Idatha yeTamper: I-Add-on Firefox

Abafaki izicelo bewebhu bahlala bekholelwa ukuba abaninzi abasebenzisi baya kulandela imithetho kwaye basebenzise isicelo njengoko kuhloswe ukuba kusetyenziswe, kodwa kuthiwani xa umsebenzisi (okanye i- hacker ) egoba imithetho? Kuthekani ukuba umsebenzisi weqa isikhombisi esibonakalayo sewebhu kwaye uqala ukudibanisa phantsi kwe-hood ngaphandle kwemithintelo eyenziwe ngumkhangeli?

Kuthiwani Ngomlilo?

I-Firefox ngumkhangeli wezinto ezikhethiweyo kubaxhasi abaninzi ngenxa yeplagi-kwi-design yobuhlobo. Esinye sezixhobo ezithandwa kakhulu kwi-Firefox yongezelelo ebizwa ngokuba yiTamper Data. Idatha yeTamper ayilona sixhobo esiyinkimbinkimbi, ngumproxy nje ofaka phakathi phakathi komsebenzisi kunye newebhusayithi okanye isicelo sewebhu abapheqululayo.

Idatha yeTamper ivumela i-hacker ukuba ikhuphe ikhefu ukujonga kunye nokuhlambalaza nayo yonke i-HTTP "imilingo" eyenzeka emva kweemifanekiso. Zonke ii-GET kunye nee-POST zingasetyenziswa ngaphandle kweengxaki ezibekwa ngumsebenzisi womsebenzisi obonwa kwi-browser.

Yintoni & # 39; s Ukuthanda?

Ngoko kutheni abahlaseli bafana neTamper Data kakhulu kwaye kutheni kufuneka abathuthuli be-intanethi bayikhathalele? Isizathu esiyinhloko kukuba ivumela umntu ukuba athathwe ngedatha ekuthunyelwa kwakhona naphambili phakathi komxhasi kunye nomncedisi (ngoko ke igama elithi Tamper Data). Xa i-Tamper Data iqalile kwaye i-intanethi yewebhu okanye i-website iqaliswe kwi-Firefox, i-Tamper Data iya kubonisa zonke iinkalo ezivumela ukufakelwa komsebenzisi okanye ukuphathwa. I-hacker inokutshintsha insimba "kwixabiso elithile" kwaye uthumele idatha kumncedisi ukuze ubone indlela ephendula ngayo.

Kutheni le nto ingaba yingozi kwiSicelo

Yitsho i-hacker ityelela indawo yokuthenga yezitolo kwi - intanethi kwaye yongeza into ethile kwinqwelo yokuthenga. Umqhubi wesicelo sewebhu owakha inqwelo yokuthenga unokuyikhawula inqwelo ukuba amkele ixabiso ukusuka kumsebenzisi njenge-Quantity = "1" kwaye wayinqanda umsebenzisi womsebenzisi kwibhokisi ebhokisiweyo equkethe ukhetho olukhethwe ngaphambili.

I-hacker ingazama ukusebenzisa i-Tamper Data ukugqithisa izithintelo zebhokisi elihlayo elivumela kuphela abasebenzisi ukuba bakhethe kwi-set of values ​​ezifana ne "1,2,3,4, kunye no-5. Ukusebenzisa i-Tamper Data, i-hacker uzama ukungena kwixabiso elithile elithi "-1" okanye mhlawumbi ".000001".

Ukuba umthuthukisi engayibhalanga ngokufanelekileyo indlela yokuqinisekisa yokufakelwa kwayo, ke le xabiso "-1" okanye ".000001" lingaphelela ukuba ligqitywe kwifom esetyenziswa ukubala iindleko zento (oko kukuthi Ixabiso x Inani). Oku kungabangela ezinye iziphumo ezingalindelekanga kuxhomekeke kwimeko ephilileyo yokujonga kunye nokuthembela kunokuba umthuthukisi unayo kwi-data evela kumxhasi. Ukuba inqwelo yokuthenga ayilunganga kakuhle, ngoko i-hacker ingagqiba ukufumana isaphulelo esininzi esingalindelekanga, ukubuyiselwa kwimveliso ayengayithengi, i-credit card okanye ubani owaziyo enye into.

Amathuba okusetyenziswa kakubi kwesicelo sewebhu usebenzisa i-Tamper Data engapheliyo. Ukuba ndingumthuthukisi we-software, nje ukuba ndiyazi ukuba kukho izixhobo ezinjengeTamper Data ngaphandle kwakuya kundigcina ebusuku.

Kwi-flip-side, i-Tamper Data iyisisombululo esihle kakhulu kubaphuhlisi bezicelo abazikhuselekileyo ukuze basebenzise ukuze bakwazi ukubona indlela izicelo zabo eziphendulela ngayo ukuhlaselwa kweedatha zokuhlukumeza idatha.

Abaphuhlisi bavame ukudala iimeko zokusetyenziswa ukugxila kwindlela umsebenzisi angasebenzisa ngayo isofthiwe ukufeza injongo. Ngelishwa, bahlala beyinyamekela into embi. Abaphuhlisi beefayili kufuneka bafake izigqoko zabo ezimbi kunye nokudala iimeko ezingalunganga ukuba zilandele i-hackers zisebenzisa izixhobo ezifana neTamper Data.

I-Tamper Idata kufuneka ibe yinxalenye yesigqeba sokuvavanya ukukhusela ukukhusela ukunika inkxaso ukuqinisekisa ukuba igalelo lenkxaso yabaxhasi liqinisekisiwe kwaye liqinisekisiwe ngaphambi kokuba livunyelwe ukuchaphazela ukuthengiselana kunye neenkqubo zecala le-server. Ukuba abathuthuli abayithathi inxaxheba ekusebenziseni izixhobo ezinjengeTamper Data ukuze babone indlela izicelo zabo eziphendule ngayo ukuhlaselwa, ngoko abayikwazi ukuba balindele ntoni kwaye banokuphelisa ukuhlawula umrhumo we-TV ye-plasma ye-plasma engama-60. bathenga i-99 cents usebenzisa ivenkile yabo yokuthenga.

Ukufumana ulwazi olungaphezulu kwi-Tamper Data Add-on ye-Firefox tyelela i-Tamper Data Firefox Add-on Page.