All tools

Web Application

SSRFmap

Automated SSRF testing and exploitation assistant.

intermediate
Linux
Exploitation

Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.

When

You found a parameter that fetches URLs server-side.

How

Provide request file; select SSRF modules; read internal services carefully.

Why

SSRF is a frequent cloud initial-access path.

Commands & usage

python3 ssrfmap.py -r request.txt -p url -m portscan

Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.

Tags

ssrf
web

Related in Web Application