The HTTP Garden: Discovering Parsing Vulnerabilities in HTTP/1.1 Implementations by Differential Fuzzing of Request Streams
Fuente:
arXiv
Saved in:
| Main Authors: | Kallus, Ben, Anantharaman, Prashant, Locasto, Michael, Smith, Sean W. |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
TLoRa: Implementing TLS Over LoRa for Secure HTTP Communication in IoT
by: Ghosh, Atonu, et al.
Published: (2025)
by: Ghosh, Atonu, et al.
Published: (2025)
Virtual local area network over HTTP for launching an insider attack
by: Arslan, Yuksel
Published: (2025)
by: Arslan, Yuksel
Published: (2025)
On Cross-Layer Interactions of QUIC, Encrypted DNS and HTTP/3: Design, Evaluation and Dataset
by: Sengupta, Jayasree, et al.
Published: (2023)
by: Sengupta, Jayasree, et al.
Published: (2023)
A Privacy Measure Turned Upside Down? Investigating the Use of HTTP Client Hints on the Web
by: Wiefling, Stephan, et al.
Published: (2024)
by: Wiefling, Stephan, et al.
Published: (2024)
Fingerprinting web servers through Transformer-encoded HTTP response headers
by: Darwinkel, Patrick
Published: (2024)
by: Darwinkel, Patrick
Published: (2024)
Implementing an Optimized and Secured Multimedia Streaming Protocol in a Participatory Sensing Scenario
by: Vaiuso, Andrea
Published: (2024)
by: Vaiuso, Andrea
Published: (2024)
Reduce to the MACs -- Privacy Friendly Generic Probe Requests
by: McDougall, Johanna Ansohn, et al.
Published: (2024)
by: McDougall, Johanna Ansohn, et al.
Published: (2024)
Performance Comparison of HTTP/3 and HTTP/2 with Proxy Integration
by: Liu, Fan, et al.
Published: (2024)
by: Liu, Fan, et al.
Published: (2024)
Ambusher: Exploring the Security of Distributed SDN Controllers Through Protocol State Fuzzing
by: Kim, Jinwoo, et al.
Published: (2025)
by: Kim, Jinwoo, et al.
Published: (2025)
HTTP Request Synchronization Defeats Discrepancy Attacks
by: Topcuoglu, Cem, et al.
Published: (2025)
by: Topcuoglu, Cem, et al.
Published: (2025)
Uncovering Gaps Between RFC Updates and TCP/IP Implementations: LLM-Facilitated Differential Checks on Intermediate Representations
by: Wu, Yifan, et al.
Published: (2025)
by: Wu, Yifan, et al.
Published: (2025)
Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries
by: Alageel, Almuthanna, et al.
Published: (2025)
by: Alageel, Almuthanna, et al.
Published: (2025)
Formally Discovering and Reproducing Network Protocols Vulnerabilities
by: Crochet, Christophe, et al.
Published: (2025)
by: Crochet, Christophe, et al.
Published: (2025)
Vulnerability Disclosure or Notification? Best Practices for Reaching Stakeholders at Scale
by: Chen, Ting-Han, et al.
Published: (2025)
by: Chen, Ting-Han, et al.
Published: (2025)
Evaluating Vulnerabilities of Connected Vehicles Under Cyber Attacks by Attack-Defense Tree
by: Mollah, Muhammad Baqer, et al.
Published: (2025)
by: Mollah, Muhammad Baqer, et al.
Published: (2025)
Implementing and Evaluating Post-Quantum DNSSEC in CoreDNS
by: Suela, Julio Gento, et al.
Published: (2025)
by: Suela, Julio Gento, et al.
Published: (2025)
Generative AI for Vulnerability Detection in 6G Wireless Networks: Advances, Case Study, and Future Directions
by: Yang, Shuo, et al.
Published: (2025)
by: Yang, Shuo, et al.
Published: (2025)
The Evolution of Zero Trust Architecture (ZTA) from Concept to Implementation
by: Nasiruzzaman, Md, et al.
Published: (2025)
by: Nasiruzzaman, Md, et al.
Published: (2025)
Implementation and transition to post-quantum cryptography of the Minimal IKE protocol
by: De Zuane, Davide, et al.
Published: (2026)
by: De Zuane, Davide, et al.
Published: (2026)
What You Code Is What We Prove: Translating BLE App Logic into Formal Models with LLMs for Vulnerability Detection
by: Yan, Biwei, et al.
Published: (2025)
by: Yan, Biwei, et al.
Published: (2025)
Securing High-Performance Data Transfers: Implementing AES Encryption in RDMA Systems
by: Bångsbo, Erik, et al.
Published: (2026)
by: Bångsbo, Erik, et al.
Published: (2026)
Applying Transparent Shaping for Zero Trust Architecture Implementation in AWS: A Case Study
by: Wang, Wenjia, et al.
Published: (2024)
by: Wang, Wenjia, et al.
Published: (2024)
ChatHTTPFuzz: Large Language Model-Assisted IoT HTTP Fuzzing
by: Yang, Zhe, et al.
Published: (2024)
by: Yang, Zhe, et al.
Published: (2024)
AFL-ICP: Enhancing Industrial Control Protocol Reliability via Specification-Guided Fuzzing
by: Meng, Jiaying, et al.
Published: (2026)
by: Meng, Jiaying, et al.
Published: (2026)
MultiFuzz: A Dense Retrieval-based Multi-Agent System for Network Protocol Fuzzing
by: Maklad, Youssef, et al.
Published: (2025)
by: Maklad, Youssef, et al.
Published: (2025)
MAC Aggregation over Lossy Channels in DTLS 1.3
by: Wagner, Eric, et al.
Published: (2025)
by: Wagner, Eric, et al.
Published: (2025)
Quantum Encryption Resilience Score (QERS) for MQTT, HTTP, and HTTPS under Post-Quantum Cryptography in Computer, IoT, and IIoT Systems
by: Rassekhnia, Jonatan
Published: (2026)
by: Rassekhnia, Jonatan
Published: (2026)
Edge AI Empowered Physical Layer Security for 6G NTN: Potential Threats and Future Opportunities
by: Chou, Hong-fu, et al.
Published: (2023)
by: Chou, Hong-fu, et al.
Published: (2023)
SAFER-D: A Self-Adaptive Security Framework for Distributed Computing Architectures
by: Stadler, Marco, et al.
Published: (2025)
by: Stadler, Marco, et al.
Published: (2025)
NetDPSyn: Synthesizing Network Traces under Differential Privacy
by: Sun, Danyu, et al.
Published: (2024)
by: Sun, Danyu, et al.
Published: (2024)
TSA-WF: Exploring the Effectiveness of Time Series Analysis for Website Fingerprinting
by: Wrana, Michael, et al.
Published: (2025)
by: Wrana, Michael, et al.
Published: (2025)
The Spectre of Surveillance and Censorship in Future Internet Architectures
by: Wrana, Michael, et al.
Published: (2024)
by: Wrana, Michael, et al.
Published: (2024)
AndroScanner: Automated Backend Vulnerability Detection for Android Applications
by: Dandu, Harini
Published: (2026)
by: Dandu, Harini
Published: (2026)
Ruling the Unruly: Designing Effective, Low-Noise Network Intrusion Detection Rules for Security Operations Centers
by: Teuwen, Koen T. W., et al.
Published: (2025)
by: Teuwen, Koen T. W., et al.
Published: (2025)
Adaptive Optimization of TLS Overhead for Wireless Communication in Critical Infrastructure
by: Bodenhausen, Jörn, et al.
Published: (2024)
by: Bodenhausen, Jörn, et al.
Published: (2024)
Cloudy with a Chance of Cyberattacks: Dangling Resources Abuse on Cloud Platforms
by: Frieß, Jens, et al.
Published: (2024)
by: Frieß, Jens, et al.
Published: (2024)
400Gbps benchmark of XRootD HTTP-TPC
by: Arora, Aashay, et al.
Published: (2023)
by: Arora, Aashay, et al.
Published: (2023)
Improving HTTP/3 Quality of Experience with Incremental EPS
by: Gupta, Abhinav, et al.
Published: (2024)
by: Gupta, Abhinav, et al.
Published: (2024)
Designing Transport-Level Encryption for Datacenter Networks
by: Gao, Tianyi, et al.
Published: (2024)
by: Gao, Tianyi, et al.
Published: (2024)
Post-Quantum Cryptography-Based Bidirectional Authentication Key Exchange Protocol and Industry Applications: A Case Study of Instant Messaging
by: Chen, Abel C. H., et al.
Published: (2026)
by: Chen, Abel C. H., et al.
Published: (2026)
Similar Items
-
TLoRa: Implementing TLS Over LoRa for Secure HTTP Communication in IoT
by: Ghosh, Atonu, et al.
Published: (2025) -
Virtual local area network over HTTP for launching an insider attack
by: Arslan, Yuksel
Published: (2025) -
On Cross-Layer Interactions of QUIC, Encrypted DNS and HTTP/3: Design, Evaluation and Dataset
by: Sengupta, Jayasree, et al.
Published: (2023) -
A Privacy Measure Turned Upside Down? Investigating the Use of HTTP Client Hints on the Web
by: Wiefling, Stephan, et al.
Published: (2024) -
Fingerprinting web servers through Transformer-encoded HTTP response headers
by: Darwinkel, Patrick
Published: (2024)