Skip to content
  • Home
  • LinkedIn
  • Contact
scomurr.com
  • Home
  • LinkedIn
  • Contact
scomurr logo

  • Security, Web Attacks

HTTP Request Smuggling – H2 CRLF Injection

In this next lab, we have to go a bit deeper into the differences between how HTTP and HTTP/2 are transferred over the wire and then ultimately processed by a web application. Once again, we are going to be going…

  • scomurr
  • 01/27/2023
  • Security, Web Attacks

HTTP Request Smuggling – HTTP/2 Downgrade Attack Part 2

In the previous lab we looked at a H2.TE vulnerability. To exploit, we needed to upgrade the request from HTTP to HTTP/2 and rely on the frontend to downgrade back down to HTTP for its communication with the backend system.…

  • scomurr
  • 01/25/2023
  • Security, Web Attacks

HTTP Request Smuggling – HTTP/2 Downgrade Attack

This is a unique attack and takes advantage of an implementation that accepts HTTP/2 requests but then downgrades the requests to HTTP when communicating with the backend systems. The weakness surfaces in how the Transfer-Encoding header is handled by the…

  • scomurr
  • 01/23/2023
  • Security, Web Attacks

HTTP Request Smuggling – Reflected XSS via Headers

In this post, we’re going to be looking at utilizing the headers within a smuggled request to fire a cross site scripting payload. This is the 9th blog post in the series I am publishing dealing with Request Smuggling or…

  • scomurr
  • 01/15/2023
  • Security, Web Attacks

HTTP Request Smuggling – Stealing Session Cookies

We’re getting to the good stuff now! We’ve moved past theory again with this lab and now we’re using a smuggled request to mine session cookies. This is the 8th blog post in the series I am publishing dealing with…

  • scomurr
  • 01/04/2023
Prev
1 … 5 6 7 8 9 10 11 … 20
Next
  • keeping-data-local-fi
    Run AI Security Testing Locally: Caido Shift + Ollama for Data-Sensitive Engagements02/13/2026
  • claude_with_qwen_featured_image
    Running Claude Code with Local Models via Ollama01/30/2026
  • n8n_429_too_many_requests
    n8n and 429s – Dealing with API Rate Limits01/29/2026
  • cloudflare tunnel for on-prem
    Cloudflare Tunnel Setup for On-Prem Hosting08/31/2025
  • ssti lab 7 - featured image
    SSTI – Server-side template injection with a custom exploit03/11/2025

Let's Talk

If your organization is struggling with cybersecurity strategy, compliance, or just figuring out where to start — I'm happy to chat.
No pressure, no pitch - just a conversation to see if I can help.

Reach out directly:

[email protected] | (612) 567-2150 | LinkedIn

Copyright © 2026