Burp Suite User Forum

Create new post

Lab: Web cache poisoning via an unkeyed query string

Bhupendra | Last updated: Feb 15, 2022 07:00AM UTC

The Origin header does not act as a catch buster . I submitted my malformed query string with Origin Header and it solved the lab i.e the Origin header is not keyed header.

Uthman, PortSwigger Agent | Last updated: Feb 15, 2022 09:27AM UTC

Hi Bhupendra,

Please send a screen recording to support@portswigger.net demonstrating your issue and further clarification on the steps to replicate

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.