scanner icon indicating copy to clipboard operation
scanner copied to clipboard

Avoid to waf blocking

Open Serizao-bzhunt opened this issue 4 months ago • 0 comments

I think it would be interesting to have several scan levels on xss. The first is to detect simple reflections: for example, if a parameter seems to be reflected without sending additional requests. The second is to send a canary to the query parameters to get a more detailed view of reflections. And the last level is what you've implemented. For this last level, however, I recommend injecting dummy tags with fictive events, e.g. <z xxx=a()>. The reflexion of this payalod will be less likely to be caught by WAFs and will show that there is a reflexion and potentially a need to find a bypass.

Serizao-bzhunt avatar Jul 31 '25 06:07 Serizao-bzhunt