Exploit Library
File
Privacy-Preserving_Potential_HTTP2.pdf · 1.2 MB · click to show
Privacy-Preserving_Potential_HTTP2.pdf · 1.2 MB · click to show
File
Token_Theft_MS_EntraID.pdf · 3.6 MB · click to show
Token_Theft_MS_EntraID.pdf · 3.6 MB · click to show
#Research
#Threat_Modelling
#WebApp_Security
"Understanding the Privacy-Preserving Potential of HTTP/2 Against Webpage Fingerprinting", Sep. 2026.
]-> Scripts to reproduce
// It is demonstrated how known defenses can be emulated through HTTP/2 features at the client side (HTTPOS, LLaMA, FRONT, Tamaraw) and the server side (ALPaCA, Tamaraw). It is further shown that HTTP/2 features, such as proactive resource suggestion, multiplexing, and flow control, offer untapped potential for lightweight yet effective defenses deployable at both endpoints
11 · 352 ·