{"repo":"R0X4R/ressrf","free":true,"listed":false,"github":"https://github.com/R0X4R/ressrf","clone":"git clone https://github.com/R0X4R/ressrf.git","description":"An advanced Out-of-Band and In-Band SSRF fuzzing scanner with dynamic request tracking.","language":"Go","stars":40,"topics":["automation","go-language","golang","penetration-testing","reconftw","server-side","web-security","ctf"],"license":"MIT","category":"workflow-automation","readme_excerpt":"Features • Workflow • Installation • Usage • Payloads • Contribution • Credits It automates server-side request forgery discovery across extensive URL targets by systematically mutating parameters and headers while maintaining real-time, dynamic correlation tracking over remote OAST collaboration protocols. Background The detection logic, fuzzer coverage, and multi-phase structural workflows implemented in this engine are adapted and inspired by the SSRF module found in ReconFTW . While the original scripting approach remains highly effective, ReSSRF was developed to translate those core behavioral primitives into a highly concurrent, compiled Go architecture—enhancing runtime memory optimization, scaling throughput capacity, and providing robust error tolerance during massive security engagements. Features Multi-Vector Analysis: Automates targeted parameter fuzzer passes alongside layered HTTP request header mutations. Dynamic Callback Mapping: Utilizes asymmetric cryptographic tokens ( interactsh ) to pinpoint precisely which parameter or header key triggered a remote network ping. Advanced Protocol Bypasses: Includes multi-cloud IMDS metadata tokens, alternative protocol wrappers ( gopher:// , dict:// , file:// ), and character-obfuscated URL parser bypasses. Detection Workflow 1. Phase 1 (Parameters): Mutates query strings utilizing custom idx tracking subdomains mapped directly to internal request indices. 2. Phase 2 (Headers): Interrogates more than 35 classic routing a","default_branch":null,"files":null,"tree":[],"storefront":"/r/R0X4R","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/R0X4R/ressrf/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}