وفّر 50٪ من خلال الاشتراك السنوي في مجرة واحصل على تصفح لا محدود لأفضل محتوى عربي على الإنترنت.
content_cookies111:string(1682) "{"id":65616,"content_cookies":null,"user_header":{"SERVER_SOFTWARE":"Apache\/2.4.52 (Debian)","REQUEST_URI":"\/technodad\/%D9%87%D8%AC%D9%88%D9%85-%D8%A7%D9%84%D8%AA%D9%88%D9%82%D9%8A%D8%AA\/","REDIRECT_STATUS":"200","HTTP_X_FORWARDED_PROTO":"https","HTTP_CONNECTION":"upgrade","HTTP_HOST":"technologyreview.ae","HTTP_CF_CONNECTING_IP":"44.201.72.250","HTTP_CF_IPCOUNTRY":"US","HTTP_ACCEPT_ENCODING":"gzip","HTTP_CF_RAY":"80bd101329395b35-IAD","HTTP_CF_VISITOR":"{\\\"scheme\\\":\\\"https\\\"}","HTTP_USER_AGENT":"CCBot\/2.0 (https:\/\/commoncrawl.org\/faq\/)","HTTP_ACCEPT":"text\/html,application\/xhtml+xml,application\/xml;q=0.9,*\/*;q=0.8","HTTP_ACCEPT_LANGUAGE":"en-US,en;q=0.5","HTTP_CDN_LOOP":"cloudflare","PATH":"\/usr\/local\/sbin:\/usr\/local\/bin:\/usr\/sbin:\/usr\/bin:\/sbin:\/bin","SERVER_SIGNATURE":"Apache\/2.4.52 (Debian) Server at technologyreview.ae Port 80<\/address>\n","SERVER_NAME":"technologyreview.ae","SERVER_ADDR":"172.18.0.9","SERVER_PORT":"80","REMOTE_ADDR":"44.201.72.250","DOCUMENT_ROOT":"\/var\/www\/html","REQUEST_SCHEME":"http","CONTEXT_PREFIX":"","CONTEXT_DOCUMENT_ROOT":"\/var\/www\/html","SERVER_ADMIN":"webmaster@localhost","SCRIPT_FILENAME":"\/var\/www\/html\/index.php","REMOTE_PORT":"33188","REDIRECT_URL":"\/technodad\/\u0647\u062c\u0648\u0645-\u0627\u0644\u062a\u0648\u0642\u064a\u062a\/","GATEWAY_INTERFACE":"CGI\/1.1","SERVER_PROTOCOL":"HTTP\/1.1","REQUEST_METHOD":"GET","QUERY_STRING":"","SCRIPT_NAME":"\/index.php","PHP_SELF":"\/index.php","REQUEST_TIME_FLOAT":1695579850.975901,"REQUEST_TIME":1695579850,"argv":[],"argc":0,"HTTPS":"on"},"user_ip":"44.201.72.250","user_agent":"CCBot\/2.0 (https:\/\/commoncrawl.org\/faq\/)"}"
check_post_to_show:object(stdClass)#28892 (13) { ["is_valid"]=> int(1) ["global_remaining_posts_to_view"]=> int(0) ["remaining_posts_to_view"]=> int(0) ["number_all_post"]=> int(0) ["number_post_read"]=> int(0) ["exceeded_daily_limit"]=> int(0) ["is_watched_before"]=> int(0) ["user_agent"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["user_ip"]=> string(13) "44.201.72.250" ["user_header"]=> object(stdClass)#28900 (40) { ["SERVER_SOFTWARE"]=> string(22) "Apache/2.4.52 (Debian)" ["REQUEST_URI"]=> string(79) "/technodad/%D9%87%D8%AC%D9%88%D9%85-%D8%A7%D9%84%D8%AA%D9%88%D9%82%D9%8A%D8%AA/" ["REDIRECT_STATUS"]=> string(3) "200" ["HTTP_X_FORWARDED_PROTO"]=> string(5) "https" ["HTTP_CONNECTION"]=> string(7) "upgrade" ["HTTP_HOST"]=> string(19) "technologyreview.ae" ["HTTP_CF_CONNECTING_IP"]=> string(13) "44.201.72.250" ["HTTP_CF_IPCOUNTRY"]=> string(2) "US" ["HTTP_ACCEPT_ENCODING"]=> string(4) "gzip" ["HTTP_CF_RAY"]=> string(20) "80bd101329395b35-IAD" ["HTTP_CF_VISITOR"]=> string(22) "{\"scheme\":\"https\"}" ["HTTP_USER_AGENT"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["HTTP_ACCEPT"]=> string(63) "text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8" ["HTTP_ACCEPT_LANGUAGE"]=> string(14) "en-US,en;q=0.5" ["HTTP_CDN_LOOP"]=> string(10) "cloudflare" ["PATH"]=> string(60) "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" ["SERVER_SIGNATURE"]=> string(79) "Apache/2.4.52 (Debian) Server at technologyreview.ae Port 80" ["SERVER_NAME"]=> string(19) "technologyreview.ae" ["SERVER_ADDR"]=> string(10) "172.18.0.9" ["SERVER_PORT"]=> string(2) "80" ["REMOTE_ADDR"]=> string(13) "44.201.72.250" ["DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["REQUEST_SCHEME"]=> string(4) "http" ["CONTEXT_PREFIX"]=> NULL ["CONTEXT_DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["SERVER_ADMIN"]=> string(19) "webmaster@localhost" ["SCRIPT_FILENAME"]=> string(23) "/var/www/html/index.php" ["REMOTE_PORT"]=> string(5) "33188" ["REDIRECT_URL"]=> string(35) "/technodad/هجوم-التوقيت/" ["GATEWAY_INTERFACE"]=> string(7) "CGI/1.1" ["SERVER_PROTOCOL"]=> string(8) "HTTP/1.1" ["REQUEST_METHOD"]=> string(3) "GET" ["QUERY_STRING"]=> NULL ["SCRIPT_NAME"]=> string(10) "/index.php" ["PHP_SELF"]=> string(10) "/index.php" ["REQUEST_TIME_FLOAT"]=> float(1695579850.9759) ["REQUEST_TIME"]=> int(1695579850) ["argv"]=> array(0) { } ["argc"]=> int(0) ["HTTPS"]=> string(2) "on" } ["content_user_category"]=> string(4) "paid" ["content_cookies"]=> object(stdClass)#28898 (3) { ["status"]=> int(0) ["sso"]=> object(stdClass)#28901 (2) { ["content_id"]=> int(44506) ["client_id"]=> string(36) "1d1883f4-87d0-4156-8903-e6ceb0cb4224" } ["count_read"]=> NULL } ["is_agent_bot"]=> int(1) }
check_post_to_show:object(stdClass)#28892 (13) { ["is_valid"]=> int(1) ["global_remaining_posts_to_view"]=> int(0) ["remaining_posts_to_view"]=> int(0) ["number_all_post"]=> int(0) ["number_post_read"]=> int(0) ["exceeded_daily_limit"]=> int(0) ["is_watched_before"]=> int(0) ["user_agent"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["user_ip"]=> string(13) "44.201.72.250" ["user_header"]=> object(stdClass)#28900 (40) { ["SERVER_SOFTWARE"]=> string(22) "Apache/2.4.52 (Debian)" ["REQUEST_URI"]=> string(79) "/technodad/%D9%87%D8%AC%D9%88%D9%85-%D8%A7%D9%84%D8%AA%D9%88%D9%82%D9%8A%D8%AA/" ["REDIRECT_STATUS"]=> string(3) "200" ["HTTP_X_FORWARDED_PROTO"]=> string(5) "https" ["HTTP_CONNECTION"]=> string(7) "upgrade" ["HTTP_HOST"]=> string(19) "technologyreview.ae" ["HTTP_CF_CONNECTING_IP"]=> string(13) "44.201.72.250" ["HTTP_CF_IPCOUNTRY"]=> string(2) "US" ["HTTP_ACCEPT_ENCODING"]=> string(4) "gzip" ["HTTP_CF_RAY"]=> string(20) "80bd101329395b35-IAD" ["HTTP_CF_VISITOR"]=> string(22) "{\"scheme\":\"https\"}" ["HTTP_USER_AGENT"]=> string(40) "CCBot/2.0 (https://commoncrawl.org/faq/)" ["HTTP_ACCEPT"]=> string(63) "text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8" ["HTTP_ACCEPT_LANGUAGE"]=> string(14) "en-US,en;q=0.5" ["HTTP_CDN_LOOP"]=> string(10) "cloudflare" ["PATH"]=> string(60) "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" ["SERVER_SIGNATURE"]=> string(79) "Apache/2.4.52 (Debian) Server at technologyreview.ae Port 80" ["SERVER_NAME"]=> string(19) "technologyreview.ae" ["SERVER_ADDR"]=> string(10) "172.18.0.9" ["SERVER_PORT"]=> string(2) "80" ["REMOTE_ADDR"]=> string(13) "44.201.72.250" ["DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["REQUEST_SCHEME"]=> string(4) "http" ["CONTEXT_PREFIX"]=> NULL ["CONTEXT_DOCUMENT_ROOT"]=> string(13) "/var/www/html" ["SERVER_ADMIN"]=> string(19) "webmaster@localhost" ["SCRIPT_FILENAME"]=> string(23) "/var/www/html/index.php" ["REMOTE_PORT"]=> string(5) "33188" ["REDIRECT_URL"]=> string(35) "/technodad/هجوم-التوقيت/" ["GATEWAY_INTERFACE"]=> string(7) "CGI/1.1" ["SERVER_PROTOCOL"]=> string(8) "HTTP/1.1" ["REQUEST_METHOD"]=> string(3) "GET" ["QUERY_STRING"]=> NULL ["SCRIPT_NAME"]=> string(10) "/index.php" ["PHP_SELF"]=> string(10) "/index.php" ["REQUEST_TIME_FLOAT"]=> float(1695579850.9759) ["REQUEST_TIME"]=> int(1695579850) ["argv"]=> array(0) { } ["argc"]=> int(0) ["HTTPS"]=> string(2) "on" } ["content_user_category"]=> string(4) "paid" ["content_cookies"]=> object(stdClass)#28898 (3) { ["status"]=> int(0) ["sso"]=> object(stdClass)#28901 (2) { ["content_id"]=> int(44506) ["client_id"]=> string(36) "1d1883f4-87d0-4156-8903-e6ceb0cb4224" } ["count_read"]=> NULL } ["is_agent_bot"]=> int(1) }
هو استغلال وضع أمني يسمح للمهاجم باكتشاف نقاط الضعف في أمان نظام الحاسوب أو الشبكة من خلال دراسة المدة التي يستغرقها النظام للاستجابة لمدخلات مختلفة.
تم تصميم هجوم التوقيت من قبل كاتب التشفير بول كوتشر، إذ كان قادراً على كشف مفاتيح فك التشفير RSA دون اختراقه (فك تشفيره).
تستخدم هجمات التوقيت لاستهداف الأجهزة مثل البطاقات الذكية وخوادم الويب التي تستخدم مكتبة تشفير OpenSSL مفتوحة المصدر، ويعتقد أن خوادم الويب أقل عرضة لهجمات التوقيت لأن ظروف الشبكة يمكن أن تخفي الاختلافات في التوقيت.
يعمل هجوم التوقيت من خلال تسريب المدة الزمنية التي يستغرقها تطبيق لأداء مهمة تتطلب بعض المعلومات. مثلاً، لنفرض أن تطبيق البريد الإلكتروني يتطلب تسجيل دخول من خلال بريد إلكتروني وكلمة مرور، توجد حالتان هنا لاستنباط النتائج من وجهة نظر المهاجم:
في هذا النوع من الهجمات لا يستطيع المستخدم النهائي التصدي للهجمة أو معالجتها، إذ تكون هذه الممارسات واجبة على مطوري التطبيقات لمنع هجمات التوقيت.
يتضمن التصدي لهجمات التوقيت تحديد الأقسام الأمنية الحاسمة في البرنامج، بحيث يجب أن تُكتب دوال الوقت بشكل ثابت وجعل عدد الحسابات اللازمة لتجهيز الطلب مستقلاً عن المدخلات ما يمنع المتسللين من الاعتماد على الفوارق الزمنية للحصول على المعلومات.
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.