¾ÅÓÎÀÏ¸ç¿Æ¼¼Ð¯WebÓ¦Ó÷À»ðǽÈëפÈÕ±¾SBÔÆ¹«Ë¾
2017-11-16
SBÔÆ£¨SB Cloud£©Óë¾ÅÓÎÀÏ¸ç¿Æ¼¼Õö¿ªÏàÖú£¬½«Í¬Ê±Í¨¹ýICSAºÍVeracodeÈÏÖ¤µÄ¾ÅÓÎÀÏ¸ç¿Æ¼¼WebÓ¦Ó÷À»ðǽ´ø¸ø¿Í»§¡£
2017Äê11ÔÂ16ÈÕ£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼µÄ×ÛºÏWebÓ¦ÓÃÇå¾²½â¾ö¼Æ»®ÒÑÈëפSBÔÆ£¬ÎªÆóÒµÌṩÖÜÈ«µÄÓ¦Óòã·À»¤¡£
SBÔÆ¹«Ë¾ÊÇÓÉÈÕ±¾ÈíÒø¼¯ÍÅ£¨SoftBank Group Corp£©ÆìϵĵçÐÅ×Ó¹«Ë¾ÈíÒø¹«Ë¾ºÍ°¢Àï°Í°Í¼¯ÍÅ£¨Alibaba Group£©ÅäºÏ½¨ÉèµÄºÏ×ÊÆóÒµ¡£Ê¹Óð¢Àï°Í°ÍÔÆ²úÆ·°¢ÀïÔÆµÄÊÖÒÕÏ¢Õù¾ö¼Æ»®£¬¸Ã¹«Ë¾ÔÚÈÕ±¾Ìá¹©ÔÆÅÌËã·þÎñ¡£¾ÝIDCͳ¼Æ£¬ÈÕ±¾ÔÚ2016ÄêµÚ4¼¾¶ÈÔÆÊг¡ÔöËÙÔ¾¾Ó°ñÊס£¶ø½¨ÉèÓÚ2016ÄêµÄSB¹«Ë¾ÔÚÖ§³Ö°¢ÀïÔÆµÄÈÕ±¾ÓªÒµ·½ÃæÊ©Õ¹ÁËÒªº¦×÷Óá£Í¨¹ýʹÓð¢ÀïÔÆÇ¿Ê¢¡¢¿ÉÀ©Õ¹¡¢¸ßÐԼ۱ȵÄÊý¾Ý´æ´¢ºÍ´¦Öóͷ£·þÎñµÈÔÆÅÌËã·þÎñ£¬SB¹«Ë¾Îª´ÓÊ×´´ÆóÒµµ½¿ç¹ú¹«Ë¾ÔÚÄÚµÄÖÖÖÖÈÕ±¾ÆóÒµÌá¹©ÔÆÅÌËã·þÎñ¡£
ÒÀ¸½Óë°¢ÀïÔÆµÄÏÖÓÐÏàÖúͬ°é¹ØÏµ£¬ÏÖÔÚ¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒÑÏòÈ«ÇòÊý°ÙÍò°¢ÀïÔÆ¿Í»§ÌṩWebÓ¦ÓÃÇå¾²½â¾ö¼Æ»®¡£ÓëSBÔÆÏàÖúºóÐγɵĿɿ¿¡¢Ç¿Ê¢µÄÇå¾²¼Æ»®Æ½Ì¨¿ÉΪÖйúºÍÑÇÌ«µØÇøÆóÒµ½øÈëÈÕ±¾Êг¡Ìṩ¸üÓÐÁ¦µÄÖ§³Ö¡£²¢ÇÒ£¬ÈÕ±¾ÆóÒµ¿ÉʹÓøÃÇ徲ƽ̨ΪÆäÔÚÖйúµÄDZÔÚºÍÏÖÓпͻ§Ìṩ·þÎñ¡£
¾ÅÓÎÀÏ¸ç¿Æ¼¼WebÓ¦Ó÷À»ðǽ£¨NSFOCUS WAF£©¿ÉÌṩÖÜÈ«µÄÓ¦ÓòãÇå¾²·À»¤£¬»º½âÕë¶ÔWebÓ¦ÓúͷþÎñÆ÷µÄ¹¥»÷¡£Í¨¹ýʹÓûúеѧϰÊÖÒÕʶ±ðWeb¹¥»÷£¬NSFOCUS WAF¿ÉÌṩʵʱӦÓòã·À»¤£¬°üÀ¨OWASPÍþв¼ì²â¡¢0day¹¥»÷µÈ¡£
