Never leave AWStats or Webalizer publicly accessible. Use HTTP Authentication ( .htpasswd ).
Security researchers and enthusiasts often use variations of this dork to find more specific results:
intitle:"index of" "view.shtml" best
In Nginx:
One such powerful, yet often overlooked, query is:
Never leave AWStats or Webalizer publicly accessible. Use HTTP Authentication ( .htpasswd ).
Security researchers and enthusiasts often use variations of this dork to find more specific results: inurl view index shtml best
intitle:"index of" "view.shtml" best
In Nginx:
One such powerful, yet often overlooked, query is: Never leave AWStats or Webalizer publicly accessible