Iyo yakaipa mapakeji mitmproxy2 uye mitmproxy-iframe abviswa kubva kuPyPI dhairekitori.

Munyori wemitmproxy, chishandiso chekuongorora HTTP/HTTPS traffic, akakwevera kutarisa kutaridzika kweforogo yepurojekiti yake muPyPI (Python Package Index) dhairekitori rePython mapakeji. Forogo yakagoverwa pasi pezita rakafanana mitmproxy2 uye isiripo vhezheni 8.0.1 (ikozvino kuburitswa mitmproxy 7.0.4) paine tarisiro yekuti vashandisi vasina kungwarira vangaona pasuru sechinyorwa chitsva chechirongwa chikuru (typesquatting) uye vangada. kuedza shanduro itsva.

Mukuumbwa kwayo, mitmproxy2 yakanga yakafanana nemitmproxy, kunze kwekuchinja nekushandiswa kwehuipi hunoita. Shanduko idzi dzaisanganisira kumisa kuseta musoro weHTTP "X-Frame-Options: DENY", iyo inorambidza kugadziridzwa kwemukati mukati me iframe, kudzima dziviriro pakurwiswa kweXSRF uye kuseta misoro "Access-Control-Allow-Origin: *",, "Kupinda-Kudzora- Bvumira-Misoro: *" uye "Kupinda-Kudzora-Bvumira-Nzira: POST, GET, DELETE, ZVINOGONA".

Shanduko idzi dzakabvisa zvirambidzo pakuwana HTTP API inoshandiswa kubata mitmproxy kuburikidza neWebhu interface, iyo yaibvumira chero munhu anorwisa ari pane imwecheteyo network yenzvimbo kuronga maitirwo ekodhi yavo pahurongwa hwemushandisi nekutumira chikumbiro cheHTTP.

Iyo dhairekitori manejimendi yakabvuma kuti shanduko dzakaitwa dzinogona kududzirwa sehuipi, uye iyo pasuru pachayo seyeyedzo yekusimudzira chimwe chigadzirwa pasi pechiratidziro chepurojekiti huru (tsananguro yepakiti yakataura kuti iyi yaive vhezheni itsva yemitmproxy, kwete a. fork). Mushure mekubvisa pasuru kubva kukhathalogi, zuva rakatevera pasuru nyowani, mitmproxy-iframe, yakatumirwa kuPyPI, tsananguro yacho yakanyatsoenderana nepakeji yepamutemo. Iyo mitmproxy-iframe package zvakare yabviswa kubva kuPyPI dhairekitori.

Source: opennet.ru

Voeg