HTTP (Request & Response) PDF
HTTP (Request & Response) PDF
1/26
HTTP Methods: GET vs POST
2/26
HTTP Headers: Request vs Response
I Wireshark
I Webscarab
I Paros Proxy
I Burp Suite
I and many other tools available.
4/26
Case Study: Response To Request Injection (RTRI) Attack
5/26
What is RTRI?
6/26
Mark Litchfield’s Story
7/26
Step 1: Discovery
8/26
The Target Website
20/26
The Attack - Craft a HTTP Post Request
I https://www.youtube.com/watch?v=RIHZH1VcS_U
I http://ctffiles.bughunters.club/smf-admin/
25/26
References
26/26