Burp Suite User Forum
For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.
Hi, I'm scanning REST APIs using Burp Professional (v2022.12.7) active scan feature. As suggested in the page (https://portswigger.net/burp/documentation/desktop/scanning/api-scanning), I have supplied the OpenAPI json...
Hi all, Someone knows if is possible to receive alerts or emails about the health of the Burpsuite Scanning Machines? Constantly our scanning machines are automatically disconnected or appears 'Unexpected Errors'...
How can I Intercepting and Changing Card Number on eCommerce Site using Burp Suite
Well not sure on how to describe this I have completed that the Password is X char long But my 4. char in the password is empty as the only char - So I cannot figure this out since I'm missing a char in the passwords -...
Hello everyone, I am trying to use Burp Suite Community edition as a proxy and I would like to redirect http and ws calls to a different IP. I remember I did something similar in the past but even reading the...
We tried upgrading to latest version of the enterprise on Kubernetes "Enterprise Edition 2023.1", which is failed and we locked out of the UI and had to rollback the deployment. Please suggest.
Hi Team, I am observing error in console log when running dasterdly using Jenkins. Please check and advice me that is it running as per expectation or something is missing. Jenkins Console Log: Please see ERROR in...
Hi, I was doing the Lab "CORS vulnerability with internal network pivot attack" and couldn't solve it with the provided solution. Specifically, in Step 1, I didn't receive any Collaborator interaction although I used the...
Hello, We tried upgrading burpSuite Enterprise Kubernetes version to 'Burp Suite Enterprise Edition v2023.1' with helm chart. After upgrade we were not able to login to the BurpSuite UI, we had to rollback the deployment...
Hello, I'm a new Mac user. When I was on Windows, Burp files got too large, so I'd refer back to the older file by opening it in a new instance. I can't find how to do that on Mac. I'm stuck with only one instance. Does...
This is a common problem with automated spidering tools: It gets stuck (for days in some cases) in a directory structure like /blog/2023/01/post1 and /blog/2023/01/post2 etc. and it does a good job discovering that...
In the above mentioned lab, using XFF header is required to bypass the bruteforce ip blocking. XFF header takes an ip address(127.0.0.1 for example), however to solve this lab the value of XFF is a number. First I used the...
Hello, Using Burp I noticed that if I login on a weboage while the proxy is on I get the cookie with all fields complete like...
is it possible to cheat a website
Hi, I have the following error when running the embedded browser from Kali 2022.9.6 AMD64 Aborting checks due to errors. Unable to start browser: DevTools listening on...
For some reason Burp's embedded browser wont let me log into certain sites i want to test for example Google. Whenever i use Chrome or Firefox sure it works but for Burps embedded browser it wont allow me to log into any...
Hello, I am using macOS and, I spent a week trying to figure out 'How to use socat to transparently proxy terminal and forward traffic to Burp?'. I followed the bellow tutorial which seems to logically work:, but it...
I'm trying to make a request but i get an error because the timestamp on the request is not updated, i wonder if there's a way to automatically update a selected...
Hi, I could like to capture the http traffic in burp from citrix xen7portal browser, guide me on how to do it? On that browser app from citrix doesn't have any proxy or certificate installation.
Hello! I want to automate scan execution and results processing using Burp Suite Pro API. I'm able to start scan through API and get info about it. The issue is that I have to check scan ID in UI by my eyes. But how to...
Page 83 of 332
Your source for help and advice on all things Burp-related.