AWS Imdsv2 Ssrf Bypass

Exploit Server-Side Request Forgery (SSRF) vulnerabilities to extract AWS IAM credentials from the Instance Metadata Service version 2 (IMDSv2). This skill details how to bypass the token requirement of IMDSv2 by chaining HTTP verbs (PUT then GET) if the SSRF vulnerability allows full control over the request headers and methods.

ShulkwiSEC 0e88ee0 3 files · 13.0 KB Updated 21 repo stars

File contents

ShulkwiSEC/bb-huge/tree/main/skills/curated/aws-imdsv2-ssrf-bypass commit 0e88ee0e1b

Frequently asked questions

npx skillmds add shulkwisec/aws-imdsv2-ssrf-bypass