ãããã£ãŠãWebãããã«ã¯æ£åœãªãã®ãšæªæã®ãããã®ã®2çš®é¡ããããŸããæ£åœãªãã®ã«ã¯ãæ€çŽ¢ãšã³ãžã³ãRSSãªãŒããŒãå«ãŸããŸããæªæã®ããWebãããã®äŸãšããŠã¯ãè匱æ§ã¹ãã£ããŒãã¹ã¯ã¬ãŒããŒãã¹ãããŒãDDoSãããããã€ã¡ã³ãã«ãŒãè©æ¬ºããã€ã®æšéЬãªã©ããããŸãã Webãããã®ã¿ã€ããç¹å®ããããšãããŸããŸãªããªã·ãŒãé©çšã§ããŸããããããæ£åœãªå Žåã¯ããµãŒããŒãžã®èŠæ±ã®åªå 床ãäžããããç¹å®ã®ãªãœãŒã¹ãžã®ã¢ã¯ã»ã¹ã¬ãã«ãäžããããšãã§ããŸããããããæªæã®ãããã®ãšããŠèå¥ãããå Žåã¯ãããããããã¯ãããããµã³ãããã¯ã¹ã«éä¿¡ããŠããã«åæããããšãã§ããŸãã Webãããã¯ãããžãã¹ã«äžå¯æ¬ ãªããŒã¿ã®æŒæŽ©ãªã©ã®å®³ãåãŒãå¯èœæ§ããããããæ€åºãåæãããã³åé¡ããããšãéèŠã§ãããŸããWebããããã©ãã£ãã¯ã®æå€§66ïŒ ãæ£ç¢ºã«åŠçãããããããµãŒããŒã®è² è·ã軜æžããããã©ãã£ãã¯ã®ãããããã€ãºã軜æžãããŸããæªæã®ãããã©ãã£ãã¯ã
æ¢åã®ã¢ãããŒã
ãããã¯ãŒã¯ãã©ãã£ãã¯å ã®Webããããæ€åºããã«ã¯ããã¹ããžã®èŠæ±ã®é »åºŠã®å¶éãIPã¢ãã¬ã¹ã®ãã©ãã¯ãªã¹ããžã®ç»é²ãUser-Agent HTTPããããŒã®å€ã®åæãããã€ã¹ã®ãã£ã³ã¬ãŒããªã³ãã®äœæãCAPTCHAã®å®è£ ã®çµäºãã䜿çšãããããã¯ãŒã¯ã¢ã¯ãã£ããã£ã®åäœåæãªã©ãããŸããŸãªææ³ããããŸããæ©æ¢°åŠç¿ã
ãã ããããŸããŸãªãã¬ããžããŒã¹ãšè åšã€ã³ããªãžã§ã³ã¹ã䜿çšããŠãµã€ãã«é¢ããè©å€æ å ±ãåéãããã©ãã¯ãªã¹ããææ°ã®ç¶æ ã«ä¿ã€ããšã¯ãã³ã¹ããšåŽåãèŠããããã»ã¹ã§ããããããã·ãµãŒããŒã䜿çšããå Žåã¯ãå§ãã§ããŸããã
æåã®æŠç®ã§ã®User-Agentãã£ãŒã«ãã®åæã¯åœ¹ç«ã€ããã«æããããããããŸããããWebããããŸãã¯ãŠãŒã¶ãŒããã®ãã£ãŒã«ãã®å€ãæå¹ãªå€ã«å€æŽããããéåžžã®ãŠãŒã¶ãŒã«ãªãããŸããŠãã©ãŠã¶ãŒã«æå¹ãªUser-Agentã䜿çšããããæ£åœãªããããšããŠäœ¿çšãããããããšã劚ãããã®ã¯äœããããŸããããã®ãããªãŠã§ãããããåœè£ è ãšåŒã³ãŸããããããŸããŸãªããã€ã¹ãã£ã³ã¬ãŒããªã³ãã䜿çšããŠïŒããŠã¹ã®åãã远跡ããããã¯ã©ã€ã¢ã³ãã®HTMLããŒãžãã¬ã³ããªã³ã°ããæ©èœããã§ãã¯ãããïŒã远å ã®ããŒãžïŒã¹ã¿ã€ã«ãã¡ã€ã«ãã¢ã€ã³ã³ãªã©ïŒã®èŠæ±ãJavaScriptã®è§£æãªã©ã人éã®è¡åãæš¡å£ãããæ€åºãããé£ããWebãããã匷調衚瀺ã§ããŸãããã®ã¢ãããŒãã¯ãã¯ã©ã€ã¢ã³ãåŽã®ã³ãŒãã€ã³ãžã§ã¯ã·ã§ã³ã«åºã¥ããŠããŸããã远å ã®ã¹ã¯ãªããã®æ¿å ¥äžã«ãã¹ããããšWebã¢ããªã±ãŒã·ã§ã³ãç Žæããå¯èœæ§ããããããåãå ¥ããããªãããšããããããŸãã
