Interesting HTTP header information

Time:2020-5-26

Interesting HTTP header information

Original address: https://frenxi.com/http-heade…

Original author: Francesco Carlucci

A few days ago, I wandered through creditkarma’s blog and found this HTTP header:

X-hacker: If you're reading this, you should visit wpvip.com/careers and apply to join the fun, mention this header.

My first thought was, “Wow, in the past, we used to use millennium bug to save some data. Now the company provides a complete job opportunity in the HTTP header!”

It made me curious, so I did some research!

If you host your site on the WordPress VIP, an enterprise WordPress hosted solution managed by automated, this particular header appears to be the “default” heading. You can find the same title on many famous websites, such as:

  • https://nypost.com/
  • https://techcrunch.com/
  • https://www.nbcolympics.com/
  • https://www.thesun.co.uk/

Developers and site owners can disable it, but to be honest, I suspect they don’t even know to include this header in every site HTTP response. Of course, my second idea is to check whether other companies have any form of advertising header.

The result is amazing!

You can find multiple job openings in the HTTP header

Yes! The coolest companies in the world seem to offer jobs in the following HTTP headers:x-recruiting

Some examples are:

Paypal.me

x-recruiting: If you are reading this, maybe you should be working at PayPal instead! Check out www.paypal.com/us/webapps/mpp/paypal-jobs

Booking.com

x-recruiting: Like HTTP headers? Come write ours: careers.booking.com

Etsy.com

x-recruiting: Is code your craft? www.etsy.com/careers

Otto.de

x-recruiting: Seems you like http headers. To write ours, apply at job.otto.de and mention this header.

Do you need a complete list? I created a GitHub repository for this: HTTPS:// github.com/francescocarlucci/job -offers-http-headers

Jobs has provided a lot of things, and in my research, I’ve found more creative things, because I’m glad I’m a mysterious fanatic of nonsense.

Mysterious HTTP header

Nine kw.eu , a website that seems to distribute the verification code system, tells us 42 is secret information:

X-Secret-Message: 42

Istreetview.com They are no longer maintained, but a web form is hidden in their title.

X-Secret-URL: https://appio.link/secret

I submitted

Thetradersdomain.com There’s a sauce hidden in the title of, but it’s Confidential:

x-secret-sauce: Confidential

Images- dnxlive.com There are also “secret” links in one of his HTTP headers:

X-Secret-Message: camscv.dnxnetwork.lu

jaguar.ro There is a header to detect the robot:

X-Bot: false

But it doesn’t work well, and if you cheat the user agent, it fails (sorry, Jaguar).

But… You’ve seen itWith a nicknameOfServer?Here are a few:

X-men.com

X-ServerNickName: clint

Howgoodisyourseo.com

X-ServerNickName: The Internet

There are a lot of expectations for us to explore, we are in M bidorbuy.co.ke Our friends on showed us all their passion for HTTP headers:

x-powered-by: Passion and tiny cute kittens
x-servernickname: The Beast
x-hacker: If you are reading this, maybe you should be working at bidorbuy instead

Windfall

It seems that many fascinating IT companies have additional HTTP headers, most of which contain jobs.

So I think it’s cool to add extra titles to the site!

thank

Article understanding in science and technology weekly: issue 108 – Ruan Yifeng