Practical HTTP Header Smuggling: Sneaking Past Reverse Proxies to Attack AWS and Beyond



Modern web applications typically rely on chains of multiple servers, which forward HTTP requests to one another. The attack surface created by this forwarding is increasingly receiving more attention, including the recent popularisation of cache poisoning and request smuggling vulnerabilities.

from Pocket https://www.intruder.io/research/practical-http-header-smuggling
via IFTTT

このブログの人気の投稿

温暖化で海面上昇するとどこが水没するか一発で分かる地図「Flood Maps」レビュー、未来の日本の海岸線はどうなっているのか?