RE: https://abyssdomain.expert/@filippo/117218178412693242
vuln scanners almost all rely on cve/mitre
most of them exist to make a fictional number somehow continually go down and to the right.
those exist because compliance demands it
thus we have this perpetual cycle of 'make bullshit vulns, then fix bullshit vulns, so it looks like we're doing something'
meanwhile, jenkins, jfrog, and firewall interfaces chilling with default creds on the internet still get popped every day