Why is Apache Vulnerable by Default?
Tim Cotten

Many thanks for your post.
In general, how do you deal with false alerts from the Trustwave audit?

In addition to their false alerts (many of them they don’t want to close even after dispute), it seems just inconsistent — two webservers this the same config, different scan results.

Thank you,


One clap, two clap, three clap, forty?

By clapping more or less, you can signal to us which stories really stand out.