The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

HTTP/1.1 to HTTP/2 conversion in Repeater and subsequent communication error

Hi, I'm at the beginning stages of working on the new HTTP/2 Smuggling labs using Chrome browser and Burp Suite Community Edition v2020.10.2. The lab is called H2.CL request smuggling. The vulnerable web site is said not...

Last updated: Mar 20, 2023 10:46AM UTC | 4 Agent replies | 5 Community replies | How do I?

Intercept traffic from Android application

Hello, I have tried to add certificate in systeme but I didn't succeed because I need to root my phone and I don't want to take this risk (unless the manipulation can be reversed). Any know any other way to do it ?

Last updated: Mar 20, 2023 08:29AM UTC | 5 Agent replies | 8 Community replies | How do I?

My request is not in my dashboard

Hi, I've put several interception requests and the never show on my dashboard. May thanks for your kind help Anne

Last updated: Mar 20, 2023 08:14AM UTC | 1 Agent replies | 0 Community replies | How do I?

Move burpsuite to new server

Hi, I installed burpsuite and added some scans but now I need to move the setup to new server without loosing the configuration. How can I do that? I would need the scan urls and the db moved to new server. Thanks

Last updated: Mar 20, 2023 07:22AM UTC | 4 Agent replies | 3 Community replies | How do I?

Delay Intruder attack

I can't find the setting within Intruder that allows you to delay an attack by a certain number of minutes. Was that feature removed? I used to use it and liked it because if I wanted to avoid a password lockout, I could...

Last updated: Mar 17, 2023 02:01PM UTC | 1 Agent replies | 0 Community replies | How do I?

Error: Your connection is not secure

Hello I am getting the following error (Firefox) when attempting to visit bbc.co.uk: Your connection is not secure The owner of www.bbc.co.uk has configured their web site improperly. To protect your information...

Last updated: Mar 17, 2023 01:48PM UTC | 11 Agent replies | 19 Community replies | How do I?

How can i get ip adress of the person iam chatting with on Facebook

Hey i dont know if it possible or not but can i use burp suite to get ip from the person iam chatting with on Facebook I tried to get ssl pinning apk for messnger and iam able to see all request while chatting with...

Last updated: Mar 17, 2023 01:22PM UTC | 0 Agent replies | 0 Community replies | How do I?

refound

You guys did an auto charge on my card today and I need a refund, I don't need burp anymore, the charge was a mistake

Last updated: Mar 17, 2023 01:21PM UTC | 1 Agent replies | 0 Community replies | How do I?

refound

You guys did a 449???? auto-debit on mine today and I need to do a refund, I don't need it anymore

Last updated: Mar 17, 2023 01:21PM UTC | 1 Agent replies | 1 Community replies | How do I?

CSRF issue

When I run Burp Suite scanner on my website I get the following issue on many pages. "The request appears to be vulnerable to cross-site request forgery (CSRF) attacks against authenticated users." These pages have no...

Last updated: Mar 17, 2023 12:18PM UTC | 1 Agent replies | 0 Community replies | How do I?

New Burp Suite Pro subscription model

Hi there, We have received your communication about the new Burp Suite Pro subscription model and we have some doubts. Should be all users added at the same time as part of a team? Some of our colleagues works on...

Last updated: Mar 16, 2023 01:44PM UTC | 1 Agent replies | 0 Community replies | How do I?

How do I integrate Burp suite pro in ADO pipeline or Jenkins pipeline

Currently evaluating burp suite pro, need to check if I can schedule the scans in my project every night using ADO or Jenkins pipeline

Last updated: Mar 16, 2023 01:28PM UTC | 1 Agent replies | 0 Community replies | How do I?

Academy and Burp

Can i use the community (free) edition in the Web Security Academy? And if so, what kind of restrictions am I looking at?

Last updated: Mar 16, 2023 10:05AM UTC | 1 Agent replies | 0 Community replies | How do I?

License mechanism

Once an account's license has been activated, can the account still be deleted, thus freeing up a available space to add a new account and regenerate the license. How many times can a license be activated on different...

Last updated: Mar 16, 2023 09:19AM UTC | 1 Agent replies | 0 Community replies | How do I?

fuzzdb with burp

Hi Team I would like how to connect fuzzdb with burp.I thinks fuzzdb it is some wordlist .But how to use it in burp.Just copy and past or it is some extension for it.??? github.com/fuzzdb-project/fuzzdb/ I will...

Last updated: Mar 15, 2023 04:02PM UTC | 1 Agent replies | 0 Community replies | How do I?

problem with API scanning

Hello, I would like to scan APIs with Burp Suite. I want to scan it with Burp Suite professional first. I tried hosting my OpenAPI specs at http://127.0.0.1/api_specs.json. And I add the URLs https://(my target site) and...

Last updated: Mar 15, 2023 10:28AM UTC | 1 Agent replies | 0 Community replies | How do I?

Handle activation when BurpSuite is part of a pentesting VM that is constantly destroyed and rebuilt?

The new licensing method associates each license with an email. However, after every penetration test, the operator's workstation is re-imaged and re-built for the next customer. Does the license allow for easy reactivation?...

Last updated: Mar 15, 2023 10:17AM UTC | 1 Agent replies | 0 Community replies | How do I?

H2.CL request smuggling

LAB DON'T WORK

Last updated: Mar 15, 2023 08:04AM UTC | 1 Agent replies | 0 Community replies | How do I?

Intercept Request

On body I have json like following: "bookingMode":"Online","cityId":null,"iswaitlistSlot":false,"numberOfApplicants":0,"previousSequenceNumber":null,"processType":null,"slotQuotaids":[11111111111] Previously when writing...

Last updated: Mar 14, 2023 07:38PM UTC | 0 Agent replies | 1 Community replies | How do I?

Unique locations:

I am looking to get a list of the "Unique locations:" from the results of a Crawl. A 70% of subdomains domains in my list are just redirects to same page. I would like to filter out all the Unique sites and manually review...

Last updated: Mar 14, 2023 04:33PM UTC | 1 Agent replies | 0 Community replies | How do I?

Page 76 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image