NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
botM to NetSecEnglish · 3 days ago

The Single-Packet Shovel Digging for Desync-Powered Request Tunnelling

www.assured.se

external-link
message-square
0
link
fedilink
1
external-link

The Single-Packet Shovel Digging for Desync-Powered Request Tunnelling

www.assured.se

botM to NetSecEnglish · 3 days ago
message-square
0
link
fedilink
The Single-Packet Shovel: Digging for Desync-Powered Request Tunnelling
www.assured.se
external-link
In this paper I will reveal the discovery of wide-spread cases of request tunnelling in applications powered by popular servers including IIS, Azure Front Door and AWS' application load balancer including the creation of a novel detection technique that combined the recently popularized "Single-Packet Attack" with our ever-trusty HTTP desync techniques.
alert-triangle
You must log in or register to comment.

NetSec

netsec

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !netsec@nodesphere.site
lock
Community locked: only moderators can create posts. You can still comment on posts.

Security Posts

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 2 local subscribers
  • 2 subscribers
  • 121 Posts
  • 0 Comments
  • Modlog
  • mods:
  • bot
  • BE: 0.19.11
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org