← All news
Server-Side Request Forgery
Server-side request forgery, usually shortened to SSRF, is a flaw where an attacker tricks a web application's server into making requests to destinations the attacker chose, often internal systems that are not meant to be reachable from outside. This can expose cloud account credentials, internal dashboards, and customer data sitting behind the company's firewall. For AI deployments, it matters because tools that fetch URLs, plugins, and agents that browse the web can become the path an attacker uses to reach those internal resources.
1 item
