وفّر 50٪ من خلال الاشتراك السنوي في مجرة واحصل على تصفح لا محدود لأفضل محتوى عربي على الإنترنت.
content_cookies111:string(1708) "{"id":64657,"content_cookies":null,"user_header":{"SERVER_SOFTWARE":"Apache\/2.4.52 (Debian)","REQUEST_URI":"\/technodad\/%D8%AB%D8%BA%D8%B1%D8%A9-%D9%86%D8%B2%D9%8A%D9%81-%D8%A7%D9%84%D9%82%D9%84%D8%A8\/","REDIRECT_STATUS":"200","HTTP_X_FORWARDED_PROTO":"https","HTTP_CONNECTION":"upgrade","HTTP_HOST":"technologyreview.ae","HTTP_CF_CONNECTING_IP":"44.201.72.250","HTTP_CF_IPCOUNTRY":"US","HTTP_ACCEPT_ENCODING":"gzip","HTTP_CF_RAY":"80bc9abf4c135b35-IAD","HTTP_CF_VISITOR":"{\\\"scheme\\\":\\\"https\\\"}","HTTP_USER_AGENT":"CCBot\/2.0 (https:\/\/commoncrawl.org\/faq\/)","HTTP_ACCEPT":"text\/html,application\/xhtml+xml,application\/xml;q=0.9,*\/*;q=0.8","HTTP_ACCEPT_LANGUAGE":"en-US,en;q=0.5","HTTP_CDN_LOOP":"cloudflare","PATH":"\/usr\/local\/sbin:\/usr\/local\/bin:\/usr\/sbin:\/usr\/bin:\/sbin:\/bin","SERVER_SIGNATURE":"Apache\/2.4.52 (Debian) Server at technologyreview.ae Port 80<\/address>\n","SERVER_NAME":"technologyreview.ae","SERVER_ADDR":"172.18.0.9","SERVER_PORT":"80","REMOTE_ADDR":"44.201.72.250","DOCUMENT_ROOT":"\/var\/www\/html","REQUEST_SCHEME":"http","CONTEXT_PREFIX":"","CONTEXT_DOCUMENT_ROOT":"\/var\/www\/html","SERVER_ADMIN":"webmaster@localhost","SCRIPT_FILENAME":"\/var\/www\/html\/index.php","REMOTE_PORT":"60600","REDIRECT_URL":"\/technodad\/\u062b\u063a\u0631\u0629-\u0646\u0632\u064a\u0641-\u0627\u0644\u0642\u0644\u0628\/","GATEWAY_INTERFACE":"CGI\/1.1","SERVER_PROTOCOL":"HTTP\/1.1","REQUEST_METHOD":"GET","QUERY_STRING":"","SCRIPT_NAME":"\/index.php","PHP_SELF":"\/index.php","REQUEST_TIME_FLOAT":1695575045.065178,"REQUEST_TIME":1695575045,"argv":[],"argc":0,"HTTPS":"on"},"user_ip":"44.201.72.250","user_agent":"CCBot\/2.0 (https:\/\/commoncrawl.org\/faq\/)"}"
check_post_to_show:object(stdClass)#28892 (13) { ["is_valid"]=> int(1) ["global_remaining_posts_to_view"]=> int(0) ["remaining_posts_to_view"]=> int(0) ["number_all_post"]=> int(0) ["number_post_read"]=> int(0) ["exceeded_daily_limit"]=> int(0) ["is_watched_before"]=> int(0) ["user_agent"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["user_ip"]=> string(13) "44.201.72.250" ["user_header"]=> object(stdClass)#28900 (40) { ["SERVER_SOFTWARE"]=> string(22) "Apache/2.4.52 (Debian)" ["REQUEST_URI"]=> string(92) "/technodad/%D8%AB%D8%BA%D8%B1%D8%A9-%D9%86%D8%B2%D9%8A%D9%81-%D8%A7%D9%84%D9%82%D9%84%D8%A8/" ["REDIRECT_STATUS"]=> string(3) "200" ["HTTP_X_FORWARDED_PROTO"]=> string(5) "https" ["HTTP_CONNECTION"]=> string(7) "upgrade" ["HTTP_HOST"]=> string(19) "technologyreview.ae" ["HTTP_CF_CONNECTING_IP"]=> string(13) "44.201.72.250" ["HTTP_CF_IPCOUNTRY"]=> string(2) "US" ["HTTP_ACCEPT_ENCODING"]=> string(4) "gzip" ["HTTP_CF_RAY"]=> string(20) "80bc9abf4c135b35-IAD" ["HTTP_CF_VISITOR"]=> string(22) "{\"scheme\":\"https\"}" ["HTTP_USER_AGENT"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["HTTP_ACCEPT"]=> string(63) "text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8" ["HTTP_ACCEPT_LANGUAGE"]=> string(14) "en-US,en;q=0.5" ["HTTP_CDN_LOOP"]=> string(10) "cloudflare" ["PATH"]=> string(60) "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" ["SERVER_SIGNATURE"]=> string(79) "Apache/2.4.52 (Debian) Server at technologyreview.ae Port 80" ["SERVER_NAME"]=> string(19) "technologyreview.ae" ["SERVER_ADDR"]=> string(10) "172.18.0.9" ["SERVER_PORT"]=> string(2) "80" ["REMOTE_ADDR"]=> string(13) "44.201.72.250" ["DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["REQUEST_SCHEME"]=> string(4) "http" ["CONTEXT_PREFIX"]=> NULL ["CONTEXT_DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["SERVER_ADMIN"]=> string(19) "webmaster@localhost" ["SCRIPT_FILENAME"]=> string(23) "/var/www/html/index.php" ["REMOTE_PORT"]=> string(5) "60600" ["REDIRECT_URL"]=> string(40) "/technodad/ثغرة-نزيف-القلب/" ["GATEWAY_INTERFACE"]=> string(7) "CGI/1.1" ["SERVER_PROTOCOL"]=> string(8) "HTTP/1.1" ["REQUEST_METHOD"]=> string(3) "GET" ["QUERY_STRING"]=> NULL ["SCRIPT_NAME"]=> string(10) "/index.php" ["PHP_SELF"]=> string(10) "/index.php" ["REQUEST_TIME_FLOAT"]=> float(1695575045.0652) ["REQUEST_TIME"]=> int(1695575045) ["argv"]=> array(0) { } ["argc"]=> int(0) ["HTTPS"]=> string(2) "on" } ["content_user_category"]=> string(4) "paid" ["content_cookies"]=> object(stdClass)#28898 (3) { ["status"]=> int(0) ["sso"]=> object(stdClass)#28901 (2) { ["content_id"]=> int(43961) ["client_id"]=> string(36) "1d1883f4-87d0-4156-8903-e6ceb0cb4224" } ["count_read"]=> NULL } ["is_agent_bot"]=> int(1) }
check_post_to_show:object(stdClass)#28892 (13) { ["is_valid"]=> int(1) ["global_remaining_posts_to_view"]=> int(0) ["remaining_posts_to_view"]=> int(0) ["number_all_post"]=> int(0) ["number_post_read"]=> int(0) ["exceeded_daily_limit"]=> int(0) ["is_watched_before"]=> int(0) ["user_agent"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["user_ip"]=> string(13) "44.201.72.250" ["user_header"]=> object(stdClass)#28900 (40) { ["SERVER_SOFTWARE"]=> string(22) "Apache/2.4.52 (Debian)" ["REQUEST_URI"]=> string(92) "/technodad/%D8%AB%D8%BA%D8%B1%D8%A9-%D9%86%D8%B2%D9%8A%D9%81-%D8%A7%D9%84%D9%82%D9%84%D8%A8/" ["REDIRECT_STATUS"]=> string(3) "200" ["HTTP_X_FORWARDED_PROTO"]=> string(5) "https" ["HTTP_CONNECTION"]=> string(7) "upgrade" ["HTTP_HOST"]=> string(19) "technologyreview.ae" ["HTTP_CF_CONNECTING_IP"]=> string(13) "44.201.72.250" ["HTTP_CF_IPCOUNTRY"]=> string(2) "US" ["HTTP_ACCEPT_ENCODING"]=> string(4) "gzip" ["HTTP_CF_RAY"]=> string(20) "80bc9abf4c135b35-IAD" ["HTTP_CF_VISITOR"]=> string(22) "{\"scheme\":\"https\"}" ["HTTP_USER_AGENT"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["HTTP_ACCEPT"]=> string(63) "text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8" ["HTTP_ACCEPT_LANGUAGE"]=> string(14) "en-US,en;q=0.5" ["HTTP_CDN_LOOP"]=> string(10) "cloudflare" ["PATH"]=> string(60) "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" ["SERVER_SIGNATURE"]=> string(79) "Apache/2.4.52 (Debian) Server at technologyreview.ae Port 80" ["SERVER_NAME"]=> string(19) "technologyreview.ae" ["SERVER_ADDR"]=> string(10) "172.18.0.9" ["SERVER_PORT"]=> string(2) "80" ["REMOTE_ADDR"]=> string(13) "44.201.72.250" ["DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["REQUEST_SCHEME"]=> string(4) "http" ["CONTEXT_PREFIX"]=> NULL ["CONTEXT_DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["SERVER_ADMIN"]=> string(19) "webmaster@localhost" ["SCRIPT_FILENAME"]=> string(23) "/var/www/html/index.php" ["REMOTE_PORT"]=> string(5) "60600" ["REDIRECT_URL"]=> string(40) "/technodad/ثغرة-نزيف-القلب/" ["GATEWAY_INTERFACE"]=> string(7) "CGI/1.1" ["SERVER_PROTOCOL"]=> string(8) "HTTP/1.1" ["REQUEST_METHOD"]=> string(3) "GET" ["QUERY_STRING"]=> NULL ["SCRIPT_NAME"]=> string(10) "/index.php" ["PHP_SELF"]=> string(10) "/index.php" ["REQUEST_TIME_FLOAT"]=> float(1695575045.0652) ["REQUEST_TIME"]=> int(1695575045) ["argv"]=> array(0) { } ["argc"]=> int(0) ["HTTPS"]=> string(2) "on" } ["content_user_category"]=> string(4) "paid" ["content_cookies"]=> object(stdClass)#28898 (3) { ["status"]=> int(0) ["sso"]=> object(stdClass)#28901 (2) { ["content_id"]=> int(43961) ["client_id"]=> string(36) "1d1883f4-87d0-4156-8903-e6ceb0cb4224" } ["count_read"]=> NULL } ["is_agent_bot"]=> int(1) }
تشير ثغرة نزيف القلب إلى نقطة ضعف في بعض تطبيقات OpenSSL، وهي مكتبة تشفير مفتوحة المصدر لبروتوكول أمان طبقة النقل (TLS). وتم الإعلان عن الثغرة من قبل الباحثين في 7 أبريل/ نيسان 2014 وتم تصحيحها في الشهر نفسه.
كان سبب الثغرة هو سوء كتابة الشيفرة البرمجية، وقد تم اكتشافها في اليوم نفسه من قبل باحثي أمان جوجل وكود نوميكون (Codenomicon) الذين أدركوا بسرعة أن المتسللين بإمكانهم استغلال الخطأ لتسريب المحتوى المشفر وأسماء المستخدمين وكلمات المرور والمفاتيح الخاصة للشهادات X.509.
حتى عام 2014، تم استخدام تطبيقات OpenSSL من قبل ما يقرب من 66% من جميع مواقع الويب النشطة على الإنترنت، لتكون ثغرة نزيف القلب أحد أسوأ الأخطاء الأمنية في تاريخ الإنترنت وفق وصف الخبراء.
تضمنت الشركات المتضررة قائمة طويلة من الشركات ومن أبرزها شركة جوجل وياهو ونتفليكس وميتا وتمبلر، بينما أعلنت شركات أخرى مثل لينكدإن ومايكروسوفت وآبل وتويتر أنها لم تتضرر من ثغرة نزيف القلب.
توجد 4 نصائح رئيسية لتطوير البرمجيات وصيانتها والحد من الثغرات الأمنية في الشيفرات البرمجية:
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.