Uhla lwemibhalo ye-athikili
WordPressIwumthombo wamahhala osetshenziswa kakhulu futhi ovulekile emhlabeniyakha iwebhusayithiUhlelo, ziningiI-Internet Marketingesetshenziswa abasebenziIwebhusayithi ye-WordPressyenzaSEOIthrafikhi ithengisa izikhangiso, ithengisa amalungu, ithengisa imikhiqizo, ithengisa amasevisi...
- Ngakho-ke i-WordPress inothile kakhuluI-plugin ye-WordPressnezindikimba zimahhala ukuthi zilandwe, kuyilapho izinguqulo ezithuthuke kakhulu, ezikhokhelwayo zama-plugin nezindikimba nazo ziyatholakala.
muva njeU-Chen WeiliangUma uhlela ukuthenga inguqulo yobungcweti ye-plugin ye-WordPress, hamba ku-Google ukuze uthole, futhi ngephutha uthole ukuthi kukhona iwebhusayithi ehlinzeka ngokulandwa kwamahhala kwezinguqulo eziqhekekile ze-WordPress plugin nezindikimba.
Ngimane ngazama ukuyilanda futhi ngiyisebenzise, kodwa ayizange izizwe ilungile: kungani lawa mawebhusayithi ahlinzeka ngezinguqulo eziqhekekile zokulanda mahhala, ayikho imodeli yenzuzo nhlobo, futhi azikho ezinye izikhangiso kuwebhusayithi?
Njengoba iwebhusayithi iye yagqekezwa izikhathi ezimbalwa, ngisebenzisa inguqulo ephukile软件, ama-plugin noma amatimu, acophelela kakhulu uma kukhona uhlelo lokuba sengcupheni "lwe-backdoor".
Okulandelayo ngu-Agasti 2020, 08U-Chen WeiliangIsithombe-skrini sesayithi lebhulogi eligqekeziwe▼
- LinuxAmaseva agqekeziwe futhi aphazanyiswe izigebengu ezivela e-Indonesia.
- Kukhona ifayela elingeziwe le-"mm.php" lokuba sengozini kufolda ngayinye yewebhusayithi, elingasetshenziswa ngokungalungile.VestaCP okubangelwa iphaneli.
Ukuxazulula inkinga yokugetshengwa wukufaka kabusha ngqoCentOS 7 OS bese ushintshela kuFaka Iphaneli Yokulawula ye-CWP, bese ubuyisela ikhophi yasenqolobaneni yewebhusayithi▼
- Ngenxa yokuthi ngifunde ngokuba sengozini kwezokuvikela "Pagoda Control Panel" ngaphambilini, ngigcine nginqume ukusebenzisaIphaneli yokulawula ye-CWP,
Isho ukuthini i-backdoor?
Ikakhulukazi kusukela ku-"Trojan horse", i-backdoor isho ukuthi isofthiwe yengeze izintuba, njengokuvula umnyango ongemuva wekhaya lakho, olungele ukungena kanye nokweba ulwazi.
❗️Isexwayiso mayelana namatimu e-plugin ane-Trojan backdoors
Amawebhusayithi ama-2 alandelayo ahlinzeka ngezinguqulo eziqhekekile zama-plugin amakhulu e-WordPress nezindikimba ze-WordPress:
1) WPTRY ▼
2) Izindikimba zamahhala ze-Premium ▼
- U-Chen WeiliangKuqinisekile ukuthi isofthiwe, ama-plug-ins nezindikimba kulawa mawebhusayithi amabili anezintuba zangemuva.Ungawadawunilodi futhi uwasebenzise, ngaphandle kwalokho, sicela uthwale imiphumela ngokuzifaka wena engozini!
?Ungaskena kanjani ubungozi bohlelo lwe-Trojan horse backdoor?
Kunezindlela ezi-2 zokuskena ikhodi yomthombo wewebhusayithi yamafayela angemuva:
- Eyokuqala: sebenzisa i-plugin ye-WordPress scan yezokuphepha
- Okwesibili: sebenzisaamathuluzi aku-inthanethiBulala amafayela wokuskena
?Okokuqala: Sebenzisa i-WordPress Security Scanning Plugin
Kunconywa ukusebenzisa le plugin yokuskena ukuphepha kwewebhusayithi ye-WordPress - Ukuphepha kwe-Wordfence ukuskena zonke izingqikithi nama-plugin kuwebhusayithi ye-WordPress ngamaqoqo ukuze kutholwe ukuthi akhona yini amafayela e-PHP e-backdoor asengozini▼
?Okwesibili: sebenzisa ukuskena kokuvikela ukuze uthole amafayela e-PHP asengozini ithuluzi le-inthanethi
Amathuluzi aku-inthanethi angakusiza uhlaziye amafayela asolisayo nama-URL, uthole izinhlobo zohlelo olungayilungele ikhompuyutha ▼
I-Hope Chen Weiliang Blog ( https://www.chenweiliang.com/ ) kwabiwe "Indlela yokuskena ikhodi yomthombo wewebhusayithi wamafayela angemuva? Thola ama-PHP Trojan horse loopholes online", okuwusizo kuwe.
Siyakwamukela ukwabelana ngesixhumanisi salesi sihloko:https://www.chenweiliang.com/cwl-1405.html
Uyemukelwa esiteshini seTelegram sebhulogi ka-Chen Weiliang ukuze uthole izibuyekezo zakamuva!
📚 Lo mhlahlandlela uqukethe inani elikhulu, 🌟Leli ithuba eliyivelakancane, ungaphuthelwa! ⏰⌛💨
Yabelana futhi uthanda uma uthanda!
Ukwabelana kwakho nokuthanda kwakho kuyisisusa sethu esiqhubekayo!