Tag: HTTP/2 smuggle scanner
-

SmuggleFuzz: HTTP/2 based downgrade and smuggle scanner
SmuggleFuzz SmuggleFuzz is designed to assist in identifying HTTP downgrade attack vectors. Its standout feature is not just the time-based detection or request handling, but the detailed response information it provides. This empowers users to define their detection methods, including monitoring HTTP status codes and response sizes. It also handles RST_STREAM frames, including error codes…