4/11/2023 0 Comments Mac apache status![]() ![]() If poorly configured, the Apache webserver would return a list of IP addresses and the content they have asked the server to fetch from them. These status pages are available by simply adding /site-status to the URL of the website to be probed. These server-status pages offer attackers a lot of information that can be used in targeted attacks if they poke around for unprotected administrator panels. Sucuri researchers explained that this status page can be very useful for server administrators while troubleshooting their boxes but they become a risk factor if the information listed there gets into the wrong hands. ![]() When enabled, the Apache mod_status module creates a “server status” page that displays certain pieces of information about the server`s CPU, memory load, user requests, IP addresses or paths to certain internal files. ![]() This discovery was made by researchers with security firm Sucuri after crawling 10 million websites and finding hundreds of status pages available on the internet. ![]() Hundreds of websites running Apache with the mod_status module enabled are leaking information about the websites they host, the IPs of visitors and what resources they are interested in. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |