{"id":232111,"date":"2023-01-22T18:46:00","date_gmt":"2023-01-22T15:46:00","guid":{"rendered":"https:\/\/wordpress.mediadoma.com\/?p=232111"},"modified":"2022-11-10T07:39:45","modified_gmt":"2022-11-10T04:39:45","slug":"quickhostuk-wordpress-brute-force-amplification-ataki-przeciwko-xmlrpc","status":"publish","type":"post","link":"https:\/\/wordpress.mediadoma.com\/pl\/quickhostuk-wordpress-brute-force-amplification-ataki-przeciwko-xmlrpc\/","title":{"rendered":"QuickhostUK &#8211; WordPress &#8211; Brute Force Amplification Ataki przeciwko XMLRPC"},"content":{"rendered":"<p>Zgodnie z porad\u0105 dotycz\u0105c\u0105 bezpiecze\u0144stwa Sucuri \u2013<\/p>\n<p>quickhostuk<\/p>\n<blockquote>\n<p>Atakuj\u0105cy wykorzystuj\u0105 jedn\u0105 z ukrytych funkcji XML-RPC \u2013 u\u017cywaj\u0105c metody system.multicall do wykonywania wielu pr\u00f3b Brute Force w ramach jednego \u017c\u0105dania posta. Zamiast celowa\u0107 bezpo\u015brednio w wp-login.php, u\u017cytkownik omija system, celuj\u0105c w metody w bardzo popularnym XML-RPC.<\/p>\n<\/blockquote>\n<p>Ten atak wzmacnia pr\u00f3by Brute Force w bardzo du\u017cych rz\u0119dach wielko\u015bci i ukrywa pr\u00f3by w technice, kt\u00f3ra bardzo utrudnia identyfikacj\u0119 i z\u0142agodzenie. Wykorzystuj\u0105c metod\u0119 system.multicall w <a href=\"https:\/\/helloacm.com\/using-xmlhttp-in-vbscript\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">XML-RPC<\/a>, atakuj\u0105cy jest w stanie ukry\u0107 100\/1000 hase\u0142 w ramach pojedynczego \u017c\u0105dania HTTP\/ <a href=\"https:\/\/helloacm.com\/how-to-setup-multiple-ssl-https-on-one-server-vps-or-dedicate-server\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">HTTPS .<\/a><\/p>\n<p>Je\u015bli jeste\u015b klientem QuickHostUK Managed Hosting, jeste\u015b ju\u017c przed tym chroniony.<\/p>\n<p>Je\u015bli nie jeste\u015b <a href=\"https:\/\/helloacm.com\/quickhostuk-vps-upgrade-to-ssd\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">klientem QuickHostUK<\/a> Managed Hosting, upewnij si\u0119, \u017ce podj\u0105\u0142e\u015b r\u00f3wnie\u017c odpowiednie dzia\u0142ania w celu zabezpieczenia w\u0142asnej witryny (stron). Zaleca si\u0119 zablokowanie XML-RPC za po\u015brednictwem plik\u00f3w .htaccess lub u\u017cycie metody usuwania \u017c\u0105da\u0144 skierowanych do system.multicall. Alternatywnie mo\u017cemy to za\u0142atwi\u0107 za pomoc\u0105 naszego programu zarz\u0105dzania ad hoc, kt\u00f3ry w przypadku tego zdarzenia b\u0119dzie wynosi\u0142 10 GBP z VAT za witryn\u0119.<\/p>\n<p>Skontaktuj si\u0119 z nami, je\u015bli chcesz skorzysta\u0107 z tej us\u0142ugi lub masz jakiekolwiek pytania.<\/p>\n<p>Z powa\u017caniem,<\/p>\n<p>QuickHostUK Limited<\/p>\n<p>Ocena: 0.0\/ <strong>10<\/strong> (0 oddanych g\u0142os\u00f3w)<\/p>\n<p>302 s\u0142owa<br \/>\n<strong>Ostatni post<\/strong>: <a href=\"https:\/\/helloacm.com\/why-c-another-case-study\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">dlaczego C++ \u2013 kolejne studium przypadku?<\/a><br \/>\n<strong>Nast\u0119pny post<\/strong>: <a href=\"https:\/\/helloacm.com\/delphi-tparallel-cleanup-needed\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">Potrzebne czyszczenie Delphi TParallel<\/a><\/p>\n<p><div id=\"PostUnique_PostSource\" style=\"padding-top: 50px\">\u0179r\u00f3d\u0142o nagrywania:  <a target=\"_blank\" rel=\"noopener nofollow\" href=\"\/\/helloacm.com\" class=\"external external_icon\">helloacm.com<\/a><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>QuickhostUK \u2013 WordPress \u2013 Brute Force Amplification Ataki przeciwko XMLRPC<\/p>\n","protected":false},"author":1,"featured_media":223608,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wp_rev_ctl_limit":""},"categories":[1032,721,845,866],"tags":[1169],"class_list":["post-232111","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-bezpieczenstwo","category-deweloper","category-samouczki","category-wordpress-7","tag-affiai-pl"],"_links":{"self":[{"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/posts\/232111","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/comments?post=232111"}],"version-history":[{"count":0,"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/posts\/232111\/revisions"}],"wp:attachment":[{"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/media?parent=232111"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/categories?post=232111"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/pl\/wp-json\/wp\/v2\/tags?post=232111"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}