bugenhancementhelp wanted
仓库指标
- 星标
- (106 个星标)
- PR 合并指标
- (PR 指标待抓取)
描述
🔒 Security Lab Enhancement : SSRF Bypass Challenge
Description
Currently, AspGoat includes one SSRF lab with both:
- ❌ Vulnerable version
- ✅ Secure version (with basic whitelist)
However, in real-world scenarios, attackers may find ways to bypass the secure code as well (e.g., via redirects, alternate encodings, or dns rebinding).
Tasks
- Analyze the current SSRF "secure" implementation via AspGoat UI (Login -> SSRF lab -> Identify Vulnerability -> Secure Code Modal).
- Copy the Secure Code and replace the Vulnerable Code with the Secure Code inside Controllers/HomeController.cs under SSRF POST ACTION
- Now try various methods to bypass this protection. (Note: Modifying the /etc/hosts file via RCE or manually to gain access to an internal ip address does not count 😅)