Hackers Can Manipulate Web Cache Keys to Access Restricted Data and Poison Websites

A web cache poisoning technique called cache key injection could let attackers access restricted data, disrupt websites, or poison cached pages with malicious content. Alex Brumen’s research shows attackers don’t always need to exploit unkeyed HTTP request values, the usual focus of cache poisoning attacks. Instead, they can abuse values that are already included in […]

This article has been indexed from Cyber Security News

Read the original article: