The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Tutorial (possible issue): HTTP request smuggling, basic TE.CL vulnerability

Morris, | Last updated: Sep 05, 2023 07:22PM UTC

Dear Burp Suite, No hurry. I'll work on other tutorials. But this one seems to be broken at the moment. In running this tutorial, getting an unexpected error. HTTP/1.1 400 Bad Request "error":"Read timeout" 1) Per tutorial, protocol set to HTTP/1. 2) Added "\r\n\r\n" after the final '0' of the request. 3) Changed the host to my '0af10098037c176681d6ac1700a000ad' host. 4) Confirmed site still responsive (not timed out). 4) Unchecked 'Update Content-Length'. Even with all that, and directly copying the text provided as necessary (and again adding "\r\n\r\n", no luck. Also, definitely takes a long time to process the request. 20 seconds or so? Thank you for your time and help. Sincerely, Michael M.

Michelle, PortSwigger Agent | Last updated: Sep 06, 2023 11:24AM UTC