Escape - Application Security & Offensive Security Blog
Get a demo
  • Escape Platform
  • Case studies
  • Best Practices
  • Events
  • Community
Get a demo
Yacine Souam

Yacine Souam

1 post published

How Escape AI Pentesting Exploited SSRF in LiteLLM
Agentic Pentesting

How Escape AI Pentesting Exploited SSRF in LiteLLM

At Escape, we routinely test the AI infrastructure that teams deploy inside their cloud environments. LLM gateways, RAG pipelines, model proxies: these are services that make outbound HTTP requests by design, which makes them natural targets for SSRF. When we looked at LiteLLM, we found three confirmed SSRF sinks, a

  • Yacine Souam
Yacine Souam May 1, 2026 • 9 min read
Escape - Application Security & Offensive Security Blog © 2026
  • Get a demo
  • Escape's proprietary business logic algorithm
  • Escape vs Invicti
  • Top DAST tools 2025
  • Case Studies
  • Learn how to test your GraphQL APIs
  • gRPC API Security
  • Top Qualys Alternative: Escape vs Qualys DAST
  • GraphQL Security
  • Escape vs Noname Security
  • GraphQL Armor
  • Escape Community
  • About Us
  • Privacy Policy
  • API Security Academy
  • API Gateway Security Best Practices
  • Top API security tools