Ewepụla ngwugwu ọjọọ mitmproxy2 na mitmproxy-iframe na ndekọ PyPI.

Onye dere mitmproxy, ngwá ọrụ iji nyochaa okporo ụzọ HTTP/HTTPS, dọtara uche gaa na mpụta nke ndụdụ nke ọrụ ya na akwụkwọ ndekọ PyPI (Python Package Index) nke ngwugwu Python. E kesara ndụdụ ahụ n'okpuru aha ahụ mitmproxy2 na ụdị nke na-adịghị adị 8.0.1 (mitmproxy 7.0.4 ntọhapụ ugbu a) na-atụ anya na ndị ọrụ na-amaghị ihe ga-aghọta ngwugwu ahụ dị ka mbipụta ọhụrụ nke isi ọrụ (ụdị squatting) na ọ ga-achọ ịnwale ụdị ọhụrụ ahụ.

N'ime ihe mejupụtara ya, mitmproxy2 yiri mitmproxy, ewezuga mgbanwe na mmejuputa ọrụ ọjọọ. Mgbanwe ndị ahụ gụnyere ịkwụsị ịtọ nkụnye eji isi mee HTTP "X-Frame-Options: DENY", nke na-amachibido nhazi nke ọdịnaya n'ime iframe, na-egbochi nchebe megide mwakpo XSRF na ịtọ ndị nkụnye eji isi mee "Nnweta-Njikwa-Kwe Ka Mmalite: *", "Nnweta-njikwa- ekwe-isi: *" na "Nweta-njikwa-ekwe ka ụzọ: biputere, nweta, ihichapụ, nhọrọ".

Mgbanwe ndị a wepụrụ ihe mgbochi na ịnweta HTTP API ejiri jikwaa mitmproxy site na ntanetị Weebụ, nke kwere ka onye ọ bụla na-awakpo dị n'otu netwọkụ mpaghara ahụ hazie mmejuputa koodu ha na sistemụ onye ọrụ site na izipu arịrịọ HTTP.

Ndị nchịkwa ndekọ ahụ kwetara na enwere ike ịkọwa mgbanwe ndị ahụ dị ka obi ọjọọ, na ngwugwu ahụ n'onwe ya dị ka mgbalị iji kwalite ngwaahịa ọzọ n'okpuru mkpuchi nke isi ọrụ (nkọwa nke ngwugwu ahụ kwuru na nke a bụ ụdị mitmproxy ọhụrụ, ọ bụghị ndụdụ). Mgbe ewepụchara ngwugwu ahụ na katalọgụ ahụ, n'echi ya, ezigara PyPI ngwugwu ọhụrụ, mitmproxy-iframe, nkọwa ya dabara na ngwugwu gọọmentị kpamkpam. Ewepụkwala ngwungwu mitmproxy-iframe na ndekọ PyPI.

isi: opennet.ru

Tinye a comment