---
title:

New HTTP/2 'Bomb' Exploit Crashes Major Web Servers

date: 2026-06-02
tags: [#news, #devops ]
draft: false
---

Security researchers have identified a hidden HTTP/2 bomb exploit that forces massive memory consumption on servers like Nginx and Apache. By chaining compression attacks with stream stalling, a single client can trigger a denial-of-service condition.