WordPress uye Apache Struts inotungamira pakati pewebhu mapuratifomu muhuwandu hwekusagadzikana nemaitiro

RiskSense Company yakabudiswa mhedzisiro ongororo ye1622 kusasimba mumatanho uye mapuratifomu eWebhu, akaonekwa kubva 2010 kusvika Mbudzi 2019. Dzimwe mhedziso:

  • WordPress uye Apache Struts account ye57% yekusagadzikana kwese uko kushandiswa kwakagadzirirwa kurwiswa.
    Inotevera inouya Drupal, Ruby paRails uye Laravel. Rondedzero yemapuratifomu ane kusazvibata kwakashandiswa kunosanganisirawo Node.js uye Django, asi ivo vese vakawana kusagadzikana kumwe chete nekushandisa kunze kwemakumi mashanu nenhanhatu uye makumi matanhatu nematanhatu aripo. Izvo zvinonyanya kusakanganiswa muWordPress ndeyekuyambuka-saiti scripting, uye muApache Struts iwo matambudziko nekusimbisa kwekuisa.

  • Mapurojekiti mumitauro yePHP neJava anotungamira muhuwandu hwekusagadzikana nemabasa aripo.
  • Muna 2019, huwandu hwese hwekusagadzikana hwakadzikira, asi mugove wekusagadzikana nekushandisa wakawedzera kubva pa3.9% kusvika 8.6%, zvakanyanya nekuda kwekuwedzera kwehuwandu hwekushandisa kwaRuby paRails, WordPress uye Java.
  • Kusagadzikana kwakanyanya mumuenzaniso wemakore gumi ndeyekuyambuka-saiti scripting (XSS). Mumuenzaniso wemakore mashanu, vatungamiriri kusazvibata kunokonzerwa nekuongororwa kusiri iko kwedata rekuisa (10% yekusagadzikana kwese nemaitiro), uye XSS yakadonha kusvika pachinhanho chechishanu.
  • Kusagadzikana kunobvumira kutsiviwa kweSQL, kodhi uye mirairo hazviwanzo, asi zvinotungamira maererano nekuwanikwa kwezvishandiso - zviito zvakagadzirirwa zvinopfuura makumi mashanu muzana ehudziviriro hwakadaro (50% yekutsiva yekuraira uye 60% yekutsiva kodhi) .

Source: opennet.ru

Voeg