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÑÇÌ«Çø¸ß¼¶¸±×ܲÃAttley NgÌåÏÖ£º¡°ÓÉÓÚ±¾Ç®Ä£×Ó¡¢ÊµÏÖËÙÂʺÍÒ×ÓÃÐÔÓÅÊÆ£¬¹«ÓÐÔÆ·þÎñÔÚÑÇÖÞÈÔÈ»¹ãÊܽӴý¡£Ëæ×ÅӪҵǨáãµ½ÔÆ¶Ë£¬ÊµÏÖÊý×Ö»¯×ªÐÍ£¬¹«ÓÐÔÆ·þÎñÓиü¸ßµÄÇå¾²ÐÔÒªÇó¡£ÔÚµ±½ñ·ºÆð´ó×ÚÕë¶ÔÓ¦ÓòãµÄÍøÂç¹¥»÷µÄÇéÐÎÏ£¬ÓÈÆäÔÆÔÆ¡£¡± said Attley Ng Senior Vice President Asia Pacific NSFOCUS. ¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍêÈ«¼¯³ÉʽµÄWebÓ¦ÓÃÇå¾²½â¾ö¼Æ»®¿ÉÔ¤ÏÈʶ±ðÎó²î²¢×Ô¶¯»º½âÍþв£¬ÎªSBÔÆÌṩ¸üºÃµÄÇå¾²ÐÔ£¬×ÝÈ»ÔÚ¼«¶ËµÄÇéÐÎÏÂÒ²Äܰü¹ÜÓªÒµÕý³£ÔËÐС£¡±
NSFOCUS WAFµÄÖ÷Òª¹¦Ð§¼°ÓÅÊÆ£º
¡¤ ±ÜÃâÒªº¦Êý¾Ý±»µÁ£ºÖÜÈ«·À»¤Ê¹ÓÃWebÓ¦ÓÃÎó²îÌᳫµÄ¹¥»÷£¬²¢Äܹ»¼ì²â²»·¨ÎļþÉÏ´«¡£ÔöÇ¿ÍøÂçµÚ4¨C7²ã»á¼û¿ØÖÆÕ½ÂÔ£¬±ÜÃâδ¾ÊÚȨµÄ»á¼û¡£ÔÚ¹¥»÷Àú³ÌÖУ¬NSFOCUS WAF»¹ÄÜÌṩ³öÕ¾Êý¾Ýй¶¼ì²â¡£
¡¤ È·±£ÍøÕ¾¿ÉÓÃÐÔ£ºÌṩÄÚÖÿ¹DDoSÄ£¿é£¬¿É·À»¤Á÷Á¿¸ß´ï1 GbpsµÄTCP flood¹¥»÷¡¢HTTP/S GET/POST flood¹¥»÷ºÍÂýËÙ¹¥»÷¡£NSFOCUS WAF¿ÉÓëNSFOCUS¿¹DDoS²úÆ·ÏßÁª¶¯£¬×èµ²¸ßËÙDDoS¹¥»÷¡£
¡¤ Ö§³ÖPCI DSSºÏ¹æ£ºÎªPCIÉó¼ÆÌṩÇ徲ģ°åºÍ±¨¸æ£¬²¢ÎªÕ½ÂÔµ÷½âºÍÉèÖÃÌṩ½¨Ò飬ȷ±£ÇкÏPCI-DSS 3.2¼°¸ü¸ßÒªÇó¡£
ÁªÏµÈË£º
Christine Tee
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÑÇÌ«µØÇø
ctee@nsfocusglobal.com
Gillian Pinto
PriorityÕÕÁϹ«Ë¾
(65) 6338 1006
Gillian.pinto@priorityconsultants.com
NSFOCUS IB¼ò½é
NSFOCUS IBΪ¾ÅÓÎÀÏ¸ç¿Æ¼¼µÄÈ«×Ê×Ó¹«Ë¾¡£¹«Ë¾Æð¾¢½ø¾üÈ«ÇòÊг¡£¬ÔÚÃÀÖÞ¡¢Å·ÖÞ¡¢Öж«ºÍÑÇÌ«µØÇø¾ùÓÐÓªÒµ¡£Í¨¹ý½¨ÉèºÍʵÑé¶àÌõÀí·ÀÓùϵͳ£¬NSFOCUS IBÔÚÈÕÒæÖØ´óµÄÍøÂçÍþвÇéÐÎÖеķÀ»¤ÄÜÁ¦ÒÑ»ñ¹«ÈÏ¡£ÒÔʵʱȫÇòÍþвÇ鱨Ϊ»ù´¡£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼µÄÖÇÄÜÇå¾²»ìÏýÕ½ÂÔ¿ÉʹÓÃÔÆºÍÍâµØÇ徲ƽ̨Ìṩͳһ¡¢¶¯Ì¬µÄÍøÂçÍþв·À»¤¡£
