The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

IDOR VS PRIVILEGE ESCALATION

Hey Burp team. What is the difference between IDOR vs Privilege escalation? I was confused while reading access control topic in portswigger academy.

Last updated: Nov 13, 2023 11:18AM UTC | 1 Agent replies | 0 Community replies | How do I?

Add a processing rule

Hi, I am attempting a brute force attack on a password using the Sniper attack method. I am highlighting the password value in the intruder and adding it as "Add§," but it appears that the password value is hashed using...

Last updated: Nov 13, 2023 10:46AM UTC | 1 Agent replies | 0 Community replies | How do I?

Burps Black Screen

Hi, I am using Kali Linux 2023 version, i won't run burpsuite because they showing JRE 17.0.9 from debian version update after that I have updated but it's not working. they showing Burp not tested for this system for...

Last updated: Nov 13, 2023 10:14AM UTC | 2 Agent replies | 2 Community replies | How do I?

Username enumeration via response timing problems with X-Forwarded-For header

Hello I am know how to solve the lab but most of the times when I pass the X-Forwarded-For:1 I have below request: POST /login HTTP/2 Host: asdsdasdasd.web-security-academy.net Cookie:...

Last updated: Nov 09, 2023 12:57PM UTC | 1 Agent replies | 1 Community replies | How do I?

Browser (Chromium) does not start

Burp Suite Community Edition V2023.10.2.5 "Could not connect browser" is displayed in Repeater's Response → Render. Please tell me what to do.

Last updated: Nov 09, 2023 11:17AM UTC | 2 Agent replies | 1 Community replies | How do I?

How does one get timing results in Burp Intruder?

I am aware of the "Response received" and "Response completed" columns in the Intruder Attack menu, but these numbers do not correlate with the timing results produced in Repeater. I have a test scenario which produces...

Last updated: Nov 09, 2023 11:10AM UTC | 2 Agent replies | 1 Community replies | How do I?

Reset Lab

PLease reset all my labs, need to redo again

Last updated: Nov 09, 2023 10:23AM UTC | 3 Agent replies | 2 Community replies | How do I?

Forced OAuth Profile Linking

Hi, I've followed all the steps PRECISELY and have watched a couple different videos on how to complete this lab. It doesn't work! I've noticed for the videos I've seen the people that are making them can just click "Login...

Last updated: Nov 08, 2023 02:44PM UTC | 4 Agent replies | 5 Community replies | How do I?

Failed to create Burp Project: cannot parse null string

Hi folks. How to fix this error? I was using trial version of Burp Suite Professional and getting this error. Java installed correctly. I was able to run the community version successfully. I am currently running on Windows...

Last updated: Nov 08, 2023 12:46PM UTC | 1 Agent replies | 0 Community replies | How do I?

Proxy tab missing in BSCE v2023.10.3.3-24547

Hi, It seems the "Proxy" tab is missing in my Burp suite community edition v2023.10.3.3 build 24547 (MacOS). Expected tabs: Dashboard - Target - Proxy - Intruder - Repeater Actual tabs : Dashboard - Target -...

Last updated: Nov 08, 2023 09:44AM UTC | 1 Agent replies | 1 Community replies | How do I?

Collaborator payloads

Hey, When I use the Collaborator payloads to do test in Intruder, it will insert many URL of Collaborator into payloads' domain point. But I don't know how to get which url is interacted by my target server. I followed...

Last updated: Nov 08, 2023 09:37AM UTC | 1 Agent replies | 0 Community replies | How do I?

activation error

I have a problem with "no more activations allowed". Can I get assistance?

Last updated: Nov 08, 2023 08:14AM UTC | 1 Agent replies | 0 Community replies | How do I?

No exam available in Examity

Hello, I tried to start the BSCP this week-end and had to organize my week-end around this exam as it's 4 hours long. Turned out it's not working properly, after clicking on start the exam in Portswigger and being...

Last updated: Nov 08, 2023 01:07AM UTC | 1 Agent replies | 1 Community replies | How do I?

Testing Request Smuggling with Burpsuite.

Hello portswigger team, I’m really confused about certain thing in request smuggling vulnerability which is sending the requests in the same connection or testing the vulnerability with turbo intruder scripts using the...

Last updated: Nov 07, 2023 04:46PM UTC | 1 Agent replies | 0 Community replies | How do I?

Practice Exam In the 3rd part of App 2

Practice Exam In the 3rd part of App 2, is there a problem with Java deserialization? I easily solved it in App 1, but I couldn't achieve any results in App 2 with CommonCollections on collaborator. Later, I tried URLDNS,...

Last updated: Nov 07, 2023 01:46PM UTC | 1 Agent replies | 0 Community replies | How do I?

Mitigate the Risk of SQL Lite injection via CSS

Hi, Your tools have reportedly found an "issue" with our site, but I dont know how to fix. The team validated the SQL Injection vulnerability identified by OWASP ZAP using Burpsuite and the query time is controllable...

Last updated: Nov 07, 2023 10:36AM UTC | 1 Agent replies | 0 Community replies | How do I?

No more activations allowed for this license

I tried to activate my burp suite license again, but it failed. My Arch linux periodically breaks down and I have to reinstall all my system and keys. I please reset all my previous activation to have 10 times to use.

Last updated: Nov 07, 2023 08:38AM UTC | 1 Agent replies | 1 Community replies | How do I?

can't activate my license

I have a problem with "no more activations allowed". Can I get assistance?

Last updated: Nov 07, 2023 08:27AM UTC | 1 Agent replies | 0 Community replies | How do I?

your machine specification does not appear to meet the recommended requirement for crawling

my machine is 8GB RAM CPU intel i5-1135G7 running on kali linux latest version when i try to sitemap > scan > crawl and check the dashboard it shows me your machine specification does not appear to meet the recommended...

Last updated: Nov 06, 2023 10:43AM UTC | 1 Agent replies | 0 Community replies | How do I?

websites with HSTS implemented dont let me access it with burpsuite(firefox)

Hey,I have a problem with websites that have HSTS implemented. I have been looking for the solution for 2 days now, and this is my last hope to get it. I have been trying to acces a webpage with burpsuite and I have the...

Last updated: Nov 06, 2023 10:32AM UTC | 1 Agent replies | 1 Community replies | How do I?

Page 45 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image