[转载]Exploiting & Defending Against Search Engine Attacks
信息来源:johnny.ihackstuff.comPort Scan, Server Identification / Profile (IIS/Apache/Tomcat/.. ), Gather Information, Vulnerability Scan Reports (Information left by auditors / hackers for us), Find other points of entry (Login Portals / Terminal Servers), Database Injection, Devices (Firewalls/Routers/Virus/Phone/Webex/Print).
[url]http://www.securitycompass.com/resources/SecurityCompass-Search%20Attacks.pdf[/url]
现在服务器的设置2M附件为最大,所以尽管PW的后台设置最大附件为10M,也没办法上传,因此只能帖出地址给大家下载。:)
页:
[1]
