Bypassing WAF via HTTP Pollution

Danux <[email protected]> Wed, 3 Oct 2012 02:55:19 -0700
Newsgroups gmane.comp.security.penetration,gmane.comp.security.websecurity,gmane.comp.security.web-applications
Message-ID <CAL7A2Dw5XZut7eKNt32QNHk2g2-=phisZi0radBG2ZCXBtSiww@mail.gmail.com>
By playing CSAW CTF you always learn something new (at least myself).

Hope you enjoy it:

http://danuxx.blogspot.com/2012/10/bypassing-waf-via-http-parameter.html

-- 
DanUx

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------