WAF (Web Application Firewall) Bypass - Find Original-IP Of Website Passive-Pentesting (Kali-Linux)

preview_player
Показать описание
In This Video I Will Show You Guys All Kind Of Different Ways To Bypass The WAF (Website-Application Firewall) To Find The Original-IP Adress Of A Secured-Firewall Reverse-Proxy Protected Website. What We Perform Is Called Passive-Reconaissance, To Gather Information About The Target , To Specifically Do Active Pentesting/Penetration-Testing Or Active-Enumeration Later On .

0:00 Introduction
1:15 Kali-Linux
3:52 DNS Hostnames
5:36 Websites To Search DNS-Leaked Data
9:24 DNSTrails
11:39 PS3CFW
12:32 dnsrecon
14:01 Conclusion
15:08 Subscribe

Tools We Used In The Video:
-ping
-wafW00f
-whatweb
-whois
-nslookup
-dnsrecon

Websites We Used:

My-Tool To Automate Censys/DNSTrails Website Search:

Subscribe To My Youtube-Channel To Stay Active On My Newest Videos:

Social-Medias:

Github-Page:

#firewall #technology #hacking #hacker #pentesting #penetrationtester #informationtechnology #security #cybersecurity #kalilinux #linux #dns #ips #hostname #website #web #cloudflare #internet #bypass #network #networking #waf #webapplications #webapplicationsecurity #webapp #coding #programming #vulnerability #youtube #youtuber #subforsub #subscribe #subscribetomychannel #subscribers #subscribeformore #subscribe #subscribenow #video #teaching #studying #whitehat #greyhat #information #2023 #hacks #system #webseries #webdeveloper #securitybreach #instagram #twitter #facebook #tiktok #github #program #info #follow #follow4follow #follow4followback #followforfollowback #followme #followforlike
Рекомендации по теме
Комментарии
Автор

You deserve more ratings bro i really like what you dis here and its in real time unlike some people

Thank you 😊

Hermesfurie
Автор

PLEASE make a video on
"how to bypass waf aws elb which uses CDN"

landless-wind
Автор

Bro thanks hope youtube does not take it down

souverainchristopher
Автор

Sir, if i find any original ip,
Will i be able to inject any payload?
Plz, reply me.

esam
Автор

i found the origin ip address for my site but when i am trying to send data for it or get data from it it dont give me anything
the page is loading the same as the protected one
but i filled the form and hit send button it should send an email for me but i didnt recieve any email
can u tell me why ?

GhaithAlMasri-cvdg
Автор

very good content!.
does this also work for imperva WAF? thanks a lot

bcbc
Автор


^

rajeevpuri
Автор

Dont Forget To Subscribe To My Youtube-Channel:

xenjin
Автор

Tools We Used In The Video:
-ping
-wafW00f
-whatweb
-whois
-nslookup
-dnsrecon

Websites We Used:

My-Tool To Automate Censys/DNSTrails Website Search:

xenjin