Host Header Injection Uncovered: Real-World Examples and Mitigation Tactics
Manage episode 493291743 series 3602386
Host Header Injection Uncovered: Real-World Examples and Mitigation Tactics
https://schedule.businesscompassllc.com/
Host Header Injection (HHI) is a lesser-known but dangerous web vulnerability that occurs when a web application improperly uses the value of the Host HTTP header to generate dynamic content, perform redirects, or make security decisions. This opens doors for phishing, cache poisoning, password reset hijacking, and more.
100 episodes