我在腾讯云服务器上架设了 hudson 用于自动构建,自动构建的网址如下
/hudson-3.3.3/job/aaa/build?delay=0sec
昨天发现 hudson 构建失败,发现被陌生 ip 构建了五次,共五个不同的 ip ,而且没有打开网页的日志,直接请求构建网址,具体日志如下
101.226.89.116 - [25/Dec/2016:02:39:12 +0800] "GET /hudson-3.3.3/job/aaa/build?delay%3D0sec HTTP/1.1" 302 -
180.153.214.180 - [25/Dec/2016:06:19:30 +0800] "GET /hudson-3.3.3/job/aaa/build?delay%253D0sec HTTP/1.1" 302 -
183.57.53.196 - [25/Dec/2016:09:42:10 +0800] "GET /hudson-3.3.3/job/aaa/build?delay%25253D0sec HTTP/1.1" 302 -
101.226.89.115 - [25/Dec/2016:09:42:20 +0800] "GET /hudson-3.3.3/job/aaa/build?delay%25253D0sec HTTP/1.1" 302 -
180.153.214.152 - [25/Dec/2016:13:11:18 +0800] "GET /hudson-3.3.3/job/aaa/build?delay%2525253D0sec HTTP/1.1" 302 -
可以看出请求里的%被转义成%25 ,类似程序自动的行为
请问大家这是恶意重放攻击,还是运营商缓存,抑或是腾讯云的安全扫描?