Главная
Study mode:
on
1
Intro
2
CL.TE / TE.CL Desync Attacks
3
CL.TE Desync Attack
4
Testing for Request Smuggling
5
Impact Radius of RS
6
Desync Attack/Recon Story #1
7
Desync Attack/Recon Story #2
8
Desync Attack/Recon Story #3
9
POC #1 - Sesson Stealing using an Open Redirect
10
PoC #1 - Session Stealing using an Open Redirect
11
POC #2 - Session Stealing using Response Queue Poisoning
12
VIRTUAL SECURITY CONFERENCE 06.13.2020
Description:
Explore practical attacks using HTTP request smuggling in this 45-minute conference talk from NahamCon2020. Dive into CL.TE and TE.CL desync attacks, learn testing techniques for request smuggling, and understand the impact radius of RS. Follow along with real-world desync attack and reconnaissance stories, and examine proof-of-concept demonstrations for session stealing using open redirects and response queue poisoning. Gain valuable insights into web security vulnerabilities and attack methodologies from this virtual security conference presentation.

Practical Attacks Using HTTP Request Smuggling

NahamSec
Add to list
0:00 / 0:00