This site uses cookies to improve site functionality, for advertising purposes, and for website analytics. By continuing to use the site you are agreeing to our use of cookies. Learn More Continue
éãæªããã¨ã®è²¬ä»»ã¯ã¨ãã¾ãããã¨ããè¨äºã åºæ¬çã«åæãããã®ã§ã¯ããã®ã ãã©ããªããéåæã¯æ®ããã ããªãããã®æã®è°è«ããããã¡ããç¯ç½ªè ãæ ¹æ¬çã«ã¯æªããã ãã©ãã被害è ã«ä¸åã®è²¬ä»»ãç¡ããã®ãããªè¨èª¬ãå±ãã人ãããã¦ããããã¦ãã®ãè¦ãã¨ãå°ãä¸å®ã«ãªãããã¡ããå è¨äºæ¸ããy_arimããã¯ãããªãã¨ããã£ã¦ãã ãããã©ãã ãã¦ããã®ãããªã責任ãã®ç¨æ³ã¯ãä»å¹´ã®é ã«ãè¦ãããã ä¾ã®ããã¬ã¤ãããã女æ§ã«ã責任ã¯ãããã£ã¦ãã¤ã ãã©ããªè²¬ä»»ãï¼ãã¨åãã¨ããã¨ãã°å¤ä¸ã«å±ãªãã¨ãããåºæ©ããªã¨ãç·ãèªããããªé²åºåº¦ã®é«ãæ°å¥½ãªãããããªã¨ããããããçããè¿ã£ã¦ãããã¤ã¾ãèªè¡è²¬ä»»ãmetalbabbleæ°ã®è¨ããèªå·±é²è¡æ段ãããèªåã§èããªããã£ã¦ãã¤ã ã ä¸è¨ã§æ¬ã£ã¦æ¨ã¦ãããããã¯è¢«å®³è ææªwithã»ã¯ã·ãºã ã§ãããä¸è¨ãããªããï¼ éãæªããã¨ã®è²¬ä»»ã¯ã¨ãã¾ã
ã¤ã³ã¿ã¼ãããã§ã¯ãä¾ãã°å人æ å ±ãå ¥åãããè²·ãç©ãããã¨ããã¾ãææãµã¼ãã¹ãå©ç¨ããã¨ããªã©ã«éä¿¡ãæå·åãããã¨ã常èã¨ãªã£ã¦ããããã¡ããããã¯çè´ãä¸æ£ãã°ã¤ã³ããã¼ã¿ã®æ¹ãããå½é ã¨ãã£ããã¨ãé²ãããã ãããããå®ç¾ããæå·ã¢ã«ã´ãªãºã ã«ã¯ãã¾ãã¾ãªãã®ãåå¨ããããããã«ç¹å¾´ããããã¨ã¯æå¤ã¨ç¥ããã¦ããªãã æè¿ã§ã¯ã³ã³ãã¥ã¼ã¿ã®å¦çè½åã®å¤§å¹ ãªåä¸ãªã©ã«ããâæå·ãç ´ãããâãã¨ãçãããªããªã£ãããæå·ã®ç¾ç¶ã¯ã©ããªã£ã¦ããã®ã ãããï¼ããInternet Week 2008ãã§27æ¥ã«è¡ãããã»ãã·ã§ã³ã次ä¸ä»£æå·ã¢ã«ã´ãªãºã ã¸ã®ç§»è¡ï½æå·ã®2010å¹´åé¡ã«ã©ã対å¿ãã¹ããï½ãããã¯ãé©ãã¹ãå®æ ãè¦ãã¦ããã ã»ãã·ã§ã³ã¯ãã»ã³ã ISç 究æã®æ¾æ¬æ³°æ°ãå¸ä¼ãåãããå ¨ä½èª¬æãããå§ã¾ã£ããã¾ãã¯ãæå·ã®å°é家ã§ãªãåå è ã®ããã«ãæå·ã¨ã¯ä½ããã¨ããåºæ¬ã®è©±ãã
 ä¼å¡éå®ãµã¼ãã¹ã§ã æé¡ãã©ã³ã10ææ«ã¾ã§ç¡æ ãç³ã込㿠ä¼å¡ã®æ¹ã¯ãã¡ã ãã°ã¤ã³ æ¥çµã¯ãã¹ãã㯠TOPãã¼ã¸
ITçã®åèµé? æä»ããã®ã»ãã¥ãªãã£ã³ã¹ãã¨æ¦ãï¼ã»ãã¥ãªãã£ãããããæ¬é³ã§èªããªããï¼1ï¼ï¼1/3 ãã¼ã¸ï¼ ããªãã®ä¼ç¤¾ã¯ãå¾æ¥å¡ã«è² æ ãå¼·ããã»ãã¥ãªãã£å¯¾çãè¡ã£ã¦ãã¾ãããï¼ æ¬é£è¼ã§ã¯ã³ã³ãµã«ã¿ã³ãã®è¦ç¹ããããã£ãã¤ããã®å¯¾çãããããæ°ããã対çãããå®ããããªã対çããæ¬é³ã§èªããããããå«ãããæ å ±ã»ãã¥ãªãã£ã³ã¹ãããèãã¾ãï¼ç·¨éé¨ï¼ çè ã¯æ¥æ¬ã«ãããæ å ±ã»ãã¥ãªãã£ãã¸ãã¹ã®é»æï¼ããããï¼æãããã®ä¸çã«ãããã£ã¦ãã¦ããã1995å¹´ããã»ãã¥ãªãã£ãã¸ãã¹ã®ç«ã¡ä¸ããã»ãã¥ãªãã£ã³ãã¥ããã£ä¸»å¬è ãèå¼±ï¼ãããããï¼æ§çºè¦è ãç·æ¥å¯¾å¿æ¡ä»¶å¯¾å¿ãä¸å ´ä¼æ¥ããããçµã¦ãç©çã»ãã¥ãªãã£ã¨ã®èåã®æ¨¡ç´¢ãæ å ±ã»ãã¥ãªãã£ã¢ããã¤ã¶ã¼ãªã©ãã¾ãã¾ãªçµé¨ããã¦ãã¾ããããã®ãããªçµé¨ãããããã¾ã§ç©ã¿éãããã¦ããæ å ±ã»ãã¥ãªãã£å¯¾çã®æ£å¸ãã¨åæ§ç¯ãããã¦ã·ã¹ã
2008å¹´ã«å ¥ãï¼SQLã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æãçå¨ã奮ãç¶ãã¦ããã8æ6æ¥ã«ã¯ï¼ã¢ã¦ããã¢ååãªã©ãæ±ãé販ãµã¤ããããã¥ã©ã ã»ã¤ã¼ã³ãã¼ã¹ããå¤é¨ããSQLã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æãåãããã¨ãæããã«ããï¼é¢é£è¨äºï¼ãç´65ä¸ä»¶ã®å人æ å ±ãæµåºããå¯è½æ§ãããã¨ããããã®å°ãåã®7æ23æ¥ã«ã¯ï¼ECãµã¤ãäºæ¥ãæãããã¢ã¤ãªã¹ãã©ã¶ãæ»æãåããã¨çºè¡¨ããã使ã£ã¦ããªãå¤ãããã°ã©ã ã®ããå¼±æ§ãçªããï¼ã«ã¼ãæ å ±2ä¸8000件ãæ¼ããããå¯è½æ§ããã£ãã SQLã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æã§ã¯ï¼æ å ±ãçã¿åºããã®ã ãã§ãªãï¼ãµã¤ãæ¹ããäºä»¶ãå¤çºãã¦ãããä¾ãã°ï¼ç±³å½ã®ãã¸ãã¹ã¦ã£ã¼ã¯èªã®ãµã¤ããä¹ã£åãããäºä»¶ï¼é¢é£è¨äºï¼ãWebãã¼ã¸ã§ã¯ãªããï¼ã´ã«ããã¤ã¸ã§ã¹ããªã³ã©ã¤ã³ãSQLã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æã«ãã£ã¦ï¼ã¡ã«ãã¬é ä¿¡ç¨ã®ã³ã³ãã³ããæ¸ãæããããã SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ä»¥å¤ã®ããå¼±æ§
