I-Tsunami Security Scanner isivele ingumthombo ovulekile, iGoogle yanquma ukuthi kunjalo

Ezinsukwini ezimbalwa ezedlule, abantu kwaGoogle benze isinqumo sokukhipha ikhodi kusuka su Iskena sokuphepha se-tsunami, Okungukuthi idizayinelwe ukubheka ukuba sengozini okwaziwayo kwabasingathi kunethiwekhi noma khomba izinkinga ngokucushwa okuthinta ukuphepha kwengqalasizinda. Ikhodi yephrojekthi ibhalwe eJava futhi isatshalaliswa ngaphansi kwelayisense le-Apache 2.0.

Njengoba sikwazi ukufunda ngaphakathi kwendawo yokugcina izinto, I-Google ichaza isithwebuli sayo ngale ndlela elandelayo:" I-tsunami iyisithwebuli senethiwekhi yokuphepha senhloso ejwayelekile esinohlelo lwe-plug-in olunwebekayo ukuthola ubungozi obukhulu kakhulu ngokuzethemba okukhulu. "

tsunami kuncike kakhulu ohlelweni lwakho lwe-plugin ukuhlinzeka ngamakhono ayisisekelo okuskena. Onke ama-plugins we-Tsunami atholakale esidlangalaleni abanjwe endaweni ehlukile ye-google / tsunami-security-scanner-plugins. "

Mayelana ne-Tsunami Security Scanner

Ngenxa yalokho "Tsunami" inikeza ipulatifomu ejwayelekile futhi ejwayelekile ukusebenza kwawo kuchazwa ngama-plugins. Okungukuthi, kukhona i-plugin yokuskena kwetheku okususelwa ku-nmap kanye ne-plug-in yokuhlola amapharamitha wokuqinisekisa ongathembekile asuselwa kuNcrack, kanye nama-plugins anemitshina yokuba sengozini ku-Hadoop Yarn, Jenkins, Jupyter, naku-WordPress.

Inhloso kwephrojekthi ngu nikeza ithuluzi lokuthola ubungozi ngokushesha ezinkampanini ezinkulu ezinengqalasizinda ebanzi yenethiwekhi. Ngokukhipha imininingwane ngezinkinga ezintsha ezibucayi, kulandela umjaho nabahlaseli abafuna ukuhlasela ingqalasizinda yamabhizinisi ngaphambi kokuba inkinga ixazululwe.

Izingxenye zenkinga kufanele zikhonjwe ngabasebenzi benkampani ngokushesha okukhulu, njengoba uhlelo lungahlaselwa kungakapheli amahora amaningi ngemuva kokudalulwa kwedatha yokuba sengozini.

Ezinkampanini ezinezinkulungwane zezinhlelo ezinokufinyelela kwe-Intanethi, ukuzenzekelayo kokuqinisekisa akunakwenziwa ngaphandle, futhi iTsunami yaziwa njengokuxazulula inkinga efanayo.

I-tsunami izokwenza ikuvumela ukuthi udale ngokushesha ngokuzimela imitshina ebekeka engcupheni noma usebenzise amaqoqo asenziwe ngomumo ukukhomba izinkinga eziyingozi kakhulu okuhlaselwe ngazo.

Ngemuva kokuskena inethiwekhi, I-Tsunami inikeza umbiko ngokuqinisekiswa, okugxila ekwehliseni inani lezinzuzo ezingamanga ukuze kungathathi isikhathi eside kakhulu ukuhlaziya. I-tsunami nayo ithuthukiswa ngokucabanga okuzenzakalelayo nokuqinisekisa, ikuvumela ukuthi uyisebenzise, ​​ngokwesibonelo, ukuqapha njalo ukuthembeka kwemingcele yokuqinisekisa esetshenzisiwe.

Inqubo yokuqinisekisa ku- I-tsunami ihlukaniswe izigaba ezimbili:

  1. Ukuqoqwa kolwazi mayelana nezinsizakalo kunethiwekhi. Kulesi sigaba, kuchazwa amachweba avulekile, kanye nezinsizakalo ezihlobene, amaphrothokholi, kanye nezicelo. Amathuluzi asungulwe kahle njenge-nmap asetshenziswa kulesi sigaba.
  2. Ukuqinisekiswa kobungozi. Ngokuya ngemininingwane etholwe esigabeni sokuqala, ama-plug-ins afanele wezinsizakalo ezihlonziwe ayakhethwa futhi aqaliswe. Ukuqinisekiswa kokugcina kokuba khona kwenkinga, kusetshenziswa ukuxhaphaza okusebenza ngokuphelele. Ngokwengeziwe, ukubheka ukwethembeka kwemininingwane ejwayelekile yokuthola amaphasiwedi angenamandla kungenziwa kusetshenziswa uhlelo lwe-ncrack olusekela izivumelwano ezihlukahlukene, kufaka phakathi i-SSH, i-FTP, i-RDP ne-MySQL.

Iphrojekthi isesigabeni sokuqala sokuhlolwa kwe-alpha, kepha I-Google isivele isebenzisa i-Tsunami ukuskena ngokuqhubekayo nokuvikela yonke imisebenzi yayo, okufinyelela kwayo kuvulekele izicelo zangaphandle.

Phakathi kwezinhlelo eziseduze zokwandisa ukusebenza, ukuqaliswa kwama-plugins amasha ukukhomba izinkinga ezibucayi eziholela ekusetshenzisweni kwamakhodi akude, kanye nokungeza into esezingeni eliphakeme ukunquma ukuthi iziphi izinhlelo ezizosetshenziswa (i-web application fingerprint) ezigqamile, ezizothuthukisa umqondo wokukhetha i-plugin yokuhlola eyodwa noma enye.

Kuzinhlelo ezikude, kukhulunywa ngokuhlinzekwa kwamathuluzi wokubhala ama-plugins nganoma yiluphi ulimi lohlelo nokukwazi ukufaka ama-plugins ngamandla.

Okokugcina uma unesifiso sokwazi okwengeziwe ngakho yephrojekthi noma ukwazi ukubona ikhodi yomthombo, ungayenza kusuka kusixhumanisi esingezansi.


Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.