Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
If an automated scanning is doing, do I need to interact with web pages to load Rest APIs to Burp or will Burp crawl through each and every Web API automatically?
How API is verified by Burp as there exist a vulnerability or not? On what basis the report is generated? That means how do Burp conclude that there exist a vulnerability or not? Is it by any response from the web...
If I'm doing an automated scanning, will you provide all the inputs/test cases for testing different types of attacks or vulnerabilities. OR is it needed to be provided by us?
Do manual testing in Burp Community Edition help to generate a report?
I'm trying to configure a proxy listener that receives encrypted requests from clients and forwards these requests against an unencrypted server, then encrypting and sending the responses back. I tried setting a simple...
Good day! Recently I had to reactivate my Burp Pro license several times on my different machines due to technical circumstances. Now I am getting "No more activations allowed for this license" error. Could you please...
Given a page that is vulnerable to OOB SQLi. Let's say that I run this through intruder using the SQLi payloads. How can I tell which payload triggers the external interaction? In order to setup Intruder I choose a...
Hi, I am seeing error when launching browser from Burp Suite. Please find the details at below and kindly provide the fix if available. "net.portswigger.devtools.client.impl.connection.local.f: Failed to read dev tools...
I'm currently using the version v2023.1.3 of Burp Suite. I've tried so many ways to complete the task 'Blind SQL injection with conditional errors' but none of them works. Does anyone know an updated method to complete this...
why do i see this message in firefox when i click on view exploit but sending it to victim works. (Reason: CORS header ‘Access-Control-Allow-Origin’ missing). Status code: 401. code: <script> ...
hi could you reset all my labs to unsolved state
Hi - I'm having an error resolving the polling server address, but not the server address. They are the same thing. This is the netstat output - tcp 0 0 127.0.0.53:53 0.0.0.0:* ...
Hi, Today i have purchased Burp suite pro and when i am installing via command prompt then getting error like below sudo sh ./burpsuite_pro_linux_v2023_1_3.sh Unpacking JRE ... Starting Installer...
Hello! I encountered a problem when testing a mobile application on Android. Cannot capture traffic of the mobile app, the log shows an error "The client failed to negotiate a TLS connection to [domain]: Remote host...
Unable to find the licenses key on my account. Please share the details.
Hi Team, I was solving the above mentioned lab and after the step 10, when I click the "Deliver exploit to victim" it shows internal server error. I followed the steps given in the Solutions as such and also referred...
I would like to know the logic for calculating the entropy of a random number test by BurpSequencer.
Hi, I am trying to access https sites in Firefox using Burp Suite Pro. On trying to access sites like google or any other https websites I am getting below error, Secure Connection Failed An error occurred during a...
I purchased a 2 license, but Your Subscriptions in My Account shows 「Access for license key holder only」 and I cannot download the license key.
Hi, I have a proffesional Burp Suite licens that I use in my work on my machine provided by my company. The license we have is a 4 person license, I am wondering if I could activate my license on my private computer at home...
Page 78 of 332
Your source for help and advice on all things Burp-related.