Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
Hi, I'm at the beginning stages of working on the new HTTP/2 Smuggling labs using Chrome browser and Burp Suite Community Edition v2020.10.2. The lab is called H2.CL request smuggling. The vulnerable web site is said not...
Hello, I have tried to add certificate in systeme but I didn't succeed because I need to root my phone and I don't want to take this risk (unless the manipulation can be reversed). Any know any other way to do it ?
Hi, I've put several interception requests and the never show on my dashboard. May thanks for your kind help Anne
Hi, I installed burpsuite and added some scans but now I need to move the setup to new server without loosing the configuration. How can I do that? I would need the scan urls and the db moved to new server. Thanks
I can't find the setting within Intruder that allows you to delay an attack by a certain number of minutes. Was that feature removed? I used to use it and liked it because if I wanted to avoid a password lockout, I could...
Hello I am getting the following error (Firefox) when attempting to visit bbc.co.uk: Your connection is not secure The owner of www.bbc.co.uk has configured their web site improperly. To protect your information...
Hey i dont know if it possible or not but can i use burp suite to get ip from the person iam chatting with on Facebook I tried to get ssl pinning apk for messnger and iam able to see all request while chatting with...
You guys did an auto charge on my card today and I need a refund, I don't need burp anymore, the charge was a mistake
You guys did a 449???? auto-debit on mine today and I need to do a refund, I don't need it anymore
When I run Burp Suite scanner on my website I get the following issue on many pages. "The request appears to be vulnerable to cross-site request forgery (CSRF) attacks against authenticated users." These pages have no...
Hi there, We have received your communication about the new Burp Suite Pro subscription model and we have some doubts. Should be all users added at the same time as part of a team? Some of our colleagues works on...
Currently evaluating burp suite pro, need to check if I can schedule the scans in my project every night using ADO or Jenkins pipeline
Can i use the community (free) edition in the Web Security Academy? And if so, what kind of restrictions am I looking at?
Once an account's license has been activated, can the account still be deleted, thus freeing up a available space to add a new account and regenerate the license. How many times can a license be activated on different...
Hi Team I would like how to connect fuzzdb with burp.I thinks fuzzdb it is some wordlist .But how to use it in burp.Just copy and past or it is some extension for it.??? github.com/fuzzdb-project/fuzzdb/ I will...
Hello, I would like to scan APIs with Burp Suite. I want to scan it with Burp Suite professional first. I tried hosting my OpenAPI specs at http://127.0.0.1/api_specs.json. And I add the URLs https://(my target site) and...
The new licensing method associates each license with an email. However, after every penetration test, the operator's workstation is re-imaged and re-built for the next customer. Does the license allow for easy reactivation?...
LAB DON'T WORK
On body I have json like following: "bookingMode":"Online","cityId":null,"iswaitlistSlot":false,"numberOfApplicants":0,"previousSequenceNumber":null,"processType":null,"slotQuotaids":[11111111111] Previously when writing...
I am looking to get a list of the "Unique locations:" from the results of a Crawl. A 70% of subdomains domains in my list are just redirects to same page. I would like to filter out all the Unique sites and manually review...
Page 76 of 332
Your source for help and advice on all things Burp-related.