|
@albinowax | |||||
|
My final presentation of HTTP Desync Attacks will be at Black Hat Europe next week. New content includes a novel desync technique, major automation improvements, a defensive case-study, and updated bounty figures #BHEU blackhat.com/eu-19/briefing…
|
||||||
|
||||||
|
codex
@c0d3x27
|
27. stu |
|
Europa is a big Continent, my friend. since im in italy, i bet i dont even have to waste my time trying to find out where is going to be. my guess will be Germany, UK, Austria, or Spain. Italy had never been known for being smart on these kind of stuff..
|
||
|
|
||
|
James Kettle
@albinowax
|
27. stu |
|
I'm aware Europe is big; I live there.
|
||
|
|
||
|
CyberTheReapeR☢
@CyberTheReapeR5
|
1. pro |
|
I'm a little confused. I am doing TE..CL attack for a website.
Post / HTTP/1.1
Host: example..com
Transfer encoding: chunked
Content-Type: application/x-www-form-urlencoded
Content-lenght: 3
8
Smuggled
0
Get /robots.txt HTTP/1.1
Host: examle..com
Foo: x
Reponse: pic.twitter.com/BIyMiEwaPi
|
||
|
|
||
|
CyberTheReapeR☢
@CyberTheReapeR5
|
1. pro |
|
I always see 2 HTTP header on response.I can view the contents of the robots.txt file.why do I always see 2 header like this on response.?
is this exactly the expected response of the http request smuggling attack?
|
||
|
|
||
|
Andreas Lindh 🏴
@addelindh
|
27. stu |
|
Looking forward!
|
||
|
|
||
|
Amal Mohandas
@amalmohandas0
|
30. stu |
|
Stuck here.. is it vulnerable to smuggling attack? pic.twitter.com/rpLNUnumaz
|
||
|
|
||