Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

The single-packet attack: making remote race-conditions - local

3 views
Skip to first unread message

rek2 hispagatos

unread,
Oct 26, 2023, 8:47:59 PM10/26/23
to
The single-packet attack is a new technique for triggering web
race conditions. It works by completing multiple HTTP/2
requests with a single TCP packet, which effectively eliminates
network jitter and means the requests get processed extremely
close together. This makes remote race conditions just as easy
to exploit as if they were local.

https://portswigger.net/research/the-single-packet-attack-making-remote-race-conditions-local


Happy Hacking
ReK2
--
- {gemini,https}://{,rek2.}hispagatos.org - mastodon: @re...@hispagatos.space
- [https|gemini]://2600.Madrid - https://hispagatos.space/@rek2
- https://keyoxide.org/A31C7CE19D9C58084EA42BA26C0B0D11E9303EC5
0 new messages