Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos

Security Basics: Re: Re: HTTP tunneling to bypass proxy filter

Re: Re: HTTP tunneling to bypass proxy filter

From: <uglyhunK_at_hippieclub.org>
Date: 5 May 2008 10:39:11 -0000
('binary' encoding is not supported, stored as-is) I guess you mean to say, every HTTP request that is sent to the corporate proxy should have a fingerprint of the browser and it should be matched everytime the proxy forwards the request.

No browser supports that feature yet and for a good reason bcoz it doesn't make sense. One can add the browser's fingerprint in the tunneling client request and fool the proxy.

The fact that I have been using successfully without alarming any device is the proof that HTTP tunneling is one of the fact best ways to bypass the filtering proxies.
Received on May 05 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]