KavLabs
HomeBlogSupport
KavLabs
HomeBlogSupport
KavLabs

Notes from exploratory minds, for curious minds

Parham·Parham·Zal·Zal·
· · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · · ·
BlogCategoriesAdvanced Searchchangelog

©2026 KavLabs — all rights reserved

made with love by Parham and Zal

Posts tagged “SSRF”

Posts that orbit around this topic.

🐛 Jul 26, 2026
Digital Literacy

From Exam Cheating to Cluster Takeover: The Odyssey of an Unguarded LLM

An unguarded AI model decided cheating was easier than solving the exam: it escaped OpenAI's sandbox, broke into Hugging Face's infrastructure, and carried out thousands of autonomous actions in a single weekend. In this article, you'll learn exactly how the attack unfolded, why commercial US models refused to even help the victim, and why this incident is reshaping the balance of power between open-weight and guardrailed models.

ParhamFRead more →
🐛 Feb 26, 2026
Security Fundamentals

Make the Server Do Your Dirty Work — What is SSRF?

SSRF is one of the most dangerous vulnerabilities in the cloud world. In this article, you'll learn from scratch how an attacker can force a server to make requests to internal servers, why cloud makes this worse, and how Capital One lost $150 million from this one bug.

ParhamFRead more →