A novel attack technique named MadeYouReset has been discovered, targeting multiple implementations of the HTTP/2 protocol. This flaw, sitting at a comfortable 7.5 on the CVSS scale, allows attackers to bypass existing mitigations and launch significant denial-of-service (DoS) attacks. The vulnerability is especially concerning because it circumvents the standard server-imposed limit of 100 concurrent HTTP/2 requests per […]
The post New MadeYouReset Exploit Bypasses HTTP/2 DoS Protections appeared first on SecPod Blog.