I-OWASP kunye ne-OSINT: Okungakumbi kuKhuseleko lwe-cyber, uKhuseleko kunye nokuNgaziwa

I-OWASP kunye ne-OSINT: Okungakumbi kuKhuseleko lwe-cyber, uKhuseleko kunye nokuNgaziwa

I-OWASP kunye ne-OSINT: Okungakumbi kuKhuseleko lwe-cyber, uKhuseleko kunye nokuNgaziwa

Namhlanje, siya kuqhubeka nezithuba zethu ezinxulumene nesihloko UKhuseleko (Cybersecurity, Privacy and Anonymity) kwaye kubo siya kugxininisa I-OWASP y UTSHINTSHO.

Ngelixa, I-OWASP yiprojekthi yomthombo ovulekileyo ezinikele ekumiseleni nasekulweni oonobangela ezenza isoftware ingakhuselekanga, UTSHINTSHO Iseti yeendlela zobuchule kunye nezixhobo ezisetyenziselwa ukuqokelela ulwazi loluntu, ukulungelelanisa idatha kunye nokuyiqhuba, ukuze kufumaneke ulwazi oluluncedo nolusebenzayo kwiinjongo ezithile okanye iindawo.

Ukhuseleko loLwazi: Imbali, isigama kunye neNdawo yokuSebenza

Ukhuseleko loLwazi: Imbali, isigama kunye neNdawo yokuSebenza

Ngaphambi kokuntywila kwisihloko se I-OWASP y UTSHINTSHONjengesiqhelo, sincoma ukuba emva kokufunda olu papasho, sihlolisise umxholo wolunye upapasho lwethu lwangaphambili olunxulumene nesihloko UKhuseleko.

... kulungile ukucacisa ukuba ingqikelelo enxulumeneyo yoKhuseleko loLwazi akufanele ibhidaniswe naleyo yoKhuseleko lweKhompyutha, kuba, ngelixa eyokuqala ibhekisa ekukhuselweni nasekugcinweni kolwazi olubanzi lweSifundo (uMntu, iNkampani, iziko, Umbutho, uMbutho, uRhulumente), okwesibini kuphela kugxininise ekukhuseleni idatha ngaphakathi kwenkqubo yekhompyutha njengoko kunjalo. Ukhuseleko loLwazi: Imbali, isigama kunye neNdawo yokuSebenza

Ukhuseleko loLwazi: Imbali, isigama kunye neNdawo yokuSebenza
Inqaku elidibeneyo:
Ukhuseleko loLwazi: Imbali, isigama kunye neNdawo yokuSebenza
Ukhuseleko, isoftware yasimahla kunye ne-GNU / Linux: I-Triad egqibeleleyo
Inqaku elidibeneyo:
Ukhuseleko, isoftware yasimahla kunye ne-GNU / Linux: I-Triad egqibeleleyo
Ubumfihlo bekhompyuter: Into ebalulekileyo yoKhuseleko loLwazi
Inqaku elidibeneyo:
Ubumfihlo bekhompyuter kunye nesoftware yasimahla: Ukuphucula ukhuseleko lwethu
Itekhnoloji yasimahla kunye nokuthengisa ngokwembono yoKhuseleko loLwazi
Inqaku elidibeneyo:
Itekhnoloji yasimahla kunye nokuthengisa ngokwembono yoKhuseleko loLwazi
Iingcebiso zoKhuseleko lwe-IT kuye wonke umntu nanini na
Inqaku elidibeneyo:
Iingcebiso zoKhuseleko lweKhompyuter lwawo wonke umntu nanini na, naphi na
I-GAFAM xa ithelekiswa noLuntu lweSoftware yasimahla: Ulawulo okanye uLongamo
Inqaku elidibeneyo:
I-GAFAM xa ithelekiswa noLuntu lweSoftware yasimahla: Ulawulo okanye uLongamo
Ingxaki yeeNethiwekhi zeNtlalo: Ngaba nakwiiNkqubo eziSebenzayo?
Inqaku elidibeneyo:
Ingxaki yeeNethiwekhi zeNtlalo: Ngaba nakwiiNkqubo eziSebenzayo?

I-OWASP kunye ne-OSINT: Umxholo

I-OWASP kunye ne-OSINT: Imibutho, iiProjekthi kunye neZixhobo

Yintoni i-OWASP?

Ngokwewebhusayithi esemthethweni ye I-OWASP :

"Iprojekthi yoKhuseleko lweSicelo seWebhu evulekileyo (i-OWASP) eqhutywa yisiseko esingenzi nzuzo, esinegama elifanayo, esisebenza ekuphuculeni ukhuseleko lwesoftware. Kwaye ulwakhiwo olubandakanya uphuhliso lweeprojekthi zesoftware yemithombo evulekileyo ekhokelwa luluntu. Esi Siseko okwangoku sinezahluko zasekhaya ezingaphezu kwama-200 kwihlabathi liphela, amashumi amawaka amalungu kwaye ibambe iinkomfa eziphambili zemfundo noqeqesho kwicandelo."

Ngoko ke, kucacile ukuba injongo de la Isiseko se-OWASP :

"Ukuba luluntu oluvulelekileyo oluzinikele ekwenzeni ukuba imibutho ikhawule, iphuhlise, ifumane, isebenze kwaye igcine izicelo ezithembekileyo. Kwaye kubo, zonke iiprojekthi zabo, izixhobo, amaxwebhu, iiforamu kunye nezahluko ezenziwe zikhululekile kwaye zivulekele nabani na onomdla wokuphucula ukhuseleko lwesicelo."

Iiprojekthi ze-OWASP

Zonke IiProjekthi zeSoftware kunye neZixhobo yenziwe ngu I-OWASP inokubonwa kweyakho iCandelo leeProjekthi, kwaye nakwiwebhusayithi yabo esemthethweni kwi GitHub. Kwaye phakathi kwezona ziyaziwa kakhulu singakhankanya oku kulandelayo:

  • OWASP Top 10: Iprojekthi equka uxwebhu oluqhelekileyo lokwazisa abaphuhlisi kunye nokhuseleko lwesicelo sewebhu. Kwaye imele imvumelwano ebanzi kwezona mngcipheko zibalulekileyo zokhuseleko kubo.
  • Isikhokelo soVavanyo loKhuseleko lwewebhu (WSTG): Iprojekthi ebandakanya iSikhokelo soVavanyo loKhuseleko lweWebhu evelisa esona sixhobo siphambili sovavanyo lwe-cybersecurity kubaphuhlisi besicelo sewebhu kunye neengcali zokhuseleko. Ke ngoko, sisikhokelo esigqwesileyo nesipheleleyo sokuvavanya ukhuseleko lwezicelo kunye neenkonzo zewebhu, kuba ibonelela ngesakhelo seendlela ezilungileyo ezisetyenziswa ngabavavanyi bokungena kunye nemibutho kwihlabathi liphela. Kukwakho nenye yezicelo iinqwelo.

Yintoni i-OSINT?

Ekubeni UTSHINTSHO Kunjalo, njengoko sivakalise ekuqaleni: "isethi yeendlela kunye nezixhobo ezisetyenziselwa ukuqokelela ulwazi loluntu, ukulungelelanisa idatha kunye nokuyiqhuba, ukuze kufumaneke ulwazi oluluncedo nolusebenzayo kwiinjongo ezithile okanye iindawo"; enjalo ayinayo iwebhusayithi esemthethweni. Nangona kunjalo, kukho iiwebhusayithi ezininzi ezibonelela ngolwazi oluninzi oluluncedo lwe-OSINT kunye nezixhobo. Enokusetyenziselwa ukuphanda nokuhlasela isifundo ekujoliswe kuso, okanye ukuba nabani na athathe amanyathelo ayimfuneko ukuthintela uhlaselo olunjalo.

Kubalulekile ukucacisa malunga UTSHINTSHO Okulandelayo:

"Igama elithi "umthombo ovulekileyo" ngaphakathi kwe-OSINT ayibhekiseli kwintshukumo yesoftware ye-Open Source, nangona izixhobo ezininzi ze-OSINT zinguMthombo oVulekileyo; kunoko ichaza ubume boluntu lwedatha ehlalutywayo."

Yintoni i-OSINT Framework?

Phakathi kwewebhusayithi ezinxulumene ne UTSHINTSHO singakhankanya Isakhelo se-OSINT. Inokuchazwa ngolu hlobo:

Indawo yokugcina i-intanethi equka inani elikhulu lezixhobo (izicelo, iinkonzo zewebhu) ukwenza uphando kwimithombo yolwazi evulekileyo. Isebenza njengefayile egcina kwaye ihlele ezi zixhobo ukuze zisetyenziswe kuphando lwe-OSINT. Ezi zixhobo zikwayisethi yeGPLv3 (esimahla kunye nevulelekileyo) uhlobo lwamathala eencwadi, oluvumela ukuqokelela zonke iintlobo zedatha (ulwazi) kuphando oluyimfuneko. Ngokukodwa, ezi zixhobo zinokufumanisa kwaye ziqokelele idatha, njengamagama omsebenzisi, iidilesi ze-imeyile, iidilesi ze-IP, izixhobo zeMultimedia, iiprofayili zenethiwekhi yeNtlalo, iGeolocation, phakathi kwezinye ezininzi.

Kwabo banomdla wokufuna ukwazi ngakumbi malunga UTSHINTSHO ungandwendwela eyakho iwebhusayithi esemthethweni kwiGitHub okanye elandelayo unxibelelwano.

Umfanekiso oqhelekileyo wezigqibo zenqaku

Siyathemba ukuba oku "Uncedo oluncinci" malunga «OWASP y OSINT», Imixholo emi-2 enomdla egubungelayo imibutho, iiprojekthi, izixhobo, kunye nezinye izinto ezininzi, ngokuthanda ukuqina kunye nokusekuhleni UKhuseleko (Ukhuseleko lwe-Cybersecurity, uBucala kunye nokungaziwa); ibe nomdla omkhulu kwaye ibe luncedo, kubo bonke «Comunidad de Software Libre y Código Abierto» kunye negalelo elikhulu ekusasazekeni kwendalo emangalisayo, enkulu kunye nokukhulayo kwezicelo ze «GNU/Linux».

Okwangoku, ukuba uyithandile le publicación, Sukuyeka yabelani nabanye, kwiiwebhusayithi zakho ozithandayo, amajelo, amaqela okanye uluntu lwenethiwekhi yoluntu okanye iinkqubo zemiyalezo, ngokukhethekileyo simahla, sivulekile kunye / okanye sikhuseleke ngakumbi njenge yocingo, Uphawu, IMododon okanye enye Ulungelelaniso, ngokukhethekileyo. Kwaye khumbula ukutyelela iphepha lethu lasekhaya e «DesdeLinux» ukuphonononga ezinye iindaba, kunye nokujoyina ijelo lethu elisemthethweni le- ITelegram ye DesdeLinux. Ngelixa, ngolwazi oluthe kratya, ungandwendwela nayiphi na Ilayibrari ekwi-Intanethi njengaye VulaLibra y IJedIT, ukufikelela nokufunda iincwadi zedijithali (ii-PDFs) kwesi sihloko okanye ezinye.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.