The tweet mentions a WAF bypass payload for XSS with a reward of 3 months of free usage. The WAF vendor is not specified. It would be interesting to know more about the technical details and the specific WAF that this bypass works on.
