<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>WAF on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/waf/</link>
    <description>Recent content in WAF on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Fri, 22 Jun 2012 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/waf/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>The Web Application Firewall Story continues</title>
      <link>https://insinuator.net/2012/06/the-web-application-firewall-story-continues/</link>
      <pubDate>Fri, 22 Jun 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/06/the-web-application-firewall-story-continues/</guid>
      <description>&lt;p&gt;Some days ago another &lt;a href=&#34;https://www.sec-consult.com/files/20120618-1_Airlock_WAF_overlong_UTF8_bypass.txt&#34;&gt;advisory&lt;/a&gt; related to a web application firewall (WAF) product was published. This time the product Airlock by &lt;a href=&#34;http://www.ergon.ch/&#34;&gt;Ergon&lt;/a&gt; was affected by a vulnerability that combines Encoding and NULL Byte attacks to circumvent the pattern based detection engine. We have described these attacks in detail in our newsletter “&lt;a href=&#34;http://www.ernw.de/content/e15/e28/e1659/download1661/ERNW_Newsletter_35_WAF_en_ger.pdf&#34;&gt;Web Application Firewall Security and The Swiss Army Knife for Web Application Firewalls&lt;/a&gt;” because they belong to a well known category of attacks against WAFs.&lt;/p&gt;</description>
    </item>
    <item>
      <title>tsakwaf 0.9.1 released</title>
      <link>https://insinuator.net/2011/09/tsakwaf-0.9.1-released/</link>
      <pubDate>Sun, 11 Sep 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/09/tsakwaf-0.9.1-released/</guid>
      <description>&lt;p&gt;A few weeks ago, I released version 0.9 of a web application testing tool called tsakwaf (The Swiss Army Knife for Web Application Firewalls) together with an ERNW &lt;a href=&#34;http://www.ernw.de/content/e15/e28/index_ger.html&#34; title=&#34;Newsletter&#34;&gt;Newsletter&lt;/a&gt; about &lt;a href=&#34;http://www.insinuator.net/2011/06/the-5-myths-of-web-application-firewalls/&#34; title=&#34;web application firewalls&#34;&gt;web application firewalls&lt;/a&gt;. tsakwaf is based on perl and supports fingerprinting of some supported WAFs and code generation methods to circumvent filter rules. Today, version 0.9.1 will be released, which adds SSL support for the WAF fingerprinting function (Big thanks to Simon Rich!) and a bug fix regarding the detection of WAF reactions which may lead to false positives. Additionally, I’m happy to announce that at least one talk at next year’s &lt;a href=&#34;http://www.troopers.de&#34; title=&#34;Troopers&#34;&gt;Troopers&lt;/a&gt; will cover attacks against WAFs (like this one from the 2009 &lt;a href=&#34;http://troopers09.org/content/e644/e649/TROOPERS09_gauci_henrique_web_application_firewalls.pdf&#34; title=&#34;edition&#34;&gt;edition&lt;/a&gt;) . So mark your calendar – Troopers12 will happen on 21^(st) and 22^(nd) March 2012, with the usual workshops before the conference and the round table sessions the day after – and enjoy playing with tsakwaf!&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
