O Preventing HTTP Response Splitting Web Caching Proxies

Web caching proxies can be a dangerous part of a web application's architecture since they can be used to perform a number of attacks such as website defacement, session hijacking, or the stealing of sensitive data or credentials.

To ensure that web caches are only used for good, and not evil, the web application itself must be designed and implemented securely, specifically around input and output data validation.

Cache settings on web pages and within the web caches also need to be set up securely to minimize abuse.

