Loading

http-host-header-attacks

Maintained by yaklang

HTTP Host header injection and routing abuse playbook. Use when the application trusts the Host header for generating URLs, routing requests, or access control — enabling password reset poisoning, web cache poisoning, SSRF via routing, and virtual host bypass.

Current version
Unknown
License
Unknown
Network access
Unknown / not assessed
Review status
Not verified

Problem it solves

This catalog entry helps users find and evaluate http-host-header-attacks for the task described by its available catalog summary. Confirm the exact scope in the linked original source when one is available.

When to use it

Consider http-host-header-attacks when its available catalog summary matches the task at hand. When available, review the linked original source before use for precise instructions, requirements, and limitations.

http-host-header-attacks is listed as an agent skill in RefHub. The listed maintainer is yaklang. The available catalog summary is: HTTP Host header injection and routing abuse playbook. Use when the application trusts the Host header for generating URLs, routing requests, or access control — enabling password reset poisoning, web cache poisoning, SSRF via routing, and virtual host bypass. When available, review the linked original source for exact usage instructions, required tools, and limitations.

Installation and updates

These commands are displayed for copying only and are never executed on RefHub servers. Review the linked upstream source before running them.

Install command
npx skills add yaklang/hack-skills --skill http-host-header-attacks -y

Agent compatibility

No compatibility test has been recorded

Do not assume agent compatibility until documented test evidence is available.

Source information and review status

The overview above is structured catalog copy and has no recorded editorial review; technical facts and verification status are shown separately.

Source last reviewed
Not recorded
Catalog source
Open catalog source