A hitao system may cause leakage of tens of millions of user data.
User data includes:
Order No. (order_id)/Total order amount (final_amount)/payment status (pay_status)/order time (createtime)/member username (member_id)/shipping region/login IP/
1 # leakage address:
Unauthorized access to a MongoDB database:
http://115.29.164.135:28017/
2 # judgment basis:
First, check that the IP address is hichina, and then find the following information in the MongoDB database:
Finally, we can see something in the file through a leak:
Therefore, it is determined that the IP address is changed to hitao.
3 # using a leak in MongoDB to win ftp:
4 #. Tens of millions of user order data leaked in FTP:
The maximum number of FTP files is over 160 M, and 160 is more than 0.3 million data. There are a total of 1695 files, and 0 kb files are removed. files that are not order data are removed, therefore, it is correct to estimate the order data of tens of millions of users ..
Solution:
Filter