/a/b/c?d=e" into the...
Burp is taking up a lot of space on my C drive. How can I configure it to use E drive instead?
Page 267 of 277
Your source for help and advice on all things Burp-related.