Web Cache Poisoning & Deception
How a single crafted request poisons a CDN cache and serves attacker payloads to every visitor for hours. Unkeyed inputs (Host, X-Forwarded-*, cookies), cache-key normalization, and the inverse — Web Cache Deception stealing private data via .jpg URLs.
Members Only Content
This article is exclusively available to registered members of LazyHackers. Login or subscribe to read.