Webãããã¯ãªã³ã©ã€ã³ã§ãæ€åºã§ããããšã«æ³šæããŠãã ãããã»ãã·ã§ã³ã¯ãªã¢ã«ã¿ã€ã ã§è©äŸ¡ãããŸãããã®åé¡ã®å®åŒåã®èª¬æã¯ãCabri et alã[1]ãããã³Zi Chu [2]ã®äœåã«èšèŒãããŠããŸããå¥ã®ã¢ãããŒãã¯ãã»ãã·ã§ã³ãçµäºããåŸã«ã®ã¿åæããããšã§ããæãè峿·±ãã®ã¯ãæããã«ãæåã®ãªãã·ã§ã³ã§ããããã«ãããæææ±ºå®ãããè¿ éã«è¡ãããšãã§ããŸãã
ææ¡ãããã¢ãããŒã
æ©æ¢°åŠç¿æè¡ãšELKïŒElasticsearch Logstash KibanaïŒãã¯ãããžãŒã¹ã¿ãã¯ã䜿çšããŠãWebããããèå¥ããã³åé¡ããŸããã調æ»ã®å¯Ÿè±¡ã¯HTTPã»ãã·ã§ã³ã§ãããã»ãã·ã§ã³ã¯ãäžå®ã®æéééã§ã®1ã€ã®ããŒãïŒIPã¢ãã¬ã¹ã®äžæã®å€ãšHTTPèŠæ±ã®User-Agentãã£ãŒã«ãïŒããã®äžé£ã®èŠæ±ã§ãã DerekãšGohaleã¯ã30åééã䜿çšããŠã»ãã·ã§ã³å¢çãå®çŸ©ããŸã[3]ã Iliu et alãã¯ããã®ã¢ãããŒãã¯å®éã®ã»ãã·ã§ã³ã®äžææ§ãä¿èšŒãããã®ã§ã¯ãªããšäž»åŒµããŠããŸãããããã§ã蚱容ã§ããŸãã User-Agentãã£ãŒã«ãã¯å€æŽã§ãããããå®éãããå€ãã®ã»ãã·ã§ã³ã衚瀺ãããå ŽåããããŸãããããã£ãŠãNikiforakisãšå ±èè ã¯ãActiveXããµããŒããããŠãããã©ãããFlashãæå¹ã«ãªã£ãŠãããã©ãããç»é¢è§£å床ãOSããŒãžã§ã³ã«åºã¥ããŠããã埮調æŽããããšãææ¡ããŠããŸãã
User-Agentãã£ãŒã«ããåçã«å€åããå Žåãå¥ã®ã»ãã·ã§ã³ã®åœ¢æã§èš±å®¹ã§ãããšã©ãŒãæ€èšããŸãããŸãããããã»ãã·ã§ã³ãç¹å®ããããã«ãæç¢ºãªãã€ããªåé¡ã¢ãã«ãæ§ç¯ããŠäœ¿çšããŸãã
- WebãããïŒã¿ã°ãããïŒã«ãã£ãŠçæãããèªåãããã¯ãŒã¯ã¢ã¯ãã£ããã£ã
- 人éãçæãããããã¯ãŒã¯ã¢ã¯ãã£ããã£ïŒäººéã«ã¿ã°ãä»ããïŒã
Webããããã¢ã¯ãã£ããã£ã¿ã€ãã§åé¡ããã«ã¯ã次ã®è¡šãããã«ãã¯ã©ã¹ã¢ãã«ãäœæããŸãããã
| åå | 説æ | ã©ãã« | ã®äŸ |
|---|---|---|---|
| ã¯ããŒã©ãŒ | Web
ããŒãžã
åéããWebããã |
æéè£å©å · | SemrushBotã
360Spiderã Heritrix |
| ãœãŒã·ã£ã«ãããã¯ãŒã¯ | ããŸããŸãª
ãœãŒã·ã£ã«ãããã¯ãŒã¯ã®Webããã |
ãœãŒã·ã£ã«ãããã¯ãŒã¯ | LinkedInBotã
