View RSS Feed

Life of a Penetration Tester

  1. Detecting Web application firewall during Pentesting

    by , 07-12-2010 at 11:09 PM (Life of a Penetration Tester)
    Quote Originally Posted by Punter View Post
    It has Always been overlooked by Penetration Testers while Testing Web Applications, most of the Web Applications are Protected by Application firewall & it is not so easy to find which firewall has been using,here comes a tool “WAFW00F” which can fingerprint 20 WAF products this helps a Pentester to find and analyse the WebApplication.


    http://code.google.com/p/waffit/


    WAFW00F allows you fingerprint WAF products protecting a website. The tool
    ...