100+ Free BSCP Practice Questions
Burp Suite Certified Practitioner (BSCP) practice questions are available now; exam metadata is being verified.
Which OAuth 2.0 state parameter property is critical for CSRF protection during the authorization flow?
Key Facts: BSCP Exam
$99
Per Exam Attempt
PortSwigger
4 hours
Exam Duration
PortSwigger
6 stages
To Complete (2 apps × 3)
PortSwigger
5 years
Certificate Validity
PortSwigger
30+
Web Security Academy Topics
PortSwigger
Open-book
Exam Style
PortSwigger
The BSCP (Burp Suite Certified Practitioner) is PortSwigger's official web security certification. The 4-hour practical exam presents two web applications each requiring a foothold (initial access), privilege escalation (admin), and data exfiltration stage — all 6 stages must be completed. The exam is open-book and requires Burp Suite Professional. At $99 per attempt it is one of the most affordable practical web security certs. Preparation requires completing the full Web Security Academy curriculum including all Apprentice and Practitioner labs.
Sample BSCP Practice Questions
Try these sample questions to test your BSCP exam readiness. Each question includes a detailed explanation. Start the interactive quiz above for the full 100+ question experience with AI tutoring.