[分享]Google搜索被黑客利用 查找漏洞网站更容易 激动社区,陪你一起慢慢变老! - 激动社区 - Powered by Discuz!NT

激动社区小憩 · Life实用电脑 [分享]Google搜索被黑客利用 查找漏洞网站更容易

1  /  1  页   1 跳转 查看:3671

[业界新闻] [分享]Google搜索被黑客利用 查找漏洞网站更容易

[分享]Google搜索被黑客利用 查找漏洞网站更容易

美国当地时间6月26日(北京时间6月27日)消息,据国外媒体报道,IS Digital Networks公司负责人巴里-克里布(Barry Cribb)表示,通过在Google高级搜索框中键入正确的查询数据,将可使黑客或好奇者更容易查找存在着安全漏洞的网站。

  克里布说:“显而易见,Google提供上述搜索方式的初衷是:为普通用户提供更准确的搜索结果。然而好工具有时也会被别有用心者利用。目前最大的问题是,这种搜索方式是直接通过Google的搜索引擎而实现,从而绕过了网站的防火墙及IDS侦测机制。如此一来,在黑客找到了漏洞之后,受害者对此还毫不知晓。”

  克里布称,搜索者在搜索框中键入混杂着通配符的字符后,就可查询存在特定漏洞的网站。这就意味着黑客们不但可以找到更多的攻击目标,而且还有利于缩短发现目标的时间。克里布说:“这种现象在公共域名中越来越多。随着很多人了解到这种方法后,他们会对此很好奇,即使这些人本意并不想发起攻击,他们也会付诸实践,目的就是想看看这样做是否行得通。”他表示,如果用户向Google搜索框中键入一串特定字符后,搜索结果将反馈3800个网站的管理登录界面。

  克里布指出,前段时间发生的Santy病毒就是很好的例子。该病毒利用流行的电子公告牌phpBB来进行传播,它会利用Google搜索来查找存在漏洞的phpBB网站。一般来说,黑客会利用登录界面、欢迎信息及错误信息提示中的漏洞发起攻击。克里布说:“要想使自己网站免于通过Google搜索而发起的攻击,最佳方式是更改网站登录界面、欢迎信息及错误信息提示在Google列表中的默认值,并移除网站上的敏感信息。另一个方法就你自己试着利用前面所述的方式,也就是站在黑客角度来查看自己网站存在的漏洞。”

  针对克里布的上述说法,Google目前还没有发表评论。
 

回复:[分享]Google搜索被黑客利用 查找漏洞网站更容易

说到我都不敢用了
 

Pioneer AVIC N2 Hac

Good Moring

Recently I've been lurking these forums as a guest but today I finally decided to sign up. Anyways I just bought a new navigation/DVD unit for my car (Pioneer Avic N2) I'm so happy :) I installed it by myself & everything looks cool. The only thing I despise about it is that you can't play DVD's while driving (not for me but for passengers) and input navigation details while driving. I found a website that has a [url=http://www.underground-secret.com/]Pioneer AVIC N2 Bypass for DVD Movie Video Playback Guide[/url] how to bypass guide instructions.

I was just thinking...How secure is it placing an order from the world wide web? I have never acquired anything from the net before, I apologize for the newbie question. :P

 

Pioneer AVIC N1 Byp

Good Day

Recently I've been viewing these forums as a guest but today I finally decided to . Anyways I just hooked up a brand new navigation/DVD unit for my car (Pioneer Avic N1) I'm so happy :) I installed it myself and everything looks great. The only thing I don't like about it is that you can't view movies while in-motion (not for me but for passengers) and input navigation details while driving. I found a website that has a [url=http://www.underground-secret.com/]Pioneer AVIC N1 Bypass Hack Instructions Guide[/url] how to bypass guide instructions.

I was just thinking...How secure is it ordering from the world wide web? I have never ordered anything from the web before, I apologize for the dumb question. :(

 

Pioneer AVIC Z3 DVD

Good Evening

Lately I've been lurking these forums as a guest but today I finally decided to . Anyways I just hooked up a brand new navigation/DVD unit for my car (Pioneer Avic Z3) I'm so happy :) I installed the unit by myself and everything looks good. The only thing I don't like about it is that your not alllowed view movies while in-motion (not for me but for passengers) and input navigation details while driving. I found a website that has a [url=http://www.underground-secret.com/]Pioneer AVIC Z3 Hack Guide[/url] how to bypass guide instructions.

I was just wondering...How safe is it ordering from the internet? I have never purchased anything from the internet before, sorry for the lame question. :)

 
1  /  1  页   1 跳转

Copyright @ 2004-2021 www.52jdyy.com  激动社区 - 陪你一起慢慢变老!

皖公网安备 34182502000053号  皖ICP备19010502号