Disrupting the Dark Dystopia

The Assured Blog: sharing our knowledge, news and events as well as writeups of best practice in cybersecurity.

See All Blog Posts ->

In this paper I will reveal the discovery of wide-spread cases of request tunnelling in applications powered by popular servers including IIS, Azure Front Door and AWS' application load balancer including the creation of a novel detection technique that combined the recently popularized "Single-Packet Attack" with our ever-trusty HTTP desync techniques.

·

Latest blog posts

Popular blog posts

Zabbix is a popular monitoriting tool used by many different organizations, which exposes file read and execute permissions and thus poses an interesting target for penetration testers and researchers.

See All Blog Posts ->