ã¨ã«ã¢ã¤ã¤ã¼ã¨ã¤ã(æ§ï½¥æ±çHD)ã®ç¦æ康廣ããã調æ»å ±åæ¸ã§æ°ã ã®ãã¯ãã©æ´è¨ã¨ç¯ç½ªè¡çºãæããã¦ã³ã³ãã©æèã®æ¬ å¦ã¨äººæ ¼ã®ç°å¸¸æ§ãææããã
ã¨ã«ã¢ã¤ã¤ã¼ã¨ã¤ã(æ§ï½¥æ±çHD)ã®ç¦æ康廣ããã調æ»å ±åæ¸ã§æ°ã ã®ãã¯ãã©æ´è¨ã¨ç¯ç½ªè¡çºãæããã¦ã³ã³ãã©æèã®æ¬ å¦ã¨äººæ ¼ã®ç°å¸¸æ§ãææããã
ã»ãã¥ãªãã£ã½ããã¯è²©å£²ãã¦ãã¾ããã #ããã©ã¨ãã¡ã¤ã«ã®ãã³ã°ã¸ã ã§ãã
Hiromitsu Takagi @HiromitsuTakagi WBSã®æ¾é http://t.co/JSaAhR9g ã¯ãçµæ¸ç³»çªçµãªã®ã«åé¡ç¹ã示ãã¦ããè¯ãçªçµã ã£ãããå ã«ã¬ãåºã¦å«ããç¥ããªã人ãåºã¦æãã件ã声ãã¨ã£ã¦ä¼ãã¦ãããï¼ããããæ¬é¡ã¯å ã ãã£ã¡ãäºå®ãã¦ããã®ã§ã¯ãªãããï¼ 2012-06-24 00:39:38 Hiromitsu Takagi @HiromitsuTakagi çè²æ°ã®ã³ã¡ã³ãã¯ãä¼æ¥ãèªãæ å ±ã®æ±ãæ¹ãæããã«ããããã§ãä¿¡é ¼ãã¦æ¬²ãããã¨ããã¡ãã»ã¼ã¸ãç©æ¥µçã«çºä¿¡ãããã¨ãå¿ è¦ãã¨ãããã®ã ãããä»ã®å®æ ã¯ã¨ããã¨ããæ å ±ã®æ±ãæ¹ããæ½è±¡çã«ãã示ãããããä¿¡é ¼ãã¦æ¬²ãããã¨ããã®ãç²¾ç¥è«ã«ãªã£ã¦ãã¾ã£ã¦ãããLINEã¯ã©ããã 2012-06-24 00:43:20
å æ¥å§ã¾ã£ã LAWSON Wi-Fi ãå©ç¨ããããã«å¿ è¦ãªãã¼ã½ã³ã¢ããªã®å©ç¨è¦ç´ãã¨ãã§ããªãã£ã件ã ã¢ããªå©ç¨ä¸ã¯èª°ã®èªçæ¥ãé»è©±çªå·ãç¥ããã¦ã¯ãããªãããç¥ããã¨ãã¦ããããªãï¼ Pontaã«ã¼ãã解ç´ãããã¨ãã¦ããã¼ã½ã³ã¢ããªã®è¦ç´ã§éä¼åºæ¥ç¡ãï¼è©°ãã ï¼ ã4/10 22:10ã ç¶ããèªã
LAWSON Wi-Fi ãµã¼ãã¹ (ãã¼ã½ã³ã¢ããª) è¦ç´åé¡ã«é¢ãããã¤ã¼ããé«æ¨æµ©å ( @HiromitsuTakagi ) æ°ã®ãã¤ã¼ãããæ½åºãããã®ã é«æ¨æ°ã®çºè¨ä»¥å¤ã¯å ¨ã¦é«æ¨æ°ãRTãããã¤ã¼ãã èªã¿ãããããç·¨éã¯å ¨ããã¦ããªãã RTã®æç³»åããã®ã¾ã¾ã«ãããããæ²è¼é ãä¸ãæ°ããä¸ãå¤ãç¶æ ã ãã¤ã¼ãã¯2012/4/9 åå3æé ã¾ã§ ç¶ããèªã
ç¥ç° å¤§ä» @kanda_daisuke è¦è¦åºã®æ å ±æµåºåé¡ã¯ãTLä¸ã§ã2ã¡ããã§ããæã£ãã»ã©ã®é¨ãã«ã¯ãªã£ã¦ãªãããã§ããããããlibrahackäºä»¶ã®æ¹ãçãä¸ãã£ã¦ããããªãã Hiromitsu Takagi @HiromitsuTakagi .@kanda_daisuke ãã¤ãã®ãã³ã¿ãæµåºã¨éã£ã¦çºè¦ããåã«ï¼ã¡ããããä¸ã§çºè¦ããé¨ãããã¨ããçµç·¯ãè¸ãã§ããªãããã§ãããã¿ãæãå å·¥ãããæ¾æµç©ï¼83091fâ¦ã®ãã®ï¼ã¯ãç§ã®è¦³æ¸¬ã·ã¹ãã ã§ã¯ãã«ã¯ã»ã³ãã«ã¯ã®ã¢ãã¬ã¹ãã28æ¥17:45ã«æ¾æµãããããã§ãã
ããç¥ããã 9 æ 21 æ¥åå¾ 11 æé ãå ¬å¼ãµã¤ãããèå¼±æ§ãä¿®æ£ãããã¨ã®çºè¡¨ãããã¾ããã ã¯ããã« 2010 å¹´ 9 æ 21 æ¥ããã¤ãã¿ã¼ã§æ·±å»ãªèå¼±æ§(ããããããã)ãçºè¦ããã被害ãåºãã£ã¦ãã¾ãããããä½ãªã®ããç°¡åã«èª¬æãã¾ãã JavaScript ã¨ãã¦ã¹ãªã¼ãã¼ã¤ãã³ã ã¾ããä¸ã®ãã³ã¯è²ã®æ å ã«ãã¦ã¹ã«ã¼ã½ã«ããã¹ããã¦ã¿ã¦ãã ããã ãã®æ ã®ä¸ããã¦ã¹ã«ã¼ã½ã«ã§è§¦ã£ã¦! ã©ãã§ããããã触ã£ã¦ããã¦ãããã¨ã!ãã¨ããã¡ãã»ã¼ã¸ã表示ããã¾ãããã ãã®ããã«ãã¦ã§ããã¼ã¸ã«ã¯ç°¡åãªããã°ã©ã ãä»è¾¼ããã¨ãã§ãã¾ããã©ã®ã¦ã§ããã©ã¦ã¶ã¼(çãããã¦ã§ããè¦ãæã«ä½¿ãã½ããã¦ã§ã¢ãã¤ã³ã¿ã¼ãããã¨ã¯ã¹ããã¼ã©ã¼ãªã©)ã§ãå ±éã§ä½¿ãããJavaScript (ã¸ã£ãã¹ã¯ãªãã)ãã¨ããè¨èªãä¸è¬çã«ä½¿ããã¦ãã¾ãã ä»åã¯ããã¼ã¸ä¸ã®ããé¨åã«ãã¦ã¹ã«ã¼ã½
ç§ã®DKåç©«ç¥ãªã©ã§é¨ããã¦ãããããããDKç¥ãã ãããã®ç§ããä»å¤åã®ç¥ãã«ã¯maitterã ç§ã®twitterãèãããã¦ããã®ã ã http://blog.livedoor.jp/dankogai/archives/50959103.html ç¾è±¡ããè¦ã¦ã»ãã·ã§ã³ãã¤ã¸ã£ãã¯ãããã¨æãããããåå ã¨ãªãèå¼±æ§ãå°é£¼å¼¾æ°ã®ä¸»å¼µã©ããCSRF(Cross Site Request Forgeries)ã ã£ãã®ãããã¹ã¯ã¼ãã¯çªåãããã®ããå ã ã®ãã¹ã¯ã¼ããé¡æ¨ãããããã®ã ã£ãã®ããªã©ãè°è«ãå¼ãã§ããã ç§ã¯ãç¾è±¡ããã¿ã¦ãåå ã¨ãªãèå¼±æ§ã¯CSRFã§ã¯ãªããXSSã ã£ãã¨æã*1ãtwitterã«XSSèå¼±æ§ãããã°ãã»ãã·ã§ã³ãã¤ã¸ã£ãã¯ã«ããã第ä¸è ãå°é£¼å¼¾æ°ã«ãªããã¾ãã¦çºè¨ããã¨ããã¾ã§ã¯å¯è½ã ãããããä¸è¬çã«ã¯XSSã§ã¯ãã¹ã¯ã¼ãã¾ã§ã¯çªåã§ããªããid:ha
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}