Topic · 2 articles
cache poisoning
Advanced level
2Premiumpremium
Cloudflare WAF Bypass — oversized body, header stuffing and cache poisoning
Cloudflare's WAF has per-plan inspection limits (~8KB Free, 128KB Enterprise). Padding bypass, header stuffing >100 headers, IP origin disclosure.
14 minwaf-bypasscloudflarecache-poisoning
Read article
With account
HTTP Request Smuggling — CL.TE, TE.CL, TE.TE and caching exploitation
When the frontend and the backend interpret the same request differently. Smuggling for auth bypass, cache poisoning, victim-aware attacks.
14 minhttp-smugglingrequest-smugglingcache-poisoning
Read article
Practice cache poisoning with real labs
Apply the techniques in safe environments based on real bug bounty reports.
- hunters training
- 712
- labs from real reports
- 55
- completions
- 1,206
- in bounties practiced
- $213,970
hunters training
labs from real reports
completions
in bounties practiced
46 flags captured this week·Real reports from HackerOne · Bugcrowd · Intigriti·No commitment·Free Academy
BBLabs · bug bounty training
Stop reading about bugs and start hunting them
Create your free account and practice on labs based on real reports that paid out thousands of euros. The Academy is free forever.
No card · free Academy · cancel anytime