nccgroup/BurpSuiteHTTPSmuggler: A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques
2018-12-21 20:25:58 Author: github.com(查看原文) 阅读量:119 收藏

Join GitHub today

GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.

Sign up

A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques. This extension has been developed by Soroush Dalili (@irsdl) from NCC Group.

The initial release (v0.1) only supports the Encoding capability that can be quite complicated to be performed manually. See the references for more details.

Next versions will include more techniques and possible bug fixes.

AppSec EU 18 - example1

AppSec EU 18 - example2

Released under AGPL v3.0 see LICENSE for more information


文章来源: https://github.com/nccgroup/BurpSuiteHTTPSmuggler
如有侵权请联系:admin#unsafe.sh