e-ææ¸æ³ã¨ã¯ e-ææ¸æ³æ½è¡ãä¼æ¥æ´»åã«ä¸ããã¤ã³ãã¯ã åºæ¬ 浩ãäºå±± æ³°è£ æ ªå¼ä¼ç¤¾NTTãã¼ã¿ ãã¸ãã¹ã½ãªã¥ã¼ã·ã§ã³äºæ¥æ¬é¨ ã»ãã¥ãªãã£ãµã¼ãã¹ã¦ããã 2005/7/20 2005å¹´4æï¼æ¥ã«ã»ãã¥ãªãã£ã«é¢ãã2ã¤ã®æ³å¾ãæ½è¡ãããã1ã¤ã¯ãå人æ å ±ã®ä¿è·ã«é¢ããæ³å¾ï¼å人æ å ±ä¿è·æ³ï¼ããé£æ¥ã®ããã«é¡§å®¢æ å ±ç´å¤±ã®ãã¥ã¼ã¹ãæµãã¦ãããããã®é½åº¦ååãè³ã«ããã®ã§èªç¥åº¦ãé«ãæ³å¾ã§ããããã¦ããã1ã¤ã®æ³å¾ããåãã ãããã çãã¯ãe-ææ¸æ³ãã ä¸è¦ãå人æ å ±ä¿è·æ³ã«æ¯ã¹ãã¨æ³¨ç®åº¦ã¯ä½ãããã«æãããããe-ææ¸æ³ã«é¢ããã»ããã¼ã¯æ¯æ¥ã®ããã«éå¬ããã¦ãããã©ã®ã»ããã¼ãé常ã«çæ³ã§ããããã¼ãã¼ã¬ã¹åã«ããç´ææ¸ã®ä¿ç®¡ã³ã¹ãã®åæ¸ãæ¤ç´¢å¹çã®åä¸ãªã©ã«ãããã¸ãã¹ããã»ã¹ã®ã¹ãã¼ãã¢ãããªã©ä¼æ¥æ´»åã«ã¤ã³ãã¯ããä¸ãã注ç®ãã¹ãæ³å¾ã§ãããã¨ãåããã ã§ã¯ãe-æ
Webãµã¤ãã«ã¢ã¯ã»ã¹ãã端æ«ã¯ãã½ã³ã³ã ãã§ã¯ãªããä»ã§ã¯æºå¸¯é»è©±ããã¢ã¯ã»ã¹ãããã¨ãå¤ããã§ã¯ï¼æºå¸¯é»è©±ããã®Webã¢ã¯ã»ã¹ã®ã»ãã·ã§ã³ç®¡çã¯ã©ããªã£ã¦ããã®ã ãããããã½ã³ã³ããã®ã¢ã¯ã»ã¹ã¨å¤ãããªãããã«æãããããããªããï¼å®ã¯ã¾ã£ããéããæºå¸¯é»è©±ã®Webã¢ã¯ã»ã¹ã¯ï¼ãã½ã³ã³ã¨éãå¶ç´ãããï¼ã»ãã·ã§ã³ç®¡çãããã«åããã¦å¤ãã£ã¦ããããã®ãã¨ãï¼ä½¿ãåæãã»ãã¥ãªãã£ã®éãã«ãªã£ã¦ããã 管çã«ä½¿ããæ©è½ã¯äºæ¥è ã§ç°ãªã ã¾ãã¯ï¼æºå¸¯é»è©±æ©ããã®Webã¢ã¯ã»ã¹ããã½ã³ã³ã¨ã©ãéãã®ãã«ã¤ãã¦è¦ã¦ãããã æºå¸¯é»è©±æ©ããã®Webã¢ã¯ã»ã¹ã¯ï¼æºå¸¯é»è©±ç¶²ã®ã²ã¼ãã¦ã¨ã¤ã»ãµã¼ãã¼ãçµç±ãã¦ï¼ã¤ã³ã¿ã¼ãããä¸ã®Webãµã¤ãã«å±ãããã®ãã¡HTTPã使ãããã®ã¯ï¼ã²ã¼ãã¦ã¨ã¤ã»ãµã¼ãã¼ã¨Webãµã¤ãã®éãæºå¸¯é»è©±æ©ã¨ã²ã¼ãã¦ã¨ã¤ã»ãµã¼ãã¼ã®éã¯ï¼HTTPã¨ã¯ç°ãªãã¢ããªã±ã¼ã·ã§ã³ã»ãã
PCI DSSã¯ï¼ã¯ã¬ã¸ããã«ã¼ãã®ã«ã¼ãæ å ±ããã³åå¼æ å ±ãä¿è·ããããã«ï¼å ã¤ã®ç®çã¨ï¼ããã«é¢ãã12åã®ãã¼ã¿ã»ã»ãã¥ãªãã£è¦ä»¶ãå®ãã¦ãããåè¦ä»¶ã«ã¯ï¼åè¦æ±äºé ãå®ç¾ããããã®è©³ç´°ãªç®¡ççãè¦å®ããã¦ãããä»åã¯è¦ä»¶7ï¼è¦ä»¶8ï¼è¦ä»¶9ã®æ¦è¦ã«ã¤ãã¦è¿°ã¹ãããã®ä¸ã¤ã®è¦ä»¶ã¯ãã¢ã¯ã»ã¹å¶å¾¡ããç®çã¨ãï¼ãã®ç®çãå®ç¾ããããã«ããããï¼ï½¢ã¢ã¯ã»ã¹å¶å¾¡ããã¢ã«ã¦ã³ã管çããç©çã¢ã¯ã»ã¹ããå®ãã¦ããã è¦ä»¶7 ã«ã¼ãä¼å¡ãã¼ã¿ã¸ã®ã¢ã¯ã»ã¹ãæ¥åä¸ã®å¿ è¦ç¯å²å ã«å¶éããã㨠è¦ä»¶8 ã³ã³ãã¥ã¼ã¿ã«ã¢ã¯ã»ã¹ããå©ç¨è æ¯ã«åå¥ã®ID ãå²ãå½ã¦ãã㨠è¦ä»¶9 ã«ã¼ãä¼å¡ãã¼ã¿ã¸ã®ç©ççã¢ã¯ã»ã¹ãå¶éããã㨠ããã§ã¯ãæå°æ¨©éã®ååãï¼ãç¥ãå¿ è¦æ§ããNeed to Knowãã¨å¼ã°ããå ´åãããï¼ãè¦æ±ãã¦ãããæå°æ¨©éã®ååã¨ã¯ãä»»å½ãããæ¥åãéè¡ããããã«å¿ è¦ãªæå°éã®ã¢ã¯ã»ã¹æ¨©ã®
PCI DSSã¨ã¯ï¼ ã»ãã¥ãªãã£ã®åºæºã¨ãã¦æè¿è³ã«ãããPCI DSSãã¨ã¯ãã£ããä½ã§ããããã ã¯ã¬ã¸ããã«ã¼ãä¼ç¤¾ã®ãã¼ã ãã¼ã¸ãè¦ãã¨PCI DSSï¼Payment Card Industry Data Security Standardï¼ã¨ã¯ã å çåºã»æ±ºæ¸ä»£è¡äºæ¥è ãåãæ±ãã«ã¼ãä¼å¡æ§ã®ã¯ã¬ã¸ããã«ã¼ãæ å ±ã»åå¼æ å ±ãå®å ¨ã«å®ãããã«ãJCBãã¢ã¡ãªã«ã³ã¨ãã¹ãã¬ã¹ãDiscoverããã¹ã¿ã¼ã«ã¼ããVISAã®å½éãã¤ã¡ã³ããã©ã³ã5社ãå ±åã§çå®ãããã¯ã¬ã¸ããæ¥çã«ãããã°ãã¼ãã«ã»ãã¥ãªãã£åºæºã§ãâ¦â¦ ãJCBã°ãã¼ãã«ãµã¤ã PCIãã¼ã¿ã»ãã¥ãªãã£ã¹ã¿ã³ãã¼ããPCIDSSãã¨ã¯ããã ã¨ããã¾ããã¯ã¬ã¸ããã«ã¼ãä¼ç¤¾ã®åºæºã ããã¯ã¬ã¸ããã«ã¼ãæ å ±ãåãæ±ãå±é¢ã«ç¹åãããã®ã§ããã¡ã®çµç¹ã«ã¯é¢ä¿ãªãããããªããã¨æããã¦ããæ¹ãå¤ãã®ã§ã¯ãªãã§ããããã
Windowsã³ã³ãã¥ã¼ã¿ã®ä¿è·ãã¦ã¤ã«ã¹é¤å»ã管çã«ç¨ãããã¨ãã§ãããWindowsã¦ã¼ã¶ã¼ã«ã¨ã£ã¦å¿ æºã®ç¡åã»ãã¥ãªãã£ãã¼ã«ã10åç´¹ä»ãããã ï¼1ï¼Secunia Personal Software Inspector ãããã飾ãã®ã¯Secunia Personal Software Inspectorã ããã®ãã¼ã«ã¯ãããããWindowsãã·ã³ä¸ã§å®è¡ã§ããç¡åã¢ããªã±ã¼ã·ã§ã³ã®ä¸ã§æãå½¹ã«ç«ã¡ããã¤æãéè¦ãªãã®ã§ããã ãã®ãã¼ã«ãç¨ãããã¨ã§ãPCä¸ã«ã¤ã³ã¹ãã¼ã«ããã¦ãããã¹ã¦ã®ã¢ããªã±ã¼ã·ã§ã³ãã¹ãã£ã³ããã»ãã¥ãªãã£ãããï¼ã¢ãããã¼ããå¿ è¦ãªã¢ããªã±ã¼ã·ã§ã³ãç¹å®ãããã¨ãã§ããã ãã®ãã¼ã«ã¯ã¾ããããªãã®ã³ã³ãã¥ã¼ã¿ã«æ ¼ç´ããã¦ãããã¡ã¤ã«ãæ¤æ»ãï¼æ¤æ»ãããã¡ã¤ã«ã¯ä¸»ã«ãæ¡å¼µåã.exeã¨.dllã.ocxã®ããããã®ãã®ã§ããï¼ãç¹å®ã®ã½ããã¦ã§ã¢ã
ãããã®è·å ´ã¯å¹¸ããã£ã«ã¿ãªã³ã°ãããã£ã¦ããªãã®ã ããæè¿ã¯ä¼ç¤¾ãå½¹æãçµæ§ãã£ã«ã¿ãªã³ã°ãããã£ã¦ãããæ å ±æ¼æ´©å¯¾çãªã©ãèããã¨Webã¡ã¼ã«ãªã©ããã£ã«ã¿ãªã³ã°ããçç±ã¯åããã¬ã§ããªãããããã°ã¨ããã¢ã¯ã»ã¹å¶éãã¦ããã¨ããã¨æ ããªããæ¥åä¸å¿ è¦ãªæ å ±åéãé»å®³ãã¦ã§ãããããã®è·åå¤å©ç¨ãé£ãæ¢ãããã®ã ãããã ä¼ç¤¾ã«ãã¦å°±æ¥æéä¸ã«ãä¼ç¤¾ã®è³ç£ã§ããPCã¨ããããã使ã£ã¦ã¢ã¯ã»ã¹ãã訳ã ãããæ²ç¤ºæ¿ãWebã¡ã¼ã«ã¸ã®æ¸ãè¾¼ã¿ãå¶éããããã©ããªã¡ã¼ã«ã®ããã¨ããWebãµã¤ãã®é²è¦§ãè¡ã£ã¦ãããææ¡ããã¦ãä»æ¹ãªããçãããã¢ã¯ã»ã¹ã«ã¤ãã¦åã質ããããçããããããã«ãã¦ããã¹ãã ã çç£æ§ã調æ´ã³ã¹ããèããã¨ãã¢ã¯ã»ã¹è¨é²ã¨ã¬ã¤ãã£ã³ã°ã»ãã¼ã¿ãã¼ã¹ã¨ãä»ãåããã¦ãæããã«æ¥åã¨é¢ä¿ãªããããªã¢ã¯ã»ã¹ã®å¤ã社å¡ã«å¯¾ãã¦åã質ãã¦å¿ è¦ã«å¿ãã¦å¦åããæ¹ãããã£ã«ã¿ãªã³ã°
æ¬ãã¼ã¸ã®æ å ±ã¯2008å¹´7ææç¹ã®ãã®ã§ãã 1991 å¹´ã«éçºãããç¾å¨ã§ãåºãç¨ãããã¦ããMD5 (Message Digest 5)ã¨å¼ã°ããããã·ã¥é¢æ°ãã解ææè¡ã®é²æ©ã«ããå®å ¨æ§ã®ä½ä¸ãææããã¦ãããã¨ãããMD5 ãå©ç¨ããä¸ã§ã®éçã調æ»ãã¾ãããç¹ã«ãé»åã¡ã¼ã«ã·ã¹ãã ã§ã®ã»ãã¥ãªãã£çã¨ãã¦ç¨ãããã¦ããAPOP (Authenticated Post Office Protocol) ã«ããã¦ããã¹ã¯ã¼ã解èªã®å¯å¦ã»å¼·åº¦ãå®è¨¼ã»ç¢ºèªããã¨ã¨ãã«ãå½é¢ã®å¯¾å¿çæ¤è¨ã¨ãã®æå¹æ§ã®ç¢ºèªãè¡ãã¾ããã æ¦è¦ æ¬èª¿æ»ç 究ã§ã¯ãMD5 ã®ããã·ã¥å¤ããå ã®æ å ±ãç¹å®ããææ³ã«é¢ããå確èªã並ã³ã«å®ç°å¢ã§ã®æ¤è¨¼ãè¡ããMD5 ãå©ç¨ããä¸ã§ã®éçãæããã«ãã¾ããã 調æ»ç 究ã®ææ APOP æ¹å¼ãç¨ããé»åã¡ã¼ã«ã·ã¹ãã ã¨APOP ã®èå¼±æ§ãçªãæ»æãµã¼ãã¼ãæ§ç¯ããå®éã¨
