- Server Side Request Forgery (OWASP)
- SSRF: Web App Security Basics
- SSRF-Server Side Request Forgery
- What is Server-Side Request Forgery (SSRF)?
- SSRF: What is Server Side Request Forgery?
- Understanding the Web Vulnerability Server-Side Request Forgery (1/2)
- Exploiting the SSRF vulnerability (2/2)
- 3 Types of SSRF Attacks and How to Prevent Them
- SSRF
- SSRFmap
- tomnomnom/gf
- tomnomnom/qsreplace
- ffuf
- gau
- waybackurls
- quickpress
- automate SSRF wordpress and XMLRPC finder
- Finding SSRF by Full Automation
- Bug Bounty tip Automating SSRF
- ssrf-sheriffhggi
-
An unknown Linux secret that turned SSRF to OS Command injection
-
A New Era of SSRF Trending Programming Languages! - BlackHat 2017
-
31k$ SSRF in Google Cloud Monitoring led to metadata exposure
-
SSRF (Server Side Request Forgery) worth $4,913 | My Highest Bounty Ever !
-
How i found 3 SSRF in one day on different bug bounty targets
-
How I Chained 4 vulnerabilities on GitHub Enterprise, From SSRF Execution Chain to RCE!
-
Story of a 2.5k Bounty — SSRF on Zimbra Led to Dump All Credentials in Clear Text
-
An unknown Linux secret that turned SSRF to OS Command injection
-
WRITE UP – GOOGLE VRP N/A: SSRF BYPASS WITH QUADZERO IN GOOGLE CLOUD MONITORING
-
GITLAB — Server Side Request Forgery in “Project Import” page.
-
SSRF - Server Side Request Forgery (Types and ways to exploit it) Part-1
-
Server Side Request Forgery(SSRF){port issue hidden approch }
-
The journey of Web Cache + Firewall Bypass to SSRF to AWS credentials compromise!
-
SSRF on project import via the remote_attachment_url on a Note
-
Blind SSRF on debug.nordvpn.com due to misconfigured sentry instance
-
Blind SSRF on errors.hackerone.net due to Sentry misconfiguration
-
Blind SSRF on https://labs.data.gov/dashboard/Campaign/json_status/ Endpoint
-
SSRF in api.slack.com, using slash commands and bypassing the protections.