Top 10 winner
Web Cache Deception Attack
Appending a fake static filename to an authenticated dynamic page, such as /home.php/logo.png, makes many servers still return the personal page while the CDN or reverse proxy caches it as a public static file chosen by extension. The attacker then fetches the cached copy and reads the victim's personal data, session identifiers or CSRF tokens; demonstrated against PayPal.
Record
- Researcher
- Omer Gil
- Published by
- omergil.blogspot.com
- Topic
- HTTP
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Omer Gil, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .