๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ
728x90
๋ฐ˜์‘ํ˜•

๐Ÿ”’์ •๋ณด๋ณด์•ˆ108

๋ฉ”ํƒ€์Šคํ”Œ๋กœ์ž‡ - SSH์—์„œ Meterpreter๋กœ ์—…๊ทธ๋ ˆ์ด๋“œ MSF SSH ๋กœ๊ทธ์ธ msf > use auxiliary/scanner/ssh/ssh_login msf auxiliary(ssh_login) > set rhosts 192.168.0.109 msf auxiliary(ssh_login) > set username foo msf auxiliary(ssh_login) > set password bar msf auxiliary(ssh_login) > exploit ์„ธ์…˜ ์—…๊ทธ๋ ˆ์ด๋“œ(-u) session –u 1 ์ถœ์ฒ˜: https://superuser.com/questions/1322515/meterpreter-on-ssh-connection Meterpreter on ssh connection I'm behind NAT. I can log in over ssh t.. 2024. 2. 8.
์ทจ์•ฝ์  ๋ถ„์„ - CVE-2014-6287, HFS(HTTP File Server) RCE ์ทจ์•ฝ์  ์ทจ์•ฝ์  ์„ค๋ช… parserLib.pas ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ ํŒŒ์ผ์— ๋‚ด์žฌ๋˜์–ด ์žˆ๋Š” findMacroMarker ํ•จ์ˆ˜๊ฐ€ %00(NULL) ๊ฐ’ ์ดํ›„์— ์˜ค๋Š” ๊ฐ’์„ ์ฝ์–ด๋‚ด์ง€ ๋ชปํ•˜์—ฌ ํŒŒ์ผ ์‹คํ–‰, ์ €์žฅ๊ณผ ๊ฐ™์€ ๋งคํฌ๋กœ ๋ช…๋ น์–ด๋ฅผ ๊ฑธ๋Ÿฌ๋‚ด์ง€ ๋ชปํ•˜์—ฌ ๊ณต๊ฒฉ์ž๊ฐ€ ์›ํ•˜๋Š” ํ–‰์œ„๊ฐ€ ๊ฐ€๋Šฅํ•œ ์ทจ์•ฝ์ ์ž…๋‹ˆ๋‹ค. hfs2.3~hfs2.3c์— ํ•ด๋‹น CVE ์ทจ์•ฝ์ ์ด ์žˆ์Šต๋‹ˆ๋‹ค. *HFS(HTTP File Server) : HTTP ๊ธฐ๋ฐ˜ ํŒŒ์ผ ๊ณต์œ  ์„œ๋ฒ„ *์Šคํฌ๋ฆฝํŒ…(๋งคํฌ๋กœ) ๋ช…๋ น์–ด ๋ชจ์Œ : https://www.rejetto.com/wiki/index.php/HFS:_scripting_commands ์ฝ”๋“œ ๋ถ„์„ // parserLib.pas function findMacroMarker(s:string; ofs:integer=1):integer; begin resu.. 2024. 1. 25.
๋„คํŠธ์›Œํฌ ๋ณด์•ˆ - Snort ์นผ๋ฆฌ๋ฆฌ๋ˆ…์Šค 1.0 ์„ค์น˜ 1. ์—…๋ฐ์ดํŠธ๋ฅผ ์‹คํ–‰ํ•ฉ๋‹ˆ๋‹ค. # apt-get update 2. ๋งŒ์•ฝ ์—…๋ฐ์ดํŠธ๊ฐ€ ๋˜์ง€ ์•Š๋Š”๋‹ค๋ฉด ์—…๋ฐ์ดํŠธ ์ฃผ์†Œ๋ฅผ /etc/apt/sources.list ์—์„œ ๋‹ค์Œ๊ณผ ๊ฐ™์ด ๋ณ€๊ฒฝํ•ฉ๋‹ˆ๋‹ค. deb http://http.kali.org/kali kali-rolling main non-free contrib ๋˜๋Š” deb http://old.kali.org/kali moto main non-free contrib 2. ์—…๋ฐ์ดํŠธ ํ›„ Snort ๋ฅผ ์„ค์น˜ํ•ฉ๋‹ˆ๋‹ค. # apt-get install snort Y ๋ฅผ ๋ˆŒ๋Ÿฌ ์„ค์น˜๋ฅผ ์ง„ํ–‰ํ•ฉ๋‹ˆ๋‹ค. 3. ์„ค์น˜๊ฐ€ ์™„๋ฃŒ๋˜๋ฉด Snort ์ •์ฑ…์„ ํŽธ์ง‘ํ•ฉ๋‹ˆ๋‹ค. # vi /etc/snort/rules/local.rules 4. ์ •์ฑ… ํŽธ์ง‘ ํ›„ ๋ฐ๋ชฌ์„ ํ™œ์„ฑํ™” ํ•ฉ๋‹ˆ๋‹ค. # snort -v -c /etc/.. 2023. 11. 17.
๋„คํŠธ์›Œํฌ ๋ณด์•ˆ - Snort ์œˆ๋„์šฐ ์„ค์น˜ Snort ์„ค์น˜ ์ฐธ๊ณ : https://m.blog.naver.com/limhojin123/221779047954 Snort ์œˆ๋„์šฐ๋ฒ„์ „ ์„ค์น˜์™€ ์‚ฌ์šฉํ•˜๊ธฐ 2ํƒ„(์ •๋ณด๋ณด์•ˆ๊ธฐ์‚ฌ ํ•„๊ธฐ, ์ •๋ณด๋ณด์•ˆ์‚ฐ์—…๊ธฐ์‚ฌ) ์ €๋ฒˆ #Snort 1ํƒ„์€ ๋ฆฌ๋ˆ…์Šค ๋ฒ„์ „์„ ์„ค์น˜ํ•ด์„œ ์‚ฌ์šฉํ–ˆ๋‹ค. ์ด๋ฒˆ์—๋Š” ์œˆ๋„์šฐ ๋ฒ„์ „ Snort๋ฅผ ์„ค์น˜ํ•˜๊ณ  ์‚ฌ์šฉ ํ•ด๋ณด... blog.naver.com https://www.snort.org/downloads# Snort Rules and IDS Software Download Security Onion is a Linux distro for intrusion detection, network security monitoring, and log management. It's based on Ubuntu and contai.. 2023. 11. 17.
์‹œ์Šคํ…œ ๋ณด์•ˆ - SSH root ์›๊ฒฉ ์ ‘์† ์ฐจ๋‹จ ์ •์ฑ… ์„ค์ •(/etc/ssh/sshd_config) SSH root ์›๊ฒฉ ์ ‘์† ์ฐจ๋‹จ ์ •์ฑ… ์„ค์ •(/etc/ssh/sshd_config) ๊ธฐ์กด "PermitRootLogin yes"๋ฅผ "PermitRootLogin no"๋กœ ์ˆ˜์ •ํ•œ๋‹ค. # vim /etc/ssh/sshd_config # Authentication PermitRootLogin no ์„ค์ •์ด ์™„๋ฃŒํ•˜์˜€๋‹ค๋ฉด ์„œ๋น„์Šค๋ฅผ ์žฌ์‹œ์ž‘ํ•œ๋‹ค. service ssh restart ์ •์ฑ…์„ ์„ค์ •ํ•˜๊ธฐ ์ด์ „(PermitRootLogin yes) root@kali:~/Desktop# ssh root@localhost root@localhost's password: Linux kali 3.14-kali1-686-pae #1 SMP Debian 3.14.5-1kali1 (2014-06-07) i686 The programs inc.. 2023. 11. 10.
์‹œ์Šคํ…œ ๋ณด์•ˆ - ๋ฆฌ๋ˆ…์Šค ์ปค๋„ ASLR ๋ฉ”๋ชจ๋ฆฌ ๋ณดํ˜ธ ๊ธฐ๋ฒ• ์„ค์ •(randomize_va_space) ASLR(Address Space Layout Randomization)์ด๋ž€? ๋ฉ”๋ชจ๋ฆฌ ๊ณต๊ฒฉ์„ ๋ฐฉ์–ดํ•˜๊ธฐ ์œ„ํ•ด ์ฃผ์†Œ ๊ณต๊ฐ„ ๋ฐฐ์น˜๋ฅผ ๋‚œ์ˆ˜ ํ™”ํ•˜๋Š” ๊ธฐ๋ฒ•์œผ๋กœ ์‹คํ–‰ ์‹œ๋งˆ๋‹ค ๋ฉ”๋ชจ๋ฆฌ ์ฃผ์†Œ๋ฅผ ๋ณ€๊ฒฝ์‹œ์ผœ ์•…์„ฑ์ฝ”๋“œ์— ์˜ํ•œ ํŠน์ •์ฃผ์†Œ ํ˜ธ์ถœ์„ ๋ฐฉ์ง€ํ•œ๋‹ค. ๋ฆฌ๋ˆ…์Šค ASLR ์ ์šฉ (/proc/sys/kernel/randomize_va_space ์ˆ˜์ •) echo 0 > /proc/sys/kernel/randomize_va_space # ASLR ๋ฏธ์„ค์ • echo 1 > /proc/sys/kernel/randomize_va_space # ASLR ๋ถ€๋ถ„์„ค์ •(heap๋งŒ ๋ฏธ์„ค์ •) echo 2 > /proc/sys/kernel/randomize_va_space # ASLR ๋ชจ๋‘์„ค์ •(stack, heap, library ๋“ฑ) sysctl ๋ช…๋ น์–ด๋กœ ๋ฆฌ๋ˆ….. 2023. 11. 9.
๋””์ง€ํ„ธ ํฌ๋ Œ์‹ - ํ…์ŠคํŠธ/ํ—ฅ์Šค ์—๋””ํ„ฐ (010 Editor) https://www.sweetscape.com/010editor/ 010 Editor - Pro Text/Hex Editor | Edit 250+ Formats | Fast & Powerful | Reverse Engineering 010 Editor: Pro Text Editor Edit text files, XML, HTML, Unicode and UTF-8 files, C/C++ source code, PHP, etc. Unlimited undo and powerful editing and scripting tools. Huge file support (50 GB+). Column mode editing. Analysis Tools - Drill into your Data A www.sweetsc.. 2023. 11. 3.
๋””์ง€ํ„ธ ํฌ๋ Œ์‹ - NTFS ํŒŒ์ผ์‹œ์Šคํ…œ BR ๋ณต๊ตฌํ•˜๊ธฐ ์‹ค์Šต ์‹ค์Šต ์ด๋ฏธ์ง€(NTFS.001) ์ถœ์ฒ˜ ๋ฐ ์ฐธ๊ณ : https://blog.naver.com/bitnang/220188735136 [์‹ค๊ธฐ]๋””์ง€ํ„ธ ํฌ๋ Œ์‹ ์ „๋ฌธ๊ฐ€ 2๊ธ‰ NTFS ํŒŒํ‹ฐ์…˜ ๋ณต๊ตฌํ•˜๊ธฐ(HxDํ™œ์šฉ)์ œ๋ชฉ : NTFSํŒŒํ‹ฐ์…˜ ๋ณต๊ตฌํ•˜๊ธฐ(HxD ํ™œ์šฉ)   ์‚ฌ์šฉ ํ™˜๊ฒฝ : HxD, FTK Imager   ๊ธฐ๋ณธ์„ค๋ช… ...blog.naver.com ์‹ค์Šต ์ด๋ฏธ์ง€ ํŒŒ์ผ(NTFS.001) ๋‹ค์šด๋กœ๋“œ https://drive.google.com/file/d/1ACMQQRLkmnuv2xh99Jr88qejKg6Gv09R/view NTFS.001 drive.google.com  1. ํŒŒํ‹ฐ์…˜์— ๋Œ€ํ•œ ์ดํ•ดํŒŒํ‹ฐ์…˜์ด๋ž€ ์—ฐ์†๋œ ์ €์žฅ ๊ณต๊ฐ„์„ ํ•˜๋‚˜ ์ด์ƒ์˜ ์—ฐ์†๋˜๊ณ  ๋…๋ฆฝ๋œ ์˜์—ญ์œผ๋กœ ๋‚˜๋ˆ„์–ด ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๋„๋ก ์ •์˜ํ•œ ๊ทœ์•ฝ์ด๋‹ค.  B์™€ C์˜ ํฐ ์ฐจ์ด์ ์€ .. 2023. 10. 23.
