You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
It appears that Nikto is only looking for Status OK or Redirection responses to identify potentially interesting archives/certs. Applications that redirect the user to a log in/home page will cause all these "interesting" files to be false positives.
Maybe consider comparing the responses to ensure that they aren't all pointing to the exact same path.
The text was updated successfully, but these errors were encountered:
I traced it down to plugins/nikto_sitefiles.plugin
for now, if you rename this file to something else, it will not be used during the scan.
Not a solution, but until I learn perl (I guess)
Output of suspected false positive / negative
It appears that Nikto is only looking for Status OK or Redirection responses to identify potentially interesting archives/certs. Applications that redirect the user to a log in/home page will cause all these "interesting" files to be false positives.
Maybe consider comparing the responses to ensure that they aren't all pointing to the exact same path.
The text was updated successfully, but these errors were encountered: