Code Review: tamper
Last updated
Last updated
The tamper
module in sqlmap modifies the payload in order to bypass WAF. The syntax is:
There are 53 official tamper scripts provided by sqlmap, which can be found on its Github repo:
And we can write our own tamper scripts in some cases, just follow the template and write the def tamper(payload, **kwargs)
function.