云服务项目tomcat出现莫名的cookie攻击,有知道这是意思吗,有什么危险,应采取什么措施。

云服务项目tomcat出现莫名的cookie攻击,有知道这是意思吗,有什么危险,应采取什么措施。

问题描述:

13-Apr-2021 00:55:28.195 INFO [http-nio-10580-exec-15] org.apache.coyote.http11.Http11Processor.service Error parsing HTTP request header
 Note: further occurrences of HTTP request parsing errors will be logged at DEBUG level.
	java.lang.IllegalArgumentException: Invalid character found in method name [0x030x000x00/*0xe00x000x000x000x000x00Cookie:]. HTTP method names must be tokens
		at org.apache.coyote.http11.Http11InputBuffer.parseRequestLine(Http11InputBuffer.java:431)
		at org.apache.coyote.http11.Http11Processor.service(Http11Processor.java:503)
		at org.apache.coyote.AbstractProcessorLight.process(AbstractProcessorLight.java:65)
		at org.apache.coyote.AbstractProtocol$ConnectionHandler.process(AbstractProtocol.java:831)
		at org.apache.tomcat.util.net.NioEndpoint$SocketProcessor.doRun(NioEndpoint.java:1634)
		at org.apache.tomcat.util.net.SocketProcessorBase.run(SocketProcessorBase.java:49)
		at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1142)
		at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:617)
		at org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)
		at java.lang.Thread.run(Thread.java:745)
13-Apr-2021 20:04:34.060 INFO [http-nio-10580-exec-8] org.apache.tomcat.util.http.parser.Cookie.logInvalidHeader A cookie header was received [phtml,php3"; InitSiteID=106332; SiteType=1; IsDefaultLang=1; WUserID=1603099899557; Lang=cn; yz_site=isSite; G1gn_2132_saltkey=Cf3gqRXg; G1gn_2132_lastvisit=1618303818; G1gn_2132_sid=bR4IcR; G1gn_2132_lastact=1618308966%09home.php%09space; VyPM_2132_saltkey=xzOI1IM7; VyPM_2132_lastvisit=1618303909; VyPM_2132_sid=yb4gkg; VyPM_2132_lastact=1618307509%09forum.php%09viewthread; VyPM_2132_st_p=0%7C1618307509%7C60622386b1cbb3bc9781e3ed319ab74c; VyPM_2132_visitedfid=136; VyPM_2132_viewid=tid_1035210; SERVERID=_srv80-78_; PvKl_2132_saltkey=ACUXyqA0; PvKl_2132_lastvisit=1618304367; PvKl_2132_sid=BGcikG; PvKl_2132_lastact=1618307967%09forum.php%09viewthread; PvKl_2132_st_p=0%7C1618307967%7C1afe289e573bd7cd848667e71b658a58; PvKl_2132_visitedfid=3017; PvKl_2132_viewid=tid_227050; ABTEST=3|1618307979|v1; VIDEO_DEBUG=off; ASPSESSIONIDCSSSSTDB=NEEDFNPBJPLFMLGIOPACOBKE; hnyHkdu5_2132_lastvisit=1618304595; hnyHkdu5_2132_sessionid=1824256366; .ASPXANONYMOUS=XaJTLexm1wEkAAAAMjIzN2MyMDItNjgzYS00NWFiLWI2YzUtYzE2NTE0ZTQ3OGZiO7IQFeAYwxpaaRn9U7Z3MqoUU-xg2mn6lxmnysVk-ik1; ASPSESSIONIDSADDDQTD=DPMPDHFCANDCAOHEHJCDCIEG; alRL_2132_saltkey=JDFabT7g; alRL_2132_lastvisit=1618305419; alRL_2132_sid=xR7gPH; alRL_2132_lastact=1618309019%09forum.php%09viewthread; alRL_2132_st_p=0%7C1618309019%7C9ca4461ca05bdccc3080ac7b5be2abc9; alRL_2132_visitedfid=2; alRL_2132_viewid=tid_604056; __tads_uuid=0E016-0060756FDC; USR=rxtgoc9k%090%091618309192%09http%3A%2F%2Fwww.ccmeng.com%2Fzgjm%2F40162.html; X_CACHE_KEY=28c47b6caf3b77c4dc6ee41f723d3936; beegosessionID=49b6ed2f12c6911d6d2f26b851adfb09; rh8h_2132_saltkey=K557iSyq; rh8h_2132_lastvisit=1618306017; rh8h_2132_lastact=1618309617%09forum.php%09viewthread; rh8h_2132_st_p=0%7C1618309617%7C4b39126ffe702c24650c14d93456a7eb; rh8h_2132_visitedfid=2; rh8h_2132_viewid=tid_5068042; __RequestVerificationToken=3XD5MzTP1a7xNptDJ-PqSUPN_wJ-k-FrMwyFUCDgs1Jl5cZ0P9Nhi17UnjWMglBHshYFxIFBSEb45IppgSlBIk3Msj29TD7wEC03PRZD6zU1; BIGipServerpool_m.jianshe99.com=419511050.20480.0000; ASPSESSIONIDAAASBTAC=NJDDNFLCDCIMHCKEIHEPMCBN; CAIMOGU=d8cd5ec05b40639bd5ab96d9421235b7; route_bbs=4b7df70fe96acfe89c32b68456fd2ed3; SSUID=317033798AB4D20462E84A8C12F2E859; user_sid=4028393275; ASPSESSIONIDSQCARDSS=EOFJDILCEPJLGMDDMBPDKELK; fikker-EBMV-gBsT=Qj7fLZk0WFObuV1vel3Z1x7VA476OZSb; BIGipServerpool_m.med66.com=687946506.20480.0000; ASPSESSIONIDSCBDAQBA=EONLDFPBCBMNPGONNLAEGBND; yunsuo_leech_key=20; geturl=%2Fdispbbs%2Easp%3FboardID%3D51%26ID%3D601782%26page%3D244%26move%3Dnext; ASPSESSIONIDCSTADQBQ=JMFKGICCIJILJMOCKFKILGND; 21E8BF483404=1; Hm_lpvt_d2eddf9b155bdbd9ea015490aef570fa=1618313180; Hm_lvt_d2eddf9b155bdbd9ea015490aef570fa=1618313180; lastfid=0; lastvisit=0%091618311516%09%2Fread.php%3Ftid%3D204493%26page%3D%26fpage%3D%26otherref%3D-authorid-155772%26; ol_offset=161408; _csrf-frontend=57e24c12c320460fdd236f6824e4bc8964ebd4e7c8dcba3fda1465f47d79db61a%3A2%3A%7Bi%3A0%3Bs%3A14%3A%22_csrf-frontend%22%3Bi%3A1%3Bs%3A32%3A%22ykVi5U-hdmcvr2bum_-1gbJN75IswJ54%22%3B%7D; XSRF-TOKEN=eyJpdiI6IlBRNWlqTE1BNFZwTUV3M3dmN1AzV3c9PSIsInZhbHVlIjoienFDU0l2cUVDZ2E5OUE2WWdKcDFyNTJYeVBLMnJwR0pwOXFHd3g5bG1ybDdkb1kxajdkQmxGRzVlaCtVV0YzUSIsIm1hYyI6IjVjMjczODAyNTU3YzdhYzk2OTc3NjQ2ZGY2MWU0ODBhODNmMzcxNjM0OWQ0YzcyNmNkZTdiODVmMGM4M2Y3YWIifQ%3D%3D; wanshenma_new_session=eyJpdiI6ImNGc2RIY2FyYm9sVDdQRlYzd1VHZnc9PSIsInZhbHVlIjoiMStyQnN6TVl3OEZobW9xemU0TjhtSm9XSHQyamxEM0xka0dcLzh3NmpsVFI2ZXpTcjM0Q0Z4SFNxMVZnM3VMc1QxM2pxN1lqY2g4UG5US1NVXC9qZzZzWUhHZFlCMllrS2pMQ01JZWZsRGU2S3B0RHR6OFZ6a3VRQmdROEszNzFYOSIsIm1hYyI6ImFlMjdiYTRhYzQwYzA3NWE5YzAyY2U0OTliOWE4NWJkMGNiOWI1YjVkMDU0YTIyMTQ0MjcxMmM0YjVhMWEwOTgifQ%3D%3D; e11aWhnbU8G3aTGYBp2MuxKxDuJsWZWaLyMpN8cS=eyJpdiI6IjZZSDNQY0h6dnp4dEJcL3NFMHdFWWlRPT0iLCJ2YWx1ZSI6ImFWTFwvU0tTblNLbTRKU3ZmSzhpXC9VZW56aWFTTHdZWGU5d2lHUHlacllvTFc2bDJ3NFA5dGxJTEdRZHEyaVwvdmNMRG14SCtsSTVjYlpzU1JwbTA4eEhKV2RpdXNkNHdXbXNxTjY4YVpjbnhzMEZWSXpROEdLa2NoZ0x6UkJGd3BjZmVhQmtSXC9aMWZRMlorQjdDNG9adldFc0M2eFI5WEhZdW1DTWFsQysyOGNwMXh1T21udXE4QkxUenhFVEt6Y3hsZ25Oa0xiVll1eE5nTUdOQ3ZQeloyb0p3UHM2eHNHS01uNStrV1RGQWFkWmp5XC9XZGFuUHJ2azhnSjBITWM2U3FWcUhLNVlsRW5hTzU5RHJkVXRIcVZWWjZheW5ENWtYbStadWpZWTZ3T0ZUZGVnRldHS0grcXNKWXJnOG0zWFlmK1FtTzAwYkU4cllKRUZvXC9HSlAxTXFnWTJpc1E5TDYzQ2JHY1VnSEhRUVVjQUZ0c3h3TmNLanZHdUhvWUhLcWJyMXl4c1dhTzRWbUVQNGxqSndmbVVzWWhSb2psVmpoS1wvR1k1OWM3Qk45bThnVjZjblZ1bzdsVXlCZHdoK0hEdWV3ZWFuSjNiXC9qbHF5QlRwWmRxbm9md3BWZGdvVmpuMW5nSEI3dHg4YmVXcXV3SG1xS3NmTmF3ajdlZXBwV0pLMVpRN2dHWUtoM2FSWVltYWNBTG9NMXo0YUdLZW9QMWF5WHVSYWdMVUFYMG1MXC9UZUxuWXRCZGdyNHk5R0taNyIsIm1hYyI6IjJkOWEyMTcyZjU2YWI5MzQzMWQ3OTI3ZmNmMDM1ZDFhNjMxYjI5ODg5YzQ4NzFiMzkzZjQyZTk5NmJhZDhjZWQifQ%3D%3D; ASPSESSIONIDQSDDTATS=KPOJOMLCPLNDMAPAGFCCHIHG; mysid=c7e9f4590a18c08393ec3bd59e3f1c30; cookie_test=t5L_2BaR65Jjwfs_2B66KDjvlTzQY1ir6WBLMg_2BZYXjbnKgj9jf1; bbs_sid=ebjrcoar4o6toofb0ru6jc6ro6; ASPSESSIONIDQACDDQDB=MLLFGCICFNAANNKAJDDIBJCK; real_ipd=116.128.128.41; ECS_ID=d5697a31e3252da9f36bfb32440898f52e7b8382; time=1618313086; laravel_session=eyJpdiI6Ik56amdjZWdFZXpocGJ5SkpNR1N0eEE9PSIsInZhbHVlIjoidGhtVXVlRFQ0cXkzcENlZXI2S0hncVwvXC9QblVJMlFzTWlQMVRPUXAyaEZ6eWdBckIxbkZZQ3VvZWljNHBTWUdmIiwibWFjIjoiYzNmZWQwZjE3ZDEwNjQ5M2UzYjBkNmEwY2MyYTE1ZDFlNzEwNTRlMjY5MjI1YjY0MTk5ZDE3ZTNhYTU5NWYyMiJ9; yzih_2132_saltkey=d6NtFf9s; yzih_2132_lastvisit=1618309762; yzih_2132_sid=qwmc1K; yzih_2132_lastact=1618313362%09forum.php%09viewthread; yzih_2132_pc_size_c=0; yzih_2132_st_p=0%7C1618313362%7C71a4b58d0eb6788af2c4c9a364134a73; yzih_2132_visitedfid