Security vulnerability categories are constantly evolving. Evidence for that can be found in a comparison of all OWASP TOP 10 releases. This leaves all blue teams with question marks about the next big bang. James Kettle (@albinowax) just last year aroused the security world by introducing everyone to HTTP desync attacks. This talk provides quick summaries of popular attack vectors, which gained a lot of attention throughout the last two years. Next to a recap on how those vulnerabilities work, practical guidance is given on how to detect and mitigate those issues. |