From f473336e3475e7a5ea329062387c9168d5f9a766 Mon Sep 17 00:00:00 2001 From: AmirHossein Raeisi <96957814+Ahsraeisi@users.noreply.github.com> Date: Thu, 18 Jul 2024 00:04:41 +0330 Subject: [PATCH] Improve blind-ssrf.yaml --- dast/vulnerabilities/ssrf/blind-ssrf.yaml | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/dast/vulnerabilities/ssrf/blind-ssrf.yaml b/dast/vulnerabilities/ssrf/blind-ssrf.yaml index 71389958fd..67b08db9e5 100644 --- a/dast/vulnerabilities/ssrf/blind-ssrf.yaml +++ b/dast/vulnerabilities/ssrf/blind-ssrf.yaml @@ -2,7 +2,7 @@ id: blind-ssrf info: name: Blind SSRF OAST Detection - author: pdteam + author: pdteam,AmirHossein Raeisi severity: medium metadata: max-request: 3 @@ -19,6 +19,8 @@ http: - "{{interactsh-url}}" - "{{FQDN}}.{{interactsh-url}}" - "{{RDN}}.{{interactsh-url}}" + - "{{FQDN}}@{{interactsh-url}}" + - "{{RDN}}@{{interactsh-url}}" fuzzing: - part: query @@ -41,4 +43,4 @@ http: part: interactsh_protocol # Confirms the HTTP Interaction words: - "http" -# digest: 490a00463044022043639a2b3d837698f0ad1d5c78b81a92dc67cfe8ea18afeb57f006cf44e2803902204a61e6eeb0c529913899c9f8aae306dbddcac78f5f41837679b8ba15ada3b5db:922c64590222798bb761d5b6d8e72950 \ No newline at end of file +# digest: 490a00463044022043639a2b3d837698f0ad1d5c78b81a92dc67cfe8ea18afeb57f006cf44e2803902204a61e6eeb0c529913899c9f8aae306dbddcac78f5f41837679b8ba15ada3b5db:922c64590222798bb761d5b6d8e72950