首页

搜索结果

"tag:"安全""


标题及摘要 日期/时间
1
OpenSSL 的 Heartbleed 漏洞的影响到底有多少? - 知乎
既然大家都这么关注,那么我就再爆点猛料好了。 我一骇客界的朋友Lwqn跟我说他们一年前就已经在利用这个漏洞了,获取到了不少大网站的敏感数据,这个消息让我彻夜难眠。 他发了一个exploit的demo给我,原链接已经撤掉了,所以我放到了gist上:http://gist.github.com/RixTox/10222402Pyhton3版的在这里OpenSSL heartbeat PoC with STARTTLS support 下图是对DEF CON进行的Heartbleed测试 DEF CON在我...
2014-4-10
18:50:00
2
ssh - Invalid users trying to log in to my server - Information Security Stack Exchange
It is very common. Many botnets try to spread that way, so this is a wide scale mindless attack. Mitigation measures include: Use passwords withhigh entropywhich are very unlikely to be brute-forced. Disable SSH login forroot. Use an "un...
2014-3-27
9:50:00