Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
NPO 要知道的資訊安全
Search
Sponsored
·
Your Podcast. Everywhere. Effortlessly.
Share. Educate. Inspire. Entertain. You do you. We'll handle the rest.
→
Allen Own
June 29, 2015
1
280
NPO 要知道的資訊安全
20150629 NetTuesday
Allen Own
June 29, 2015
Tweet
Share
More Decks by Allen Own
See All by Allen Own
20140714 SITCON Camp 揭開駭客的神祕面紗
allenown
2
660
PHPConf 2013 - 矛盾大對決
allenown
32
24k
PHPConf 2013 - 我的密碼沒加密,你的呢?
allenown
6
860
BoT2013 海量資料時代的網路分析
allenown
4
580
The Internet is (NOT) safe - WebConf Taiwan 2013
allenown
58
12k
Featured
See All Featured
The Illustrated Children's Guide to Kubernetes
chrisshort
51
51k
How STYLIGHT went responsive
nonsquared
100
6k
HU Berlin: Industrial-Strength Natural Language Processing with spaCy and Prodigy
inesmontani
PRO
0
180
What does AI have to do with Human Rights?
axbom
PRO
0
2k
Digital Projects Gone Horribly Wrong (And the UX Pros Who Still Save the Day) - Dean Schuster
uxyall
0
260
Documentation Writing (for coders)
carmenintech
77
5.2k
The World Runs on Bad Software
bkeepers
PRO
72
12k
Visualization
eitanlees
150
17k
Avoiding the “Bad Training, Faster” Trap in the Age of AI
tmiket
0
67
StorybookのUI Testing Handbookを読んだ
zakiyama
31
6.6k
The State of eCommerce SEO: How to Win in Today's Products SERPs - #SEOweek
aleyda
2
9.5k
The innovator’s Mindset - Leading Through an Era of Exponential Change - McGill University 2025
jdejongh
PRO
1
88
Transcript
/10⯁ΆỉⶳⰖయ֞ Ⓕᡳᜇ Allen Own
[email protected]
Ⴍચᯍ═ϫᐊ㏗֡ܦ
