Dave_Pisarek
May 19, 2021Cirrus
XFF and sleep
Recently I was asked about mitigating the below XFF header: X-Forwarded-For: (select(0)from(select(sleep(5)))v)/*'+(select(0)from(select(sleep(5)))v)+'"+(select(0)from(select(sleep(5)))v)+"*/ ...