The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Invoke a Burp extension for every proxy request

Hi, I want to invoke the "Content-Type Converter" Burp extension for every in-scope request that goes through my proxy. Is there anyway I can achieve this without having to write another extension? In this case...

Last updated: Nov 02, 2022 03:08PM UTC | 7 Agent replies | 8 Community replies | How do I?

Weird Characters in Request Data

While intercepting an android application data i get this weird character in the request. I have installed the certificate on the system of the android device and i can bypass SSL pinning but i get this when i try to do a...

Last updated: Nov 02, 2022 02:17PM UTC | 1 Agent replies | 8 Community replies | How do I?

When this Burp Suite Certified Practitioner exam for 9$ offer will expire?

When this Burp Suite Certified Practitioner exam for 9$ offer will expire? Will this voucher be valid for 12 months as you specified on the faq page?

Last updated: Nov 02, 2022 11:09AM UTC | 3 Agent replies | 2 Community replies | How do I?

Some requests have no response in the site map, is this a mis-config issue or a problem?

I'm running automated tests on 4 machines through Burp, and most of the request are getting responses, but I'm noticing many that are not. I only do this kind of test every year or so, and with all the changes to Burp...

Last updated: Nov 02, 2022 10:16AM UTC | 1 Agent replies | 0 Community replies | How do I?

How do I intercept cli without exporting the environment variables?

Hi, How do I intercept cli without exporting the environment variables? i.e. export http_proxy=http://127.0.0.1:8080? Thanks.

Last updated: Nov 02, 2022 08:50AM UTC | 2 Agent replies | 1 Community replies | How do I?

Configure Burp to avoid untrusted connection message

Hi, I am trying to use burp suite with kali and for some reason when using the proxy i can't intercept any site due to untrusted connection message.Adding security exception does not help, also tried exporting and importing...

Last updated: Nov 01, 2022 01:21PM UTC | 11 Agent replies | 16 Community replies | How do I?

Burpsuite Enterprise Graphql Query

Hello, I am trying to create a new scan configuration via GraphQL API. The graphql has no error but I am getting one still. Query : mutation CreateScanConfiguration { create_scan_configuration( input: { ...

Last updated: Nov 01, 2022 10:09AM UTC | 2 Agent replies | 2 Community replies | How do I?

Set the significance level for a Sequencer

Hello, I read the following article https://portswigger.net/burp/documentation/desktop/tools/sequencer/tests and I can't seem to find any documentation regarding setting the significance level. Thanks

Last updated: Nov 01, 2022 08:56AM UTC | 1 Agent replies | 0 Community replies | How do I?

Finding Sensitive API Keys

Dear all, I have just started using the burp suite and bug hunting in general. While reviewing a site, I noticed that some API keys, including NREUM and Bootstrap are exposed. I am trying to find vulnerabilities and could...

Last updated: Nov 01, 2022 08:35AM UTC | 1 Agent replies | 0 Community replies | How do I?

Proxy not working as expected with certificate-enabled website

Hi all, So I have a website that I'm attempting to delve into...let's call it "https://stupid.com/target". The website requires a selected client certificate when you first visit the page (which I have imported into the...

Last updated: Nov 01, 2022 05:56AM UTC | 2 Agent replies | 2 Community replies | How do I?

API Scanning with Burp Enterprise

Hello, I would like to scan APIs with Burp Enterprise. I have the relevant OpenAPI specs as files (JSON or YAML). However, it is unclear how I can leverage them to configure my scans, and I cannot find a clear...

Last updated: Oct 31, 2022 11:28AM UTC | 2 Agent replies | 1 Community replies | How do I?

Regarding Refund

Hi Team, Is there a way to get refund for the product i had purchased ? ( Burp Suite Pro.) Thanks

Last updated: Oct 31, 2022 10:13AM UTC | 1 Agent replies | 0 Community replies | How do I?

Examity

Hello! I accidentally closed the proctoring window and therefore lost the password to verify the exam. As a result, Examity has submitted the exam, which I haven't started yet. Is it possible to reschedule the exam?

Last updated: Oct 31, 2022 08:32AM UTC | 1 Agent replies | 0 Community replies | How do I?

Exploiting DOM clobbering to enable XSS

Within this lab it says that: "he defaultAvatar object is implemented using this dangerous pattern containing the logical OR operator in conjunction with a global variable. This makes it vulnerable to DOM...

Last updated: Oct 31, 2022 08:16AM UTC | 2 Agent replies | 1 Community replies | How do I?

Delete account

I want to know how to delete my account

Last updated: Oct 31, 2022 07:47AM UTC | 3 Agent replies | 2 Community replies | How do I?

Changed hard drive

Hi, my Burp Suite license is not working after I changed out hard drives. Please help.

Last updated: Oct 31, 2022 07:41AM UTC | 1 Agent replies | 0 Community replies | How do I?

DOM XSS - How do I prove this Vulner is ture

Dears I confuse this Vulner . I read Dynamic analysis,but I don't konw how to prove this DOM XSS exist. please help me what step can I do first? Data is read from input.value and passed to jQuery.append. The source...

Last updated: Oct 28, 2022 10:43AM UTC | 2 Agent replies | 1 Community replies | How do I?

Fetch cookies

Hi Team Sorry but I have to ask again about how to fetch in Collaborator cookies.I read article in for example form submission you can do this that. <script>fetch('https://YOUR-SUBDOMAIN-HERE.burpcollaborator.net',...

Last updated: Oct 27, 2022 05:51PM UTC | 0 Agent replies | 0 Community replies | How do I?

Installing burp suite pro

Hello, I am tying to run the burp suite pro installer and it keeps giving me an exec format error. The out put from uname -a is: Linux kali-linux-2021-3 5.14.0-kali2-arm64 #1 SMP Debian 5.14.9-2kali1 (2021-10-04) aarch64...

Last updated: Oct 27, 2022 01:13PM UTC | 1 Agent replies | 0 Community replies | How do I?

Multistep clickjacking lab not solving

Dear Team, wonderfull course but i am stuck here at this lab not able to go ahead , i have aligned all the buttons in chrome and its not working fine, kindly provide suggestions. my...

Last updated: Oct 27, 2022 09:38AM UTC | 3 Agent replies | 4 Community replies | How do I?

Page 95 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image