ShadowTrackr

RSS feed

Automatic False Positive detection update

11 May 2026
The TLS and SSL tests come up with quite a lot of results for some older vulnerabilities. These might be a thing for legacy systems, but are almost always fixed in modern systems. That does not always show on the outside and clogs up the vulnerability overviews. You can of course mark them as false positives, but since there can be quick a lot we changed the default. The following vulnerabilities are now by default marked as false positive: CVE-2011-3389, CVE-2013-0169, CVE-2013-3587, CVE-2014-0224.
Older posts >

Resources
API
Blog
Documentation
Integrations
Shodan
OpenCTI