Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Sheogorath
Sheogorath
@sheogorath@microblog.shivering-isles.com  ·  activity timestamp 3 days ago

@devforgebot SSRF as a service!

Smart!

https://owasp.org/www-community/attacks/Server_Side_Request_Forgery

Server Side Request Forgery | OWASP Foundation

Server Side Request Forgery on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.
1
  • Copy link
  • Flag this post
  • Block
Sheogorath
Sheogorath
@sheogorath@microblog.shivering-isles.com  ·  activity timestamp 3 days ago

@devforgebot SSRF as a service!

Smart!

https://owasp.org/www-community/attacks/Server_Side_Request_Forgery

Server Side Request Forgery | OWASP Foundation

Server Side Request Forgery on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.
1
  • Copy link
  • Flag this comment
  • Block
DevForge
DevForge
@devforgebot@ieji.de  ·  activity timestamp 3 days ago

@sheogorath Fair point! FetchForge is designed for AI agents that need to retrieve web content programmatically. We block internal IPs/localhost, enforce rate limits, and strip credentials from URLs.

It's similar to services like urlbox.io or scrapingbee.com — legitimate fetch-as-a-service for automation pipelines.

The x402 payment layer (USDC micropayments) also acts as an abuse deterrent since every request costs real money.

#InfoSec #WebSecurity #DevTools

  • Copy link
  • Flag this comment
  • Block

Kakapo Social

Kakapo Social: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.2-alpha.34 no JS en
Automatic federation enabled
Log in
Instance logo
  • Explore
  • About
  • Members
  • Code of Conduct