The raker should not rake pages from private IP addresses #17

Open
opened 2023-11-21 14:15:36 +00:00 by reivilibre · 0 comments
Owner

A DNS attack could be used to trick QuickPeep into querying a private IP address.

This risk is currently minor since all domains have to be manually allowed, but it is worth thinking about eventually.

A DNS attack could be used to trick QuickPeep into querying a private IP address. This risk is currently minor since all domains have to be manually allowed, but it is worth thinking about eventually.
Sign in to join this conversation.
No Milestone
No project
No Assignees
1 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: reivilibre/quickpeep#17
No description provided.