The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Bypassing access controls using email address parsing discrepancies

Carson | Last updated: Aug 18, 2024 01:04AM UTC

I have tried every technique outlined in the paper and have tried both collaborator link as well as email client address. I have no feedback outside of status messages. I have gotten Blocked due to Security Reasons and Invalid Email from trying different encodings. If anyone can offer help it would be greatly appreciated.

Ben, PortSwigger Agent | Last updated: Aug 20, 2024 07:21AM UTC

Hi Carson, As with all of our new labs, we do not immediately publish solutions or offer hints in order to give users a chance to solve these under their own volition. We do plan to provide a written solution in due course. What we can say is that the lab itself is passing our internal tests so is functioning as expected.

Mostafa | Last updated: Sep 30, 2024 10:02PM UTC