bypass-firewalls-by-DNS-history

Bypass detection tool

Automatically identifies potential bypass points around web application firewalls (WAFs) by analyzing DNS history records and HTTP responses.

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that domain. Handy for bugbounty hunters.

GitHub

1k stars
31 watching
263 forks
Language: Shell
last commit: over 2 years ago
bugbountybypassingdns-recordnetwork-securitysecuritysecurity-tools

Related projects:

Repository Description Stars
julianjm/waf_bypadd An extension that bypasses Web Application Firewalls by padding HTTP requests with dummy data 4
anirudhbiyani/findmytakeover Detects DNS record misconfigurations that could be exploited by attackers 135
projectdiscovery/dnsx A tool for querying and manipulating DNS records 2,218
bohops/ultimatewdacbypasslist A centralized resource for bypassing Windows Device Guard Application Whitelisting (WDAC) policies. 489
the-login/dns-analyzer A tool to analyze DNS vulnerabilities in web applications and identify potential security risks. 94
0xerr0r/blocky A DNS proxy and ad-blocker for local networks with advanced features for performance, security, and configuration. 4,855
darryllane/bluto Tools for gathering information about and exploiting vulnerabilities in domains 620
codewatchorg/bypasswaf An extension that automatically adds headers to Burp requests to bypass certain Web Application Firewall products. 330
tyranid/deviceguardbypasses Provides bypasses and tools to analyze Windows 10's Device Guard restrictions 133
neuralegion/wafalyzer A utility that analyzes HTTP responses to detect the presence of firewalls in web applications. 34
trya9ain/bypassadduser A C# tool to bypass Windows user account management limitations by exploiting configuration settings. 46
pizz33/gobypassav-shellcode A tool for creating shellcode bypasses of antivirus software 823
faizann24/fwaf-machine-learning-driven-web-application-firewall An application designed to detect and prevent malicious queries on web applications using machine learning algorithms. 422
allyomalley/dnsobserver A tool to monitor DNS interactions and send notifications about suspicious activity. 189