floyd aka floyd_ch on Nostr: So in other news, 2024 and WAF bypass to get PHP code through is as easy as making ...
So in other news, 2024 and WAF bypass to get PHP code through is as easy as making PHP code look like XML:
<?xml :system("ls")
https://www.pentagrid.ch/en/blog/airlock-web-application-firewall-ruleset-testing-and-waf-bypasses/
<?xml :system("ls")
https://www.pentagrid.ch/en/blog/airlock-web-application-firewall-ruleset-testing-and-waf-bypasses/