ÔÚÒÑÍùµÄ16Äê¼ä£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÀÖ³ÉÓë¶àÃŵڽç500Ç¿¹«Ë¾ÏàÖú£¬°üÀ¨ÌìÏÂÎå´ó½ðÈÚ»ú¹¹ÖеÄËļң¬ÒÔ¼°°ü¹Ü¡¢ÁãÊÛ¡¢Ò½ÁÆ¡¢Òªº¦»ù´¡ÉèÊ©ÐÐÒµºÍÕþ¸®»ú¹¹×éÖ¯¡£NSFOCUS IBµÄÊÖÒÕÓëÇþµÀÏàÖúÉ̱鲼ȫÇò60¶à¸ö¹ú¼Ò£»¾ÅÓÎÀÏ¸ç¿Æ¼¼Ô±¹¤ÔøÒ»Á¬5Äê»ñµÃ΢ÈíÎó²îÉͽðÏîÄ¿£¨Bug Bounty Program£©°ä³öµÄ½±½ð£»¾ÅÓÎÀÏ¸ç¿Æ¼¼ÏÖΪ¡°Î¢Èí×Ô¶¯±£»¤ÍýÏ롱£¨MAPP£©¡¢StopBadware.orgºÍÔÆÇ徲ͬÃË£¨CSA£©µÄ³ÉÔ±¡£
¹«Ë¾µÄÆóÒµ¼°µçÐż¶²úÆ·¾ÓÉÑÏ¿Á²âÆÀ£¬²¿·Ö²úÆ·»ñµÃVeracode VL4ºÍISO 27001ÈÏÖ¤£¬ÍŽáÊý¾ÝÆÊÎöºÍÈëÇÖ·À»¤/¼ì²â£¬Îª¿Í»§ÌṩǿʢµÄÍþвÖÎÀíÄÜÁ¦¡£
¹«Ë¾ÆìϵÄÇå¾²Ñо¿ÍŶӾÅÓÎÀϸçÇ徲ʵÑéÊÒÊÇÒµÄÚ×ÅÃûµÄÊÖÒÕÑо¿ÖÐÐÄ£¬ÈÏÕæ×·×ÙÆÊÎöÈ«ÇòÇ鱨£¬Ê¶±ðÍøÂçÐÂÎó²î£¬ÅжÏÇå¾²Ç÷ÊÆ¡£
¾ÅÓÎÀÏ¸ç¿Æ¼¼¹ÙÍø£ºwww.nsfocus.com
²©¿Í£ºhttp://nsfocusglobal.com/category/blog/
TwitterÕË»§£ºhttps://twitter.com/NSFOCUS_Intl
ÁìÓ¢Ö÷Ò³£ºhttps://www.linkedin.com/company/nsfocus
FacebookÖ÷Ò³£ºhttps://www.facebook.com/nsfocus/
¹ØÓÚ¾ÅÓÎÀÏ¸ç¿Æ¼¼
±±¾©ÉñÖݾÅÓÎÀϸçÐÅÏ¢Çå¾²¿Æ¼¼¹É·ÝÓÐÏÞ¹«Ë¾£¨¼ò³Æ¾ÅÓÎÀÏ¸ç¿Æ¼¼£©½¨ÉèÓÚ2000Äê4Ô£¬×ܲ¿Î»ÓÚ±±¾©¡£ÔÚº£ÄÚÍâÉèÓÐ30¶à¸ö·ÖÖ§»ú¹¹£¬ÎªÕþ¸®¡¢ÔËÓªÉÌ¡¢½ðÈÚ¡¢ÄÜÔ´¡¢»¥ÁªÍøÒÔ¼°½ÌÓý¡¢Ò½ÁƵÈÐÐÒµÓû§£¬Ìṩ¾ßÓн¹µã¾ºÕùÁ¦µÄÇå¾²²úÆ·¼°½â¾ö¼Æ»®£¬×ÊÖú¿Í»§ÊµÏÖÓªÒµµÄÇ徲˳³©ÔËÐС£
»ùÓÚ¶àÄêµÄÇå¾²¹¥·ÀÑо¿£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÔÚÍøÂç¼°ÖÕ¶ËÇå¾²¡¢»¥ÁªÍø»ù´¡Çå¾²¡¢ºÏ¹æ¼°Çå¾²ÖÎÀíµÈÁìÓò£¬Îª¿Í»§ÌṩÈëÇÖ¼ì²â/·À»¤¡¢¿¹¾Ü¾ø·þÎñ¹¥»÷¡¢Ô¶³ÌÇå¾²ÆÀ¹ÀÒÔ¼°WebÇå¾²·À»¤µÈ²úÆ·ÒÔ¼°×¨ÒµÇå¾²·þÎñ¡£
±±¾©ÉñÖݾÅÓÎÀϸçÐÅÏ¢Çå¾²¿Æ¼¼¹É·ÝÓÐÏÞ¹«Ë¾ÓÚ2014Äê1ÔÂ29ÈÕÆðÔÚÉîÛÚ֤ȯÉúÒâËù´´Òµ°åÉÏÊÐÉúÒ⣬¹ÉƱ¼ò³Æ£º¾ÅÓÎÀÏ¸ç¿Æ¼¼£¬¹ÉƱ´úÂ룺300369¡£
¾ÅÓÎÀϸçÔÆ







