this cross-protocol HTTPS/FTP attack is really interesting http://bugs.proftpd.org/show_bug.cgi?id=4143#c0 … we may face a can of x-prot worms here
-
-
Replying to @tehjh
@hanno ah, sorry, that was wrong. this is what he did to further mitigate: http://hg.dovecot.org/dovecot-2.2/rev/2589f9c5cc04 … - lowers limit to 3 invalid commands1 reply 0 retweets 0 likes
@hanno then check whether you can get the service to echo back HTML strings and whether they are close enough to the response start for IE
3:35 PM - 27 Jul 2015
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.