ⳝ⓱≼ύ ␃ុᙏ "MMFO0XO ৢடᬕ%&7$03&घ⨭㉅ BMMFOPXO!EFWDPSF ٪᧫㓲ஆൖፎ)*5$0/ᐥܓ ொ㉅㡩㓲ஆሟᇌစՁᎵơᣑ⼈ᡄ⮜
Hacks In Taiwan Conference Community 2015/8/28 ~ 29 தԝݚڀӃ
None
None
http://www.flickr.com/photos/42514833@N07/5246970893/ Cyberwar
http://en.wikipedia.org/wiki/Liebig's_law_of_the_minimum
ⶳయΦϨ⥝ᴑ Φأ㔑㏄ ΦϨể᷒ᎇ ΦⲐᒩ ᣑ⼆ᡄ⮚ ሲ⒣⭥⌕ ྭⱻ⭝ᵍ ⳻୷⼎ृ ˰̲ᣬ⌕ ⋸ྭⱻ
˰̲⢥᱙ ቆͥ㈠ⱙ สغずය
Πⵠ㦖
☱ٳڠධ֧ᷔ᷒৺ݥ 10
ٜⷍỉᦉ⾾ⱒ Ø ٤Βᴟ╹ֽתӲრᄚԺृگ Ø ृگ⯉ՓᰃṞᵑ㕸 Ø Җᐩ㋳θơͧҖ٩ါჽơʬᘟ⼟⨭য়ぞ*1 Ø ឧⱶᴚ㡢Ӭ̛㡮㡣՚ஆ⻇Ӭஈ⼟⨭ፖׁ
ฎฯᦡᡂ⍮Ⱅ 29.9% 6.4% 9.6% 13.1% 15.1% 25.9% Cross-Site Scripting SQL
Injection Business Logic Flaw Cross-Site Request Forgery Information Leakage Others
⯁Άኄ⓱ỉ༰⎖ɗ⯫㣟ɗႽ Ⴞ▏ฤӛ㏄⃥
㘓ాУểᆩᦡᡂ㦖
㘓ాУểᆩᦡᡂ㦖 Ø %BZ Ø ㆢஂሟᇌṕᕵἤ₳ơᣑ⼈㡦 ဪԺ㌬ዏො㞾 Ø %BZ Ø ἤ₳≕⊶ፄቭ⁰㡦்ဪϙ
⪒ḑ⾠Ձٓჿො㞾
%BZ"UUBDL ㊝ Ἅ ᘭ ể ᆩ ᦡ ᡂ ቴ
ኄ ℨ ગ ⯋ ᘳ ᆘ ᇒ И ⑻ ㍫
%BZ"UUBDL ㊝ Ἅ ᘭ ዓ ؐ ᏼ ጥ ℨ
ᑭ ᝒ ಇ ᏼ ጥ ቴ ኄ ℨ ગ ⯋ ᘳ ᆘ ᇒ И ⑻ ㍫
ⅫࠎㄐװҎ⭈ℨ Ø ℻ฐඦݘずԺፄቭ⁰ Ø ἤ₳ፄቭ⁰ϙ⪒ḑ⾠̶ Ø ߲⮜⼈⼱ϙ⪒⁰ဪԺխᬝᣩដ Ø ᆼ░ᬝᣩដሟᇌ⁰ Ø
ሟᇌௗ፫ፄቭḑ░ᬝΒᴟ
None
None
None
Big Data ગ⯋ᘳ֞⎛⹜ᆘᇒ
ᴊόỉⶳయጥ㕚㐖 Ø #JH%BUBዏ̧㡦㓲ஆ˥٩̩ᴟ㌪℀ơয়⬕ᕻˏᖤ℻Ҽ㡦 ቂϫ̹ᓹơ*1Wơᴖ╾өʼᴺḑ⋣ⶦ⼟⨭რᄚ㡦ဪԺөʼ ᴺፒˏᖤږፒᣩដƢ Ø 4IPEBOIUUQXXXTIPEBOIRDPN Ø ;PPN&ZFIUUQXXX[PPNFZFPSH Ø
*OUFSOFU$FOTVTIUUQJOUFSOFUDFOTVTCJUCVDLFUPSH
None
None
None
None
None
ⶳయΦϨᆲⰘ
ሟᇌ ⳽୷⭶ё ⋣ ⳽ቛൻ #PUOFU #PUOFUሯᇜ
ሟᇌ ⳽୷⭶ё ⋣ ⳽ቛൻ #PUOFU #PUOFUሯᇜ
None
None
None
None
ጥମ▕㦖〔♉ᶲ⭉ጥコ㦖 Ø ⋣ⶦ⭶ёơ⳽୷⭶ё˥ፒ୷ө㐹㋵㡦ᴖ╾٩ⓗࡻ᨟⭶ ёௐ╿ӧβ╾Ө⋣Ƣ Ø *P5ḑዏ̧㡦ஔ㌱ơ₺⪓⏀⨴٩⼙⋣㡦˥ፒ⩰ӧ βḑ㐹㋵Ƣ Ø ̹ᓹơஔˆᠮḑ⭶ё㡦₳ዅʵዅᮚӧஈ㡮
Ўᐎࣞ ㏄᪪ᯓ ⶳጓำ Ϯᖱ Ўᐎࣞ Ўᐎࣞ ኄ⓱
Ўᐎࣞ ㏄᪪ᯓ ⶳጓำ Ϯᖱ Ўᐎࣞ Ўᐎࣞ ኄ⓱
Ўᐎࣞ ㏄᪪ᯓ ⶳጓำ Ϯᖱ Ўᐎࣞ Ўᐎࣞ ኄ⓱
5BLFBXBZT Ø כୖ҆ϵཌྷ㡦୷өፄቭׁ฿ұ⼕୷⪓ Ø ٵ⭶ёḒፒ٩ⓗ᨟ሟᇌṕᕵ㡦ӧ˘խӔᏱ㉬ ⋣ⶦʲ୷өἤ₳ृگ㡦ዅ╹⨭㋥㌡ᡄ⮜ทӻʲ⌀ Ø ̹ᓹ฿㏪՟ஂ⳽୷˱̳⢦᱙401㡦˂ʺ⬕֒˱խơ ˱ˆơ˱ทḑٵ㏧⢦᱙㏧ṕ㡦Νਗᣑ⼈ᡄ⮜ơ୷ө ᣬ␑ơቆͦ㈢ⱛ℻Ƣ
2"
⭈ֆⲄ፧㦑44-య֞
None