Ekultek / WhatWaf

Detect and bypass web application firewalls and protection systems
Other
2.55k stars 434 forks source link

Unknown Firewall (d6f4b921a) #1562

Closed WhatWaf-Firewalls closed 1 year ago

WhatWaf-Firewalls commented 1 year ago

WhatWaf version: 2.0.3 Running context: ./whatwaf -u ******************************** Fingerprint:

<!--
GET http://www.leocybersecurity.com HTTP/1.1
Status code: 403
Server: Sucuri/Cloudproxy
Date: Sun, 10 Jul 2022 15:58:47 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
X-Sucuri-ID: 14034
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
Content-Security-Policy: upgrade-insecure-requests;
X-Sucuri-Block: EVA079
-->
<!DOCTYPE html>

<html lang="en" xmlns="http://www.w3.org/1999/xhtml">
<head>
<link href="https://cdn.sucuri.net/css/whitelabel/typography.css?611e1e2" rel="stylesheet"/>
<link href="https://cdn.sucuri.net/css/whitelabel.css?611e1e2" rel="stylesheet"/>
<link href="https://cdn.sucuri.net/css/whitelabel/buttons.css?611e1e2" rel="stylesheet"/>
<link href="https://cdn.sucuri.net/css/whitelabel/footer.css?611e1e2" rel="stylesheet"/>
<link href="https://cdn.sucuri.net/css/whitelabel/header.css?611e1e2" rel="stylesheet"/>
<link href="https://cdn.sucuri.net/css/fonts.css" rel="stylesheet"/>
<meta content="width=device-width, initial-scale=1.0" name="viewport"/>
<title>GoDaddy Security - Access Denied</title>
</head>
<body>
<header class="app-header clearfix">
<div class="wrap"><a class="logo" href="https://www.godaddy.com/"></a>
<span class="logo-neartext">Security</span>
</div>
</header>
<section class="center clearfix"></section>
<section class="app-content access-denied clearfix"><div class="box center width-max-940"><h1 class="brand-font font-size-xtra no-margin"><i class="icon-circle-red"></i>Access Denied - GoDaddy Website Firewall</h1>
<p class="medium-text code-snippet">If you are the site owner (or you manage this site), please whitelist your IP or if you think this block is an error please <a class="color-green underline" href="https://supportx.sucuri.net/">open a support ticket</a> and make sure to include the block details (displayed in the box below), so we can assist you in troubleshooting the issue. </p><h2>Block details:</h2></div></section></body></html>
<table class="property-table overflow-break-all line-height-16">
<tr>
<td>Your IP:</td>
<td><span>67.253.189.102</span></td>
</tr>
<tr><td>URL:</td>
<td><span>www.leocybersecurity.com/%3Cframeset%3E%3Cframe%20src=%5C%22javascript:alert('XSS');%5C%22%3E%3C/frameset%3E</span></td>
</tr>
<tr>
<td>Your Browser: </td>
<td><span>whatwaf/2.0.3 (Language=2.7.18; Platform=Linux)</span></td>
</tr>
<tr><td>Block ID:</td>
<td><span>EVA079</span></td>
</tr>
<tr>
<td>Block reason:</td>
<td><span>An attempt to evade and bypass security filters was detected.</span></td>
</tr>
<tr>
<td>Time:</td>
<td><span>2022-07-10 11:58:47</span></td>
</tr>
<tr>
<td>Server ID:</td>
<td><span>14034</span></td></tr>
</table>

<footer class="app-footer clearfix"><span>Copyright © 1999 – 2019 GoDaddy Operating Company, LLC. All rights reserved.</span>
<span class="padding-left-25"><a class="underline" href="https://www.godaddy.com/Agreements/Privacy.aspx" rel="nofollow noopener" target="_blank">Privacy Policy</a></span>
</footer>