Blog

eye surveillance watching

Paranoid or Prepared? The spies on your desk

I usually receive questions about why I have a sticker on ambient light sensors my laptops and phone. Some think I don't know the difference between a light sensor and a camera and try to explain to me that this is not a camera. Izvo zvavasingazive ndezvekuti ambient mwenje sensors inogona kuva…
Verenga zvimwe

Kukundikana kukuru kwekuchengetedzeka kwenyika yekare: zvidzidzo zvekuchengetedza kubva kuMupata weMadzimambo

Kutenda kune zororo refu regore reMastercard (tine 25 mazuva!) Ndakatora rwendo rwemavhiki maviri kuenda kuEgypt kutanga kwemwedzi uno kunoshanyira nzvimbo yandagara ndichida kuona: makuva ekuvigwa emafarao ekare mumupata weMadzimambo. Semuinjiniya wekuchengetedza, I could not help looking at these
Verenga zvimwe

Cybersecurity jobs

Maitiro ekuwana basa rekupinda cybersecurity

This post is a response to a friend who is seeking a cybersecurity role in an extremely challenging market. Given that this is a widespread issue these days, I decided to write a post rather than simply leaving a comment. Various statistics from multiple sources suggest that there is a wide gap in cybersecurity roles,…
Verenga zvimwe

WaterHole kurwisa

Kudiridza gomba kurwisa: kuti APT nematsotsi e-cyber vanopinza sei zvivakwa zvakachengeteka

Kusangana kwangu kwekutanga nenyika ye-cyber-matsotsi kwakaitika kuburikidza nekudiridza gomba kurwisa mushandirapamwe makore mazhinji apfuura. Ndakashanyira webhusaiti yechiPersia ndokuwana kuti yaive ichidhawunirodha malware pamabhurawuza evashanyi’ mabhurawuza. Ndakabva ndabata mukuru wewebhusaiti, akandiudza kuti vaive vasina ruzivo rwehunyanzvi nezvedambudziko iri. Zvakazooneka kuti…
Verenga zvimwe

credential stuffing

Credential stuffing haisi DDoS!

Ndakanzwa izvi kakawanda mukati memakore akati kuti apfuura: mumwe munhu ari kusangana neDDoS inorema kurwiswa pawebhusaiti yavo. Kana ndichivabvunza kuti rudzi rwekurwiswa rwavari kusangana narwo chii, mhinduro inowanzo kuve yekuti vanhu vakaipa vari kuvatumira zviuru kana mamiriyoni ePOST requests. Kana ini…
Verenga zvimwe

application ddos ​​kurwisa

Application layer DDoS kurwisa, uye kuti vangadzikiswa sei

DDoS (kuparadzirwa kwekunyimwa basa) uye DoS (kunyimwa basa) kurwiswa kunogona kuiswa muzvikamu zvitatu zvichienderana nezvikamu zveOSI modhi yavanonongedza: network layer (Layer 3), transport layer (Layer 4), uye application layer (Layer 7). Layer 3 uye Layer 4 kurwiswa kunowanzova kusina kuomarara zvakanyanya–kunyange hazvo kuti vangangodaro…
Verenga zvimwe

Web Application Firewall (WAF)

WAF yakafa, rarama kwenguva refu iyo WAF!

Firewal yewebhu application (WAF) chishandiso chekuchengetedza chinoshandiswa kudzivirira kupinda kusina kudiwa kwewebhu applications. Kazhinji chishandiso chekuchengetedza chinogara pamusoro pewebhu server uye chinochengetedza kubva kune zvinokuvadza kubva painternet kana kubva kunze kwemuganhu wenetwork. Kusiyana neLayer 3 (Network) uye Layer 4 (Transport) firewal , iyo…
Verenga zvimwe

Zombie Cookies Verizon Yahoo AOL

Maitiro ekuita nemaitiro matsva ekutevera; Zombie cookies uye Canvas zvigunwe zvekudhindisa

Canvas fingerprinting, uye Zombie cookie trackers hachisi chinhu chitsva; zvisinei, nzira idzi dzakagadziridzwa uye dzave nemukurumbira unoshanda nekufamba kwenguva. Munguva pfupi yapfuura, chidzidzo chakaratidza kuti imwe chete mune mana ega ega 10,000 mawebhusaiti akashanyirwa zvakanyanya paInternet anoshandisa canvas fingerprinting kuteedzera vashanyi kusvika 99.9% kururama. Kuedza kwekutevera kuunganidza…
Verenga zvimwe

PHP Suhosin

Kupera kweSuhosin; Chii chinotevera?

Kwemakore mazhinji, Ndakashandisa Suhosin nemoyo wese pamwe neese maitiro ePHP5 paApache2 kana PHP-FPM Nginx mawebhusaiti kudzivirira SQL injection nezvimwe kurwiswa kwepawebhu kwakajairika. Muchokwadi, PHP5 yaive yakashata zvikuru, pamusoro pezve chengetedzo yayo yepasi, uye mabasa nemamojuru ayo zvekuti ndaisazombofunga kushandisa…
Verenga zvimwe