Burp Suite User Forum
I want to solve again all lab so reset my all lab that i have solved
I have tried both iframe and img tabs in burp's browser and others. I have tried switching to incognito, but that doesn't help either. I have tried multiple ways to deliver the payload, but it seems like the user doesn't...
Hello! Can you help me understand one interesting moment in this lab? In this lab, smuggling request will be succesful. POST / HTTP/1.1 Host: 0a5e00970446a1b38002d12d005f0084.web-security-academy.net Sec-Ch-Ua:...
Below mentioned is the health check of my burp collaborator, I am using v2024.7.6. Initiating health check Server address resolution Success Server HTTP connection Error Server HTTPS connection (trust...
Burp Suite Community Edition Error Could not create new HTTP/2 connection
I am using firefox in kali linux,i have imported my certificates and also configured my browser...all went well yesterday i was able to accesse both HTTP and HTTPS sites..but all of a sudden when i used it today it shows the...
Hi team, could you please help on this issue.
Hi everyone, how are you? I trying to scan API in my environment, and I have a question. I've already run scans on a few different APIs, and I haven't gotten any significant results from any of them, and the scans only...
I am trying to complete the first exercise in this lab and whenever I try to update the email I get the error - `undefined: Malformed URL: query only supported with GET (undefined)` Is something wrong with my burp...
I am having an issue when proxying traffic between a mobile app and a back-end server that is behind Cloudflare. The error is: 'The client failed to negotiate a TLS connection to x.x.x.x:8080: Remote host terminated the...
I'm not able to intercept the traffic of the ARM android application, however i can clearly see traffic passing via wireshark. The application does not have ssl pinning and burp is properly configured with emulator as i'm...
Can you give a suggestion that how can I intercept the traffic for flutter based android application with burpsuite. Note that It doesn't have SSL Implementation in the application. Please suggest me a solution for...
Any tips while pen-testing Flutter based Android apps? Since it ignores system proxy and user/system CA certificates you cannot use burp suite easily.
hello everyone, I am reading and practicing from the portswigger academies The web application Hackers handbook. If you are a old user of portswigger academy you know that in early time the url to access this was like...
I sent a request email for a free trial of Burp Pro, but I haven’t received a reply within 24 hours. I submitted and requested the Burp free trial several times on this page https://portswigger.net/burp/pro/trial, but I...
Hi!! Unfortunately I have had to reinstall my pc on several occasions and now when I try to install burp suite, I get the error "No more activations allowed for this license" Could you help me...
Hello, When doing this lab : https://portswigger.net/web-security/nosql-injection/lab-nosql-injection-extract-unknown-fields The intruder attack return error 500 for each request with this payload...
For Burp2 and Burp EE - how do I exclude the URL for scanning, but not for crawling part? That is, the login is taken care of by 3rd party authentication mechanism located in external domain. Example: Test scope URL:...
i am doing brute force labs but i am not receiving expected response from last 2 or 3 labs currently i am doing " Password brute-force via password change " this lab and Sec-Fetch-Site: same-origin Sec-Fetch-Mode:...
I'm currently using Burp Suite Community Edition, and im Hitting ERR_BLOCKED_BY_ORB on some of my .js request when trying to load my application then the page just become blank. I would greatly appreciate any help or advice...
Page 4 of 330
Your source for help and advice on all things Burp-related.