Hacker News new | ask | show | jobs
by hassy 6111 days ago
Summary:

A lot of people don't use "svn export" and leave .svn directories readable to everyone.

The authors of the article wrote a crawler that scanned 2.2 million domains, mostly in the .ru zone, for the vulnerability over the last couple of months.

They got access to (parts of) the source code of over 3 thousand sites, including some big ones like:

* yandex.ru and rambler.ru -- Russian search engines

* mail.ru -- Biggest Russian email host

* rbk.ru -- Large online publisher

* 003.ru, bolero.ru -- Online retailers

* habrahabr.ru -- Webdev/blogging/new media community site

* opera.com