摘要
Web系统所面临的安全问题日益严峻,为减轻安全从业人员的压力,设计一个能够对网站以及服务器进行目标指纹和关键信息搜集的Web漏洞扫描系统.系统包括端口扫描、备份扫描、子域名扫描、Web指纹识别、查询备案信息、C段扫描、漏洞扫描等模块,其能够快速准确地发现各种Web漏洞,并给出详细的漏洞扫描报告.安全从业人员可以通过系统实现对Web网站框架的自动化扫描,快速定位漏洞,并及时修复,从而提高Web系统的安全性.
Abstract
The security issues faced by Web systems are becoming increasingly severe,in order to alleviate the pressure on security practitioners,a Web vulnerability scanning system is designed that can collect target fingerprints and key information from websites and servers,including port scanning,backup scanning,subdomain scanning,Web fingerprint recognition,query of record information,C-segment scanning,vulnerability scanning,etc.It can quickly and accurately discover various Web vulnerabilities and provide detailed vulnerability scanning reports.This system enables security practitioners to automatically scan the Web website framework,quickly locate vulnerability,and repair them in a timely manner,thereby improving the security of Web systems.
基金项目
校级高等学校大学生创新创业训练计划(2023)()
广东开放大学体系教育教学研究和改革项目(2022)(2022TXJG19)