• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

waf

  1. dEEpEst

    Bypassing Modern WAFs

    Bypassing Modern WAFs: Techniques and Tools Introduction Web Application Firewalls (WAFs) serve as a crucial defense mechanism against web-based threats, filtering and monitoring HTTP traffic to prevent attacks such as SQL injection, cross-site scripting (XSS), and remote command execution...
  2. itsMe

    WAF Bypass Tool v1.18 - Open source tool to analyze the security of any WAF

    WAF bypass Tool is an open-source tool to analyze the security of any WAF for False Positives and False Negatives using predefined and customizable payloads. Check your WAF before an attacker does. WAF Bypass Tool is developed by the Nemesida WAF team with the participation of the community...
  3. Z

    Bypass to Cloudflare WAF

    Ante todo, buenos días, tardes o noches..........me llamo ZeroDay, no suelo postear mucho y me gustaría que esto cambiara un poco y poder así compartir conocimientos y experiencias, ya que en los años que llevo como Hacker, o aprendiz de Hacker (ya que no me considero ningún pro) donde más he...
  4. itsMe

    identYwaf v1.0.133 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  5. itsMe

    Tools Raptor WAF v0.6.2 - Web application firewall

    Raptor is a Web application firewall made in C, uses DFA to block SQL injection, Cross-site scripting, and path traversal. Why is this tool made in C language?     C has a high delay time for writing and debugging, but no pain no gain, have fast performance, addition to this point, the C...
  6. itsMe

    identYwaf v1.0.132 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  7. Z

    Tema a tratar, el WAF de claudflare, y como saltarlo.

    Creo que seria un tema interesante a tratar el tema de el WAF de Claudflare, pues si no obtienes la ip no vas a poder auditar bien la aplicación web o el equipo, así que, hace poco estuve haciendo una y me tope con un problema con Claudflare, y es que el método o los métodos y herramientas que...
  8. itsMe

    identYwaf v1.0.129 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  9. itsMe

    Tools Raptor WAF v0.6.1 - Web application firewall

    Raptor is a Web application firewall made in C, uses DFA to block SQL injection, Cross-site scripting, and path traversal. Why is this tool made in C language?     C has a high delay time for writing and debugging, but no pain no gain, have fast performance, addition to this point, the C...
  10. itsMe

    identYwaf v1.0.127 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  11. itsMe

    identYwaf v1.0.124 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  12. itsMe

    identYwaf v1.0.123 - Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  13. itsMe

    identYwaf v1.0.120 Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  14. itsMe

    identYwaf v1.0.118 Blind WAF identification tool

    identYwaf is an identification tool that can recognize web protection type (i.e. WAF) based on blind inference. The blind inference is being done by inspecting responses provoked by a set of predefined offensive (non-destructive) payloads, where those are used only to trigger the web protection...
  15. 1

    Exploits Imperva SecureSphere WAF 11.5 Bypass

    Imperva SecureSphere WAF version 11.5 suffers from a bypass vulnerability due to first validating that a Content-Type header must be passed. View the full article
Back
Top