Skip to content

Open proxy probe detection. #10

@amcgregor

Description

@amcgregor

An incoming HEAD request whose entire path portion of the URI is itself the URI being requested is very likely a probe for an open proxy. This should warrant a WAF rejection.

HEAD /https://example.com

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions