Timeline for Should I send attribution/copyright notes to a client over a server?
Current License: CC BY-SA 3.0
13 events
| when toggle format | what | by | license | comment | |
|---|---|---|---|---|---|
| S Aug 6, 2015 at 23:32 | history | edited | Zizouz212 | CC BY-SA 3.0 | added 13 characters in body |
| Aug 6, 2015 at 23:05 | review | Suggested edits | |||
| S Aug 6, 2015 at 23:32 | |||||
| Aug 6, 2015 at 22:55 | history | edited | Zizouz212 | CC BY-SA 3.0 | Specify title |
| Aug 6, 2015 at 19:54 | comment | added | user254197 | ok, I just link this topic to the off-topic security.stackexchange.com/questions/96113/… | |
| Aug 6, 2015 at 19:41 | comment | added | Martijn | If it's a zero-day which has no patches yet, then you're vulnerable, whether you show which version you are using or not. An attacker isn't going to "not bother" trying some exploit on your website if they're not sure what version of what software you're running. But we're quickly drifting off-topic here. It might hold a good question for security.stackexchange.com though | |
| Aug 6, 2015 at 19:38 | comment | added | user254197 | Ok, I totally aggree with you regarding server patches, but I meant if an exploit just released and there is no security fix avaiable... | |
| Aug 6, 2015 at 19:28 | comment | added | Martijn | You should never rely on an attacker not knowing that you have vulnerabilities as a defense against vulnerabilities. It's a pretty bad defense. Patch your servers. The should here is a moral should (and therefor not part of my answer) | |
| Aug 6, 2015 at 19:22 | comment | added | user254197 | For example I put some license notes(program used on the server-side) into my JavaScript-file(as a comment), which will be send to the client. Imagine if someone wants to attack my website, the attacker can see the version I use on my server and see which exploit he should use !? | |
| Aug 6, 2015 at 18:55 | comment | added | Martijn | Should you send attribution/copyright notes to a client? Well, I think you should. But the license doesn't put you under any obligation to do so. | |
| Aug 6, 2015 at 18:52 | answer | added | Martijn | timeline score: 4 | |
| Aug 6, 2015 at 18:17 | history | edited | ArtOfCode | CC BY-SA 3.0 | deleted 3 characters in body; edited title |
| Aug 6, 2015 at 17:18 | review | First posts | |||
| Aug 6, 2015 at 17:22 | |||||
| Aug 6, 2015 at 17:13 | history | asked | user254197 | CC BY-SA 3.0 |