
A tool that uses Apache mod_rewrite to redirect invalid URIs to a specified URL

A tool that uses Apache mod_rewrite to redirect invalid URIs to a specified URL
Invalid URI Redirection with Apache mod_rewrite is a Red-Team & Adversary Emulation product. Pricing is free.
There have been times when a curious phish recipient or a zealous help desk staff has loaded the phishing link in their browser and decided to take a peek at a higher directory or the root domain. Of course, most times there isn’t much else site to see. In those cases, the chances of being reported to IR went up significantly, sometimes leading to a phishing campaign being blocked. This is where invalid URI redirection comes in handy. We can whitelist resources the Apache server will proxy for the targets and redirect any other requests to the target’s real domain or another page of our choosing. In the demo below, the user navigates to spoofdomain.com/really/long/url.html and is served a page; however, when the user navigates to spoofdomain.com/really/ the browser is redirected to google.com. RewriteEngine On RewriteCond %{REQUEST_URI} ^/(profiler|payload)/?$ [NC,OR] RewriteCond %{HTTP_REFERER} ^http://SPOOFED-DOMAIN.com [NC] RewriteRule ^.*$ http://TEAMSERVER-IP%{REQUEST_URI} [P] RewriteRule ^.*$ http://REDIRECTION-URL.com/? [L,R=302] Line by line explanation: Enable the rewrite engine If the request's URI is either '/profiler' or '/payload' (with an optional trailing slash), ignoring case; OR If the request's referer starts with 'http://SPOOFED-DOMAIN.com', ignoring case;
Common questions about Invalid URI Redirection with Apache mod_rewrite including features, pricing, alternatives, and user reviews.
Invalid URI Redirection with Apache mod_rewrite is A tool that uses Apache mod_rewrite to redirect invalid URIs to a specified URL. It is a Offensive Security solution designed to help security teams with Web Security.
Invalid URI Redirection with Apache mod_rewrite is built for security teams handling Web Security. Teams typically adopt Invalid URI Redirection with Apache mod_rewrite when they need to offensive security capabilities integrated into their existing stack. Explore similar tools at https://cybersectools.com/alternatives/invalid-uri-redirection-with-apache-modrewrite
Invalid URI Redirection with Apache mod_rewrite is a free Offensive Security tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://bluescreenofjeff.com/2016-03-29-invalid-uri-redirection-with-apache-mod_rewrite/ for download and installation instructions.
Popular alternatives to Invalid URI Redirection with Apache mod_rewrite include:
Compare all Invalid URI Redirection with Apache mod_rewrite alternatives at https://cybersectools.com/alternatives/invalid-uri-redirection-with-apache-modrewrite
Invalid URI Redirection with Apache mod_rewrite is for security teams and organizations that need Web Security. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Offensive Security tools can be found at https://cybersectools.com/categories/offensive-security-testing
Head-to-head feature, pricing, and rating breakdowns.
A golang utility to spider through a website searching for additional links.
Platform for offensive security operations including ASM, VA, and DAST
Human-led adversary emulation service testing detection & response capabilities