Anyone else getting a request to connect with a client SSL certificate? I'm unsure why it's asking for it.
Show HN: Vulnerability scans for WordPress. No installation or code required.
11–16 of 16 posts
Re: Show HN: Vulnerability scans for WordPress. No installation or code required.
#12 6 vulnerabilities found
Wordpress Core vX.x:
1. CVS0001 - click here to resolve
2. CVS0002 - click here to resolve
3. CVS0003 - sign up to resolve
Wordpress Plugins:
- W3 Cache vX.x
1. CVS0004 - click here to resolve
- Jetpack vX.x
1. CVS0005 - click here to resolve
2. CVS0006 - sign up to resolve
- ...
You get two Wordpress core fixes and two plugin fixes for free. The rest you have to pay for.It would be a good on-boarding process. It get to see that there are indeed vulnerabilities, and I get a few solutions provided for free, but to resolve the rest I need to sign up.
As someone with a single WordPress personal site the starter level is too expensive. Have you considered a per resolution fee? I.e. You find five vulnerabilities with my site. I pay $X.XX per fix?
Re: Show HN: Vulnerability scans for WordPress. No installation or code required.
#13Would cool to have some kind of free trial. Even if it did something like: 6 vulnerabilities found Wordpress Core vX.x: 1. CVS0001 - click here to resolve 2. CVS0002 - click here to resolve 3. CVS0003 - sign up to resolve Wordpress Plugins: - W3 Cache vX.x 1. CVS0004 - click here to resolve - Jetpack vX.x 1. CVS0005 - click here to resolve 2. CVS0006 - sign up to resolve - ... You get two Wordpress core fixes and two…
However, I'm currently in the process of working with the Google Analytics API to provide free scans for verified websites where the user can prove ownership -- this should roll out in about a week or so. Would you like me to drop you a PM when I release this feature?
Re: Show HN: Vulnerability scans for WordPress. No installation or code required.
#14Anyone else getting a request to connect with a client SSL certificate? I'm unsure why it's asking for it.
Re: Show HN: Vulnerability scans for WordPress. No installation or code required.
#15Would cool to have some kind of free trial. Even if it did something like: 6 vulnerabilities found Wordpress Core vX.x: 1. CVS0001 - click here to resolve 2. CVS0002 - click here to resolve 3. CVS0003 - sign up to resolve Wordpress Plugins: - W3 Cache vX.x 1. CVS0004 - click here to resolve - Jetpack vX.x 1. CVS0005 - click here to resolve 2. CVS0006 - sign up to resolve - ... You get two Wordpress core fixes and two…
Hi, thanks for the feedback. I've asked for credit card details to prevent the abuse of this service since you can scan any website. However, I'm currently in the process of working with the Google Analytics API to provide free scans for verified websites where the user can prove ownership -- this should roll out in about a week or so. Would you like me to drop you a PM when I release this feature?
Re: Show HN: Vulnerability scans for WordPress. No installation or code required.
#16Their reputation is such that the credit-card vendors trust their results for PCI compliance testing ... a major thing in e-commerce and online payment.
I believe a special filename & contents is required somewhere, to prove you do indeed own the site you're scanning.
Perhaps you're not interested in competing with them yet, but it's something to consider.