Discuz! 7.0 is the Sing Chong to (Comsenz) in December 2008 the company released a forum BBS Jianzhan products. Discuz! 7.0.0 in the design of a powerful anti-irrigation system, two levels of security with authentication codes and authentication questions and answers, so most of the irrigation machine discouraged. I will explain in detail below, under its use, into the system background => Global => security authentication.
Hackers and security
Forum Jianzhan: Discuz! 7.0 security authentication Xiangjie
Software security vulnerabilities root of the problem ---
Almost every cause identity theft, network downtime, data loss and the site has a breakdown of security breaches fundamental reason, namely, coarse coding software itself.
Admission test site was linked to 1.46 million Internet users in horse attack
According to Rising "Cloud security" system monitoring, on July 23, "educating road network", "twenty-first century means net", "big river legal channels" and other exams, admissions, human resources and a large number of news websites are hackers hang horse. Students or graduates of online learning in the summer, check enrollment information, or cast your resume be sure to pay attention to prevent access to websites linked to Malaysia after the virus infection.
Firewall concepts and access control lists (1)
Firewall software firewalls and hardware firewalls points.
Further divided in terms of the software firewall network firewall firewall and virus, which are even cell phone firewall. We used to brand the software firewall, including Rising, ice shields.
PPT infected specializing in Microsoft vulnerabilities foreigner Shanghai see no
Anti-virus Centre Jiangmin company has intercepted a communication using PowerPoint 0day vulnerabilities malicious PPT document (Exploit.PPTDownloader). The document is sent as an email attachment, once opened this document, including embedded malicious code will download and run the backdoor program, then complete control of a user's computer.
Cell phone virus attacks and active prevention techniques
Attack on the WAP mobile phone, usually in three ways: First, attack WAP server, so that the normal WAP phone can not receive the information; second attack and control the "gateway" to send spam to mobile phones; 3 is a direct attack WAP phone itself. In addition to virus attacks mobile phones may automatically start the call recording function, automatic dial telephone, remove the phone's data, and could even "create" a huge amount of telephone bills.
Use vulnerability scanning tools to assess the security of the system
Vulnerability scanning is essential to ensure system and network security means, this article about the Linux system, how to use the free remote security scanner Nessus for vulnerability scanning.
Routine inspection hardware firewall
Hardware firewall is to protect the internal network security, an important barrier. Its security and stability is directly related to the internal network security. Therefore, the daily routine inspection to guarantee the security of the hardware firewall is very important.
Surfing Trends and defense DDoS attacks
First, denial of service (Denial of Service)
To explore the DDoS DoS before we need to understand on, DoS refers to hackers trying to impede the normal user to use network services, such as telephone lines cut the building caused by the user can not call. And to the network, because of bandwidth, network equipment and server capacity to host such treatment has its limits, so when hackers make excessive network packet processing device is less than can allow normal users can not normally use the service. For example, hackers tried to attack a large number of packets generally much smaller bandwidth dial-up or ADSL users will find that he is the victim's Web site with data connection closed, or was very slow.
UTM integration new security forces
Looking back at the information security industry in 2005, "integration" is no doubt left a deep mark for this year, one of the themes. The solution integrated UTM security needs as the most important concept, in pursuit of access to a lot of attention and after the heat in the new year already has been greatly reduced. Perhaps only at this moment, we can look more objectively and clearly the nature of UTM to understand its true value.
Latest Microsoft vulnerability for the virus may be encroaching upon the shock wave
8月12日,江民公司反病毒中心监测到,继微软8月9日发布了6个安全漏洞补丁之后,国内外黑客纷纷公布利用这些最新漏洞的攻击程序,利用Windows即插即用远程代码执行漏洞(MS05-039)的程序潜在威胁更大,如果成功利用该漏洞,甚至可能出现具有像冲击波和震荡波病毒一样的传播能力的恶意蠕虫。
When hackers can return to the Sex Education
The term comes from the English Hacker Hacker, the original intention that interested in computer technology, and computer technology has extraordinary ability to grasp the high-tech talent, particularly programmers. Birth, hacking represents an honor, a beautiful tradition, but they are challenging the authority of the network of law-abiding hero.
A flow of incoming hackers focus on the hospital website linked to horse
According to security agencies real-time monitoring, on November 16 top-ranking websites linked to Malaysia, accounting for a considerable part of the hospital site, with more and more people visit the hospital site to be hanging Horse Group will also be seen as "prey." The following are some 16 visits to intercept a large hanging Equine Hospital site information:
Asia's largest room intermittent paralysis caused by hackers
"Recently, we received a lot of sub-centers have reported the use of distributed denial of service attack (DDoS) network interference and even extortion activities intensified, has been on the normal order of a serious impact on the network." It became a National Computer Network Emergency Response Technical Coordination Center (CNCERT / CC) Dr. Du Yuejin, deputy chief engineer of the most annoying thing recently. The severity of DDoS attacks for a time beyond the number of industry expectations, have also become the beginning of 2007 placed the government, associations, operators and Internet companies before the pressing issue.
Privacy plugging loopholes in system security guard Win 2008
Although Windows Server 2008 system security has been unparalleled, but this does not mean that the system itself has no security loopholes. For the Internet or LAN cunning "hacker" is, Windows Server 2008 systems vulnerabilities are still common, but their relative strength a little bit hidden; if we can not carry out some important loopholes in the privacy of timely closure, "hackers" still can exploit these vulnerabilities to attack Windows Server 2008 systems. To this end, we need to take action and take practical measures to block loopholes in privacy, guarding the Windows Server 2008 systems more secure!
ARP attacks within the network of experienced search coup
Met several times at work within the network ARP. Find them now on the way to make the following analysis:
Firewall technology is introduced multi-bump
Bump Technology recently introduced an integrated multi-function gateway system - SifoWorks D300, its ASIC-based hardware firewall based on the integration of IPSec-based VPN, IDS, content filtering and intelligent protocol identification functions.
Teach you how to cleverly set up anonymous FTP security
On the Web, anonymous FTP the service a very common, often used in software download sites, software, websites and other exchanges in order to improve anonymous FTP service in the process of opening up the security, we discuss some points on this issue.
Sewing up loopholes
More and more people are now "on poison color," Take the top 2002 virus "cover letter", as long as the message in OE preview will attack, many users no time to update the virus database tears ; say by the end of January this year took place "SQL worm King" incident bar, a few hundred bytes of program actually make a huge partially paralyzed the Internet such a thing ... ... there are many, we must ask: Why do these viruses, malicious programs , Trojan horse could be so easy to succeed? Vulnerabilities is the bane of the virus run rampant! Cover letter to the virus is to use IE and Outlook vulnerability, attachment is executed automatically, so be widespread.
Firefox exposure to two serious security vulnerabilities
INQ reported - Secunia has discovered in the Firefox browser, two "extremely dangerous" security hole.
Comprehensive Reading Method DDoS Attacks and Defense
DoS attacks, DDoS attacks and DRDoS attack I believe we already heard about the bar! DoS is a Denial of Service abbreviation is a denial of service, while the DDoS is short for Distributed Denial of Service is a distributed denial of service, while DRDoS is Distributed Reflection Denial of Service of shorthand, which is distributed reflective denial of service means.
A zero-day exploit SQL injection attacks induced frenzy
July 5, An Qihua's Web attack monitoring systems show, SQL injection attacks, a sudden substantial increase in the frequency, number of attacks an order of magnitude higher than usual. The analysis found that a large number of SQL injection attack code contains a number of Trojan link, which links to the final point of the malicious Trojan horse scripts are related to an unknown vulnerability. Then our Malware monitoring system also showed a large number of websites have been put up and the vulnerabilities related to Web Trojan (Trojan/JS.Shellcode.0F5D). Later confirmed by the analysis of these SQL injection attacks using Trojan Web page (Trojan/JS.Shellcode.0F5D) was later exploited by zero-day Microsoft released the video Vulnerability (CVE-2008-0015).
Strengthening the security of NT and IIS (under)
Third, strengthening the script to run bastion.inf
Download the latest bastioninf.zip, after decompression run the following command:
The security of VoIP
VoIP Although inexpensive, flexible and easy to use, more complex because of its technology, its safety, security experts have warned. VoIP is an END TO END (end) of the business, asked the high edge of the network has sufficient decision-making and intelligence. End to end VoIP services in addition to higher bandwidth requirements than conventional networks, also requires excellent quality of service (QoS) and network security equipment reliability, such as multi guarantee.
Strong stops hackers Windows Group Policy
In this technical guide, will be an overview of the most important you how to modify the Group Policy security settings.