tmctmt

4 posts

tmctmt

tmctmt

@tmctmt

23

Присоединился Nisan 2026
13 Подписки239 Подписчики
Закреплённый твит
tmctmt
tmctmt@tmctmt·
Spying on everybody's Discord attachments with HTTP desync tmctmt.com/posts/http-des…
English
49
194
2.5K
562.9K
tmctmt
tmctmt@tmctmt·
everyone is familiar with the "reddit killed forums" discourse, but have you ever seen a site actually metamorphosize into reddit?
tmctmt tweet mediatmctmt tweet media
English
1
1
6
612
tmctmt
tmctmt@tmctmt·
@tester47546 The exploit hinged on the GCP connection being HTTP/1, otherwise Discord wouldn't have been able to introduce a CRLF injection vector.
English
0
0
0
625
ester
ester@tester47546·
@tmctmt Congrats. How is something like this can even possible with http/2 today? I only see one case where downgrading happens . But not much
English
1
0
0
1.7K
tmctmt
tmctmt@tmctmt·
🤞
ART
0
0
3
2K