Hello, everybody. I have a huge upgrade for my absolutely free no registration service. Do you know the situation when you are scanning any website and all your requests have been blocked by a WAF (web application firewall)? It's sad. But did you know that it's possible to bypass all web application firewall protection measures just with simple headers changing?
Let's see on an example
So let's change only one setting and see the result. What do we see? There are a lot of requests bypassed just because ewww have tried to pretend as a Slack bot, LinkedIn bot or Telegram bot, etc.
I believe you are not bad guy. And you are trying to protect your own product. And maybe you know your web application server, but you don't want to create your own rules just because you don't know syntaxes of protection rules in your firewall. It's easy, but it takes a lot of time. Of course, today artificial intelligence can take this work to itself, but you don't know which extensions or files should be added to rules. That is why my project additionally suggest you rules for your web application firewalls. And my project covers all most popular firewalls. Let's see
So please try your own projects and as a thanks you may click a star on GitHub, no sms or registration



Top comments (0)