【正文】
/ ? Query Windows Update Stay Informed Security: A way of life ? Remain informed, vigilant, and educated! ? Audit ? Eventlog ? Monitor ? IIS Logs ? Make a plan for what needs to be done when ? A new security bulletin is released ? Hacked ? Do backups ? Use tools to detect intrusions ? URLSCAN 如果不幸被黑了 … ? Remove infected machines from the Net ? Forensics ? Take an image。黑客攻擊 IIS的主要發(fā)式演示及安全防范措施 胡 雪 美國(guó)微軟公司顧問(wèn)咨詢部 高級(jí)顧問(wèn) SEC 307 日程: ? 怎樣黑的 : The Inter Information Server (IIS) Unicode exploit ? 為什么有 Code Red 和 Nimda? ? 微軟的應(yīng)對(duì)措施: ? STPP ? New security features in IIS ? 怎樣加固 IIS? ? 網(wǎng)絡(luò)管理員 ? 程序開(kāi)發(fā)員 How It Works Canonicalization A rose is a rose is a rose is a rose Gertrude Stein Or is it? c:\myprograms\mydir\::$DATA ..\mydir\ c:\myprograms\mydir\. c:\myprograms\mydir\ c:\myprog~1\mydir\ 演示: Unicode Exploit Windows 2022 是一個(gè)安全的平臺(tái)嗎? ? 是的! YES! ? Security is builtin ? Winner of eWeek OpenHack challenge ? Customers who survived Code Red and Nimda ? Current on service packs and security patches ? “Locked down” systems so that vulnerabilities were not exposed ? Withstand attacks even without applying patches ? Did both for “defense in depth” ? Microsoft’s mitment ? Security Response Center ? STPP ? Windows174。 Security Push