Back to directory
WRITEUP #4769

How we abused Slack's TURN servers to gain access to internal services

SSRFTURNWebRTC
by@sandrogauci(Sandro Gauci)
Bounty
3,500
Program
Slack
Published
Apr 6, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://www.rtcsec.com/article/slack-webrtc-turn-compromise-and-bug-bounty/
RELATED WRITEUPS
Directory Traversal, SQL Injection and Server-Side Request Forgery
SQL InjectionPath traversal
IIS welcome page to source code review to LFI!
SSRFLFI
NTLM Credential Theft in Python Windows Applications
SSRFNTLMv2 hash disclosure
Vulnerabilities in Homepage Dashboard
RCESSRF
SSRFing the Web with the help of Copilot Studio
SSRF

Built with ❤️ by Shubham Rawat