Bitcoin Forum
September 27, 2018, 11:20:08 PM *
News: ♦♦ New info! Bitcoin Core users absolutely must upgrade to previously-announced 0.16.3 [Torrent]. All Bitcoin users should temporarily trust confirmations slightly less. More info.
 
   Home   Help Search Donate Login Register  
Pages: « 1 [2]  All
  Print  
Author Topic: Ice-Dice.com Bug Bounty Program On Testnet Subdomain  (Read 2069 times)
icedicedavid
Full Member
***
Offline Offline

Activity: 154
Merit: 100


Ice-Dice.com | Massive Referral Bonus!


View Profile WWW
October 27, 2013, 02:55:08 AM
 #21

Sahil Saif recommended to turn Nginx's server_token off to remove Nginx version number from the header string.

"The server string is the header which is sent back to the client to tell
them what type of http server you are running and possibly what version.
This string is used by places like Alexia and Netcraft to collect statistics
about how many and of what type of web server are live on the Internet. To
support the author and statistics for Nginx we recommend keeping this string
as is"

Since Nginx recommended keeping it as is, we don't think this is a security vulnerability but to thank Sahil Saif for his participation, a small reward will be given to him and he will be added to the non-severe award list.

Pages: « 1 [2]  All
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!