wafrift-detect 0.2.13

WAF detection from response headers and body, response fingerprint drift analysis.
Documentation
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
[[waf]]
name = "BinarySec"
vendor = "BinarySec"
confidence_threshold = 0.3
evasions = ["CaseAlternation", "SqlCommentInsertion", "DoubleUrlEncode", "ContentTypeSwitch"]
source = "WAFW00F:binarysec"
[[waf.signature]]
  header_name = "server"
  header_regex = "BinarySec"
  weight = 0.5
[[waf.signature]]
  header_name = "x-binarysec-via"
  header_regex = ".+"
  weight = 0.5
[[waf.signature]]
  header_name = "x-binarysec-nocache"
  header_regex = ".+"
  weight = 0.5