Bad news – your web firewall may definitely not be as resilient as you may have thought




  • Ethiack recently tested 17 different WAF configurations from major vendors
  • As the complexity of the payloads increased, the success rate of bypassing WAFs rose dramatically
  • Even the most sophisticated WAFs could be defeated with relatively simple payloads

Web Application Firewalls (WAF) are not as resilient as organizations were led to assume, and can often be bypassed to inject malicious JavaScript code, experts have warned.

Security researchers Ethiack recently tested 17 different WAF configurations from major vendors to see how successful they are at blocking malicious payloads.

https://cdn.mos.cms.futurecdn.net/3fu9etwmGBBum48JxjAACQ.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img