Bitcoin Forum
May 25, 2024, 08:12:24 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Ice-Dice.com Bug Bounty Program On Testnet Subdomain  (Read 2195 times)
icedicedavid (OP)
Full Member
***
Offline Offline

Activity: 154
Merit: 100


Ice-Dice.com | Massive Referral Bonus!


View Profile WWW
October 27, 2013, 02:55:08 AM
 #21

Sahil Saif recommended to turn Nginx's server_token off to remove Nginx version number from the header string.

"The server string is the header which is sent back to the client to tell
them what type of http server you are running and possibly what version.
This string is used by places like Alexia and Netcraft to collect statistics
about how many and of what type of web server are live on the Internet. To
support the author and statistics for Nginx we recommend keeping this string
as is"

Since Nginx recommended keeping it as is, we don't think this is a security vulnerability but to thank Sahil Saif for his participation, a small reward will be given to him and he will be added to the non-severe award list.

Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!