๋„คํŠธ์›Œํฌ ๋ณด์•ˆ - FTP ํŒจ์‹œ๋ธŒ ๋ชจ๋“œ(PASV EPSV) FTP ์ˆ˜๋™ ๋ชจ๋“œ(Passive mode)๋ž€? FTP ํŒจ์‹œ๋ธŒ(PASSIVE) ๋ชจ๋“œ๋ž€ ๊ธฐ์กด ์•กํ‹ฐ๋ธŒ ๋ชจ๋“œ์— ํด๋ผ์ด์–ธํŠธ์˜ ๋ฐฉํ™”๋ฒฝ ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•˜๊ธฐ ์œ„ํ•ด ๊ณ ์•ˆ๋œ "ํด๋ผ์ด์–ธํŠธ๊ฐ€ ์„œ๋ฒ„์˜ ๋žœ๋ค ํ•œ ํฌํŠธ(1024~65535)์— ์ ‘์†ํ•˜๋Š” ๋ฐฉ์‹"์„ ๋งํ•œ๋‹ค. 1. ํด๋ผ์ด์–ธํŠธ๋Š” ์„œ๋ฒ„์˜ ์ œ์–ด ์ฑ„๋„์ธ 21๋ฒˆ ํฌํŠธ๋กœ ์ ‘์†์„ ํ•˜๊ณ  "PASV" ํ˜น์€ "EPSV"๋ฅผ ๋ณด๋‚ธ๋‹ค. ์ด๋Š” ์•ž์œผ๋กœ ์ˆ˜๋™ ๋ชจ๋“œ(Passive Mode)๋ฅผ ์ง„ํ–‰ํ•จ์„ ์•Œ๋ฆฌ๋Š” ์˜๋ฏธ 2. ์„œ๋ฒ„๊ฐ€ ์ž์‹ ์ด ์—ด์–ด๋‘” ๋ฐ์ดํ„ฐ ์ฑ„๋„์ธ ๋žœ๋คํ•œ ํฌํŠธ(1024~65535) ๋ฒˆํ˜ธ๋ฅผ ํด๋ผ์ด์–ธํŠธ์—๊ฒŒ ์•Œ๋ ค์ฃผ๊ณ  ๋ฐ์ดํ„ฐ๋ฅผ ์„œ๋กœ ์ฃผ๊ณ ๋ฐ›๊ฒŒ ๋œ๋‹ค. PASV์™€ EPSV ์ฐจ์ด PASV๋Š” IPv4 ํ”„๋กœํ† ์ฝœ๋งŒ ์ง€์›ํ•˜๋ฉฐ ํด๋ผ์ด์–ธํŠธ์—๊ฒŒ ๋ฐ์ดํ„ฐ ์ฑ„๋„ ํฌํŠธ๋ฅผ ์•Œ๋ฆฌ๊ฒŒ ๋  ๋•Œ ์ž์‹ ์˜ ์•„์ดํ”ผ๋ฅผ ์•Œ๋ฆฌ๊ฒŒ ๋˜๋Š” ๋“ฑ ๋ณด์•ˆ์„ฑ์ด ๋–จ์–ด์ง„๋‹ค.. 2023. 10. 12.
์‹œ์Šคํ…œ ๋ณด์•ˆ - EXE ํŒŒ์ผ PE(Portable Executable) ๊ตฌ์กฐ ๋ถ„์„ํ•˜๊ธฐ PE(Portable Executable)์ด๋ž€? Windows ์šด์˜์ฒด์ œ์—์„œ ์‹คํ–‰๋˜๋Š” ์ด์ง„ ํŒŒ์ผ ํ˜•์‹์„ ์˜๋ฏธํ•œ๋‹ค. ์ด ํŒŒ์ผ ํ˜•์‹์€ Windows ์šด์˜์ฒด์ œ์—์„œ ์‹คํ–‰ ๊ฐ€๋Šฅํ•œ ํ”„๋กœ๊ทธ๋žจ, DLL, ๋“œ๋ผ์ด๋ฒ„ ๋“ฑ์— ํฌํ•จ๋œ๋‹ค. ๋ฆฌ๋ˆ…์Šค์—๋„ PE์™€ ๋น„์Šทํ•œ ํŒŒ์ผ ํ˜•์‹์ด ์žˆ์œผ๋ฉฐ ELF(Executable and Linkable Format)๋ผ๊ณ  ๋ถ€๋ฅธ๋‹ค. PE ํŒŒ์ผ ์ข…๋ฅ˜ 1) ์‹คํ–‰ ๊ณ„์—ด : EXE, SCR 2) ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ ๊ณ„์—ด : DLL, OCX, CPL, DRV 3) ๋“œ๋ผ์ด๋ธŒ ๊ณ„์—ด : SYS, VXD 4) ์˜ค๋ธŒ์ ํŠธ ํŒŒ์ผ ๊ณ„์—ด : OBJ ์‚ฌ์šฉ ๋ชฉ์  ํ”„๋กœ๊ทธ๋žจ์„ ์‚ฌ์šฉํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ๋ฉ”๋ชจ๋ฆฌ ๊ณต๊ฐ„์— ์ ์žฌ๊ฐ€ ๋˜์–ด์•ผ ํ•œ๋‹ค. ์ด๋•Œ PE์—๋Š” ๋ฉ”๋ชจ๋ฆฌ ๊ณต๊ฐ„์˜ ์–ด๋”” ์ฃผ์†Œ์— ์ ์žฌ๊ฐ€ ๋ ์ง€์™€ ์‹คํ–‰์— ํ•„์š”ํ•œ ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ ๊ฐ™์€ ์ •๋ณด๋“ค์ด ํฌํ•จ๋˜์–ด ์žˆ๋‹ค. PE .. 2023. 10. 7.
