HTTP Host header attacks
What’s the HTTP Host Header?
GET /index.html HTTP/1.1
Host: www.example.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64)
Accept: text/htmlWhat is the purpose of the HTTP Host header?
How does the HTTP Host header solve this problem?
<a href="https://_SERVER['HOST']/support">Contact support</a>Vulnerability can be occur
Exploiting HTTP Host header vulnerabilities
Password reset poisoning via dangling markupHow to prevent HTTP Host header attacks
Check list
Last updated

