XSPA / SSRF Vulnerability with the Yahoo! Developer Network June 27, 2013 in bugbounty, research, appsec, cross site port attacks A quick video post showing the XSPA/SSRF bug found with Yahoo! Developer Network. This bug allowed for network port scanning and banner grabbing. Continue reading