My final presentation of HTTP Desync Attacks will be at Black Hat Europe next week. New content includes a novel desync technique, major automation improvements, a defensive case-study, and updated bounty figures #BHEU https://www.blackhat.com/eu-19/briefings/schedule/#http-desync-attacks-request-smuggling-reborn-18313 …
I'm a little confused. I am doing TE..CL attack for a website. Post / HTTP/1.1 Host: example..com Transfer encoding: chunked Content-Type: application/x-www-form-urlencoded Content-lenght: 3 8 Smuggled 0 Get /robots.txt HTTP/1.1 Host: examle..com Foo: x Reponse:pic.twitter.com/BIyMiEwaPi
-
-
I always see 2 HTTP header on response.I can view the contents of the robots.txt file.why do I always see 2 header like this on response.? is this exactly the expected response of the http request smuggling attack?
-
You're getting two responses because the website thinks you're sending two requests.
- Još 1 odgovor
Novi razgovor -
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.