WhatsApp Botã Facebookããã |
| RssãªãŒã㌠| -,
RSS |
rss | Feedfetcher,
Feed Reader, SimplePie |
| -
|
search_engines | Googlebot, BingBot,
YandexBot |
|
| -,
|
libs_tools | Curl, Wget,
python-requests, scrapy |
|
| - | bots | ||
| ,
User-Agent |
unknown |
ãŸããã¢ãã«ã®ãªã³ã©ã€ã³ãã¬ãŒãã³ã°ã®åé¡ã解決ããŸãã
ææ¡ãããã¢ãããŒãã®æŠå¿µã¹ããŒã
ãã®ã¢ãããŒãã«ã¯ããã¬ãŒãã³ã°ãšãã¹ããäºæž¬ãçµæã®åæã®3ã€ã®æ®µéããããŸããæåã®2ã€ãããã«è©³ããèããŠã¿ãŸããããæŠå¿µçã«ã¯ããã®ã¢ãããŒãã¯ãæ©æ¢°åŠç¿ã¢ãã«ãåŠç¿ããŠé©çšãããšããå€å žçãªãã¿ãŒã³ã«åŸããŸããæåã«ãåé¡ã®å質ã¡ããªãã¯ãšå±æ§ã決å®ãããŸãããã®åŸãç¹åŸŽã®ãã¯ãã«ã圢æãããäžé£ã®å®éšïŒããŸããŸãªã¯ãã¹ãã§ãã¯ïŒãå®è¡ãããŠãã¢ãã«ãæ€èšŒããããã€ããŒãã©ã¡ãŒã¿ãŒãéžæãããŸããæåŸã®æ®µéã§ãæé©ãªã¢ãã«ãéžæãããã¢ãã«ã®å質ãé å»¶ãµã³ãã«ã§ãã§ãã¯ãããŸãã
ã¢ãã«ã®ãã¬ãŒãã³ã°ãšãã¹ã
packetbeatã¢ãžã¥ãŒã«ã¯ããã©ãã£ãã¯ãè§£æããããã«äœ¿çšãããŸããçã®HTTPãªã¯ãšã¹ãã¯logstashã«éä¿¡ãããããã§ã¿ã¹ã¯ã¯Celeryçšèªã§Rubyã¹ã¯ãªããã䜿çšããŠçæãããŸãããããã¯ãããããã»ãã·ã§ã³IDãèŠæ±æéãèŠæ±æ¬æãããã³ããããŒã§åäœããŸããã»ãã·ã§ã³èå¥åïŒããŒïŒ-IPã¢ãã¬ã¹ãšUser-Agentã®é£çµããã®ããã·ã¥é¢æ°ã®å€ããã®æ®µéã§ã次ã®2çš®é¡ã®ã¿ã¹ã¯ãäœæãããŸãã
- ã»ãã·ã§ã³ã®ç¹åŸŽã®ãã¯ãã«ã®åœ¢æã«ã€ããŠã
- ãªã¯ãšã¹ãããã¹ããšUser-Agentã«åºã¥ããŠã¯ã©ã¹ã«ã©ãã«ãä»ããŸãã
ãããã®ã¿ã¹ã¯ã¯ãã¥ãŒã«éä¿¡ãããããã§ã¡ãã»ãŒãžãã³ãã©ãŒãã¿ã¹ã¯ãå®è¡ããŸãããããã£ãŠãã©ãã©ãŒãã³ãã©ãŒã¯ãå°éå®¶ã®å€æã䜿çšããŠã¯ã©ã¹ã«ã©ãã«ãä»ããã¿ã¹ã¯ãå®è¡ãã䜿çšãããUser-Agentã«åºã¥ããŠbrowscapãµãŒãã¹ããã®ããŒã¿ãéããŸããçµæã¯ããŒå€ã¹ãã¬ãŒãžã«æžã蟌ãŸããŸããã»ãã·ã§ã³ããã»ããµã¯ãç¹åŸŽãã¯ãã«ãçæãïŒä»¥äžã®è¡šãåç §ïŒãåããŒã®çµæãããŒå€ã¹ãã¬ãŒãžã«æžã蟌ã¿ãããŒã®æå¹æéïŒTTLïŒãèšå®ããŸãã
| ç¬Šå· | 説æ |
|---|---|
| len | ã»ãã·ã§ã³ãããã®ãªã¯ãšã¹ãæ° |
| len_pages | ããŒãžåäœã®ã»ãã·ã§ã³ãããã®ãªã¯ãšã¹ãæ°
ïŒURIã¯.htmã.htmlã.phpã .aspã.aspxã.jspã§çµãããŸãïŒ |
| len_static_request |
éçããŒãžã®ã»ãã·ã§ã³ãããã®ãªã¯ãšã¹ãæ° |
| len_sec | ç§åäœã®ã»ãã·ã§ã³æé |
| len_unique_uri |
äžæã®URIãå«ãã»ãã·ã§ã³ãããã®ãªã¯ãšã¹ãæ° |
| headers_cnt | ã»ãã·ã§ã³ãããã®ããããŒã®æ° |
| has_cookie | ã¯ãããŒããããŒã¯ãããŸãã |
| has_referer | RefererããããŒã¯ãããŸãã |
| mean_time_page | ã»ãã·ã§ã³ããšã®ããŒãžããšã®å¹³åæé |
| mean_time_request | ã»ãã·ã§ã³ããšã®ãªã¯ãšã¹ãããšã®å¹³åæé |
| mean_headers | ã»ãã·ã§ã³ãããã®ããããŒã®å¹³åæ° |
ããã¯ãæ©èœãããªãã¯ã¹ã圢æãããåã»ãã·ã§ã³ã®ã¿ãŒã²ããã¯ã©ã¹ã©ãã«ãèšå®ãããæ¹æ³ã§ãããã®ãããªãã¯ã¹ã«åºã¥ããŠãã¢ãã«ã®å®æçãªãã¬ãŒãã³ã°ãšããã«ç¶ããã€ããŒãã©ã¡ãŒã¿ãŒã®éžæãè¡ãããŸãããã¬ãŒãã³ã°ã«ã¯ãããžã¹ãã£ãã¯ååž°ããµããŒããã¯ãã«ãã·ã³ã決å®ããªãŒã決å®ããªãŒã®åŸé ããŒã¹ããã©ã³ãã ãã©ã¬ã¹ãã¢ã«ãŽãªãºã ã䜿çšããŸãããæãé¢é£æ§ã®é«ãçµæã¯ãã©ã³ãã ãã©ã¬ã¹ãã¢ã«ãŽãªãºã ã䜿çšããŠååŸãããŸããã
äºæž¬
ãã©ãã£ãã¯ã®è§£æäžã«ãããŒå€ã¹ãã¬ãŒãžå ã®ã»ãã·ã§ã³å±æ§ã®ãã¯ãã«ãæŽæ°ãããŸããã»ãã·ã§ã³ã«æ°ããèŠæ±ã衚瀺ããããšãããã説æãã屿§ãåèšç®ãããŸããããšãã°ãæ°ãããªã¯ãšã¹ããã»ãã·ã§ã³ã«è¿œå ããããã³ã«ãã»ãã·ã§ã³å ã®ããããŒã®å¹³åæ°ïŒmean_headersïŒãèšç®ãããŸããPredictorã¯ãã»ãã·ã§ã³æ©èœãã¯ãã«ãã¢ãã«ã«éä¿¡ããã¢ãã«ããã®å¿çãElasticsearchã«æžã蟌ãã§åæããŸãã
å®éš
SecurityLab.ruããŒã¿ã«ã® ãã©ãã£ãã¯ã§ãœãªã¥ãŒã·ã§ã³ããã¹ãããŸãããããŒã¿é-15GB以äžã130æé以äžãã»ãã·ã§ã³æ°ã¯10,000ãè¶ ããŠããŸããææ¡ãããã¢ãã«ã¯çµ±èšæ©èœã䜿çšããŠããããã10æªæºã®ãªã¯ãšã¹ããå«ãã»ãã·ã§ã³ã¯ãã¬ãŒãã³ã°ãšãã¹ãã«é¢äžããŸããã§ãããå質ã¡ããªãã¯ãšããŠåŸæ¥ã®å質ã¡ããªãã¯ïŒåã¯ã©ã¹ã®ç²ŸåºŠãå®å šæ§ãããã³Fã¡ãžã£ãŒïŒã䜿çšããŸããã
Webãããæ€åºã¢ãã«ã®ãã¹ã
