Noam Moshe on a Generic WAF Bypass Technique episode artwork

EPISODE · Dec 19, 2022 · 30 MIN

Noam Moshe on a Generic WAF Bypass Technique

from Nexus: A Claroty Podcast · host Claroty

Claroty Team82 researcher Noam Moshe joins the podcast to discuss his recent research and development of a generic bypass of leading vendors' web application firewalls.This research was presented at Black Hat Europe and on the Team82 blog.  The technique involves prepending JSON syntax to a SQL injection payload. Prior to this research, WAFs were blind to JSON syntax and would not flag these payloads as malicious. All of the leading vendors have since added JSON support to their SQL injection processes. 

Episode metadata supplied by the publisher feed · Published Dec 19, 2022

Embed this episode

NOW PLAYING

Noam Moshe on a Generic WAF Bypass Technique

0:00 30:46

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Nexus: A Claroty Podcast?

This episode is 30 minutes long.

When was this Nexus: A Claroty Podcast episode published?

This episode was published on December 19, 2022.

Can I download this Nexus: A Claroty Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!