Web Hacking Members Only

Web Cache Poisoning & Deception

How a single crafted request poisons a CDN cache and serves attacker payloads to every visitor for hours. Unkeyed inputs (Host, X-Forwarded-*, cookies), cache-key normalization, and the inverse — Web Cache Deception stealing private data via .jpg URLs.

Related Articles