diff --git a/README.md b/README.md index 096f7bc..abbcd21 100644 --- a/README.md +++ b/README.md @@ -658,6 +658,482 @@ Wanna detect WAFs? Lets see how. +
naxsi/waf
keyword.NCI__SessionId=
cookie field name.Connection:
header field name jumbled to nnCoection:
ns_af=
cookie field name.citrix_ns_id
field name.NSC_
keyword.NS-CACHE
field value.newdefend
keyword.NSFocus
keyword.has been blocked in accordance with company policy
.Set-Cookie
headers contain PLBSID=
cookie field name.Profense
keyword.Unauthorized Activity Has Been Detected.
and Case Number
text.X-SL-CompState
header field name.rbzid=
header field name.Reblaze Secure Web Gateway
text.ASP.NET has detected data in the request that is potentially dangerous.
Request Validation has detected a potentially dangerous client input value.
HttpRequestValidationException.
500 Internal Error
.Safe3
keyword.WAF/2.0
keyword.safedog
field value.SecureIIS Web Server Protection.
http://www.eeye.com/SecureIIS/
URL.subject={somevalue} SecureIIS Error
text.SENGINX-ROBOT-MITIGATION
keyword.SiteLock Incident ID
text.sitelock-site-verification
keyword.sitelock_shield_logo
image.SonicWALL
keyword value.This request is blocked by the SonicWALL.
#shd
or #nsa_banner
hashtags.Web Site Blocked
text.Powered by UTM Web Protection
keyword.403 Forbidden
or 500 Internal Error
.X-Mapping
header field name.Sucuri
or Cloudproxy
values.Access Denied
and Sucuri Website Firewall
texts.cloudproxy@sucuri.net
.403 Forbidden
response code upon blocking.405 Method Not Allowed
error.waf.tencent-cloud.com
URL.F5-TrafficShield
keyword.ASINFO=
value might be detected in response headers.Rejected-by-URLScan
field value.Rejected-by-URLScan
text.Secure Entry Server
field value.Request rejected by xVarnish-WAF
text.404 Not Found
Error.nginx-wallarm
text.WatchGuard
header field value.WebKnight
keyword.WebKnight Application Firewall Alert
text warning.AQTRONIX WebKnight
text.999 No Hacking
. :pzenedge/assets/
directory.ZENEDGE
keyword.yundun
keyword..yunsuologo
.yunsuo_session
field name.