Skip to content
Vulnerability field guide

SSRF

Server-side request forgery turns a trusted server into a request-making proxy for the attacker, reaching internal services and cloud credentials the internet should never touch. Here is how it works and how to lock it down.

4 articles 18 min total Overview to advanced techniques