Hacker News new | past | comments | ask | show | jobs | submit login

Is there a name for this sort of attack? We were just protecting against some similar attacks earlier this week, and it would have been nice to have a short name to refer to them as instead of "that attack vector where we make unrestricted HTTP requests based on user input".



"Server Side Request Forgery" (SSRF)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: