performing-web-application-firewall-bypass

mukul975/performing-web-application-firewall-bypass · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Bypass Web Application Firewall protections using encoding techniques, HTTP method manipulation, parameter pollution, and payload obfuscation to deliver SQL injection, XSS, and other attack payloads past WAF detection rules.

SKILL.md

Files

This skill is a package of 4 files. Install with the command above, or download the folder.

  • 📄SKILL.md entry
  • 📁references
  • 📄api-reference.md 1.7 KB
  • 📁scripts
  • ⚙️agent.py 6.0 KB
  • 📄LICENSE 11.0 KB

Related

  1. exploiting-sql-injection-with-sqlmap · mukul975 bundle
    Detect and exploit SQL injection vulnerabilities using sqlmap to extract database contents during authorized penetration tests.
    24.6k
    repo stars
  2. performing-second-order-sql-injection · mukul975 bundle
    Detect and exploit second-order SQL injection vulnerabilities where malicious input is stored in a database and later executed in an unsafe SQL query during a different application operation.
    24.6k
    repo stars
  3. exploiting-sql-injection-vulnerabilities · mukul975 bundle
    Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap.
    24.6k
    repo stars
  4. performing-http-parameter-pollution-attack · mukul975 bundle
    Execute HTTP Parameter Pollution attacks to bypass input validation, WAF rules, and security controls by injecting duplicate parameters that are processed differently by front-end and back-end systems.
    24.6k
    repo stars
  5. performing-web-application-penetration-test · mukul975 bundle
    Systematically tests web applications for vulnerabilities following the OWASP Web Security Testing Guide (WSTG) methodology, covering authentication, authorization, input validation, session management, and business logic using Burp Suite and manual techniques.
    24.6k
    repo stars
  6. exploiting-api-injection-vulnerabilities · mukul975 bundle
    Tests APIs for injection vulnerabilities including SQL, NoSQL, OS command, LDAP, and SSRF through parameters, headers, and request bodies.
    24.6k
    repo stars

Frequently asked questions

How do I install the performing-web-application-firewall-bypass skill?

Run npx skillmds add mukul975/performing-web-application-firewall-bypass in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the performing-web-application-firewall-bypass skill do?

Bypass Web Application Firewall protections using encoding techniques, HTTP method manipulation, parameter pollution, and payload obfuscation to deliver SQL injection, XSS, and other attack payloads past WAF detection rules. It is listed under Security, Data & Analytics, Penetration Testing on SkillMD.

Is performing-web-application-firewall-bypass safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: FAIL. Capability flags: executes scripts, makes network calls, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with performing-web-application-firewall-bypass?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is performing-web-application-firewall-bypass free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published performing-web-application-firewall-bypass?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.