HTTP/1.1 Must Die
The Desync Endgame Begins
Days
Hours
Minutes
Seconds
Upstream HTTP/1.1 is inherently insecure and consistently exposes millions of websites to hostile takeover.
Six years after we exposed the threat of HTTP desync attacks, there's still no end in sight. On August 6, James Kettle from PortSwigger Research will reveal new classes of desync attack that enabled him to compromise multiple CDNs and kick off the desync endgame.
Follow PortSwigger for the full reveal.
Request Smuggling
Learn more about ...
Read more at http1mustdie.com