ãã€ããªåé¡ã¢ãã«ãæ§ç¯ããŠè©äŸ¡ããŸããã€ãŸããããããæ€åºããŠãããã¢ã¯ãã£ããã£ã®ã¿ã€ãã§åé¡ããŸãã5åã®éå±€åãããçžäºæ€èšŒã®çµæã«åºã¥ããŠïŒããã¯ã匷ãã¯ã©ã¹ã®äžåè¡¡ããããããæ€èšäžã®ããŒã¿ã«å¿ èŠãªãã®ã§ãïŒãæ§ç¯ãããã¢ãã«ã¯éåžžã«åªããŠããïŒç²ŸåºŠãšå®å šæ§-98ïŒ ä»¥äžïŒã人éã®ãŠãŒã¶ãŒãšãããã®ã¯ã©ã¹ãåé¢ã§ãããšèšããŸãã
| å¹³å粟床 | å¹³åæºè ¹æ | å¹³åFã¡ãžã£ãŒ | |
|---|---|---|---|
| ããã | 0.86 | 0.90 | 0.88 |
| 人é | 0.98 | 0.97 | 0.97 |
å»¶æããããµã³ãã«ã§ã¢ãã«ããã¹ãããçµæã以äžã®è¡šã«ç€ºããŸãã
| æ£ç¢ºã | å®å š | Fã¡ãžã£ãŒ |
äŸã®æ° |
|
|---|---|---|---|---|
| ããã | 0.88 | 0.90 | 0.89 | 1816幎 |
| 人é | 0.98 | 0.98 | 0.98 | 9071 |
å»¶æããããµã³ãã«ã®å質ã¡ããªãã¯ã®å€ã¯ãã¢ãã«æ€èšŒäžã®å質ã¡ããªãã¯ã®å€ãšã»ãŒäžèŽããŸããã€ãŸãããããã®ããŒã¿ã®ã¢ãã«ã¯ããã¬ãŒãã³ã°äžã«åŸãããç¥èãäžè¬åã§ããŸãã
æåã®çš®é¡ã®ãšã©ãŒã«ã€ããŠèããŠã¿ãŸãããããããã®ããŒã¿ãå°éçã«ããŒã¯ã¢ãŠããããŠããå Žåããšã©ãŒãããªãã¯ã¹ã¯å€§å¹ ã«å€åããŸããããã¯ãã¢ãã«ã®ããŒã¿ãããŒã¯ã¢ãããããšãã«ããã€ãã®ãšã©ãŒãçºçããããã¢ãã«ã¯ãã®ãããªã»ãã·ã§ã³ãæ£ããèªèã§ããããšãæå³ããŸãã
| æ£ç¢ºã | å®å š | Fã¡ãžã£ãŒ |
äŸã®æ° |
|
|---|---|---|---|---|
| ããã | 0.93 | 0.92 | 0.93 | 2446 |
| 人é | 0.98 | 0.98 | 0.98 | 8441 |
ã»ãã·ã§ã³ã®åœè£ è ã®äŸãèŠãŠã¿ãŸãããã12ã®åæ§ã®ã¯ãšãªãå«ãŸããŠããŸãããªã¯ãšã¹ãã®1ã€ã次ã®å³ã«ç€ºããŸãã
ãã®ã»ãã·ã§ã³ã®åŸç¶ã®ãã¹ãŠã®èŠæ±ã¯åãæ§é ã§ãããURIã®ã¿ãç°ãªããŸãã
ãã®Webbotã¯ãæå¹ãªUser-Agentã䜿çšããéåžžã¯éèªåã§äœ¿çšãããRefererãã£ãŒã«ãã远å ããã»ãã·ã§ã³å ã®ããããŒã®æ°ãå°ãªãããšã«æ³šæããŠãã ãããããã«ããªã¯ãšã¹ãã®æéçç¹æ§ïŒã»ãã·ã§ã³æéããªã¯ãšã¹ããããã®å¹³åæéïŒã«ããããã®ã¢ã¯ãã£ããã£ã¯èªåã§ãããRSSãªãŒããŒã®ã¯ã©ã¹ã«å±ããŠãããšèšããŸãããã®å Žåããããèªäœã¯éåžžã®ãŠãŒã¶ãŒã«ãªãããŸãã
Webãããåé¡ã¢ãã«ã®ãã¹ã
Webããããã¢ã¯ãã£ããã£ã¿ã€ãã§åé¡ããããã«ãåã®å®éšãšåãããŒã¿ãšåãã¢ã«ãŽãªãºã ã䜿çšããŸããå»¶æããããµã³ãã«ã§ã¢ãã«ããã¹ãããçµæã以äžã®è¡šã«ç€ºããŸãã
| æ£ç¢ºã | å®å š | Fã¡ãžã£ãŒ |
