webmedium
Контрабанда (Smuggling)
hackerlab
Task: Access hidden virtual host on nginx server. Solution: HTTP pipelining attack - send two requests in single TCP connection, first to public site, second to hidden vhost wallets.cdb discovered via email hint in source code.
$ ls tags/ techniques/
socket_programmingnginxhttp_request_smugglinghttp_pipeliningvirtual_hosthost_headertcp_connection_reusehidden_vhost
HTTP Pipelining (multiple requests in single TCP connection)Virtual host enumeration via Host headerHidden virtual host access via connection reuseSource code analysis for domain hints
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Create a free account with GitHub, then upgrade to Pro.
$ssh [email protected]