The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

use 32-bit JVM

I am wondering if I am using wrong version JVM or Burp Suite. Recently our organization renewed the Burp Suite Professional v1.6.21. In account to that I see an alert message each time I launch as "You appear to be using...

Last updated: Jun 21, 2023 10:42AM UTC | 4 Agent replies | 8 Community replies | How do I?

Does Burp Pro is looking for all issues types out of the box ?

Dear Burp Support, In older versions of Burp Pro (version 1.7 or earliest) it was possible to choose the types of issues that Burp was able to look for; it was a menu under Scanner->Options->"Select Individual Issues"...

Last updated: Jun 21, 2023 09:20AM UTC | 1 Agent replies | 0 Community replies | How do I?

Lab: Web cache poisoning via ambiguous requests

Hello, I have some problems with this lab: 1)Network Protocol Error An error occurred during a connection to 0abe00600459dac382172f1d000400a5.web-security-academy.net. The page you are trying to view...

Last updated: Jun 21, 2023 09:11AM UTC | 2 Agent replies | 1 Community replies | How do I?

Burp Intruder cluster bomb payload set reused

Hello, I need to brute-force a parameter that is sent twice to the server and follows the pattern below: ``` param1=P1-P2-P3 param2=P1-P2-P3 ``` Where P1, P2 and P3 are three payload sets. Is it possible to...

Last updated: Jun 20, 2023 09:21AM UTC | 2 Agent replies | 2 Community replies | How do I?

Cant able to intercept or view requests

Hi, I have burpsuite pro v2023.5.3 and genymotion with burp certificate installed on system. I was able to do SSl pinnig but can't see app traffic. I was able to see browser tarffic and facebook traffic but not my...

Last updated: Jun 20, 2023 06:43AM UTC | 2 Agent replies | 1 Community replies | How do I?

about exploit sever

many lab consist of exploit server , where we can deliver malicious payload. exploit server has url, file, header and body and another option but i can't finding similarity of real word how i can use that type of real server...

Last updated: Jun 19, 2023 12:59PM UTC | 1 Agent replies | 0 Community replies | How do I?

OIDC pentest

how to burp communication between the relying party and the OpenID connect provider ( backend to backend). My RP is asp.net core+ angular and OP is keycloak.

Last updated: Jun 19, 2023 11:00AM UTC | 1 Agent replies | 1 Community replies | How do I?

Internal server error when visiting url in Chromium browser (Proxy)

Hi all, I am using the Community Edition of Burp Suite (version 2022.12.7) on Mac. I open a Chromium browser by clicking "open browser" in Proxy Each URL that I try results in a screen with the following...

Last updated: Jun 19, 2023 10:02AM UTC | 1 Agent replies | 0 Community replies | How do I?

Lab: Web cache poisoning via ambiguous requests

All extensions in the BS are disabled and removed When running the Lab. GET /?cb=1234 HTTP/1.1 #(or GET / HTTP/1.1 (or GET/ HTTP/2)) Host: 0a3a00b404393006819e98fe00460096.web-security-academy.net Host:...

Last updated: Jun 19, 2023 07:50AM UTC | 3 Agent replies | 4 Community replies | How do I?

Burpsuite EE REST API scan is not runing from CLI

This is Hira and I am a security engineer, I am facing an issue related to burp suite Enterprise REST API scan feature. I was giving services of security automation to one of my client, we were in trail phase and I was...

Last updated: Jun 16, 2023 08:42PM UTC | 3 Agent replies | 3 Community replies | How do I?

Auditing takes more than 10 days

Hi, I just signed up for the trial license,and tried running the imported scans for crawling and audit. But somehow the estimated time to complete the audit, indicates more than >10 days. Is there something wrong? or its...

Last updated: Jun 16, 2023 04:03PM UTC | 2 Agent replies | 1 Community replies | How do I?

LAB: Broken brute-force protection, multiple credentials per request

hi team, my question here is not strictly related to how to solve the lab, but rather I'm trying to understand how things are implemented under the hood. My learning approach usually involves understanding how things...

Last updated: Jun 15, 2023 06:13PM UTC | 1 Agent replies | 3 Community replies | How do I?

Can I configure the audit optimization and speed when start active scan from headless mode?

Hi, I am running Burp active scan in headless mode and recently noticed the scan time increase significantly. There are a few settings suggested in https://portswigger.net/burp/documentation/desktop/performance that can...

Last updated: Jun 15, 2023 08:34AM UTC | 1 Agent replies | 0 Community replies | How do I?

Burpsuite proffessional Activation failed by too many Activation

I am getting an error like 'Too many activations' My test machine was down,Is there anyway I can reset the license/activation key?

Last updated: Jun 15, 2023 07:09AM UTC | 1 Agent replies | 0 Community replies | How do I?

ANDROID 11 | VPN & APP USE CERTIFICATE UNABLE TO INSTALL

I downloaded cacert.der, Now I have cacert.der cacert.cer cacert.crt In certificate sections I have, CA - cacert.cer worked VPN & apps - UNABLE TO INSTALL so I cannot burp any app except google chrome WIFI -...

Last updated: Jun 14, 2023 01:03PM UTC | 4 Agent replies | 3 Community replies | How do I?

Uninstallation of Burp Suite Enterprise edition

I wanted to uninstall Burp Suite Enterprise edition but deleted the uninstall.exe file and other contents directly. Now it is not allowing me to uninstall the program without that file even though I have deleted all Burp...

Last updated: Jun 14, 2023 12:23PM UTC | 1 Agent replies | 0 Community replies | How do I?

xss

hello can you reset the xss laboratory rooms for me

Last updated: Jun 13, 2023 12:26PM UTC | 1 Agent replies | 0 Community replies | How do I?

xss

hello can you reset the xss laboratory rooms for me

Last updated: Jun 13, 2023 12:24PM UTC | 1 Agent replies | 0 Community replies | How do I?

Burp Proxy Forces HTTPS in the firefox private WIndow

Hi Burp Team, I recently start facing issues when proxy is enabled in firefox private browsing. In private windows the website force to make HTTPS connection and then fails giving "Failed to connect to wekor.thm:443"...

Last updated: Jun 13, 2023 12:23PM UTC | 8 Agent replies | 14 Community replies | How do I?

Burp Exam failing 3rd stage

Hi, I have attempted the burp exam a few times now and I continue to get stuck at the 3rd stage. The other 2 stages I go through quite quickly. But when I arrive at the file read and try to implement/combine the...

Last updated: Jun 13, 2023 11:46AM UTC | 0 Agent replies | 0 Community replies | How do I?

Page 65 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image