Simply bypass the dongle and perform any operations to make the dog look like a false one

Source: Internet
Author: User

Many people may think of the overflow that has been passed in for a long time before. In fact, the overflow is not so awesome, but the impact is not small. It is a logic vulnerability,

If you build a website and install WAF, you will definitely put the search engine crawler on the white list. Otherwise, SEO will hurt.

What does whitelist mean ???

That is to say, the users in the White List, WAF will not care about it, directly allow, then we can use this thing to bypass the safe dog.

Search engine crawlers are on the whitelist of secure dogs. We only need to pretend to be crawlers and then OK.

How does a Dongle determine crawlers ?? I tested it and found that he used a very common method, namely user-agent. Everyone knows that this is a good counterfeit.

The specific forgery method is not provided here. You can find related articles by yourself.

 

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.