CERT-Polska/Artemis

Detect that a site got hacked (having a list of known payloads that are put on hacked websites)

Opened this issue · 4 comments

Detect that a site got hacked (having a list of known payloads that are put on hacked websites)

just to be clear, you want to compare it with payloads like, say OWASP Cheat Sheets? like you somewhat scrape the site to see that right?

so why not add this nuclei template ?

I think this template has two drawbacks:

  • it performs a significant number of HTTP requests,
  • it has a significant risk of FPs (e.g. any occurence of TangoDown causes the template to match).