HTTP/1.1 Must Die: What This Means for AppSec Leadership
portswigger.net | blog | #appsec | #request-smuggling | #http1-must-die | #burp-suite-dast | #enterprise-security | #http2
Summary
What AppSec leaders should take from HTTP/1.1 Must Die: desync attacks remain a systemic protocol-level threat, and auditing with Burp Suite DAST plus moving to upstream HTTP/2 is the fix.
- Published
- Collected
Skip to content