I generated 16 character (upper/lower) subdomain and set up a virtual host for it in Apache, and within an hour was seeing vulnerability scans.
How are folks digging this up? What’s the strategy to avoid this?
I am serving it all with a single wildcard SSL cert, if that’s relevant.
Thanks
FukOui@lemmy.zip 1 month ago
Following this thread!
Stupid question, but are you somehow publicly exposing your vhost config (or a bak file of it)?