Bypassing Akamai’s Web Application Firewall Using an Injected Content-Encoding Header

During a recent customer pilot, Praetorian researchers identified an interesting method to bypass the cross-site scripting (XSS) filtering functionality within the Akamai Web Application Firewall (WAF) solution.

>>More