Вы сказали WAF?ModSecurity? -- Не смешите)

Discussion in 'Этичный хакинг или пентестинг' started by Mister_Bert0ni, 16 May 2015.

  1. Mister_Bert0ni

    Mister_Bert0ni Reservists Of Antichat

    Joined:
    10 May 2015
    Messages:
    142
    Likes Received:
    190
    Reputations:
    57
    Первоисточиник указал одним постом выше.
     
    #21 Mister_Bert0ni, 18 Mar 2016
    Last edited: 18 Mar 2016
    1. yarbabin

      yarbabin HACKIN YO KUT

      Joined:
      21 Nov 2007
      Messages:
      1,663
      Likes Received:
      916
      Reputations:
      363
      я про доки MySQL говорил
       
      _________________________
      1. Mister_Bert0ni

        Mister_Bert0ni Reservists Of Antichat

        Joined:
        10 May 2015
        Messages:
        142
        Likes Received:
        190
        Reputations:
        57
        А какие ж тут доки?Строковое представление символов в MySQL запросе с помощью escape символа.
        Подробнее можно тут почитать:
        Code:
        http://www.mysql.ru/docs/man/String_syntax.html
         
        1. t0ma5

          t0ma5 Reservists Of Antichat

          Joined:
          10 Feb 2012
          Messages:
          828
          Likes Received:
          817
          Reputations:
          90
          по поводу information_schema 9.e.tables = information_schema.tables

          заметил что и такой запрос отрабатывает(пробел между именем бд и таблицей), mysql 5.6

          Code:
          root@000> select 777 from information_schema .tables limit 1;
          +-----+
          | 777 |
          +-----+
          | 777 |
          +-----+
          1 row in set (0.03 sec)
          
           
          _________________________
          1. yarbabin

            yarbabin HACKIN YO KUT

            Joined:
            21 Nov 2007
            Messages:
            1,663
            Likes Received:
            916
            Reputations:
            363
            я вот об этом. нигде не расписано, что это и откуда
             
            _________________________
            1. yarbabin

              yarbabin HACKIN YO KUT

              Joined:
              21 Nov 2007
              Messages:
              1,663
              Likes Received:
              916
              Reputations:
              363
              да, там много вариантов, НО КРУТО ЗНАТЬ ЧТО ЭТО ТАКОЕ
               
              _________________________
              Mister_Bert0ni and t0ma5 like this.
              1. t0ma5

                t0ma5 Reservists Of Antichat

                Joined:
                10 Feb 2012
                Messages:
                828
                Likes Received:
                817
                Reputations:
                90
                да признаюсь я не понимаю лексикона мускула)
                ходят слухи что уже никто его толком не знает
                 
                _________________________
                1. grimnir

                  grimnir Members of Antichat

                  Joined:
                  23 Apr 2012
                  Messages:
                  1,114
                  Likes Received:
                  832
                  Reputations:
                  231
                  подниму тему т.к актуально. Автор обходит Sucuri PL 3 ,CF тариф PRO. Полезно как вектор для размышления
                  https://www.secjuice.com/web-application-firewall-waf-evasion/
                  https://medium.com/secjuice/waf-evasion-techniques-718026d693d8
                  https://medium.com/secjuice/web-application-firewall-waf-evasion-techniques-2-125995f3e7b0
                  Bypass a WAF by Positive Technologyhttps://www.ptsecurity.com/upload/corporate/ww-en/download/PT-devteev-CC-WAF-ENG.pdf
                   
                  _________________________
                  1. cat1vo

                    cat1vo Level 8

                    Joined:
                    12 Aug 2009
                    Messages:
                    375
                    Likes Received:
                    343
                    Reputations:
                    99
                    Дополню:
                    How To Exploit PHP Remotely To Bypass Filters & WAF Rules
                     
                    erwerr2321, grimnir and eminlayer7788 like this.
                    1. eminlayer7788

                      eminlayer7788 Member

                      Joined:
                      31 Jul 2015
                      Messages:
                      207
                      Likes Received:
                      81
                      Reputations:
                      8
                      Writeup on bypassing ModSecurity WAF for SQLi

                      https://blog.h3xstream.com/2021/10/bypassing-modsecurity-waf.html
                       
                      dooble likes this.
                      1. eminlayer7788

                        eminlayer7788 Member

                        Joined:
                        31 Jul 2015
                        Messages:
                        207
                        Likes Received:
                        81
                        Reputations:
                        8
                        0xInfection/Awesome-WAF

                        https://repo.telematika.org/project/0xinfection_awesome-waf/
                         
                        erwerr2321 and crlf like this.
                        1. eminlayer7788

                          eminlayer7788 Member

                          Joined:
                          31 Jul 2015
                          Messages:
                          207
                          Likes Received:
                          81
                          Reputations:
                          8