Does Label Distribution Protocol (LDP) on port 646 need to be open to the Internet? What are the risks associated with it?

I am a security engineer trying to understand the risks of having LDP exposed to the Internet on port 646. I cannot find much information available on the Internet documenting this. Any information including further reading links would be … Continue reading Does Label Distribution Protocol (LDP) on port 646 need to be open to the Internet? What are the risks associated with it?

Web application discovery: Can there be virtual hosts configured even when there is a response without host header?

I’m currently learning how to discover web applications running on a machine using port scanning, vhost bruteforcing and directory fuzzing. When it comes to port scanning, there is one thing I can’t wrap my head around.
Let’s say I have sc… Continue reading Web application discovery: Can there be virtual hosts configured even when there is a response without host header?