CyberHighConfirmedAccelerating
8.3
Critical Keycloak vulnerability CVE-2026-18963 enables unauthenticated account takeover
The Hacker News·1 day ago
Attackers are bypassing SSRF filters by using hostnames instead of direct IP addresses to access sensitive services like cloud metadata endpoints. Relying on string-based blocklists for IP addresses is insufficient as attackers can resolve malicious hostnames to restricted internal IPs. Organizations must implement robust network-level egress filtering rather than simple URL string matching.