Monday, January 07, 2008

Fake hacker targets?

Today I created the following empty files:
  • /display.php
  • /errors.php
  • /popup_window.php
these are often requested by script kiddies (display.php thousands of times a month); now we are serving empty docs instead of returning 404 errors.

Is this an improvement?

For us, it means fewer lines in the error logs, and more useful Analog reports.

Does it cause hassle for script kiddies? Presumably their script shows them all non-404 results; will they spend a few seconds trying to figure out our empty doc? And is it dangerous to attract this kind of attention?

Update January 7, 2008:

My colleague Jon Felder says "do it," so I'm adding:

  • /_vti_bin/owssvr.dll
  • /_vti_bin/shtml.exe/_vti_rpc
  • /_vti_inf.html
  • /account.php
  • /calendar.php
  • /cart_content.php
  • /confirmUnsubscription.php
  • /errors.php
  • /fax_form.php
  • /freestuff/account.php
  • /freestuff/cart_content.php
  • /freestuff/popup_window.php
  • /freestuff/squirrelcart/js/cart_content.php
  • /freestuff/squirrelcart/js/popup_window.php
  • /freestuff/squirrelcart/js/squirrelcart/cart_content.php
  • /freestuff/squirrelcart/popup_window.php
  • /freestuff/squirrelcart/squirrelcart/cart_content.php
  • /MSOffice/cltreq.asp
  • /newsletter/05-3/errors.php
  • /newsletter/confirmUnsubscription.php
  • /newsletter/errors.php
  • /newsletter/newsletter.php
  • /newsletter/newsletter/newsletter.php
  • /popup_window.php
  • /squirrelcart/cart_content.php
  • /squirrelcart/popup_window.php
  • /store.php
  • /test.php


HAH! Take that, h4x0r!

Labels: , , , , , ,

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home