Skip to content

Question about traffic generated by Nuclei project #771

Closed Answered by melardev
Investor20 asked this question in Q&A
Discussion options

You must be logged in to vote

Hi, I don't think there is anything you can do about this, other than sending an abuse report to the owner of that IP (if the malicious server is on DigitalOcean send a report to [email protected]).
This tool is heavily used by Bug bounty hunters nowadays, I had myself access to some HTTP logs (through subdomain takeover, LFI, or RCE) and it is scary, most requests come from Nuclei, for subdomain takeovers I have seen nuclei scans literally 2 minutes after taking over a subdomain that can give you an idea of how frequent these scans are.
The disease of blindly misusing nuclei is a well-known problem in Bug bounty and it is not gonna go away, more and more people are joining this tren…

Replies: 3 comments 4 replies

Comment options

You must be logged in to vote
2 replies
@Investor20
Comment options

@ehsandeep
Comment options

Answer selected by ehsandeep
Comment options

You must be logged in to vote
2 replies
@ehsandeep
Comment options

@GraylockInc
Comment options

Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants