Pen Test Partners<p>Although frequently misunderstood, the HTTP Cache-Control header is crucial because it specifies caching mechanisms within requests and responses. In its typical format, it reveals details as to how resources are stored, the location of the resource and the maximum age before expiring…</p><p>In our latest blog post, Kieran Larking highlights that the No-cache directive does not prevent caching and looks at typical caching behaviour directives and how to correctly use these directives to balance performance and security: <a href="https://www.pentestpartners.com/security-blog/take-control-of-cache-control-and-local-caching/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">pentestpartners.com/security-b</span><span class="invisible">log/take-control-of-cache-control-and-local-caching/</span></a></p><p><a href="https://infosec.exchange/tags/Caching" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Caching</span></a> <a href="https://infosec.exchange/tags/CacheControl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CacheControl</span></a> <a href="https://infosec.exchange/tags/WebPerformance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebPerformance</span></a> <a href="https://infosec.exchange/tags/WebSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebSecurity</span></a> <a href="https://infosec.exchange/tags/HTTPHeaders" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HTTPHeaders</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/DeveloperGuide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DeveloperGuide</span></a> <a href="https://infosec.exchange/tags/HTTP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HTTP</span></a></p>