* Posts by phishcop

1 post • joined 3 Jan 2018

Bug-finders' scheme: Tick-tock, this tech's tested by flaws.. but who the heck do you tell?

phishcop

Nice idea, but...

Nice idea, but it's not going to work. Most of the sites I run across with problems have already been hacked. If the hacker can add files, he/she can usually remove files as well. If this became a standard, the security.txt file would be the first thing they delete.

What you're trying to accomplish can already be done with WHOIS (providing the people maintaining and enforcing WHOIS databases do their job). Unfortunately, ICANN and others think it's more important that people can hide (a.k.a. "Domain Privacy") than the original intent of the WHOIS data, which was to provide reliable contact information to owners of a domain or IP address!!

SUBSCRIBE TO OUR WEEKLY TECH NEWSLETTER

Biting the hand that feeds IT © 1998–2021