Summary

  • CRLF Injection is a cyber security vulnerability that is gaining in popularity among hackers and criminal organisations.
  • This occurs when malicious actors inject characters into HTTP headers, which manipulates how the server or client interprets the response.
  • This can lead to a range of attacks, including HTTP response splitting, web cache poisoning and even potential XSS attacks.
  • To mitigate the risk, security experts recommend that companies use robust web application firewalls and carry out regular vulnerability scanning to ensure that all known vulnerabilities, including CRSLF Injection, are patched and secured.
  • It is also advisable to regularly update all software to ensure the latest security updates are installed, which may help protect against known vulnerabilities.

By coffinxp

Original Article