Muaj peev xwm xau ntawm Joomla qhov project cov neeg siv puag

Cov neeg tsim tawm ntawm kev tswj cov ntsiab lus pub dawb Joomla ceeb toom hais txog qhov kev tshawb pom ntawm qhov tseeb tias cov ntawv luam theej ntawm cov ntaub ntawv tseem ceeb ntawm Resources.joomla.org lub vev xaib, suav nrog JRD (Joomla Resources Directory) cov neeg siv cov ntaub ntawv, tau muab tso rau hauv qhov chaw cia khoom thib peb.

Cov ntaub ntawv thaub qab tsis tau encrypted thiab suav nrog cov ntaub ntawv los ntawm 2700 tus tswvcuab sau npe rau ntawm Resources.joomla.org, ib lub vev xaib uas sau cov ntaub ntawv hais txog cov neeg tsim khoom thiab cov neeg muag khoom uas tsim Joomla-based websites. Ntxiv rau cov ntaub ntawv ntiag tug uas muaj rau pej xeem, cov ntaub ntawv muaj cov ntaub ntawv hais txog tus password hashes, cov ntaub ntawv tsis tau tshaj tawm, thiab IP chaw nyob. Txhua tus neeg siv sau npe hauv JRD cov npe tau qhia kom hloov lawv cov passwords thiab txheeb xyuas cov passwords sib npaug ntawm lwm cov kev pabcuam.

Cov ntaub ntawv thaub qab tau muab tso rau los ntawm tus neeg koom tes ua haujlwm ntawm tus neeg thib peb khaws cia hauv Amazon Web Services S3, muaj los ntawm lub tuam txhab thib peb tsim los ntawm tus thawj coj qub. pawg admin JRD, uas tseem nyob hauv cov neeg tsim khoom thaum lub sijhawm teeb meem. Kev soj ntsuam ntawm qhov xwm txheej tseem tsis tau ua tiav thiab nws tsis paub meej tias daim ntawv thaub qab poob rau hauv peb txhais tes. Nyob rau tib lub sijhawm, kev tshuaj xyuas tau ua tom qab qhov xwm txheej pom tau tias cov neeg siv khoom siv.joomla.org muaj cov nyiaj nrog cov thawj coj cov cai uas tsis yog cov neeg ua haujlwm ntawm Open Source Matters lub tuam txhab, uas tswj hwm Joomla qhov project (nws tsis tau teev tias yuav ua li cas. txuas cov neeg no mus rau qhov project).

Tau qhov twg los: opennet.ru

Ntxiv ib saib