äŸã®æ° |
|
|---|---|---|---|---|
| ããã | 0.82 | 0.81 | 0.82 | 194 |
| æéè£å©å · | 0.87 | 0.72 | 0.79 | 65 |
| libs_tools | 0.27 | 0.17 | 0.21 | 18 |
| rss | 0.95 | 0.97 | 0.96 | 1823幎 |
| ãµãŒããšã³ãžã³ | 0.84 | 0.76 | 0.80 | 228 |
| ãœãŒã·ã£ã«ãããã¯ãŒã¯ | 0.80 | 0.79 | 0.84 | 73 |
| ããããªã | 0.65 | 0.62 | 0.64 | 45 |
libs_toolsã«ããŽãªã®å質ã¯äœãã§ãããè©äŸ¡çšã®äŸã®éãäžååã§ãããããçµæã®æ£ç¢ºæ§ã«ã€ããŠè©±ãããšãã§ããŸãããããå€ãã®ããŒã¿ã§Webããããåé¡ããã«ã¯ã2çªç®ã®äžé£ã®å®éšãå®è¡ããå¿ èŠããããŸããçŸåšã®ã¢ãã«ã§ã¯ãRSSãªãŒããŒãæ€çŽ¢ãšã³ãžã³ãããã³äžè¬çãªãããã®ã¯ã©ã¹ãããªãé«ã粟床ãšå®å šæ§ã§åé¢ã§ãããšèªä¿¡ãæã£ãŠèšããŸãã
æ€èšäžã®ããŒã¿ã«é¢ãããããã®å®éšã«ãããšãã»ãã·ã§ã³ã®22ïŒ ä»¥äžïŒåèšããªã¥ãŒã ã15 GB以äžïŒãèªåçã«äœæããããã®ãã¡87ïŒ ãäžè¬çãªããããæªç¥ã®ããããRSSãªãŒããŒãããŸããŸãªã©ã€ãã©ãªããŠãŒãã£ãªãã£ã䜿çšããWebãããã®ã¢ã¯ãã£ããã£ã«é¢é£ããŠããŸãã ..ããããã£ãŠãã¢ã¯ãã£ããã£ã®ã¿ã€ãã§Webãããã®ãããã¯ãŒã¯ãã©ãã£ãã¯ããã£ã«ã¿ãªã³ã°ãããšãææ¡ãããã¢ãããŒãã«ããã䜿çšããããµãŒããŒãªãœãŒã¹ã®è² è·ãå°ãªããšã9ã10ïŒ åæžãããŸãã
Webãããåé¡ã¢ãã«ããªã³ã©ã€ã³ã§ãã¹ããã
ãã®å®éšã®æ¬è³ªã¯æ¬¡ã®ãšããã§ãããªã¢ã«ã¿ã€ã ã§ããã©ãã£ãã¯ãè§£æããåŸãæ©èœãèå¥ãããåã»ãã·ã§ã³ã®æ©èœãã¯ãã«ã圢æãããŸãã宿çã«ãåã»ãã·ã§ã³ã¯äºæž¬ã®ããã«ã¢ãã«ã«éä¿¡ããããã®çµæãä¿åãããŸãã
åã¯ã©ã¹ã®çµæçãªã¢ãã«ã®Fã¡ãžã£ãŒ
以äžã®ã°ã©ãã¯ãæãè峿·±ãã¯ã©ã¹ã®çµæçãªå質ã¡ããªãã¯ã®å€ã®å€åã瀺ããŠããŸãããããã®ãã€ã³ãã®ãµã€ãºã¯ãç¹å®ã®æéã«ããããµã³ãã«å ã®ã»ãã·ã§ã³ã®æ°ã«é¢é£ããŠããŸãã
粟床ãå®å šæ§ãæ€çŽ¢ãšã³ãžã³ã¯ã©ã¹ã®
Fã¡ãžã£ãŒç²ŸåºŠãå®å šæ§ãlibsããŒã«ã¯ã©ã¹ã®
Fã¡ãžã£ãŒ
粟床ãå®å šæ§ãrssã¯ã©ã¹ã®Fã¡ãžã£ãŒç²ŸåºŠãå®å šæ§ãã¯ããŒã©ãŒã¯ã©ã¹ã®
Fã¡ãžã£ãŒç²ŸåºŠãå®å šæ§ãFã¡ãžã£ãŒã®ã¯ã©ã¹äººé
