Header-based SSRF (scanner-for-debugging) fuzzing utility inspired by a HackerOne Blind SSRF report. Automates injection of Forwarded-type headers, detects time-delay behavior and 429 responses, supports authenticated flows, logs results, and optionally integrates Telegram notifications for controlled security testing.
pythonbug-bountyssrfhackeroneserver-side-request-forgeryhacktivityblind-ssrfssrf-toolssrf-scannerssrf-prevention
-
Updated
Feb 21, 2026 - Python