Skip to content

Garurda WAF Obfuscation is a python library developed to fast track the efficacy testing of Web Application Firewall

License

Notifications You must be signed in to change notification settings

gyaansastra/WAFBypass-Garurda

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

my banner

Garuda WAF Obfuscation Library

Necessity can lead to innovation. The inception of Garuda's WAF library's is no exception. With the current surge of Log4Shell variants, we also felt the pain when we discover the absence of any library for WAF obfuscation, which can act as a catalyst to evaluate the efficacy of WAF solutions. All the major vendors today do offer WAF solutions, and they are undoubtedly good. But rather than blindly trusting these vendor solutions and being greeted by surprise attacks, it absolutely makes sense to evaluate these WAF solutions as a proactive measure to reduce risk and narrow down the attack surface. Garuda WAF Obfuscation is a python library developed to fast track the efficacy testing of Web Application Firewall. Individual functions can be used as regex rules in order to test specific modules during the assessment. Currently, Log4Shell obfuscation rules are added and can be consumed as a library in any existing python project.

Authors

Badges

GPLv3 License

Acknowledgements

Deployment

pip install waf-bypass-rules-garuda

Import Library and Specific Function (e.g. from WAFBypass.wafbypass import log4jRules) 

Features

  • Log4Shell WAF Obfuscation
  • Cross platform

🚀 About Us

We are bunch of passionate people who want to contribute to the community. We have learned from the community and hence felt its our moral responsibility to contribute.

Feedback

If you have any feedback, please reach out to us at [email protected]

🤝 Connect with me:

Blogspot Github linkedin

Roadmap

  • Multi-Vendor WAF Support
  • Performance Optimization

About

Garurda WAF Obfuscation is a python library developed to fast track the efficacy testing of Web Application Firewall

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages