Lucene search

K
hiveproHiveForce LabsHIVEPRO:0F48EB2AAF172960F287F1DC06BCFD98
HistoryOct 14, 2023 - 8:35 a.m.

HTTP/2 Zero-Day Exploited for the Most Explosive DDoS Attacks

2023-10-1408:35:35
HiveForce Labs
www.hivepro.com
54
zero-day
http/2
ddos
rapid reset
cve-2023-44487
vulnerability

0.732 High

EPSS

Percentile

98.1%

Threat Level Vulnerability Report For a detailed threat advisory, download the pdf file here Summary A zero-day vulnerability in HTTP/2 has been actively exploited in August, introducing a novel DDoS technique referred as "Rapid Reset". The attack, utilizing CVE-2023-44487, exploits a vulnerability within the HTTP/2 protocol and enables remote attackers to carry out a denial of service (DoS) attack. To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.