Automated blind SSRF scanner with native PingBack.sh OAST correlation, persistent callbacks and exact injection tracking.
-
Updated
Aug 1, 2026 - Go
Automated blind SSRF scanner with native PingBack.sh OAST correlation, persistent callbacks and exact injection tracking.
Apache Solr < 8.8.2 Server Side Request Forgery
A Python-based OAST scanner to automate the detection of Blind SSRF (via header injection & request-target) and identify potential Open Redirects using Interactsh.
Header-based SSRF (scanner-for-debugging) fuzzing utility inspired by a HackerOne Blind SSRF report. Automates injection of Forwarded-type headers, detects time-delay behavior and 429 responses, supports authenticated flows, logs results, and optionally integrates Telegram notifications for controlled security testing.
This repository contains a professional bug bounty report demonstrating the successful exploitation of a Blind SSRF vulnerability that reached an internal CGI endpoint vulnerable to Shellshock (CVE-2014-6271). Remote command execution was confirmed using an out-of-band (OAST) DNS callback, showcasing the complete attack chain, technical analysis.
Add a description, image, and links to the blind-ssrf topic page so that developers can more easily learn about it.
To associate your repository with the blind-ssrf topic, visit your repo's landing page and select "manage topics."