‘MadeYouReset’ HTTP/2 flaw lets attackers DoS servers

Researchers had to notify over 100 vendors of flaw that builds on 2023’s Rapid Reset with neat twist past usual mitigations

Security researchers Gal Bar Nahum, Anat Bremler-Barr, and Yaniv Harel have published details of a “common design flaw” in implementations of the HyperText Transfer Protocol 2 (HTTP/2) allowing those with ill intent to create “massive Denial of Service attacks”.…

This article has been indexed from The Register – Security

Read the original article: