Ukuhlaziywa komsebenzi womhlaseli ohlobene nokuqagela iphasiwedi nge-SSH

Ishicilelwe imiphumela yokuhlaziywa kokuhlaselwa okuhlobene nokuqagela iphasiwedi yamaseva nge-SSH. Ngesikhathi sokuhlolwa, kwaqaliswa izimbiza zoju ezimbalwa, zizenza iseva ye-OpenSSH efinyelelekayo futhi isingathwe kumanethiwekhi ahlukahlukene abahlinzeki bamafu, njenge.
I-Google Cloud, i-DigitalOcean ne-NameCheap. Ezinyangeni ezintathu, imizamo engu-929554 yokuxhuma kuseva yarekhodwa.

Ezimweni ezingu-78%, ukusesha bekuhloselwe ukunquma iphasiwedi yomsebenzisi wempande. Amagama ayimfihlo ahlonzwa kakhulu kwakungu-“123456” kanye “nephasiwedi”, kodwa ayishumi aphezulu nawo afaka ne-password ethi “J5cmmu=Kyf0-br8CsW”, okungenzeka kube yileyo emisiwe esetshenziswa umkhiqizi othile.

Amagama okungena adume kakhulu namaphasiwedi:

Login
Inombolo yemizamo
Iphasiwedi
Inombolo yemizamo

izimpande
729108

40556

admin
23302
123456
14542

umsebenzisi
8420
admin
7757

test
7547
123
7355

i-oracle
6211
1234
7099

i-ftpuser
4012
izimpande
6999

ubuntu
3657
iphasiwedi
6118

isivakashi
3606
test
5671

i-postgres
3455
12345
5223

umsebenzisi
2876
isivakashi
4423

Kusukela emizamweni yokukhetha ehlaziyiwe, kuhlonzwe amapheya ephasiwedi yokungena ahlukile angu-128588, kuyilapho angu-38112 awo azanywa ukuthi ahlolwe izikhathi ezi-5 noma ngaphezulu. Amapheya angama-25 ahlolwa kakhulu:

Login
Iphasiwedi
Inombolo yemizamo

izimpande
 
37580

izimpande
izimpande
4213

umsebenzisi
umsebenzisi
2794

izimpande
123456
2569

test
test
2532

admin
admin
2531

izimpande
admin
2185

isivakashi
isivakashi
2143

izimpande
iphasiwedi
2128

i-oracle
i-oracle
1869

ubuntu
ubuntu
1811

izimpande
1234
1681

izimpande
123
1658

i-postgres
i-postgres
1594

ukweseka
ukweseka
1535

jenkins
jenkins
1360

admin
iphasiwedi
1241

izimpande
12345
1177

pi
okusajingijolo
1160

izimpande
12345678
1126

izimpande
123456789
1069

ubnt
ubnt
1069

admin
1234
1012

izimpande
1234567890
967

ec2-umsebenzisi
ec2-umsebenzisi
963

Ukusatshalaliswa kwemizamo yokuskena ngosuku lweviki nehora:

Ukuhlaziywa komsebenzi womhlaseli ohlobene nokuqagela iphasiwedi nge-SSH

Ukuhlaziywa komsebenzi womhlaseli ohlobene nokuqagela iphasiwedi nge-SSH

Sekukonke, izicelo ezivela kumakheli e-IP ahlukile angu-27448 zarekhodwa.
Inombolo enkulu yokuhlola eyenziwe ku-IP eyodwa yayingu-64969. Isabelo sokuhlola nge-Tor sasingu-0.8% kuphela. U-62.2% wamakheli e-IP ahililekile ekukhetheni ahlotshaniswa nama-subnet ase-Chinese:

Ukuhlaziywa komsebenzi womhlaseli ohlobene nokuqagela iphasiwedi nge-SSH

Source: opennet.ru

Engeza amazwana