Nov. 26, 2023, 6:44 p.m. | Amin Nasiri

InfoSec Write-ups - Medium infosecwriteups.com

An Overview and a Tool for Exploiting Single Packet Attack

Overview

After watching James Kettle’s presentation at DEF CON 31, I started to research more on Race Conditions and specifically on Single Packet Attack. In the end, I created a tool(Library) called H2SpaceX to exploit this type of race condition on HTTP/2 in addition to James Kettle implementation which is SpikeEngine.kt in Burp Turbo Intruder extension. My goal was to research and understand HTTP/2 and Single Packet Attack more …

addition attack called con conditions def def con def con 31 dive end exploit exploiting http http2 james library packet presentation race race condition race conditions research single tool web security web security tools

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC