Hacker News new | past | comments | ask | show | jobs | submit login

I made something similar a long time ago, it's mostly aimed at people that use CMSs like Wordpress or Joomla. The database was created using the most common attack endpoints bots have tried on my own sites.

https://prober.dev

if anyone wants to try it out




That test is actually funny, in a good way; like how you said you got those links in the first place on the about page is pretty much what any experienced web dev finds out day-to-day.

Most sites I sent to it came back with plenty of false positives, mainly because htaccess rewrites resolve the URIs as query string IDs and returned empty pages with "Sorry, but the information you're looking for doesn't exist..."


Thanks for trying it out. It’s been a while but I’m sure the test checks for a 404 so if those pages gave a 404 they won’t be recognized as a false positive. I tried leaving some text about possible false positives because some people told me it can make others panic if they don’t really understand web dev well.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: