Open in app
Home
Notifications
Lists
Stories

Write
Soufiane Tahiri
Soufiane Tahiri

Home

Dec 21, 2020

How we defeated libModSecurity aka ModSecurity

Here is the story of how we bypassed ModSecurity and were able to conduct successful XSS, SQLi, Command injections, Unrestricted file upload, and pop shells… A few weeks ago, we decided to test ModSecurity against two vulnerable applications OWASP Juice Shop and Damn Vulnerable Web Application. This research was conducted…

Bug Bounty

5 min read

How we defeated libModSecurity aka ModSecurity
How we defeated libModSecurity aka ModSecurity
Soufiane Tahiri

Soufiane Tahiri

I’m a computer security researcher and science enthusiast who specializes in .NET reverse code engineering and I put interest in low-level techniques.

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Knowable