6 ms·
Examples of "vulnerability" reports I've received: - Dump of CVEs for "Web App X" or "Server X", even though literally zero of them apply to the version that I
by throwawayjava 8y ago
Examples of "vulnerability" reports I've received:
- Dump of CVEs for "Web App X" or "Server X", even though literally zero of them apply to the version that I'm currently running.
- Dumps of port scans with warnings like "Running SSH on port 22 is not recommended" and "Server accepts HTTP. Always use HTTPS".
I assume there are tools that generate these reports because the reports use decent English but the accompanying emails are written in very broken English.
- rootsudo 8y agoI miss the days when nessus was good enough to justify being cool. Then again my favorite bug back in the day was veritas backup acting as a reverse shell. I only learned of that by running nessus.
- iamctobitch2 8y agoSo you just determine the value of reports/the person reporting based on his English? Do you know there are many researcher who don't have very good English? It's specially true in countries like Germany and China where you rarely need any other language for your work. I am sorry but you just make it sound like anyone who doesn't have very good English is low IQ, dumb person.
- debaserab2 8y agoWhat's the justification for running a host that responds to HTTP and doesn't immediately upgrade to HTTPS? I'm having a hard time imagining a scenario where I manage a web server that is accessible to anonymous people running pen scanners on it that has a justifiable reason for broadcasting port 80.
- solatic 8y agoNo that's the point, the generation script recognizes that the server issues an HTTP-compliant response (which 301 Moved Permanently is) on port 80 and dumbly generates that false-positive, not understanding that the only responses on port 80 are to upgrade to HTTPS.
- debaserab2 8y agoOh, that makes sense. That does sound annoying.
- lixtra 8y agoIf you connect remote communities with poor bandwidth http allows a shared cache behind the bandwidth bottleneck. And other caching scenarios.
- SirSavary 8y agoCould you elaborate on this? I'm curious as to how a setup like this would work in practice. Many people in my family live in rural areas so the topic of restricted bandwidth/poor connection quality is of great interest to me.
- javagram 8y agohttps://meyerweb.com/eric/thoughts/2018/08/07/securing-sites-made-them-less-accessible/ https://meyerweb.com/eric/thoughts/2018/08/07/securing-sites... “But there I stood anyway, hoping my requests to load simple web pages would bear fruit, and I could continue teaching basic web principles to a group of vocational students. Because Wikipedia wouldn’t cache. Google wouldn’t cache. Meyerweb wouldn’t cache. Almost nothing would cache. Why? HTTPS.”
- lixtra 8y agoThanks for the excellent link, discussed on HN a while ago [1]. For those that think an sslstriping proxy would solve it please remember that this would degrade the security for requests that really have to be encrypted. [1] https://news.ycombinator.com/item?id=17707187 https://news.ycombinator.com/item?id=17707187