CRLF-Powered Desync Attacks: Beheading HTTP Streams
portswigger.net | research | #vulnerability-research | #attack-chains | #web-security | #xss | #http-desync | #request-smuggling | #portswigger | #httponly | #crlf-injection
Summary
PortSwigger turns HTTP header injection into a desync worm, with novel methods that shift IP- and connection-locked desyncs into the victim's browser to create XSS and steal HTTPOnly cookies.
- Published
- Collected
Skip to content