Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

Information Leakage

Listing the web server in the HTTP headers does nothing for your users, but will tell an attacker which exploits they can try. Make sure that you turn off this feature in your web server configuration - or even better, misreport the web server!

Sanitized HTTP Response
Accept-Ranges: bytes
Content-Length: 196
Connection: close
Content-Type: text/html
Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com