This repository contains example scripts and sets of rules for the AWS WAF service. Please be aware that the applicability of these examples to specific workloads may vary.
MIT No Attribution
512
stars
235
forks
source link
AWS Waf does not work on JSON body for SQLi / XSS #37
Hi,
The following request is not blocked by SQLi rule, even SQLMap was not intercepted :
We think that it might be due to the fact that the body is embedded in a json.
Thank you in advance, Sincerely Yours, Cou Cou