{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreigtppphtwsl6cnlugpjnyalmmsbag5323dl7xbwjhbhw6jlqohkpe",
"uri": "at://did:plc:ghkvexthfanuyq7fb5veq6tw/app.bsky.feed.post/3mnf6pdnqn3t2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreide6ews7zkcbuj4noojer7lm7l27pwbirwwd5zuwdcqahuxmq2sj4"
},
"mimeType": "image/gif",
"size": 817436
},
"path": "/2026/06/new-http2-bomb-vulnerability-allows.html",
"publishedAt": "2026-06-03T08:33:35.000Z",
"site": "https://thehackernews.com",
"textContent": "Cybersecurity researchers have discovered a remote denial-of-service exploit that affects major web servers, including NGINX, Apache HTTPD, Microsoft IIS, Envoy, and Cloudflare Pingora.\n\nThe vulnerability has been codenamed HTTP/2 Bomb by Calif.\n\n\"The vulnerable behavior exists in each server's default HTTP/2 configuration,\" the company said, adding it was discovered by OpenAI Codex by chaining",
"title": "New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare"
}