How to exploit a blind SSRF?

Поділитися
Вставка
  • Опубліковано 12 вер 2024

КОМЕНТАРІ • 31

  • @janekmachnicki2593
    @janekmachnicki2593 Рік тому +1

    Thanks for another briliant tutorial .Great job

  • @SrRunsis
    @SrRunsis 2 роки тому

    THanks so much for this video Intigriti!!!! You guys are awesomee

  • @lol-hz9mc
    @lol-hz9mc 2 роки тому +3

    That's an interesting explanation!!! Thanks

  • @mohmino4532
    @mohmino4532 Рік тому +1

    Awesome as usual ma man 🤩 but why did u put this { foo;} ? and what is his role in this process 🙃

    • @intigriti
      @intigriti  Рік тому +1

      Thank you! The "foo" bit isn't needed, shellshock payloads often just use "() {:;}" to declare the bash function.

    • @mohmino4532
      @mohmino4532 Рік тому +1

      @@intigriti i see thanks again ❤

  • @huuloc8719
    @huuloc8719 2 роки тому +3

    Nice.

  • @jacobfurnish7450
    @jacobfurnish7450 Рік тому +1

    4:14 when you say is any host in the internal network vuln to shellshock, internal network meaning origin server or would you also have to bypass a CDN like CloudFlare or AWS in order to exploit?

    • @intigriti
      @intigriti  Рік тому +1

      Once you've found and exploited the SSRF, it's the web server scanning the internal network which is unlikely to be protected.

  • @hackersguild8445
    @hackersguild8445 2 роки тому

    Thanks for sharing. Nice video :)

  • @alan.m.rebeira
    @alan.m.rebeira 2 роки тому +2

    😍😍😍

  • @tudasuda5501
    @tudasuda5501 2 роки тому +1

    Thnx!

  • @fahadfaisal2383
    @fahadfaisal2383 2 роки тому +1

    This vulnerability is common is websites?

    • @intigriti
      @intigriti  2 роки тому +1

      SSRFs have become quite common!

  • @shpockboss3834
    @shpockboss3834 2 роки тому

    On every target ,do we have to try same IP? or where can we get IP?

    • @intigriti
      @intigriti  2 роки тому

      This is something you'd have to guess. Read up on private IP ranges and then you'll see which to scan!

  • @itsm3dud39
    @itsm3dud39 2 роки тому

    i used other commands like id, /etc/passwd .. they are not working.why only whoami command working?

    • @intigriti
      @intigriti  2 роки тому

      There could be a number of measures in place preventing you from running other commands.

  • @solo_code_rider4660
    @solo_code_rider4660 2 роки тому

    Thanks

  • @AnthonyMcqueen1987
    @AnthonyMcqueen1987 2 роки тому

    This is it time to shut them down. lol JK

  • @MichaelCooter
    @MichaelCooter 2 роки тому +1

    First!