The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Complete the OS Injection Labs?

Justin | Last updated: Jul 01, 2020 06:55PM UTC

Hello all! How can I complete the OS Injection labs without Burp Suite Pro? The instructions instruct me to use the public Burp Collaborator server...

Michelle, PortSwigger Agent | Last updated: Jul 02, 2020 03:43PM UTC

I'm afraid that you would need to use Burp Suite Professional to solve the final lab 'Blind OS command injection with out-of-band data exfiltration' It is still possible to solve the lab 'Blind OS command injection with out-of-band interaction' though, by triggering a DNS interaction with the public collaborator server. Rather than using the Collaborator client to know that you have successfully triggered the interaction, you will know because the lab status will change to 'Solved'

Dubochick | Last updated: Jun 21, 2024 10:22PM UTC

How exactly is it possible in a free version? Every instruction on the internet, that i find, tells me to navigate to the collaborator tab. And it is unclickable in the free version. How exactly can i send a DNS lookup to the public server?

Dubochick | Last updated: Jun 21, 2024 10:30PM UTC