 ä¼å¡éå®ãµã¼ãã¹ã§ã æé¡ãã©ã³ã10ææ«ã¾ã§ç¡æ ãç³ã込㿠ä¼å¡ã®æ¹ã¯ãã¡ã ãã°ã¤ã³ æ¥çµã¯ãã¹ãã㯠TOPãã¼ã¸
McAfee Avert Labs Blog and I say we are detecting between 400,000 and 10,000,000 malware!ãã June 19ï¼2008ãPosted by Francois Paget å人ã®ä¸äººããï¼ã¢ã³ãã¦ã¤ã«ã¹ã®ç¾ç¶ã¯ã©ããªã£ã¦ããã®ãï¼é£èºçã«å¢å¤§ãããã«ã¦ã¨ã¢ã«ã©ãã¾ã§å¯¾å¦ã§ããã®ãï¼ãªã©ã¨å°ãããããå人ã¯ãåã®ããã©ã¤ãã«ä¼ç¤¾ãï¼1æ¥ã§170ä¸ä»¶ä»¥ä¸ã®ãã«ã¦ã¨ã¢ãæ°ãã«æ¤åºããã¨çºè¡¨ãããã ãããã§7ä¸4000件ã ã£ãç·æ°ã¯180ä¸ä»¶ã«è·³ãä¸ãã£ãããã®èª¿åã§ããã°ï¼200ä¸ä»¶ã®å¤§å°ãããã«çªç ´ãã¦ãã¾ãã ãããã¨èªã£ãããã®å人ã¯ï¼åè«ãããã¦ãã¨ããã§ï¼åã®ä¼ç¤¾ï¼ç±³ãã«ãã£ã¼ï¼ã¯ï¼ã¾ã 40ä¸ä»¶ãè¦ã¤ãã¦ããªããã ãããã¨ç· ãããã£ãã ãã«ã¦ã¨ã¢ã®éè¨ã¯é常ã«é£ããããã«ãã£ã¼ã¯ãVirusScan
å¤ãã®ã¦ã¼ã¶ã¼ã¯ããã©ã¦ã¶ã®ã¢ãããã¼ããå¿ è¦ã«ãªã£ã¦ãããã«ã¯å®è¡ããªãã¨ãããInternet ExplorerãFirefoxãªã©ããããããå©ç¨ããã¦ã¼ã¶ã¼ã«ãã£ã¦ãæè¦ã¯éãããã ã å¤ãã®ã¦ã¼ã¶ã¼ã¯ããã©ã¦ã¶ã®ã¢ãããã¼ããå¿ è¦ã«ãªã£ã¦ãããã«ã¯å®è¡ããªãã¨ãããã ããæè¿å ¬è¡¨ãããGoogleãã°ã®èª¿æ»çµæã ãã§ããçµè«ä»ããã®ã¯æ©è¨ã ã å é±ããã©ã¦ã¶ã®ã»ãã¥ãªãã£ã«é¢ãã大è¦æ¨¡ãªèª¿æ»çµæãå ¬è¡¨ããç 究è ãã¡ã¯ãåªããã¢ã¤ãã¢ã¨ç²¾åº¦ã®é«ããã¼ã¿ãæã£ã¦ããã«ãããããããæ®å¿µãªãã¨ã«çµè«ãæ¥ãéããããã ãå½¼ãã®åæææ³ã詳細ã«æ¤è¨ããã°ãå°ãç°ãªãäºå®ãè¦ãã¦ããã ETH ZurichãGoogleãIBMã®ç 究è ãã¡ããGoogleã®Webæ¤ç´¢ã¨Webã¢ããªã±ã¼ã·ã§ã³ãå©ç¨ããå ¨ä¸çã®ã¦ã¼ã¶ã¼ã®2007å¹´1æãã2008å¹´1æã¾ã§ã®ãã°ãã¼ã¿ãåæããããã ããã®ãã¼
