WAF-aiki tool: wafiron
At SANS Pen Test Hackfest 2017 I presented "WAF-aiki: Pentest Techniques against a Web Application Firewall." One aspect of that presentation dealt with wafiron, a bespoke tool that I wrote to deal with a particularly troublesome pentest where the WAF was effectively thwarting all my attacks.
If you'd like to peek or play with it, the current version is here.
Continue reading "WAF-aiki tool: wafiron"
If you'd like to peek or play with it, the current version is here.
Continue reading "WAF-aiki tool: wafiron"