Python3

WAF Bypass - Unicode Confusables

drag_indicator
info
drag_indicator
inputs
drag_indicator
inspect

WAF Bypass - Unicode Confusables

Description

The firewall will block a wide range of prefix syntax used in template injection payloads

Goal

Perform Server Side Template Injection.

Important Notice

In the input field, any non-ASCII characters must be UTF-8 encoded.

Credits Original DOJO Lab concept by https://x.com/Brumens2

Hints

Solution

drag_indicator
waf
INPUT
OUTPUT
drag_indicator
code
drag_indicator
result