New Job-Role Training Path: Active Directory Penetration Tester! Learn More

twypsy

Earned a new badge!

Badge Icon

The session puzzler

For completing the Abusing HTTP Misconfigurations module

732

Users earned this badge

0.04%

Users have this badge

Completed on 7 May 2023

Abusing HTTP Misconfigurations

This module covers three common HTTP vulnerabilities: Web Cache Poisoning, Host Header Vulnerabilities, and Session Puzzling or Session Variable Overloading. These vulnerabilities can arise on the HTTP level due to web server misconfigurations, other systems that have to be considered during real-world deployment such as web caches, or coding mistakes in the web application. We will cover how to identify, exploit, and prevent each of these vulnerabilities.