WAF Evavasion Techniques #3

by admin

Sunday, September 2nd, 2018 at 9:58 pm

Part 3 of a series of posts by @TheMiddle, using uninitialized Bash variable to bypass Web Application Firewalls, tested on CloudFlare WAF and ModSecurity OWASP CRS. Chck it out ::HERE::

IP: Loading... - Host: Loading...
IP Geolocation: unknown.

We love our country, but fear our government.