The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

IDOR

D | Last updated: Aug 09, 2022 08:03AM UTC

I have been stuck on the IDOR lab. Somehow, finding the credentials is the easy part along with the CSFR. The issue is that each time I enter Carlos' credentials, I get the following error "Invalid CSRF token (session does not contain a CSRF token)". I have cleared cookies, tried incognito and still no joy. Please help.

Ben, PortSwigger Agent | Last updated: Aug 09, 2022 09:07AM UTC