Learn how to get Free YouTube subscribers, views and likes
Get Free YouTube Subscribers, Views and Likes

Server-Side Request Forgery (SSRF) | Complete Guide

Follow
Rana Khalil

In this video, we cover the theory behind ServerSide Request Forgery (SSRF) vulnerabilities, how to find these types of vulnerabilities from both a white box and black box perspective, how to exploit them and how to prevent them.

▬ ✨ Support Me ✨ ▬▬▬▬▬▬▬▬▬▬
Buy my course: https://bit.ly/30LWAtE

▬ Contents of this video ▬▬▬▬▬▬▬▬▬▬
00:00 Introduction
00:30 Web Security Academy Course (https://bit.ly/30LWAtE)
01:42 Agenda
02:36 – What is a SSRF vulnerability?
18:13 – How to find SSRF vulnerabilities?
26:50 – How to exploit SSRF vulnerabilities?
41:23 – How to prevent SSRF vulnerabilities?
45:42 – Resources
46:42 Thank You

▬ Links ▬▬▬▬▬▬▬▬▬▬
Video slides: https://github.com/rkhal101/WebSecur...
Web Security Academy: https://portswigger.net/websecurity/...
OWASP – SSRF: https://owasp.org/wwwcommunity/attac...
ServerSide Request Forgery Prevention Cheat Sheet: https://cheatsheetseries.owasp.org/ch...
SSRF Bible Cheat Sheet: https://cheatsheetseries.owasp.org/as...
Preventing ServerSide Request Forgery Attacks: https://seclab.nu/static/publications...
A New Era of SSRF Exploiting URL Parser in Trending Programming Languages!: https://www.blackhat.com/docs/us17/t...
Rana's Twitter account:   / rana__khalil  
Hacker Icons made by Freepik: https://www.freepik.com

posted by nocionauxi