Hey there! This site is obviously not affiliated with Apple, but rather a demonstration of a flaw in the way browsers handle Unicode domains. This is proof-of-concept works in Chrome 58 and earlier along with all versions of Firefox. Check out the complete blog post by Xudong Zheng for more details on the vulnerability.
PHPã¯ãWebãµã¤ãæ§ç¯ã«ç¹åãã¦éçºãããããã°ã©ãã³ã°è¨èªã§ãã大ããªç¹å¾´ã®ã²ã¨ã¤ã¯ãHTMLã«ç´æ¥ããã°ã©ã ãåãè¾¼ããã¨ãã§ããã¨ããç¹ã§ããPHPãç¨ãããã¨ã§ãHTMLãåçã³ã³ãã³ãã¨ãã¦åºåã§ãã¾ããHTMLããã®ã¾ã¾ãã©ã¦ã¶ã«è¡¨ç¤ºãããã®ã«å¯¾ããPHPããã°ã©ã ã¯ãµã¼ãå´ã§å®è¡ãããçµæããã©ã¦ã¶ã«è¡¨ç¤ºããããããPHPã¹ã¯ãªããã¯ããµã¼ããµã¤ãã¹ã¯ãªãããã¨å¼ã°ãã¦ãã¾ãã
çæã©ããã 99.99% ãããé»ãªè©±ã ï¼å¾è¨ï¼ã»ãã·ã§ã³çã¾ããã¨æã£ã¦ããã©ãããããèãç´ãã¦ã¿ãã¨çãã¹ã¯ã¼ããã¨çã¾ãã¦ãå¯è½æ§ãããããã°ãï¼ è¿½è¨ï¼ç¶å ± 11æ3æ¥ ä»åææãã HTTP Headers 以å¤ã«ãããTab ManagerããGive Me CRXããLive HTTP Headersãçã§åæ§ï¼ï¼ï¼ã®åé¡ãå ±åããã¦ãã¾ãã第ä¸è ãå ã®ä½è ããã½ããã¦ã§ã¢æ¨©å©ãè²·ãåã£ã¦æªç¨ãããã¨ããã±ã¼ã¹ãå²ã¨ãã模æ§ï¼ï¼ï¼ãçãã¾æ å ±ãããã¨ããããã¾ãã 11æ4æ¥ Zaif ã«ã¤ãã¦ã¯ããä¸æ£ãª Chrome æ¡å¼µãã¨ãã¹ã¯ãªããããä¿è·ããã¦ããªãã£ãã¯ããã¼ãã®ã³ã³ãã«ããã»ãã·ã§ã³ãçã¾ãã¦ããå¯è½æ§ããã Zaif ã®ã»ãã·ã§ã³æ å ±ãçã¾ããåå ã®ã²ã¨ã¤ã«ã¤ãã¦ãJavaScript ããã¯ããã¼å¤ãåå¾ãããªãæ¹æ³ã - clock-up-blog
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}