The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

BLIND SQLI lab not working properly.

KHAN | Last updated: Aug 06, 2024 10:17PM UTC

Hi there I was solving the lab "BLIND SQL INJECTION WITH CONDITIONAL RESPONSES" every thing was working properly until, IT comes to find the length of the password of the "ADMINISTRATOR" user in the solutions the length is "20" characters and I am getting the length as "8" and also after finding the length as 8 characters, when I tried SUBSTRING method to bruteforce the characters of the password string I got password as "password" all lower cases. When I Submited that credentials I was'nt able to solve the lab, I usually use the Burpsuite inbuilt browser chromium, even with Firefox I faced the same issue, AND my OS is Linux to be specific KALI LINUX I am the biggest fan of the web security academy as it is the ideal resource for me in my WAPT journey.

Dominyque, PortSwigger Agent | Last updated: Aug 07, 2024 06:58AM UTC