Ekultek / WhatWaf

Detect and bypass web application firewalls and protection systems
Other
2.55k stars 434 forks source link

Unknown Firewall (5518fd665) #1491

Closed WhatWaf-Firewalls closed 1 year ago

WhatWaf-Firewalls commented 2 years ago

WhatWaf version: 2.0.3 Running context: <closed file '/root/.whatwaf/fingerprints/www.algosecure.fr', mode 'r' at 0x7ffaa2e81540> Fingerprint:

<!--
GET http://www.algosecure.fr HTTP/1.1
Status code: 403
Date: Mon, 28 Feb 2022 21:43:25 GMT
Server: Apache
Referrer-Policy: strict-origin-when-cross-origin
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000; includeSubdomains; preload
Permissions-Policy: accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=(), gamepad=(), speaker-selection=(self), conversion-measurement=(), focus-without-user-activation=(), hid=(), idle-detection=(), serial=(), sync-script=(self), trust-token-redemption=(), vertical-scroll=(), notifications=(), push=(), speaker=(self), vibrate=(), interest-cohort=()
Content-Security-Policy: default-src 'self'; img-src 'self' www.sei.cmu.edu data: api.mapbox.com nostats.algosecure.fr; style-src-elem 'self' 'unsafe-inline'; style-src-attr 'unsafe-inline'; script-src 'self' nostats.algosecure.fr; connect-src 'self' nostats.algosecure.fr; object-src 'none'; frame-src www.youtube.com; report-uri https://algosecure.report-uri.com/r/d/csp/enforce
Content-Length: 199
Connection: close
Content-Type: text/html; charset=iso-8859-1
-->
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">

<html><head>
<title>403 Forbidden</title>
</head><body>
<h1>Forbidden</h1>
<p>You don't have permission to access this resource.</p>
</body></html>