5 min read
H2C Smuggling: Bypassing Reverse Proxies via HTTP/2 Cleartext Upgrade
The H2C Smuggling technique: abusing the HTTP/2 cleartext upgrade to bypass reverse proxy access controls and reach internal endpoints
Read full articleTags
The H2C Smuggling technique: abusing the HTTP/2 cleartext upgrade to bypass reverse proxy access controls and reach internal endpoints
Read full articleAnalysis of HTTP Request Smuggling (HTTP DeSync Attack): how CL.TE and TE.CL deserialization vulnerabilities bypass frontend security controls and poison the backend request queue
Read full article