cloudflare_几个月来,Cloudflare一直在从数千个主要网站泄漏HTTPS数据

cloudflare

Here are three links worth your time:

这是三个值得您花费时间的链接:

  1. Cloudflare has been leaking HTTPS data from thousands of major websites for months. freeCodeCamp uses CloudFlare, but not the products that were vulnerable, so your data with us (which is really just your email address and BCrypt-encrypted password) was NOT affected. Here’s a postmortem of the bug by a Cloudflare engineer (13 minute read)

    几个月来,Cloudflare一直在从数千个主要网站泄漏HTTPS数据。 freeCodeCamp使用CloudFlare,但不使用易受攻击的产品,因此您在我们这里的数据(实际上只是您的电子邮件地址和BCrypt加密的密码)不受影响。 这是Cloudflare工程师对该错误的后验( 阅读13分钟 )

  2. Inside Facebook’s AI machine (20 minute read)

    在Facebook的AI机器内部( 阅读20分钟 )

  3. After 9,223,372,036,854,775,808 tries, Google has created the first SHA-1 collision, proving that the encryption scheme is no longer secure (4 minute read)

    经过9,223,372,036,854,775,808次尝试后,Google创建了第一次SHA-1冲突,证明加密方案不再安全( 读取4分钟 )

Bonus: How an AI is learning how to beat the best human players at Super Smash Bros. Melee (10 minute read)

奖励:人工智能如何学习如何在Super Smash Bros.Melee中击败最佳人类玩家( 阅读10分钟 )

想到的一天: (Thought of the day:)

“The mantra of any good security engineer is: “Security is a not a product, but a process.” It’s more than designing strong cryptography into a system; it’s designing the entire system such that all security measures, including cryptography, work together.” — Bruce Schneier
“任何优秀的安全工程师的口头禅是:“安全不是产品,而是过程。” 不仅仅是在系统中设计强大的加密技术; 它正在设计整个系统,以便所有安全措施(包括加密)都可以协同工作。” —布鲁斯·施耐尔

有趣的一天: (Funny of the day:)

Webcomic by CommitStrip

Webcomic由CommitStrip

当天的研究小组: (Study group of the day:)

freeCodeCamp Nairobi

freeCodeCamp内罗毕

Happy coding!

编码愉快!

– Quincy Larson, teacher at freeCodeCamp

– Quincy Larson, freeCodeCamp的老师

翻译自: https://www.freecodecamp.org/news/cloudflare-has-been-leaking-https-data-from-thousands-of-major-websites-for-months-e1d03d02c610/

cloudflare

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值