HExHTTP is an advanced security testing tool designed to analyze HTTP headers, identify vulnerabilities, and detect interesting behavior in web responses. It automates security checks against various HTTP-based attack vectors, including cache poisoning, cookie reflection, and server misconfigurations.
Features:
Server Error response checking
Localhost header response analysis
Vhosts checking
Methods response analysis
HTTP Version analysis [Experimental]
Cache Poisoning DoS (CPDoS) techniques
Web cache poisoning
Range poisoning/error (416 response error) [Experimental]
Cookie Reflection
CDN/proxies Analysis (Envoy/Apache/Akamai/Nginx) [IP]
download:
Features:
Server Error response checking
Localhost header response analysis
Vhosts checking
Methods response analysis
HTTP Version analysis [Experimental]
Cache Poisoning DoS (CPDoS) techniques
Web cache poisoning
Range poisoning/error (416 response error) [Experimental]
Cookie Reflection
CDN/proxies Analysis (Envoy/Apache/Akamai/Nginx) [IP]
download: