Burp Suite User Forum
What about when I renew my license before the expiration? My expiration is 3 Aug 2022 if I renew before expiration. what about my new expiration? It must be 3 Aug 2023?
Hi, I am attempting the "Web cache poisoning with an unkeyed header" lab. I am not receiving a response in the Repeater when I add the X-Forwarded-Host (example.com). However, I receive a response as normal with or...
Hi All, When I select Pitchfork, I have 3 payloads options not 2. This stops me sending the attack. Do you experience the same situation? Thanks, Yan
i tried the cluster bomb and i tried it manually. both times i got 2 different passwords. none of them unlock the admin account. what do i have to do to login? =)
Hello, I am testing an API that requires a CA certificate and a Client certificate (Host, CRT file & KEY file) to be configured for you to access it. I am able to do it with Postman but when I proxy the traffic via Burp...
Hi,When I select a target,What is the difference between selecting ‘scan’ and selecting ‘actively scan this host’? I did a test and found that using these two different options will find different vulnerabilities
I formatted my computer and reinstalled Burp Suite Professional. But It was not activated. I tried so much time but I can't use it now. Can you help me please?
When I tried to use Burp intruder's match/replace rule for {FILE}, I get invalid regex error. Please advice.
How we know image(218.png) is present 3 directory or 4 directory under root directory eg image(218.png) can we present in directory /var/www/image/218.png or /var/www/image/abc/218.png, How we get to know this for applying...
Hello, Trying to run Burpsuite on Kali (Pi4b, Cortex-A72), running the latest Open-JDK and I keep running into issues. If I run the JAR i get: "invalid file (bad magic number): Exec format error" and if I run the...
We have following questions please acknowledge our query:- 1) We are running testcafe script via burp but in Target tab our application url is showing disabled. 2) We are getting all the out of scope items in our...
Hello, when I try to send a message in the live chat feature of the lab, the message does not go through. Any suggestion? Regards.
I use Burpsuite Pro to test DoD Common Access Card (CAC) and non-CAC websites for DoD. I'm able to access different CAC websites via FireFox and Chrome from a Kali VM residing on a MacBook Pro. I have encountered a website,...
Hi, I'm using Burpsuite Pro and was wondering if there's a way to export the Burpsuite XML to CSV so it can be imported to Powerbi?
Is it possible to configure a burp collaborator instance to work with burp enterprise?
i want to delete my portswigger account
I am attempting to complete a authenticated crawl and audit of my site that is configured to dynamically change the session ID for each login attempt. How do I capture the session ID and complete an authenticated crawl and...
how host header injection exist but we change the host header the server must make error that host header not exist !
I am using burp suite to intercept traffic from a site, I am trying to view the images from the proxy but the site uses web sockets to send all the images(Base64 encoded strings) at once to be loaded on Demand Which is...
Hi, When I use my local ip address to intercept data ,I'm getting the alert "the client failed to negotiate a tls connection to xxx.xxx.xxxx:443: Remote host closed connection during handshake" , But if I use the...
Page 96 of 311
Your source for help and advice on all things Burp-related.