HTTP Request Smuggling – HTTP/2 Request Tunnelling
Time for another one of the advanced labs on the PortSwigger Web Security Academy. For this lab, we are dealing[…]
Read morePlay for serendipity…
Time for another one of the advanced labs on the PortSwigger Web Security Academy. For this lab, we are dealing[…]
Read moreThis lab is a bit similar to the last, however, it has a completely different purpose. In the previous, we[…]
Read moreThis lab is a lot of fun and requires chaining together techniques to fully exploit. First, we have to identify[…]
Read moreThis next lab represents an interesting vulnerability where specific paths/routes within an application are vulnerable to desync when there is[…]
Read moreIn the previous post, we looked at an HTTP/2 downgrade attack where we injected CRLF characters into a header and[…]
Read more