Webmaster Security

Do you scan your own website/server for vulnerabilities?

Submitted by sudo rm rf, , Thread ID: 123441

RE: Do you scan your own website/server for vulnerabilities?

#2
I can't say I've ever really used a scanner for my own website, but typically while creating my applications I'll do basic vulnerability testing while creating each part of it, then once it's complete attempt them again and some more harmful exploits and see what I come up with. Having never used a vulnerability scanner, I don't know how they work, so it would be a little interesting to see how it look at code validation and attempts to discover directories/files. I typically disallow indexes for my websites, and prevent direct file access with global constant(s) that would show a natural 404 page if they're not present.

I guess it would just be interesting to see how the scanner works in general and what it could find and what it couldn't.
[Image: screenshot-github-com-2019-03-05-12-51-51.png]

Users browsing this thread: 1 Guest(s)