<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Waf on Caleb Garber</title>
    <link>https://calebgarber.com/tags/waf/</link>
    <description>Recent content in Waf on Caleb Garber</description>
    <generator>Hugo -- 0.165.0</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 06 Oct 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://calebgarber.com/tags/waf/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>What I check when a firewall rule stands in for the PeopleSoft patch</title>
      <link>https://calebgarber.com/posts/shinyhunters-is-still-exploiting-oracle-peoplesoft-cve-2026-35273/</link>
      <pubDate>Tue, 06 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://calebgarber.com/posts/shinyhunters-is-still-exploiting-oracle-peoplesoft-cve-2026-35273/</guid>
      <description>CVE-2026-35273 is a 9.8 remote code execution flaw in Oracle PeopleSoft PeopleTools that Oracle patched on June 10. Organizations that blocked the vulnerable endpoint instead found the rule bypassed three months later. Here is how I test a mitigation before I record it as coverage.</description>
    </item>
  </channel>
</rss>
