Security Incidents mailing list archives

Re: CGI Scans on web server


From: Ryan Russell <ryan () SECURITYFOCUS COM>
Date: Mon, 11 Dec 2000 08:22:23 -0800

On Fri, 8 Dec 2000, Jay D. Dyson wrote:

      The only thing I wish these scriptmonkeys would do differently is
at least do a HEAD request or an 'nmap -p80 -O' on the target system
before launching their scan utilities.  At least then my logs wouldn't get
bloated by so many IIS intrusion attempts on my Solaris/Apache servers.


But then, you might be lying about your software version, right?  Sorry,
we'll just have to check manually. :)

                                        Ryan


Current thread: