Exploiting HTTP Request Smuggling
With a real-world example:
Http-Request Smuggling:
Multiple designed HTTP request where involved entities see different request. Smuggle requests for one device without the knowledge of other device; manipulate request/response sequencing.
Ex: In infrastructure, we have load balancer and webserver and load balancer sends multiple requests…