Burp Suite User Forum

Login to post

Discover hidden files and directories

Hi Team I would like ask about how to discover hide directories and files in Burp.I try use some wordlist but this not works for my .Any hide folder can not be find. But If I use some pay commercial online scanner.I see...

Last updated: May 10, 2021 07:39AM UTC | 2 Agent replies | 1 Community replies | How do I?

Lab: CORS vulnerability with internal network pivot attack

Hii, I am trying to solve the cors lab (https://portswigger.net/web-security/cors/lab-internal-network-pivot-attack) . The first step in lab is to locate the ip address of the endpoint by scanning local network...

Last updated: May 07, 2021 03:50PM UTC | 1 Agent replies | 0 Community replies | How do I?

Lab: Modifying serialized data types

I have a problem with this perticular lab. I've followed the solution as well and still cannot access the admin account. I have a firefox web browser. Pasted in this in the cookies by pressing...

Last updated: May 07, 2021 12:43PM UTC | 7 Agent replies | 13 Community replies | How do I?

Connection Reset Error when using Burp Proxy

Hi, I'm getting "Connection Reset" error in Event Log whenever I try to intercept traffic from Mobile Device(Android/iOS) and it shows no internet in the Mobile(physical device&emulator). Internet connection is working...

Last updated: May 06, 2021 04:46PM UTC | 3 Agent replies | 2 Community replies | How do I?

parse JSON 【ClassNotFoundException】

Hi: I build a Extension and import a third-library named "fastjson.jar". but when i export this extention as a jar file and load it into Burpsuite , it always rase 【ClassNotFoundException】when parse JSON. I dont...

Last updated: May 06, 2021 10:07AM UTC | 1 Agent replies | 0 Community replies | How do I?

Confused at a request smuggling lab

Hi, hope everyone is doing well. Can anybody let me know how they completed the lab 'Exploiting HTTP request smuggling to perform web cache deception'. I have tried it a lot of times, and haven't been able to solve...

Last updated: May 06, 2021 08:23AM UTC | 2 Agent replies | 1 Community replies | How do I?

Advanced Target Scope - Load File

Hey all, I normally used regex in advanced scope to make sure I capture all sub domains. However, I have a list of over 100 I'd like to check. I created a TXT file of the domains with regex but when I go to Load the file...

Last updated: May 06, 2021 07:33AM UTC | 3 Agent replies | 4 Community replies | How do I?

Using Burp Professional at a customer site

Hello, Me and my Teammates are having a hard time using burp suite professional on customer site when connected with LAN cable with a browser application login needed with a pop up (basic authentication). When activating...

Last updated: May 06, 2021 07:20AM UTC | 1 Agent replies | 0 Community replies | How do I?

Getting a Certificate not accepted message from call to GraphQL in Burp Suite Enterprise.

This is in reference to the problem reported on https://forum.portswigger.net/thread/i-am-having-a-problem-getting-a-graphql-call-to-be-processed-by-our-burp-suite-enterprise-a953216c. I am trying to get a response to my...

Last updated: May 05, 2021 06:38PM UTC | 1 Agent replies | 1 Community replies | How do I?

Load balancer not auto populating for cloud AWS deployment

am facing problem when I am trying to deploy burp suite on aws cloud . The last step wherein it states that the load balancer will auto populate is not populating. Through research, I see that the issue has been a...

Last updated: May 05, 2021 11:23AM UTC | 1 Agent replies | 0 Community replies | How do I?

Burp Suite Pro Won't Launch on OSX Catalina

Hello, I am trying to run Burp Suite Pro on my Mac (OS X Catalina 10.15.4), but it won't launch. The file is "burpsuite_pro_v2020.4.jar" freshly downloaded from portswigger, SHA:...

Last updated: May 05, 2021 09:48AM UTC | 2 Agent replies | 2 Community replies | How do I?

exec format error but i can run .jar

Dear Burp suite support would you know why i can run .jar with burp suite on my raspberry pi 4 kali linux 64 bit 2020.1a version,but i can't run the burpsuite_community_linux_v2020_1.sh using bash? i have verified...

Last updated: May 05, 2021 08:03AM UTC | 3 Agent replies | 2 Community replies | How do I?

burp intruder warnings

Hi, I have this problem and I don’t know how to solve it https://i.imgur.com/nJUdm6I.png

Last updated: May 05, 2021 07:38AM UTC | 1 Agent replies | 0 Community replies | How do I?

Need to use burp in enterprise as a tenant but there's no option for free trial

Please connect @ 7289868920 or ankit.bhati@coforgetech.com

Last updated: May 05, 2021 06:50AM UTC | 1 Agent replies | 0 Community replies | How do I?

License Installation Error

There was a problem checking your license Please download your license key from your account and try again. For help please visit the support center on our website. Please assist

Last updated: May 04, 2021 05:44PM UTC | 1 Agent replies | 0 Community replies | How do I?

I am having a problem getting a GraphQL call to be processed by our Burp Suite Enterprise

I have a c# program that is working from my machine ( I know that is what they all say), when I port it to another machine it gets an error. I can run Burp Suites GraphQL commands from the machine using the curl command but...

Last updated: May 04, 2021 03:41PM UTC | 5 Agent replies | 8 Community replies | How do I?

download

How can I download free edition of burpsuite

Last updated: May 04, 2021 01:42PM UTC | 1 Agent replies | 1 Community replies | How do I?

No REPLAY issues when configuring the scan, but "Failed to replay sequence" during the scan

We have no issues when we REPLAY the script during the scan configuration. However, I get two error messages when I kick off the scan: #1 "Failed to replay sequence - timeout occurred while navigating to...

Last updated: May 04, 2021 01:01PM UTC | 3 Agent replies | 2 Community replies | How do I?

How can I troubleshoot the "Did not find a login form"?

Hello, How can I troubleshoot the "Did not find a login form" debug message from the event log? The crawl and audit only found 7 locations and issued 3534 requests before finishing. After starting an active scan from...

Last updated: May 04, 2021 09:37AM UTC | 3 Agent replies | 5 Community replies | How do I?

Lab: Server-side Template Injection in an unknown language with a documented exploit (unintended?)

Hi, I used a payload from this web https://book.hacktricks.xyz/pentesting-web/ssti-server-side-template-injection#handlebars-nodejs and it still considered that I completed the challenge even though I did not execute rm...

Last updated: May 04, 2021 09:32AM UTC | 1 Agent replies | 0 Community replies | How do I?

Page 9 of 178

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image