Bad news – Your Web Firewall may not be as resilient as you may have thought


  • Ethiack recently tested 17 different WAF configurations from larger suppliers
  • As the complexity of the payloads increased, the success rate increased by bypassing WAFS dramatically
  • Even the most sophisticated WAFs could be defeated with relatively simple payload

Web Application Firewalls (WAF) is not as resilient as organizations were led to assume, and can often be bypassed to inject malicious JavaScript code, experts have warned.

Security researchers Ethiack recently tested 17 different WAF configurations from larger suppliers to see how successful they are in blocking malicious payload.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top