Bypassing WAF via HTTP Pollution
Danux <[email protected]> Wed, 3 Oct 2012 02:55:19 -0700
| Newsgroups | gmane.comp.security.penetration,gmane.comp.security.websecurity,gmane.comp.security.web-applications |
|---|---|
| Message-ID | <CAL7A2Dw5XZut7eKNt32QNHk2g2-=phisZi0radBG2ZCXBtSiww@mail.gmail.com> |
By playing CSAW CTF you always learn something new (at least myself). Hope you enjoy it: http://danuxx.blogspot.com/2012/10/bypassing-waf-via-http-parameter.html -- DanUx ------------------------------------------------------------------------ This list is sponsored by: Information Assurance Certification Review Board Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. http://www.iacertification.org ------------------------------------------------------------------------