Improve blind-ssrf.yaml

main
AmirHossein Raeisi 2024-07-18 00:04:41 +03:30 committed by GitHub
parent 51194f2d14
commit f473336e34
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 4 additions and 2 deletions

View File

@ -2,7 +2,7 @@ id: blind-ssrf
info:
name: Blind SSRF OAST Detection
author: pdteam
author: pdteam,AmirHossein Raeisi
severity: medium
metadata:
max-request: 3
@ -19,6 +19,8 @@ http:
- "{{interactsh-url}}"
- "{{FQDN}}.{{interactsh-url}}"
- "{{RDN}}.{{interactsh-url}}"
- "{{FQDN}}@{{interactsh-url}}"
- "{{RDN}}@{{interactsh-url}}"
fuzzing:
- part: query
@ -41,4 +43,4 @@ http:
part: interactsh_protocol # Confirms the HTTP Interaction
words:
- "http"
# digest: 490a00463044022043639a2b3d837698f0ad1d5c78b81a92dc67cfe8ea18afeb57f006cf44e2803902204a61e6eeb0c529913899c9f8aae306dbddcac78f5f41837679b8ba15ada3b5db:922c64590222798bb761d5b6d8e72950
# digest: 490a00463044022043639a2b3d837698f0ad1d5c78b81a92dc67cfe8ea18afeb57f006cf44e2803902204a61e6eeb0c529913899c9f8aae306dbddcac78f5f41837679b8ba15ada3b5db:922c64590222798bb761d5b6d8e72950