๋””์ง€ํ„ธ ํฌ๋ Œ์‹ - FTK Imager ์‚ญ์ œ๋œ ํŒŒ์ผ ๋ณต๊ตฌํ•˜๊ธฐ ๋ฐ ํŒŒ์ผ ์†Œ๊ฑฐํ•˜๊ธฐ ์‹ค์Šต ํ™˜๊ฒฝ ์šด์˜์ฒด์ œ: Windows 10(๊ฐ€์ƒ๋จธ์‹ ) ๋ณต๊ตฌ ํŒŒ์ผ ๋Œ€์ƒ: owasp-top-10.pdf ์‚ฌ์šฉ ๋„๊ตฌ: FTK Imager ์•„๋ž˜์™€ ๊ฐ™์ด ์ž˜ ์—ด๋ฆฌ๊ฒŒ ๋˜๋Š” pdf ํŒŒ์ผ์ด ์žˆ๋‹ค. ์šฐ์„  ์ด๊ฒƒ์„ ์“ฐ๋ ˆ๊ธฐํ†ต์— ๋ฒ„๋ฆฐ๋‹ค. ๊ทธ๋‹ค์Œ ํŒŒ์ผ์ด ๋ณต๊ตฌ๊ฐ€ ์•ˆ๋˜๊ฒŒ ํœด์ง€ํ†ต์„ ๋น„์›Œ์ค€๋‹ค. ์ด์ œ FTK Imager๋ฅผ ์‹คํ–‰์‹œ์ผœ "Add All Attached Devices"๋ฅผ ๋ˆŒ๋Ÿฌ ํ˜„์žฌ ์ปดํ“จํ„ฐ์— ์—ฐ๊ฒฐ๋œ ๋ชจ๋“  ์žฅ์น˜๋“ค์„ ๋ถˆ๋Ÿฌ์™€์ค€๋‹ค. ์—ฐ๊ฒฐ๋œ ์žฅ์น˜๋“ค ์ค‘ C:\๋ฅผ ์„ ํƒํ•˜๊ณ  "C:\NONAME [NTFS]\root\$Recycle.Bin\" ๊ฒฝ๋กœ๋กœ ์ด๋™ํ•ด์„œ ์ฐพ๊ณ ์ž ํ•˜๋Š” pdf ํŒŒ์ผ์„ ํƒ์ƒ‰ํ•œ๋‹ค. ํŒŒ์ผ์„ ์ œ๊ฑฐํ•˜๋ฉด ๋ฉ”ํƒ€ ๋ฐ์ดํ„ฐ ์ •๋ณด๊ฐ€ ์‚ญ์ œ๋˜๋ฏ€๋กœ ๊ธฐ์กด์˜ ์ด๋ฆ„(owasp-top-10.pdf)์€ ์ง€์›Œ์กŒ์ง€๋งŒ ๋ฐ์ดํ„ฐ ๋ถ€๋ถ„์€ ์•„์ง ๋‚จ์•„ ์žˆ๊ฒŒ ๋œ๋‹ค. ๋ณต๊ตฌ๋ฅผ ์œ„ํ•ด.. 2023. 9. 24.
์›น ๋ณด์•ˆ - CSP ํ™•์ธ ์‚ฌ์ดํŠธ(CSP Evaluator) https://csp-evaluator.withgoogle.com/ CSP Evaluator csp-evaluator.withgoogle.com 2023. 9. 11.
728x90
๋ฐ˜์‘ํ˜•