Scanning just seems to stop after a while (using 2.1.05 and 06)

Matt | Last updated: Dec 03, 2019 08:16PM UTC

This is my first time using the new 2.x UI. I'm not sure everything is configured correctly, but I think so... I started a scan using my own config (so I could turn off some of the Issues to scan for). It seemed to work for a few hours and then it stopped working. The icon says it is still running, so it can be clicked to pause it. I tried to pause it and then run it hoping it would kick it in the pants to continue, but that did nothing. I shut down and upgraded from 05 to 06 and reloaded the project (which is backed up every 30 minutes) and it seemed to start scanning again, but got stuck again. When I say stuck, I mean that it doesn't appear to be increasing the numbers that track requests or errors in the Audit Items tab, and the general number by the progress bar on the Details tab or dashboard hasn't changed in a while. Is there anything I can provide you to help diagnose this? I'm a pretty basic user, and don't do much with this except scan links passed in from running my automated scripts thru the proxy to test our client/server app. Thanks, Matt.

Ben, PortSwigger Agent | Last updated: Dec 04, 2019 08:58AM UTC

Hi Matt, Firstly, are you able to install the Logger++ extension? This will provide you with more details of the requests that Burp is sending whilst carrying out a scan. Also, are you able to provide us with the details of the scan configuration that you are using and any details of your target site (if you want to email support@portswigger.net with this information then please feel free to do so).

Burp User | Last updated: Dec 04, 2019 07:16PM UTC

I am using 2.1.06 and I am also noticing where an audit check issues 9 requests (errors) then doesn't do anything. Help!

Ben, PortSwigger Agent | Last updated: Dec 05, 2019 08:36AM UTC

Hi Michael, Can you provide us with some further details of your environment and the scan that you are attempting to carry out?

Burp User | Last updated: Jan 16, 2020 12:01PM UTC

Hi there, unfortunately this isn't an answer, but I too have suffered at the hand of a "sticking" Burp Scan. Sometimes a pause, followed by the restarting of Tomcat, and an unpause will help. Sometimes I need to reboot the scanning computer because Tomcat (8.5) gets into a can't stop/can't start state. Right now though, it's even worse. A reboot, and reload of the project, won't even get the request counter ticking away again. I'm currently stuck at 3,211,353 requests and I'm a teeny tiny portion of the progress bar from finishing. Here, just in case it helps, is some of the diagnostic information copied the clipboard... Please, guide my fingers! Cheers for now, Dave. awt.toolkit sun.awt.windows.WToolkit exe4j.consoleCodepage cp0 exe4j.isInstall4j true exe4j.launchName C:\Program Files\BurpSuitePro2\BurpSuitePro.exe exe4j.moduleName C:\Program Files\BurpSuitePro2\BurpSuitePro.exe exe4j.semaphoreName Local\c:_program_files_burpsuitepro2_burpsuitepro.exe0 exe4j.tempDir exe4j.unextractedPosition 0 file.encoding Cp1252 file.separator \ install4j.appDir C:\Program Files\BurpSuitePro2\ install4j.exeDir C:\Program Files\BurpSuitePro2\ install4j.launcherId 70 install4j.swt false java.awt.graphicsenv sun.awt.Win32GraphicsEnvironment java.class.path C:\Program Files\BurpSuitePro2\.install4j\i4jruntime.jar;C:\Program Files\BurpSuitePro2\.\burpsuite_pro.jar java.class.version 56.0 java.home c:\program files\burpsuitepro2\jre java.io.tmpdir C:\Users\ADMINI~1\AppData\Local\Temp\2\ java.library.path c:\program files\burpsuitepro2\jre\bin;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\TortoiseSVN\bin;C:\Program Files (x86)\Git\cmd;C:\Program Files (x86)\GitExtensions\;C:\Program Files (x86)\Nmap java.runtime.name OpenJDK Runtime Environment java.runtime.version 12.0.2+10 java.specification.name Java Platform API Specification java.specification.vendor Oracle Corporation java.specification.version 12 java.vendor Oracle Corporation java.vendor.url https://java.oracle.com/ java.vendor.url.bug https://bugreport.java.com/bugreport/ java.version 12.0.2 java.version.date 2019-07-16 java.vm.compressedOopsMode 32-bit java.vm.info mixed mode java.vm.name OpenJDK 64-Bit Server VM java.vm.specification.name Java Virtual Machine Specification java.vm.specification.vendor Oracle Corporation java.vm.specification.version 12 java.vm.vendor Oracle Corporation java.vm.version 12.0.2+10 jdk.debug release jdk.tls.allowUnsafeServerCertChange true jdk.tls.server.protocols TLSv1,TLSv1.1,TLSv1.2 org.bouncycastle.jsse.client.dh.minimumPrimeBits 1024 org.bouncycastle.jsse.client.dh.unrestrictedGroups true os.arch amd64 os.name Windows Server 2008 R2 os.version 6.1 path.separator ; sun.arch.data.model 64 sun.awt.enableExtraMouseButtons true sun.boot.library.path c:\program files\burpsuitepro2\jre\bin sun.cpu.endian little sun.cpu.isalist amd64 sun.desktop windows sun.io.unicode.encoding UnicodeLittle sun.java.command C:\Program Files\BurpSuitePro2\BurpSuitePro.exe sun.jnu.encoding Cp1252 sun.management.compiler HotSpot 64-Bit Tiered Compilers sun.os.patch.level Service Pack 1 user.country GB user.dir C:\Program Files\BurpSuitePro2 Burp Version 2.1.07 Burp Browser Version 0.144 Burp Browser binaries C:\Program Files\BurpSuitePro2\burpbrowser\0.144 Code source C:\Program Files\BurpSuitePro2\burpsuite_pro.jar Debug ID chd84sobqpo6hs2d58j5:u8p5 JAR type Installer PROCESSOR_LEVEL 6 FP_NO_HOST_CHECK NO USERDOMAIN VM124_W2008R2 LOGONSERVER \\VM124_W2008R2 PROCESSOR_ARCHITECTURE AMD64 APPDATA C:\Users\Administrator\AppData\Roaming USERNAME Administrator

Liam, PortSwigger Agent | Last updated: Jan 16, 2020 02:22PM UTC

Thanks for this report, Matt. Could you tell us a little bit more about your system? Are there any potential issues with memory or disk space? Do you see any errors in the Dashboard Event log?

