Skip to content

Commit 098a646

Browse files
committed
Added new post from portswigger blog.
1 parent 7fc4d4b commit 098a646

File tree

2 files changed

+15
-0
lines changed

2 files changed

+15
-0
lines changed
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
---
2+
title: "How to join the desync endgame"
3+
date: 2025-09-19
4+
categories: [Thoughts]
5+
tags: [bug-bounty]
6+
image: ../assets/http1mustdie2.webp
7+
---
8+
9+
[Blog](https://portswigger.net/blog/how-to-join-the-desync-endgame-practical-tips-from-pentester-tom-stacey)
10+
11+
I had the awesome oppertunity to head to DEFCON 33 this year with some help from Portswigger! As a result of the trip, I also got the chance to absolutely nerd out about their latest research paper [HTTP/1 must die: The desync endgame](https://http1mustdie.com) on their blog. The post covers how to get stuck in with desync vulnerabilities as a pentester or a bug bounty hunter. In particular, how to adapt the [HTTP Request Smuggler extension](https://github.com/PortSwigger/http-request-smuggler) in order to find novel desync attacks.
12+
13+
14+
15+

assets/http1mustdie2.webp

5.87 KB
Loading

0 commit comments

Comments
 (0)