The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Stage 2 of Practice exam with SQLMAP 1.7.2

Juan | Last updated: Mar 20, 2023 05:47AM UTC

I think SQLMAP 1.7.2 on stage 2 is no longer able to solve the blind time delay stage, I did it manually last night and the sqli is exploitable manually. I was able few months back and checked my notes i then used sqlmap 1.6 and it was able to solve the stage in practice exam. other day i took real BSCP exam and got similar SQLi vuln and then did not realize my sqlmap 1.7.2 is broken and failed to solve it. maybe this help other students . thanks again.

Juan | Last updated: Mar 21, 2023 07:02AM UTC

I took BSCP exam , and murphy gave me the SQLi challenge, i downloaded sqlmap 1.6 and tried to exploit what burp scanner also identified as sql injection vulnerability on parameter. but nope. man if this was rabbit hole..... i failed badly. giving up is not option ... i will retake the practice exam again and practice on the sqli in the practice exam. thanks.

Juan | Last updated: Mar 21, 2023 10:25AM UTC