The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Issue in "Forced OAuth profile linking" lab

Khalid | Last updated: Jul 11, 2021 06:46AM UTC

After intercepting the request of which I need to copy the URL. I created an iframe tag in the exploit server as follows: <iframe src="https://lab-id.web-security-academy.net/linking-code?code=[...]"></iframe> and clicked Store, then 'Deliver Exploit to victim' However, this doesn't solve the lab. I viewed the access log, and noticed that the link doesn't get visited by any IP. I only see my own IP from the requests that I submit to the exploit server. Hence, I can't get the lab solved. Could you please look into this problem. I tried both the written solution and the video one, but non of them worked.

James, PortSwigger Agent | Last updated: Jul 15, 2021 10:26AM UTC