NEET 05/17/2023 (Wed) 07:40 No.703678 del
Interesting. I kind of get whey they want you to test it but it seems like they should be aware of at least some of the issues. Aren't some of those algorithms depreciated or insecure by design and the reason you will be able to brute force it?

>despite it being behind a waf
Was it because the waf didn't do a deep packet inspection?
Like people thinking a standard WAF that does level 4 (Transport) scanning is sufficient when some systems need an application level filtering?