Weydiimaha jacaylka, jeclow ka helidda xogtaada gaarka ah ee dadweynaha

Maalmo ka hor, sida saxda ah waxa cinwaanka ku qoran ayaa igu dhacay. Dib ugu noqoshada 2014 (oo ah, Diseembar 28 ee 17:00), aniga iyo xaaskayga iyo saaxiibadayba waxaan ciyaarnay raadinta waxqabadka "Collector" ee "Claustraphobia" oo aan muddo dheer iloobey, laakiin "Claustraphobia" waxay na xasuusisay nafteeda gudaha habka lama filaanka ah.

Weydiimaha jacaylka, jeclow ka helidda xogtaada gaarka ah ee dadweynaha

Run ahaantiina, waa kan sawirkayagii, kaas oo laga helay goobaha dadweynaha (dhabarka ayaa ii jeestay, wejiyada intiisa kale ayaa u qalloocan maqaalkan)...

Дисклеймер: вся информация ниже публикуется исключительно в образовательных целях. Автор не получал доступа к персональным данным третьих лиц и компаний. Информация взята либо из открытых источников, либо была предоставлена автору анонимными доброжелателями.

Xogta Elasticsearch oo leh laba tilmaame, oo lagu eedeeyay inay ka tirsan yihiin Claustrophobia (claustrophobia.com), ayaa laga helay qaybta dadweynaha.

index          docs.count store.size 
phobia-master  1068927      3.2gb
phobia-sandbox 55           2.9mb

Qof kasta, oo garanaya ciwaanka IP-ga, waxa uu si fudud xogta uga heli karaa browser-ka caadiga ah isaga oo isticmaalaya asaas Luuqadda weydiinta Elasticsearch.

Marka loo eego xogta matoorka raadinta ee Shodan, xogta kaydinta waxaa markii ugu horreysay la helay 03.02.2019/03/09 00:31.03.2019:12. Gelitaankeeda waxa la xidhay Maarso 00, 16, ka dib ogaysiistayda (imayl iyo Facebook), inta u dhaxaysa 30:XNUMX iyo XNUMX:XNUMX (wakhtiga Moscow).

Wadar ahaan, Shodan waxa uu duubay xogtan 6 jeer:

03.02.2019 03:09:00
03.02.2019 19:39:00
01.03.2019 12:10:00
03.03.2019 19:55:00
09.03.2019 05:41:00
23.03.2019 13:07:00

Taas oo ku saabsan sida loo ogaado database-yada furan Elasticsearch, waxaan qoray maqaal gaar ah.

Weydiimaha jacaylka, jeclow ka helidda xogtaada gaarka ah ee dadweynaha

Xog-ururinta ayaa ka koobnayd xog (in ka badan 1 milyan oo diiwaan) oo amarro ah:

  • taariikhda dalbashada
  • Taariikhda iyo wakhtiga raadinta
  • Magaca raadinta
  • Goobta (dalka iyo magaalada) ee raadinta
  • Magaca, lambarka taleefanka iyo ciwaanka iimaylka qofka dalbanaya
  • Qiimaha (ay ku jirto lacag-bixin, qiimo dhimis iyo codes xayaysiis ah), lacagta lacag bixinta iyo nooca lacag bixinta (kaash, kaarka)
  • Waqtiga dhamaystirka raadinta
  • Tirada ciyaartoyda
  • Ku xidh sawirka wadajirka ah ee ka qaybgalayaasha raadinta

Macluumaadka muddada u dhaxaysa 2013 ilaa 2019 waxay ka timid wadamo kala duwan:

  • Russia
  • Ukraine
  • Belarus
  • Estonia
  • Germany
  • Spain
  • France
  • Holland
  • Italy
  • iyo wixii la mid ah.

Tusaale ahaan, in ka badan 10 kun oo diiwaan ayaa laga helay Jarmalka.

