Microsoft Launches Dusseldorf Open-Source OAST Platform for Vulnerability Detection

Microsoft Launches Dusseldorf Open-Source OAST Platform for Vulnerability Detection

First seen 20 Jul 2026, 11:05 UTC Feeds2.FeedburnerFeeds.4Sysops 79% similarity 27.9

Article Content

Browse articles
ThreatCluster

Microsoft has released Dusseldorf, an open-source out-of-band application security testing platform. This tool is designed to identify vulnerabilities that occur when applications interact with external systems, such as server-side request forgery and cross-site scripting. Dusseldorf captures inbound network traffic across multiple protocols and allows operators to automate validation workflows. The project name is derived from Düsseldorf, with the acronym SSRF representing server-side request forgery. This initiative aims to provide researchers with the necessary infrastructure to test for out-of-band vulnerabilities in a private environment. The tool is available for free, enhancing the security capabilities of organizations that may lack resources for custom setups. Dusseldorf is expected to improve detection rates of critical vulnerabilities that can be exploited during attacks.

Key Points: • Microsoft has launched Dusseldorf, an open-source OAST platform for vulnerability detection. • The platform identifies vulnerabilities like SSRF and XSS that arise from external system interactions. • Dusseldorf is free to use and aims to enhance application security testing capabilities.

ThreatCluster AI

Timeline

2026-07-20
Microsoft releases Dusseldorf OAST platform
Dusseldorf is introduced as an open-source tool for detecting out-of-band vulnerabilities in applications.
Feeds2.Feedburner
2026-07-20
Dusseldorf named after Düsseldorf city
The project name reflects the acronym SSRF, which stands for server-side request forgery, with the umlaut dropped for simplicity.
Feeds.4Sysops

Community

Browse all →