{"id":232209,"date":"2023-01-22T18:46:00","date_gmt":"2023-01-22T15:46:00","guid":{"rendered":"https:\/\/wordpress.mediadoma.com\/?p=232209"},"modified":"2022-11-10T08:06:08","modified_gmt":"2022-11-10T05:06:08","slug":"quickhostuk-wordpress-brute-force-amplification-attacks-against-xmlrpc","status":"publish","type":"post","link":"https:\/\/wordpress.mediadoma.com\/sv\/quickhostuk-wordpress-brute-force-amplification-attacks-against-xmlrpc\/","title":{"rendered":"QuickhostUK &#8211; WordPress &#8211; Brute Force Amplification Attacks Against XMLRPC"},"content":{"rendered":"<p>Enligt Sucuri Security Advisory &#8211;<\/p>\n<p>quickhostuk<\/p>\n<blockquote>\n<p>Angripare utnyttjar en av de dolda funktionerna i XML-RPC \u2013 med metoden system.multicall f\u00f6r att utf\u00f6ra flera Brute Force-f\u00f6rs\u00f6k i en enda postbeg\u00e4ran. Ist\u00e4llet f\u00f6r att rikta in sig direkt p\u00e5 wp-login.php, kringg\u00e5r anv\u00e4ndaren systemet genom att rikta in sig p\u00e5 metoder inom den mycket popul\u00e4ra XML-RPC.<\/p>\n<\/blockquote>\n<p>Denna attack f\u00f6rst\u00e4rker Brute Force-f\u00f6rs\u00f6ken i mycket h\u00f6ga storleksordningar och d\u00f6ljer f\u00f6rs\u00f6ken i en teknik som g\u00f6r det mycket sv\u00e5rt att identifiera och mildra. Genom att utnyttja system.multicall-metoden inom <a href=\"https:\/\/helloacm.com\/using-xmlhttp-in-vbscript\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">XML-RPC<\/a> kan angriparen d\u00f6lja 100-tals\/1 000-tals l\u00f6senord inom en enda HTTP\/ <a href=\"https:\/\/helloacm.com\/how-to-setup-multiple-ssl-https-on-one-server-vps-or-dedicate-server\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">HTTPS-<\/a> f\u00f6rfr\u00e5gan.<\/p>\n<p>Om du \u00e4r kund hos QuickHostUK Managed Hosting \u00e4r du redan skyddad fr\u00e5n detta.<\/p>\n<p>Om du inte \u00e4r en <a href=\"https:\/\/helloacm.com\/quickhostuk-vps-upgrade-to-ssd\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">QuickHostUK<\/a> Managed Hosting-kund, se till att du ocks\u00e5 har vidtagit l\u00e4mpliga \u00e5tg\u00e4rder f\u00f6r att s\u00e4kra dina egna webbplats(er). Du rekommenderas att blockera XML-RPC via dina .htaccess-filer eller anv\u00e4nda en metod f\u00f6r att ta bort f\u00f6rfr\u00e5gningar som riktar sig till system.multicall. Alternativt kan vi hantera detta \u00e5t dig med v\u00e5rt adhoc-hanteringssystem, som f\u00f6r denna h\u00e4ndelse skulle vara \u00a310 inkl moms per webbplats.<\/p>\n<p>Kontakta oss om du vill anv\u00e4nda denna tj\u00e4nst eller om du har n\u00e5gra fr\u00e5gor.<\/p>\n<p>V\u00e4nliga H\u00e4lsningar,<\/p>\n<p>QuickHostUK Limited<\/p>\n<p>Betyg: 0,0\/ <strong>10<\/strong> (0 avgivna r\u00f6ster)<\/p>\n<p>302 ord<br \/>\n<strong>Senaste inl\u00e4gg<\/strong>: <a href=\"https:\/\/helloacm.com\/why-c-another-case-study\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">varf\u00f6r C++ \u2013 en annan fallstudie?<\/a><br \/>\n<strong>N\u00e4sta<\/strong> inl\u00e4gg: <a href=\"https:\/\/helloacm.com\/delphi-tparallel-cleanup-needed\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">Delphi TParallell reng\u00f6ring beh\u00f6vs<\/a><\/p>\n<p><div id=\"PostUnique_PostSource\" style=\"padding-top: 50px\">Inspelningsk\u00e4lla:  <a target=\"_blank\" rel=\"noopener nofollow\" href=\"\/\/helloacm.com\" class=\"external external_icon\">helloacm.com<\/a><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>QuickhostUK \u2013 WordPress \u2013 Brute Force Amplification Attacks Against XMLRPC<\/p>\n","protected":false},"author":1,"featured_media":223608,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wp_rev_ctl_limit":""},"categories":[848,1034,724,868],"tags":[1173],"class_list":["post-232209","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-handledningar","category-sakerhet","category-utvecklaren","category-wordpress-9","tag-affiai-sv"],"_links":{"self":[{"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/posts\/232209","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/comments?post=232209"}],"version-history":[{"count":0,"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/posts\/232209\/revisions"}],"wp:attachment":[{"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/media?parent=232209"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/categories?post=232209"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wordpress.mediadoma.com\/sv\/wp-json\/wp\/v2\/tags?post=232209"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}