
The API and Application Protection Blog
ThreatX platform updates, threat research on the latest critical CVEs and 0 days impacting APIs and web applications, alongside strategies and tactics for overcoming the challenges of modern security teams.
Subscribe for updates
Sign up for exclusive threat research, company and content updates, and the occasional fun contest.
- Blog
- Application Security
- Threat Intelligence
- News
- Product Updates
- People & Culture
- Vulnerabilities
- Cloud Security
- API Security
Addressing the HTTP/2 Rapid Reset Attack Vulnerability
A recent disclosure pinpointed a vulnerability in the HTTP/2 protocol (CVE-2023-44487), which under certain conditions, could lead to a denial-of-service attack targeting platforms implementing the server-side portion of the HTTP/2 specification. The vulnerability arises from the misuse of HTTP/2’s concurrent data stream initiation feature. Upon learning about this vulnerability, our team at ThreatX conducted a […]
VIEW MORE