<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Martin Doyhenard: When HTTP Breaks Everything — Attacking IPC in SAP</title>
        <link>https://peertube.eqver.se/videos/watch/2de28b91-3633-4c69-a689-fc1507e7463b</link>
        <description>A DEF CON 30 talk on reverse engineering SAP’s proprietary HTTP server and exploiting critical vulnerabilities CVE-2022-22536 and CVE-2022-22532. The presentation demonstrates how a remote, unauthenticated attacker can compromise SAP installations worldwide. The talk explores Advanced Response Smuggling techniques to desynchronize internal buffers and hijack user sessions — even without a proxy. It also covers exploitation of a Use-After-Free vulnerability in the Inter-Process Communication (IPC) mechanism, enabling manipulation of messages belonging to other TCP connections through cache poisoning and response splitting. Finally, it shows how corruption of IPC buffers and pointers can escalate into full remote code execution (RCE).</description>
        <lastBuildDate>Fri, 24 Jul 2026 11:35:48 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>PeerTube - https://peertube.eqver.se</generator>
        <image>
            <title>Martin Doyhenard: When HTTP Breaks Everything — Attacking IPC in SAP</title>
            <url>https://peertube.eqver.se/client/assets/images/icons/icon-512x512.png</url>
            <link>https://peertube.eqver.se/videos/watch/2de28b91-3633-4c69-a689-fc1507e7463b</link>
        </image>
        <copyright>All rights reserved, unless otherwise specified in the terms specified at https://peertube.eqver.se/about and potential licenses granted by each content's rightholder.</copyright>
        <atom:link href="https://peertube.eqver.se/feeds/video-comments.xml?videoId=2de28b91-3633-4c69-a689-fc1507e7463b" rel="self" type="application/rss+xml"/>
    </channel>
</rss>