The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

CSRF lab issues

adotvoid | Last updated: Jan 28, 2023 03:57PM UTC

Seems like there are some issues with the CSRF labs. I've tried using a variety of solutions for most of the day now and none of them seem to be working (or the first five I've tried anyway). The exploit server simply goes back to the login page of the web app after I click 'Deliver exploit to victim'. I've used a number of payloads both from the solution drop-down and the community solutions drop-down and none of these are working. These labs are great, but this problem makes for quite a frustrating experience.

Ben, PortSwigger Agent | Last updated: Jan 30, 2023 08:17AM UTC

Hi, I have just run through the first lab in this topic ('CSRF vulnerability with no defenses') and been able to solve it following the solution - was this was one of the labs that you struggled with? If so, are you able to provide us with some details of the steps that you are taking to try and solve this? If this is not one of the labs that you are having issues with, are you able to provide us with a specific lab, alongside the steps that you have taken, so that we can hone in on this specific lab and double check the details?

Henri | Last updated: Jul 24, 2024 04:27PM UTC