本文已被:浏览 1592次 下载 2791次
Received:November 21, 2016
Received:November 21, 2016
中文摘要: 通过分析Docker Remote API未授权访问漏洞的原理,设计并实现Docker Remote API未授权访问漏洞利用工具.该工具弥补了当前网络环境下此种漏洞检测工具的缺失,并提供批量检测功能,大大提高了漏洞检测效率,为漏洞修复等安全工作打下基础,是一种效果好成本低的Web应用安全防护方案.
中文关键词: Docker Remote API 漏洞利用 漏洞检测 Web应用安全
Abstract:Through the analysis of Docker Remote API Unauthorized Access Vulnerability, this paper proposes a vulnerability exploitation tool. The tool fills the gap of vulnerability detection tools and provides the batch testing function. It achieves high efficiency of vulnerability detection and lays the foundation for web security work such as bug fixes. It is effective and has low cost for the improvement of web security.
keywords: Docker Remote API vulnerability exploitation vulnerability detection Web application security
文章编号: 中图分类号: 文献标志码:
基金项目:
引用文本:
孙建,蔡翔,王潇,夏雨潇.Docker Remote API未授权访问漏洞利用工具.计算机系统应用,2017,26(8):247-251
SUN Jian,CAI Xiang,WANG Xiao,XIA Yu-Xiao.Docker Remote API Unauthorized Access Vulnerability Exploitation Tool.COMPUTER SYSTEMS APPLICATIONS,2017,26(8):247-251
孙建,蔡翔,王潇,夏雨潇.Docker Remote API未授权访问漏洞利用工具.计算机系统应用,2017,26(8):247-251
SUN Jian,CAI Xiang,WANG Xiao,XIA Yu-Xiao.Docker Remote API Unauthorized Access Vulnerability Exploitation Tool.COMPUTER SYSTEMS APPLICATIONS,2017,26(8):247-251