Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable SSRF candidates. `surf` is a tool that helps you to find and exploit SSRF vulnerabilities in modern cloud environments. It provides a simple and easy-to-use interface for filtering a list of hosts and returning a list of viable SSRF candidates. `surf` is a powerful tool that can help you to find and exploit SSRF vulnerabilities in modern cloud environments.
FEATURES
SIMILAR TOOLS
Firewall, Blackhole, and Privatizing Proxy for macOS with comprehensive security features.
A Python-based web application scanner for OSINT and fuzzing OWASP vulnerabilities
AWS Shield provides managed DDoS protection for your applications, automatically detecting and mitigating sophisticated network-level DDoS events.
hpfeeds is a lightweight authenticated publish-subscribe protocol with Python 3 compatible broker and client.
A Bluetooth 5 and 4.x sniffer using TI CC1352/CC26x2 hardware with advanced features and Python-based host-side software.
PCAPdroid is a privacy-friendly app for tracking, analyzing, and blocking network connections on your device.
A collection of PCAPs for ICS/SCADA utilities and protocols with the option for users to contribute.
Provides AI-driven cybersecurity solutions including assessments, training, compliance services, and insurance audits to help organizations reduce risk and build a security-aware culture.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.