Return Styles: Pseud0ch, Terminal, Valhalla, NES, Geocities, Blue Moon. Entire thread

robots.txt

Name: Anonymous 2018-08-29 20:54

robots.txt is a way to supposedly get search engines to leave your site's private resources alone, like a private API or something. But at the same time, you are making valuable resources easily known to attackers. It takes out the time and effort required for directory enumeration with DirBuster.

How can we come up with a better solution to robots.txt that doesn't paint obvious targets?

Name: Anonymous 2018-08-30 6:50

Make robots.txt contain SHA512 hashes of the secret paths instead of the paths verbatim. Use domain as salt to prevent rainbow table lookup.

Newer Posts
Don't change these.
Name: Email:
Entire Thread Thread List