
technologyMar 26, 202114:09pending
Researcher bypasses Azure, and Cloudflare Reverse Proxy Security - HTTP/2 Smuggling (h2c)
About this episode
6 months ago, Jake Miller released a blog article and python tool describing H2C smuggling, or http2 over cleartext smuggling. By using an obscure feature of http2, an attacker could bypass authorization controls on reverse proxies.
Sean managed to leverage Jack’s original research to bypass reverse proxy rules, lets discuss My original Video on Jack’s h2c smuggling https://youtu.be/B2VEQ3jFq6Q This article https://blog.assetnote.io/2021/03/18/h2c-smuggling/
Get every episode summarized
Each time The Backend Engineering Show with Hussein Nasser publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from The Backend Engineering Show with Hussein Nasser

Caching is a cop-out
The Backend Engineering Show with Hussein Nasser
Sep 11, 202615:41completed

How open ai agents "hacked" hugging face
The Backend Engineering Show with Hussein Nasser
Aug 23, 202617:57pending

How a query optimization gave birth to infinite scroll
The Backend Engineering Show with Hussein Nasser
Jul 10, 202621:20pending

Postgres is half as fast in Linux 7.0
The Backend Engineering Show with Hussein Nasser
Jun 17, 202634:08pending