The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

About out-of-band resource load(HTTP)

Koki | Last updated: Mar 13, 2020 11:06AM UTC

Burp Scanner scans may detect "out-of-band resource load (HTTP)". In some cases, a modified Host header or GET request URI parameter may be detected to the Burp collaborator host name, but this is a natural behavior, not an out-of-band resource load, because it communicates directly with the Burp collaborator rather than with the server being scanned from the HTTP protocol behavior. In this case, is it a false detection?

Hannah, PortSwigger Agent | Last updated: Mar 13, 2020 11:41AM UTC