TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Exploit-DB

[local] is-localhost-ip 2.0.0 - SSRF

2026-04-06 · Read original ↗

ATT&CK techniques detected

3 predictions
T1203Exploitation for Client Execution
53%
"url? url = < url > ", " get / secret " ], " port " : 3005 } ` ` ` # reproduce : [ href ] ( https : / / github. com / nu11secur1ty / windows11exploits / tree / main / 2025 / cve - 2025 - 9960 ) # demo : [ href ] ( https : / / www. patreon. com / posts / cve - 2025 - 9960 - is - 14…"
T1190Exploit Public-Facing Application
35%
"powered - by : express content - type : application / json ; charset = utf - 8 content - length : 33 etag : w / " 21 - 6j4oicvq6z + 6nx0wetdhqqeeklm " date : sun, 09 nov 2025 09 : 29 : 34 gmt connection : keep - alive keep - alive : timeout = 5 { " error " : " localhost not allow…"
T1190Exploit Public-Facing Application
30%
"url? url = < url > ", " get / secret " ], " port " : 3005 } ` ` ` # reproduce : [ href ] ( https : / / github. com / nu11secur1ty / windows11exploits / tree / main / 2025 / cve - 2025 - 9960 ) # demo : [ href ] ( https : / / www. patreon. com / posts / cve - 2025 - 9960 - is - 14…"

Summary

is-localhost-ip 2.0.0 - SSRF