应对HTTP w00tw00t攻击
我有一台装有apache的服务器,最近安装了mod_security2,因为我受到了很多攻击: 我的apache版本是apache v2.2.3,我使用的是mod_security2.c 这是错误日志中的条目: [Wed Mar 24 02:35:41 2010] [error] [client 88.191.109.38] client sent HTTP/1.1 request without hostname (see RFC2616 section 14.23): /w00tw00t.at.ISC.SANS.DFind:) [Wed Mar 24 02:47:31 2010] [error] [client 202.75.211.90] client sent HTTP/1.1 request without hostname (see RFC2616 section 14.23): /w00tw00t.at.ISC.SANS.DFind:) [Wed Mar 24 02:47:49 2010] [error] [client 95.228.153.177] …