Curious captives

Host validation bypass via connection state attack


Listen Later

This app is vulnerable to routing-based SSRF via the Host header. Although the front-end server may initially appear to perform robust validation of the Host header, it makes assumptions about all requests on a connection based on the first request it receives.

...more
View all episodesView all episodes
Download on the App Store

Curious captivesBy