SSRF - Lab #1 Basic SSRF against the local server | Long Version
Описание
In this video, we cover Lab #1 in the SSRF module of the Web Security Academy. This application's stock check feature is vulnerable to SSRF. To solve the lab, we change the stock check URL to access the admin interface at http://localhost/admin and delete the user carlos.
▬ ✨ Support Me ✨ ▬▬▬▬▬▬▬▬▬▬
Buy my course: https://bit.ly/30LWAtE
▬ ? Contents of this video ? ▬▬▬▬▬▬▬▬▬▬
00:00 - Introduction
00:13 - Web Security Academy Course (https://bit.ly/30LWAtE)
01:24 - Navigation to the exercise
01:59 - Understand the exercise and make notes about what is required to solve it
03:01 - Exploit the lab manually
11:20 - Script the exploit
22:22 - Summary
22:40 - Thank You
▬ ? Links ? ▬▬▬▬▬▬▬▬▬▬
Python script: https://github.com/rkhal101/Web-Security-Academy-Series/blob/main/ssrf/lab-01/ssrf-lab-01.py
Notes.txt document: https://github.com/rkhal101/Web-Security-Academy-Series/blob/main/ssrf/lab-01/notes.txt
Web Security Academy Exercise Link: https://portswigger.net/web-security/ssrf/lab-basic-ssrf-against-localhost
Rana's Twitter account: https://twitter.com/rana__khalil
Рекомендуемые видео



















