Get the latest tech news

HTTP/1.1 Must Die


HTTP/1.1 Must Die - Time to move beyond HTTP/1.1

Upstream HTTP/1.1 is inherently insecure and consistently exposes millions of websites to hostile takeover. Six years after we exposed the threat of HTTP desync attacks, there's still no end in sight. On August 6, James Kettle from PortSwigger Research will reveal new classes of desync attack that enabled him to compromise multiple CDNs and kick off the desync endgame.Follow PortSwigger for the full reveal.

Get the Android app

Or read this on Hacker News