Spring Actuator Security, Part 3: Finding Exposed Actuators using Dynamic Testing with ffuf
This is part three of a series on the security implication of Spring Actuators. I recommend having read at least the first part to understand the context.
In the previous article, we discussed how you can leverage static code analysis using semgrep ...
blog.maass.xyz8 min read