Nexus: A Claroty Podcast

Noam Moshe on a Generic WAF Bypass Technique


Listen Later

Claroty Team82 researcher Noam Moshe joins the podcast to discuss his recent research and development of a generic bypass of leading vendors' web application firewalls.
This research was presented at Black Hat Europe and on the Team82 blog.  The technique involves prepending JSON syntax to a SQL injection payload. Prior to this research, WAFs were blind to JSON syntax and would not flag these payloads as malicious. 
All of the leading vendors have since added JSON support to their SQL injection processes. 

...more
View all episodesView all episodes
Download on the App Store

Nexus: A Claroty PodcastBy Claroty

  • 5
  • 5
  • 5
  • 5
  • 5

5

17 ratings


More shows like Nexus: A Claroty Podcast

View all
Hidden Brain by Hidden Brain, Shankar Vedantam

Hidden Brain

43,710 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

139 Listeners