Web Hack List

Top 10 winner

Practical HTTP Header Smuggling

Obfuscating a header name, for example by appending characters after a space, can make a frontend proxy ignore it while the backend still parses it as the real header. The paper gives an error-comparison method for detecting this black-box, and uses it to bypass AWS API Gateway IP restrictions, poison a CloudFront cache with a smuggled Host header, and safely detect CL.CL request smuggling.

Record

Researcher
Daniel Thatcher

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Daniel Thatcher, first published at the original source. Preserved copies are kept so the citation survives its host.