|
Fast Find: Easy to find
HackerTrap is the first step
Raster to Vector converts
Masking or anonymizing a Web
thousands of link partners
towards protecting your
scanned drawings, maps and
server involves removing
relevant to your website.
site!The web today is a
raster images (such as BMP,
identifying details that
Direct Add Link Pages: All
jungle of hackers and
JPG, TIF, GIF, etc) into
intruders could use to
the link pages found are
script kiddies trying
vector formats (such as DXF,
detect your OS and Web
direct add link page, that
to take over any servers
HPGL, EMF, etc). You can
server vendor and version.
you can add your link
they can. They blast your
scan old plans, archive
This information, while
directly. Such as
site with multiple requests
drawings, or even photos and
providing little or no
www.a.com/addurl.html,
for several different
convert them into useful CAD
utility to legitimate users,
www.b.com/add-link.html
applications and check which
data.
is often the starting place
get a response - then
for crackers, blackhat
exploit known weaknesses of
hackers and "script
that application. Even if
kiddies". This
you don't run the
article explores some ways
application, the error
you can minimize the risk of
response provides
such detection. Most of the
information on the webserver
following examples focus on
type and version (and that's
Microsoft's Internet
a double whammy, because the
Information Services (IIS)
standard error response is
Web server, since it has
ugly if seen by a real
been most widely lambasted
user!).
With HackerTrap
for its vulnerabilities, but
you specify which
some Apache detection
applications you DON'T run,
countermeasures are also
and which directories a user
covered. While IIS users
should NEVER access. It
probably have the most
comes preloaded with the
vested interest here, server
common directories and file
anonymization is relevant to
used by popular scripts to
anyone responsible for
probe sites. When a hacker
administering a Web server.
shotguns your site looking
for weaknesses, it hits one
and BAM, he's can't get near
you! If a user makes an
innocent mistake in the URL,
he is not penalized and in
fact, gets an attractive
error page customized by you.
Date: Feb, 26 2007 Date: Aug, 09 2006 Date: May, 26 2005 Date: Dec, 02 2004 |
|
Masking or anonymizing a Web
server involves removing
identifying details that
intruders could use to
detect your OS and Web
server vendor and version.
This information, while
providing little or no
utility to legitimate users,
is often the starting place
for crackers, blackhat
hackers and "script
kiddies". This
article explores some ways
you can minimize the risk of
such detection. Most of the
examples focus on
Microsoft’s Internet
Information Server (IIS),
since it has been most
widely lambasted for its
vulnerabilities, but some
Apache detection
countermeasures are also
covered. While IIS users
probably have the most
vested interest here, server
anonymization is relevant to
anyone responsible for
administering a Web server.
Date: May, 21 2003 |