18.08.2016 Views

mechanisms

us-16-Ivanov-Web-Application-Firewalls-Analysis-Of-Detection-Logic

us-16-Ivanov-Web-Application-Firewalls-Analysis-Of-Detection-Logic

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Results<br />

300+ potential bypasses<br />

Most “vulnerable”: PHPIDS (E = 1,15)<br />

Less “vulnerable”: Comodo WAF (E = 0,32)<br />

Most “exploitable”: OWASP CRS3-rc (E = 0,89)<br />

E = Potential bypasses / Total rules

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!