æ€èšäžã®ããŒã¿ã®å€ãã®ã¯ã©ã¹ïŒhumanãrssãsearch_enginesïŒã®å Žåãã¢ãã«ã®å質ã¯èš±å®¹ç¯å²å ã§ãïŒ80ïŒ ãè¶ ãã粟床ãšå®å šæ§ïŒãã¯ããŒã©ãŒã¯ã©ã¹ã®å Žåãã»ãã·ã§ã³æ°ã®å¢å ãšãã®ãµã³ãã«ã®ç¹åŸŽãã¯ãã«ã®è³ªçãªå€åã«ãããã¢ãã«ã®å質ãåäžããŸããå®å šæ§ã33ïŒ ãã80ïŒ ã«åäžããŸããããã®ã¯ã©ã¹ã®äŸã®æ°ãå°ãªãïŒ50æªæºïŒãããlibs_toolsã¯ã©ã¹ã«ã€ããŠåççãªçµè«ãåºãããšã¯äžå¯èœã§ãããããã£ãŠãåŠå®çãªçµæïŒåè³ªã®æªãïŒã¯ç¢ºèªã§ããŸããã
äž»ãªææãšãããªãçºå±
æ©æ¢°åŠç¿ã¢ã«ãŽãªãºã ãšçµ±èšæ©èœã䜿çšããŠWebããããæ€åºããã³åé¡ãã1ã€ã®ã¢ãããŒãã«ã€ããŠèª¬æããŸãããæ€èšäžã®ããŒã¿ã§ã¯ããã€ããªåé¡ã®ããã«ææ¡ããããœãªã¥ãŒã·ã§ã³ã®å¹³å粟床ãšå®å šæ§ã¯95ïŒ ä»¥äžã§ããããã®ã¢ãããŒããææã§ããããšã瀺ããŠããŸããç¹å®ã®ã¯ã©ã¹ã®Webãããã®å Žåãå¹³åã®ç²ŸåºŠãšå®å šæ§ã¯çŽ80ïŒ ã§ãã
æ§ç¯ãããã¢ãã«ã®æ€èšŒã«ã¯ãã»ãã·ã§ã³ã®å®éã®è©äŸ¡ãå¿ èŠã§ããåã«ç€ºããããã«ãã¿ãŒã²ããã¯ã©ã¹ã§æ£ããããŒã¯ã¢ããã䜿çšã§ããå Žåãã¢ãã«ã®ããã©ãŒãã³ã¹ã¯å€§å¹ ã«åäžããŸããæ®å¿µãªãããçŸåšããã®ãããªããŒã¯ã¢ãããèªåçã«äœæããããšã¯å°é£ã§ãããå°éå®¶ã®ããŒã¯ã¢ããã«é Œããªããã°ãªããŸãããããã«ãããæ©æ¢°åŠç¿ã¢ãã«ã®äœæãè€éã«ãªããŸãããããŒã¿å ã®é ãããã¿ãŒã³ãèŠã€ããããšãã§ããŸãã
Webãããã®åé¡ãšæ€åºã®åé¡ãããã«çºå±ãããã«ã¯ã次ã®ããšããå§ãããŸãã
- ãããã®è¿œå ã¯ã©ã¹ãå²ãåœãŠãŠåãã¬ãŒãã³ã°ããã¢ãã«ããã¹ãããŸãã
- Webããããåé¡ããããã®èšå·ã远å ããŸããããšãã°ããã€ããªã§robots.txtããŒãžãžã®ã¢ã¯ã»ã¹ã®æç¡ãæ åœããrobots.txt屿§ã远å ãããšãä»ã®ã¯ã©ã¹ã®ä»ã®å質ã¡ããªãã¯ãæªåãããããšãªããWebãããã®ã¯ã©ã¹ã®å¹³åFã¹ã³ã¢ã3ïŒ å¢ããããšãã§ããŸãã
- 远å ã®ã¡ã¿æ©èœãšå°éå®¶ã®å€æãèæ ®ããŠãã¿ãŒã²ããã¯ã©ã¹ã®ããæ£ç¢ºãªããŒã¯ã¢ãããäœæããŸãã
èè ïŒNikolay LyfenkoããªãŒãã£ã³ã°ã¹ãã·ã£ãªã¹ããAdvanced Technologies GroupãPositive Technologies
ãœãŒã¹
[1] Cabri A. et al. Online Web Bot Detection Using a Sequential Classification Approach. 2018 IEEE 20th International Conference on High Performance Computing and Communications.
