1.防止木马文件上传
2.防止木马文件可执行
3.防止sql注入
4.防止xss注解
5.防止弱口令
6.防止js 屏蔽form提交处理
7.防止dos攻击
8.防止cookie信息未加密
网站测试工具
linux: skipfish
Skipfish is an active web application security reconnaissance tool. It prepares an interactive sitemap for the targeted site by carrying out a recursive crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web application security assessments.
windows:wvs