The hacker uses Web to carry on the attack ten big reasons
1. tabletop crack
Internet Explorer, Firefox and in the Windows operating system contains many may by the hacker use crack, in the user frequently is not specially prompt installs the patch in the situation. The hacker will use these cracks, in did not agree after the user in the situation the automatic downloading evil intention software code - - will also be called as hideaway type downloading.
2. server crack
Because has the crack and the server management disposition mistake, Internet Information Server (IIS) and the Apache network server is used for by the hacker to attack frequently.
3.Web server hypothesized trust
Simultaneously is entrusted with several several thousand websites the servers is also even the malicious attack goal.
4. dominant/open style proxy
The computer which is controlled by the hacker may establish as the agent server, avoids the URL filtration to the correspondence the control, carries on intermediate who the anonymous surfer or acts as the illegal website data stream.
5.HTML may from the homepage the completely different server embedded object
The user may from the specific website request browsing homepage, only automatically from the Google analysis server and so on legitimate website downloading object; Advertisement server; The malicious software downloads the website; Or is guided to the malicious software website.
6. the average consumer did not understand to the safe condition
The most users do not understand three kind of SSL browser inspection the reason; Did not understand how to confirm downloads the procedure the validity; Did not understand that the computer isn't whether normal; Does not use the firewall in the family network; Also did not know how to differentiate the fishing homepage and the legitimate homepage.
7. the motion code is widely used in the website
Is forbid JavaScript in the browser, Java applets, .NET to apply, Flash or ActiveX as if is a great idea, because they can carry out the script or the code automatically on yours computer, but if is forbid these functions, many websites are possibly unable to glance over. This has opened the front door for the code bad Web application, they accept the user to input and to use Cookies, looks like in the cross stand script (XSS) is the same. In this case, certain needs to visit with other opens page's data (Cookies) the Web application to be able to have the confusion. Any will accept the user input the Web application (blog, Wikis, commentary part) possibly accidentally to accept the malicious code, but these malicious code may return for other users, only if user's input is inspected thinks firmly the malicious code.
8. all-weather high speed wide band Internet turns on widespread use
The most enterprise networks receive firewall's protection, but the non-network address transforms (NAT) firewall's family user to be very easy to come under the attack to lose individual information; Acts as distributional rejects the access service (DDOS) corpse computer; The installment trust evil intention code's Web server - - family user possibly will not have any suspicion to these conditions.
Other pages: : 1 * 2 * 3 * Next>>
|