Loading video...

Video Failed to Load

Go Home

CL.TE request smuggling works when front-end and back-end disagree on where your request ends. The attacker hides a second request in the body of the first. Here's a demo 👇 Practice with PortSwigger's Web Security Academy.

17,824 views • 2 months ago •via X (Twitter)

3 Comments

RabiX Security's profile picture
RabiX Security2 months ago

A good reminder that web security isn't only about writing secure code—it's also about understanding how every component processes requests.

Sara Blu's profile picture
Sara Blu2 months ago

Solid demo. CL.TE gets overlooked in telecom security audits but with layered proxy setups in 5G cores, it's critical we test for this.

Steve | Tech Savvy's profile picture
Steve | Tech Savvy2 months ago

Web security starts where protocol assumptions break. If your proxy and origin server disagree on request boundaries, attackers will gladly take advantage. Great demo.

Related Videos