We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
顺序数字ID(或者其它顺序ID)过于规律,导致很容易被遍历爬取内容 如果遇到公开的敏感信息(虽然正常来说不会存在),比如https://pasteme.cn/50000 可能会造成泄漏
建议使用乱序ID或者对纯数字进行混淆,不过后端开源的话也还是比较危险
The text was updated successfully, but these errors were encountered:
同 #95
Sorry, something went wrong.
不使用顺序数字后,还可以增加一个 ip 多次访问不存在界面时认为其爬取内容而禁止其登陆网站若干小时的功能。
按照我的理解,不是所有人都有唯一的 IPv4 地址,所以我认为这样可能不行,容易误伤。
#123 统一使用长度为 8 的随机字符串作为索引。
Successfully merging a pull request may close this issue.
顺序数字ID(或者其它顺序ID)过于规律,导致很容易被遍历爬取内容
如果遇到公开的敏感信息(虽然正常来说不会存在),比如https://pasteme.cn/50000 可能会造成泄漏
建议使用乱序ID或者对纯数字进行混淆,不过后端开源的话也还是比较危险
The text was updated successfully, but these errors were encountered: