All Praise Be to Allah?
@Bugcrowd Rewarded me with a Bounty of $350.
Bug: WAF Bypass >> XSS
#bugcrowd
#ItTakesACrowd
#bugbounty
#xss https:// ...July 18, 2022
Backdoor via XFF - Mysterious Threat Actor Under Radar - we found that the attackers used a known bypass technique abusing the X-FORWARDED-FOR (XFF) H ...July 17, 2022
Everyone should read this writeup by @securityfu on how to bypass an AWS WAF by adding 8kb of data before your payload. I've never seen an AWS WAF by ...July 17, 2022
je regarde bfm business, le mec nous dit cloudflare faut investir c'est une boite de cyber sécurité hyper fiable etc des éloges, c'est la première ...July 16, 2022
DAY 20 of #50DaysOfSQLi
Most of time went to learn to bypass filters so that I can learn to bypass common filters (Whitelisting, Blacklisting, WAF ba ...July 14, 2022
Took me a while because of @cloudflare firewall not being able to talk with others machines, but I finally found a way to bypass the problem altogethe ...July 14, 2022
In a #NoSQL injection attack, attackers inject code into commands for databases that don’t rely on SQL queries.
This allows the attacker to bypass ...July 13, 2022
Is it better to use an Internal vs External Bypass?
Click to learn 5 questions to ask when implementing your next inline IPS, WAF, and firewall tool ...July 13, 2022
IDK if someone have told this before but, If you are trying XSS but, getting blocked by WAF try adding a "Referer" header in your request. Sometimes, ...July 13, 2022
In a real scenario, if you found a boolean-based SQL Injection for example on a vulnerable WordPress plugin, and you need to bypass a WAF using libinj ...July 11, 2022
DAY 16 of #50DaysOfSQLi
- Hunted on the same private program today as well
- Read the whitepaper :
* https://t.co/H2bTjpYow5
* https://t.co/dAOoiHzF ...July 10, 2022
You still need to open WebView to bypass cloudflare Protection and it's working fine for me.
Unless if you *ahem* https://t.co/1rqv1VbVDk ...July 7, 2022
Sinon plus simple que la manip compliquée vous mettez cette extension dans Chrome ou Edge (pas testé sur Mozilla), vous relancez le navigateur, alle ...July 7, 2022