[2] Chu Z., Gianvecchio S., Wang H. (2018) Bot or Human? A Behavior-Based Online Bot Detection System. In: Samarati P., Ray I., Ray I. (eds) From Database to Cyber Security. Lecture Notes in Computer Science, vol. 11170. Springer, Cham.
[3] Derek D., Gokhale S. An integrated method for real time and offline web robot detection. Expert Systems 33. 2016.
[4] Iliou Ch., et al. Towards a framework for detecting advanced Web bots. Proceedings of the 14th International Conference on Availability, Reliability and Security. 2019.
[5] Nikiforakis N., Kapravelos A., Joosen W., Kruegel C., Piessens F. and Vigna G. Cookieless Monster: Exploring the Ecosystem of Web-Based Device Fingerprinting. 2013 IEEE Symposium on Security and Privacy, Berkeley, CA, 2013, pp. 541â555.
[2] Chu Z., Gianvecchio S., Wang H. (2018) Bot or Human? A Behavior-Based Online Bot Detection System. In: Samarati P., Ray I., Ray I. (eds) From Database to Cyber Security. Lecture Notes in Computer Science, vol. 11170. Springer, Cham.
[3] Derek D., Gokhale S. An integrated method for real time and offline web robot detection. Expert Systems 33. 2016.
[4] Iliou Ch., et al. Towards a framework for detecting advanced Web bots. Proceedings of the 14th International Conference on Availability, Reliability and Security. 2019.
[5] Nikiforakis N., Kapravelos A., Joosen W., Kruegel C., Piessens F. and Vigna G. Cookieless Monster: Exploring the Ecosystem of Web-Based Device Fingerprinting. 2013 IEEE Symposium on Security and Privacy, Berkeley, CA, 2013, pp. 541â555.