=123; yzih_2132_viewid=tid_17644; cart=---+%21ruby%2Fobject%3ACart%0Aitems%3A+%5B%5D%0A; _zcl_mall_session=a3luSWVwODQ4QXdLUGhwa0U2OWtiSWNuR0ZkQlhCZVhoZUEvdW93Q3A2NlQyR2tzbkZzZGlJOGJVdUFpZGhFR3BKMTVaYWM3V3pWOTVjNG94d0pEUXB2M25ZV0xpVEk1KzJOVCtoQmhkQkF5YU5xdHA2YnEyd0ZGWTYxaHBHR0t0MkhTLzZqNlJnNlRIWUwvTEdzaGhnPT0tLUFrRmZKbUM1Qk1mRExUdzJUZ1hSTXc9PQ%3D%3D--80331c7dcf5b0a930c89e5ad5b1220fcc2b81794; d2d977c58444271d9c780187e93f80e5=think%3A%7B%22verify_code%22%3A%226748dfe47f3dc35286078648ddbcea4b%22%2C%22verify_time%22%3A%221618313996%22%7D; INGRESSCOOKIE=1618314077.657.5271.825217; visittimes_0=1; wp_xh_session_5d895a9d4ed801fdd95e27ec11eb1297=6406471b7c9aa9e6f1670feaa1361610%7C%7C1618487162%7C%7C1618483562%7C%7C4acee5d84309e234ed303632db23bd2f; ASPSESSIONIDQSCRQQBT=LPDILBJCAFDFAALLCGLABJMA; MyCityLogo=http%3A%2F%2Fwww%2Etijian123%2Ecom%2Fimages%2Flogo%2Egif; MyCity=%CA%AE%D1%DF; MyCityEng=shiyan; MyCityTempID=0; MyCityBM=%3Cdiv+class%3Dbmdiv%3E%3Cul%3E%3Cli+class%3Dbm%5Fred%3E%D2%BA%BB%AF%C6%F8%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli+class%3Dbm%5Fred%3E%BF%ED%B4%F8%B0%B2%D7%B0%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli%3E%BC%D2%D5%FE%B1%A3%BD%E0%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli+class%3Dbm%5Fred%3E%B3%E8%CE%EF%D2%BD%D4%BA%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli%3E%C9%E3%D3%B0%CF%B4%CF%E0%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli%3E%B4%BF%BE%BB%CB%AE%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli%3E%B5%E7%C4%D4%CE%AC%D0%DE%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3Cli%3E%C6%FB%B3%B5%CE%AC%D0%DE%A3%BA%D5%D0%C9%CC%D6%D0%3C%2Fli%3E%3C%2Ful%3E%3C%2Fdiv%3E; MyCityDomain=; ASPSESSIONIDAABRBARS=NKDBFPHCPFHKOAPGMHDBHFJO; s759597ac=bp2t4miie40bu2ndr37e4u2qc5; site_r=clearTimeout%28AT%29%3BresponsiveImage%3Dfunction%28el%29%7Bel%3Del%3Fel%3A%27body%27%3B%24%28%27img.responsiveImage%27%2C%24%28el%29%29.responsiveImage%28%29%3B%7D%3B; PTCMS_history=946%2C676; ASPSESSIONIDQSDDBDBR=DHCNMAFCHDLIKMPABNKBLAOC; ibuySessid=66e709fa383f4d1017b7aa2b9f8aa11a; fikker-0Q4L-Pwry=OMHUb3T3bM4ODUpqRyHNHuRQvwdwR3Jm] that contained an invalid cookie. That cookie will be ignored.
 Note: further occurrences of this error will be logged at DEBUG level.

可以通过设置HttpOnly来降低风险