Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by CYFIRMA. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by CYFIRMA or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.
Player FM - Podcast App
Go offline with the Player FM app!

CYFIRMA Research- CVE-2025-8671 – HTTP/2 MadeYouReset Vulnerability DDoS Attacks

4:08
 
Share
 

Manage episode 505508853 series 3472819
Content provided by CYFIRMA. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by CYFIRMA or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Critical Alert: CVE-2025-8671 – HTTP/2 “MadeYouReset” DoS Vulnerability

Organizations operating HTTP/2-enabled infrastructure—such as Apache Tomcat, Netty, F5 BIG-IP, Jetty, and other affected stacks—must act swiftly. This newly uncovered flaw enables attackers to bypass HTTP/2 stream-concurrency protections and trigger unbounded backend processing by exploiting mismatched stream reset handling, leading to severe Denial-of-Service (DoS) conditions.

This vulnerability demands urgent attention—its low-complexity technique and global exposure pose a high-priority threat to web infrastructure availability.

Link to the Research Report: https://www.cyfirma.com/research/cve-2025-8671-http-2-madeyoureset-vulnerability-ddos-attack/

#CyberSecurity #MadeYouReset #CVE20258671 #HTTP2 #DoS #ThreatIntel #ExternalThreatLandscapeManagement #VulnerabilityAlert #StreamResetAttack #InfrastructureSecurity #CYFIRMA CYFIRMAresearch #ExternalThreatLandscapeManagement #ETLM

https://www.cyfirma.com/

  continue reading

252 episodes

Artwork
iconShare
 
Manage episode 505508853 series 3472819
Content provided by CYFIRMA. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by CYFIRMA or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Critical Alert: CVE-2025-8671 – HTTP/2 “MadeYouReset” DoS Vulnerability

Organizations operating HTTP/2-enabled infrastructure—such as Apache Tomcat, Netty, F5 BIG-IP, Jetty, and other affected stacks—must act swiftly. This newly uncovered flaw enables attackers to bypass HTTP/2 stream-concurrency protections and trigger unbounded backend processing by exploiting mismatched stream reset handling, leading to severe Denial-of-Service (DoS) conditions.

This vulnerability demands urgent attention—its low-complexity technique and global exposure pose a high-priority threat to web infrastructure availability.

Link to the Research Report: https://www.cyfirma.com/research/cve-2025-8671-http-2-madeyoureset-vulnerability-ddos-attack/

#CyberSecurity #MadeYouReset #CVE20258671 #HTTP2 #DoS #ThreatIntel #ExternalThreatLandscapeManagement #VulnerabilityAlert #StreamResetAttack #InfrastructureSecurity #CYFIRMA CYFIRMAresearch #ExternalThreatLandscapeManagement #ETLM

https://www.cyfirma.com/

  continue reading

252 episodes

Kaikki jaksot

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play