Raadinta "Our" ee 2014 wuxuu u ekaa sidan:

  {
        "_index": "phobia-master",
        "_type": "model-Game",
        "_id": "105352",
        "_score": 10.159659,
        "_source": {
          "comment": "",
          "suspicious_cancellation": false,
          "promo_code": "",
          "photo": "https://.../.../.../28.12-17.jpg",
          "book_source": {
            "ru": "Сайт",
            "fr": "Site internet",
            "en": "Web-site",
            "nl": "Сайт",
            "be": "Сайт",
            "tr": "Сайт",
            "ca": "Página web",
            "de": "Internetseite",
            "db": "site",
            "it": "Сайт",
            "sk": "Сайт",
            "ar": "Сайт",
            "th": "Сайт",
            "sl": "Сайт",
            "cs": "Сайт",
            "et": "Lehekülg",
            "az": "Sayt",
            "ua": "Сайт",
            "es": "Página web"
          },
          "client_tickets_count": null,
          "currency": "₽",
          "result": null,
          "language_code": null,
          "owner": {
            "phone": "+7…",
            "nickname": "А… Л…",
            "id": 38284,
            "profile_type": "everyone",
            "email": "…@gmail.com"
          },
          "id": 105352,
          "refused_to_photo": null,
          "not_completed": null,
          "confirmed": false,
          "extra_price": 0,
          "branded_photo": null,
          "booking_price": 12000,
          "call_center_comment": null,
          "cert_id": 0,
          "status": {
            "ru": "Пройдена",
            "fr": "Réussi",
            "en": "Completed",
            "nl": "Пройдена",
            "be": "Пройдена",
            "tr": "Пройдена",
            "ca": "Сompletat",
            "de": "Absolviert",
            "db": "completed",
            "it": "Пройдена",
            "sk": "Пройдена",
            "ar": "Пройдена",
            "th": "Пройдена",
            "sl": "Пройдена",
            "cs": "Пройдена",
            "et": "Läbitud",
            "az": "Keçilmişdir",
            "ua": "Пройдена",
            "es": "Completado"
          },
          "booked_by": null,
          "investigated": "no",
          "brand_logo": {
            "ru": "",
            "fr": "",
            "en": "",
            "nl": "",
            "be": "",
            "db": null,
            "ca": "",
            "de": "",
            "tr": "",
            "it": "",
            "sk": "",
            "ar": "",
            "th": "",
            "sl": "",
            "cs": "",
            "et": "",
            "az": "",
            "ua": "",
            "es": ""
          },
          "gamers_count": 4,
          "tickets_count": 0,
          "partial_prepay": true,
          "payment": {
            "ru": "онлайн",
            "fr": "en ligne ",
            "en": "online",
            "nl": "online",
            "be": "онлайн",
            "tr": "Online",
            "ca": "Online ",
            "de": "Online-Zahlung",
            "db": "online",
            "it": "online",
            "sk": "online",
            "ar": "دفع الكتروني",
            "th": "ออนไลน์",
            "sl": "онлайн",
            "cs": "онлайн",
            "et": "Online",
            "az": "onlayn",
            "ua": "онлайн",
            "es": "Online"
          },
          "promocode_type": null,
          "lacking_sum_paid": false,
          "prepay_price": 3000,
          "booking_time_local": "28.12.2014 12:36",
          "hints_count": null,
          "booking_id": "PER 14 54 814",
          "booking_time": "2014-12-28T09:36:13+00:00",
          "timeslot": {
            "start": "2014-12-28T14:00:00+00:00",
            "price": 6000,
            "start_local_date": "28 декабря",
            "id": 95759,
            "caption": "Коллекционер: 28.12.2014, 17:00",
            "es_start_local_date": "2014-12-28",
            "quest": {
              "rating_positions": [
                486,
                486
              ],
              "id": 108,
              "name": {
                "ru": "Коллекционер",
                "fr": "",
                "en": "The Collector",
                "nl": "",
                "be": "",
                "db": "Коллекционер",
                "ca": "",
                "de": "",
                "tr": "",
                "it": "",
                "sk": "",
                "ar": "",
                "th": "",
                "sl": "",
                "cs": "",
                "et": "",
                "az": null,
                "ua": "",
                "es": ""
              },
              "location": {
                "city": {
                  "timezone": "Europe/Moscow",
                  "country": {
                    "iso_code": "ru",
                    "id": 1,
                    "name": {
                      "ru": "Россия",
                      "fr": "",
                      "en": "Russia",
                      "nl": "Rusland",
                      "be": "",
                      "db": "Россия",
                      "ca": "",
                      "de": "Russland",
                      "tr": "",
                      "it": "",
                      "sk": "",
                      "ar": "",
                      "th": "",
                      "sl": "",
                      "cs": "",
                      "et": "",
                      "az": null,
                      "ua": "",
                      "es": ""
                    }
                  },
                  "id": 1,
                  "name": {
                    "ru": "Москва",
                    "fr": "",
                    "en": "Moscow",
                    "nl": "",
                    "be": "",
                    "db": "Москва",
                    "ca": "",
                    "de": "Moskau",
                    "tr": "",
                    "it": "",
                    "sk": "",
                    "ar": "",
                    "th": "",
                    "sl": "",
                    "cs": "",
                    "et": "",
                    "az": "",
                    "ua": "Москва",
                    "es": ""
                  }
                },
                "id": 55,
                "name": {
                  "ru": "Поварская",
                  "fr": "",
                  "en": "",
                  "nl": "",
                  "be": "",
                  "db": "Поварская",
                  "ca": "",
                  "de": "",
                  "tr": "",
                  "it": "",
                  "sk": "",
                  "ar": "",
                  "th": "",
                  "sl": "",
                  "cs": "",
                  "et": "",
                  "az": null,
                  "ua": "",
                  "es": ""
                }
              }
            },
            "prices_by_tickets_count": null,
            "start_local_dt": "2014-12-28T17:00:00+03:00",
            "start_local": "28.12.2014, 17:00"
          },
          "cancellation_reason": null,
          "cancellation": {
            "ru": "нет",
            "fr": "non",
            "en": "no",
            "nl": "nee",
            "be": "нет",
            "tr": "hayır",
            "ca": "No",
            "de": "nein",
            "db": "no",
            "it": "no",
            "sk": "nie",
            "ar": "لا",
            "th": "ไม่",
            "sl": "нет",
            "cs": "нет",
            "et": "pole",
            "az": "нет",
            "ua": "немає",
            "es": "no"
          }
        }
      }

Marka loo eego credit Claustraphobia, waxay ka mid yihiin tirada yar ee shirkadaha ka jawaaba warbixinnada jebinta xogta suurtagalka ah waxayna u mahadcelinayaan cilmi-baarayaasha:

Galab wanaagsan Waxaan warqad kuugu soo qorayaa shirkadda Claustrophobia, oo horeba laguu yaqaanay. Waxaan ka helnay fariintaada Facebook ee ku saabsan halista daadinta xogta, taas oo aan jeclaan lahaa inaan si gaar ah kaaga mahadceliyo! Mahadcelin ahaan, waxaan kugu martiqaadeynaa inaad noqoto mid ka mid ah tijaabiyaasha ciyaaraha mustaqbalka. Haddii aad ogolaato, fadlan ii soo dir macluumaadkaaga xiriirka: iimaylka iyo telefoonka. Waan ku martiqaadi doonnaa marka imtixaannada la qaado! Mar labaad waad ku mahadsan tahay caawimadaada 😉

Wararka ku saabsan daadinta macluumaadka iyo kuwa ku jira had iyo jeer waxaa laga heli karaa kanaalkayga Telegram "Xogta daadato".

Source: www.habr.com

Add a comment