grafana-ssrf

SSRF vulnerability tester

A tool to demonstrate and exploit authenticated SSRF vulnerabilities in Grafana

Authenticated SSRF in Grafana

GitHub

78 stars
3 watching
28 forks
Language: Python
last commit: about 2 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
damian89/extended-ssrf-searchAn SSRF scanner written in Python to identify potential vulnerabilities by scanning predefined settings in URLs and request headers.276
ksharinarayanan/ssrfireAn automated tool to discover potential Server-Side Request Forgery (SSRF) vulnerabilities in web applications by scanning the domain for open redirects and testing for cross-site scripting (XSS)953
incredibleindishell/ssrf_vulnerable_labA laboratory repository demonstrating vulnerable PHP code examples for Server-Side Request Forgery (SSRF) attacks679
serain/mailspoofA tool to analyze and report on SPF and DMARC record issues for potential email spoofing vulnerabilities.128
teknogeek/ssrf-sheriffA tool designed to test and simulate Server-Side Request Forgery (SSRF) vulnerabilities by generating responses with configurable secret tokens320
mindpatch/lorsrfA tool designed to identify parameters in web applications that can be exploited for SSRF or out-of-band resource load attacks.291
kathanp19/gaussrfA tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters.168
1ndianl33t/gf-patternsA toolset for identifying potential security vulnerabilities and patterns in web applications1,232
0xinfection/xsrfprobeA toolkit designed to test and exploit Cross-Site Request Forgery vulnerabilities in websites.1,116
jacobreynolds/ssrfdetectorA web application that detects and warns users about potential Server-side Request Forgery (SSRF) vulnerabilities.150
aliasrobotics/rsfA standardized methodology to assess and improve the security of robotics systems88
0xjcn/damn-vulnerable-defi-v3-ctfA DeFi protocol with intentional vulnerabilities for testing and learning secure smart contract development25
qtc-de/remote-method-guesserA tool used to identify and exploit security vulnerabilities in Java RMI endpoints841
daeken/httprebindA tool to automatically test DNS rebinding vulnerability in web applications295
carstein/rfuss2A simple Rust-based tool for testing software vulnerabilities by generating random inputs23