Imperva WAF detection for Wafwoof

Mathieu Dessus has create a patch for WAFWOOF, a tool that identifies WAFs remotely using fingerpriting to identify Imperva SecureSphere. As far as I understand the patch simply checks that the HTTP response version is 1.0. I am not sure and would appreciate any comment on why this would identify a SecureSphere.

You can find the patch here.

See my blog post.

- Amichai Shulman