← Back to feed
general GBHackers

New CRLF Desync Attack Lets Hackers Steal HTTPOnly Cookies and Hijack Accounts

GBHackers

Security researchers Tom Stacey from PortSwigger and Tobia Righi from TurtleSec have introduced a new category of HTTP request smuggling attacks known as “CR...

Read the full story GBHackers →

Related Coverage

general US sanctions Iranian cyber actors as UK discloses power plant attack The Record · Aug 24 general SCOTUS tosses one of two injunctions against Trump USPS mail-in ballot rules Cyberscoop · Aug 24 general AWS patches flaw in 7 SDKs SC Media · Aug 24