
系统安全
懒虫一个V
-
展开
-
Java防跨域攻击解决方案
思路: 判断referer里的地址是否和当前的地址一致,如果不一致则说明是跨域攻击的,否则不是 /** * 验证请求的合法性,防止跨域攻击 * * @param request * @return */ @SuppressWarnings("rawtypes") publicstatic boolean validateRequest(HttpServletReques转载 2013-06-15 23:07:53 · 4540 阅读 · 0 评论 -
XSSFilter for java
Here is a good and simple anti cross-site scripting (XSS) filter written for Java web applications. What it basically does is remove all suspicious strings from request parameters before returning the转载 2013-06-25 17:41:27 · 5657 阅读 · 4 评论 -
隐藏Tomcat版本信息
首先找到这个jar包,$TOMCAT_HOME/lib/catalina.jar依次路径\org\apache\catalina\util\ServerInfo.properties 将其改掉即可原创 2013-07-31 20:04:42 · 12334 阅读 · 2 评论