Web Hack List

Collected research

HTTP Proxies Bypass Firewalls

ha.ckers.org web application security lab

An open HTTP proxy does not have to be pointed at the internet. Aim it inward at RFC1918 space and it becomes a foothold for scanning and exploiting the internal network behind the firewall, including the firewall itself. Notes that compromised hosts already carry attacker-planted proxies suitable for this, that the author found it in the wild, and that IPv6 makes such enumeration harder.

Record

Document
ha.ckers.org web application security lab
Published by
ha.ckers.org
Topic
HTTP

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of ha.ckers.org, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .