Collected research
The Quiet Side Channel... Smuggling with CL.0 for C2
Shows how a CL.0 request-smuggling desync against CDN-fronted sites can poison the shared cache so a chosen string is stored in a 3xx Location redirect header. Reading and writing encoded data through that poisoned redirect turns trusted, whitelisted domains into a stealthy command-and-control channel.
Record
- Researcher
- d3d (M. B. Johnson)
- Published by
- Malicious Group
- Date
- Topic
- Other
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of d3d (M. B. Johnson), first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .