Questions tagged [business-logic-attack]

5 questions
6
votes
1 answer

Do anti-XSS rules of Web Application Firewall break business logic?

I've read about Web Application Firewalls in a MOOC, and the provided example is that the WAF can filter out a request like ?user=