zeropixel_23561
Feb 02, 2016Nimbostratus
Bypass F5 ASM
Has anyone attempted to bypass F5 ASM?
I tried the built-in features in nmap, sqlmap, and WAFW00F but unable to detect and bypass F5 ASM. I don't know if I did it right. I also found this article https://packetstormsecurity.com/files/131781/F5-BIG-IP-ASM-11.4.1-Filter-Bypass.html by adding "Content-Type: application/json" but it is also not helping.
I wonder if anyone has experiences to bypass F5 ASM? If you do, please share the approach and I do appreciate it.
Thanks!!