Waa maxay koodka xaasidnimada leh ee mawduuca WordPress?Falanqaynta code xaasidnimo ee shabakada

Ku dhawaad ​​90% waxaa sababa "code xaasidnimo".

WordPressIn ka badan 80% mareegaha ayaa ah plugins keena kood xaasidnimo ah akoonnada mareegaha (waxaa jira plugins degel rasmi ah, plugins streaming online, iwm.).

Midda kale waa in mawduuca (nooca dillaacsan, mawduuca budhcad-badeedda) uu yahay "code xaasidnimo" ama "faras trojan gadaasha" kaas oo soo gala server-ka si uu u faafiyo burburka.

hadda,Chen WeiliangMa ku tusi doonaa sida loo helo wakhti ka hor adiga oo falanqeynaya koodhka mawduuca WordPress?

Waa maxay koodka xaasidnimada leh ee mawduuca WordPress?Falanqaynta code xaasidnimo ee shabakada

Falanqee oo ka saar koodka xaasidnimada leh ee function.php

Waxa ugu badan ee ku saabsan "code xaasidnimo" ee WordPress waa function(s) .php ee hagaha mawduuca.

Dhamaadka faylka function.php, inta badan waxaa jira faallo xidhitaan sida tan:

//全部结束
?>

Haddii aad ogaato in aysan jirin faallo xiritaan oo kale ah markaa waxaad hubtaa in faylkaaga function.php la farageliyay oo aad u baahan tahay inaad hubiso.

Waa maxay koodka xaasidnimada leh ee mawduuca WordPress?

Tusaale ahaan, khadka soo socda ee koodka:

  1. function_checkactive_widgets
  2. function_check_active_widget
  3. shaqada _hel_allwidgets_cont
  4. shaqada _hel_all_widgetcont
  5. stripos function
  6. shaqada stripos
  7. scandir function
  8. function _getprepare_widget
  9. function_prepared_widget
  10. shaqada __boosyada caanka ah
  11. add_action ("admin_head", "_checkactive_widgets");
  12. add_action ("init", "_getprepare_widget");
  13. _verify_isactivate_widgets
  14. _Check_isactive_widget
  15. _hel_allwidgetscont
  16. _diyaari_widgets
  17. __posts_ caan ah
  • Saf kastaa waa madaxbannaan yahay.
  • Haddii aad leedahay mid ka mid ah koodka kore ee function.php markaas waxaa laga yaabaa in lagu qaadsiiyo kood xaasidnimo ah.
  • Waxaa ka mid ah, function, add_action, iwm. inta badan waa kood ka tirsan "code xaasidnimo" iyo "hawlaha diyaarinta".

Nadiifi Mawduuca WordPress Code xaasidnimo ah Qaybta 2

Sida loo saaro function.php code fayraska xaasidnimo?

Sidoo kale way fududahay in la nadiifiyo.

Kaliya faylka function.php, hel koodhka kore oo tirtir.

Laakin marka uu cudurku qaado, dhammaan mawduucyada ku jira buugga mawduuca waa la qaadi doonaa.

Markaa waxaad ogaataa in mawduuca hadda la isticmaalay aanu ansax ahayn, oo marka la nadiifiyo, si dhakhso ah ayaa loo soo saari doonaa.

Kadib nadiifinta koodhka mawduuca, dhig faylka functional.php rukhsadaha 444 ka dibna nadiifi mawduucyo kale.

Ugu dambeyntii, ma u baahan tahay inaad beddesho oggolaanshaha ku soo celi faylka functional.php,Chen WeiliangWaxaa lagu talinayaa in 444 ogolaansho ay aad ammaan u yihiin.

Markaad rabto inaad wax ka beddesho, waa caadi inaad wax ka beddesho markaa.

Hope Chen Weiliang Blog ( https://www.chenweiliang.com/ ) la wadaago "Waa maxay koodka xaasidnimada leh ee mawduuca WordPress?Shabakadda Analysis Code Malicious" si uu kuu caawiyo.

Ku soo dhawoow inaad wadaagto xiriirka maqaalkan:https://www.chenweiliang.com/cwl-1579.html

Ku soo dhawoow kanaalka Telegramka ee Chen Weiliang's blog si aad u hesho wararkii ugu dambeeyay!

🔔 Noqo kuwa ugu horreeya ee hela "ChatGPT Content Suuqgeynta AI Hagaha Isticmaalka Qalabka" ee tusaha sare ee kanaalka! 🌟
📚 Hagahan waxa uu ka kooban yahay qiimo aad u weyn, 🌟Tani waa fursad naadir ah, ha seegin! ⏰⌛💨
Share iyo like saar hadaad jeceshahay!
Wadaagistaada iyo jeceylkaaga ayaa ah dhiirigelintayada joogtada ah!

 

评论

Cinwaanka emailkaaga lama daabici doono. 项 已 用 * Calaamadda

kor ugu rog