bug-bounty498
google351
xss301
microsoft293
facebook262
rce211
exploit199
malware170
apple162
cve136
account-takeover115
bragging-post102
privilege-escalation95
csrf90
phishing86
browser75
writeup74
authentication-bypass69
supply-chain67
dos66
stored-xss65
reflected-xss57
ssrf56
reverse-engineering55
access-control52
react52
input-validation49
cross-site-scripting48
cloudflare47
aws47
web-security46
docker46
lfi46
smart-contract45
sql-injection45
ethereum44
web-application44
node43
ctf43
defi43
oauth43
web343
pentest40
race-condition39
open-source38
cloud37
idor37
burp-suite36
info-disclosure36
vulnerability-disclosure35
0
6/10
A researcher demonstrates an SSRF bypass technique against Microsoft's Bing Webmaster Central by using the nip.io DNS service to resolve non-standard loopback addresses (127.127.127.127) and bypass IP-based filters, allowing enumeration of internal ports and directories on the application server.
ssrf
xspa
dns-bypass
nip-io
filter-bypass
internal-network-access
microsoft-bing
webmaster-tools
bug-bounty
Microsoft Bing
Bing Webmaster Central
nip.io
Elber Andre
0daylabs