Skip to main content
ZS
ZERO STATE
PROTOCOL
[JOURNAL]
[BOUNTIES]
[TOOLS]
[ARCHIVE]
[ABOUT]
SUBSCRIBE
HOME
JOURNAL
BOUNTIES
TOOLS
ARCHIVE
ABOUT
SYSTEM NOMINAL
◆
DEFCON 32 RECAP OUT NOW
◆
NEW BOUNTY WRITEUP: $50K SSRF
◆
ZERO STATE PROTOCOL ACTIVATED
◆
NO SAFE HARBOR
◆
SYSTEM NOMINAL
◆
DEFCON 32 RECAP OUT NOW
◆
NEW BOUNTY WRITEUP: $50K SSRF
◆
ZERO STATE PROTOCOL ACTIVATED
◆
NO SAFE HARBOR
◆
// DISPATCHES
LATEST FROM THE FIELD
RSS FEED
#waf
#bypass
#unicode
#xss
Bypassing WAF Rules with Unicode Normalization Tricks
How Unicode normalization differences between WAFs and backend servers create exploitable gaps.
B
Brahma
//
12/12/2024