The Burp Suite User Forum will be discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Centre. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTRE DISCORD

Create new post

The solution of "Lab: Forced OAuth profile linking" will meet issue of "Refused to display 'https://0a2a008e04632038819966d8001a00e0.web-security-academy.net/' in a frame because it set 'X-Frame-Options' to 'sameorigin'."

steven | Last updated: Oct 22, 2024 09:48AM UTC

When I try solution of "Lab: Forced OAuth profile linking", in step 11. I will meet issue of "Refused to display 'https://0a2a008e04632038819966d8001a00e0.web-security-academy.net/' in a frame because it set 'X-Frame-Options' to 'sameorigin'." It looks to me a bug since this http header should not be here. I'm not sure if I misunderstanding something. Thanks.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.