TIL you can add JS comments between a function name and its arguments. Was able to bypass Akamai WAF in an endpoint that reflected many of my params using newlines.
I don’t usually fight against WAFs because the task is daunting, but I’m glad I did here!
#BugBountyTips https://t.co/gs4106FDYE