ãã¦ãä»åã¯ãå人çãªä¸ç¥¥äºä½é¨ã®è©±ããããã¨æãã¾ãã ç§ããªã¯ã«ã¼ãã«å ¥ç¤¾ããã®ã¯ï¼ï¼ï¼ï¼å¹´ãä¸ã«ããããªã¯ã«ã¼ãäºä»¶ãã®èµ·ããä¸å¹´åã®ãã¨ã§ãããä¼ç¤¾ã¯ã¾ãã«æ¥ã®åºã®å¢ãã§ã売ä¸ãå©çã¨ãã«æ¥æé·ãç¶ãã¦ãã¾ãããã¾ã ç¡åã®ãã®æ å ±ä¼æ¥ã«å°±è·ãããã¨ã«å¯¾ã両親ã¯å対ã§ããããå人çã«ã¯ãã®æé·æ§ã«ç¢ºä¿¡ãããã¾ããã ç§ãæåã«é å±ãããé¨ç½²ã¯ç¤¾é·å®¤ã§ãåµæ¥è ã§ããã社é·ã§ããã£ãæ±å¯æµ©æ£æ°ã®ç¤¾å åãã®ã¹ãã¼ãå稿ã®ä¸æ¸ããããã®ãæåã®ä»äºã§ããããæ¥çµãã¸ãã¹ãããªã¯ã«ã¼ãã®ç¹éè¨äºãçµã¿ãã財çããã丸ãã¨ä¸åãªã¯ã«ã¼ãããªãå¥åãåºçãããã¨ãã¾ãã«ããä¸ã®æ¥ã謳æãã¦ããæ代ã§ãããã¾ããã ã¾ã ä¸éã®ãã¨ãããã£ã¦ããªãã£ãç§ã¯ããã®ä¼ç¤¾ã¯æ¬å½ã«ä¸çå¶è¦ããã®ã§ã¯ãªããã¨æã£ã¦ããåé¢ãã¡ãã£ã¨ããå«ãªæããæã£ã¦ãã¾ãããçµæãããã°ãã¹ã¦ããã¨ãã姿å¢ã¨ãä½ãããã¨ãã¹
æè¿åé¡ã¨ãªã£ã¦ããWebãµã¤ãã®æ¹ããã¯ï¼ãµã¤ãã®æ¹ããèªä½ãç®çã§ã¯ãªãï¼æ¹ãããããã³ã¼ããåç §ããä¸è¬ã¦ã¼ã¶ã¼ãå±éºãªãµã¤ãã«èªå°ãã¦ï¼ãã«ã¦ã¨ã¢ãå°å ¥ãããã¨ãæçµçãªç®çã¨ãã¦ããããã®ç®çã®ããï¼HTMLã®IFRAMEè¦ç´ ãSCRIPTè¦ç´ ãå©ç¨ãããå ´åãå¤ãã å ã«èª¬æããããã«ï¼SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã®ããå¼±æ§ãå©ç¨ãã¦ãã¼ã¿ãã¼ã¹ã®å 容ãï¼ãããè¦ç´ ã使ã£ãå 容ã«æ¸ãæãããã¨ãå¯è½ãªå ´åããããããã§ãï¼ãã®å 容ããã®ã¾ã¾è¡¨ç¤ºãããã©ããã¯ãµã¤ãã®ä½ãã«ãã£ã¦ç°ãªãã ä¸è¬çã«ãã¼ã¿ãã¼ã¹ä¸ã®ã<ããªã©ã®ç¹æ®è¨å·ããã®ã¾ã¾è¡¨ç¤ºããã¨ã¯ãã¹ãµã¤ãã»ã¹ã¯ãªããã£ã³ã°ã®ããå¼±æ§ï¼XSSï¼ã®åå ã¨ãªãã®ã§ï¼è¡¨ç¤ºã®éã«ãããã®æåãã¨ã¹ã±ã¼ããããã¨ãè¡ãããï¼å³1ï¼ã ç¾å®ã«ã¯å¤ãã®ãµã¤ãã«ããã¦ï¼SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã«ãã£ã¦æ¿å ¥ãããIFRAMEè¦ç´ ãSCRIPTè¦ç´ ã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}