Deep-dives, exploit walkthroughs and research from the KAOS offensive team.
How a medium-severity SSRF becomes full remote code execution via the cloud metadata endpoint — the exact chain, step by step, and how to break it.