๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ
728x90
๋ฐ˜์‘ํ˜•

๐Ÿ”’์ •๋ณด๋ณด์•ˆ108

์›น ํ•ดํ‚น - ๋ธŒ๋ผ์šฐ์ € ํ•‘๊ฑฐํ”„๋ฆฐํŠธ ํ™•์ธ ์‚ฌ์ดํŠธ https://browserleaks.com/ BrowserLeaks - Web Browser Fingerprinting - Browsing Privacy BrowserLeaks.com is all about browsing privacy and web browser fingerprinting. Here you will find a gallery of web browser security testing tools that will show you what kind of personal identity data can be leaked while browsing the Internet. browserleaks.com IP ์ฃผ์†Œ๋ถ€ํ„ฐ ์‹œ์ž‘ํ•ด์„œ FLash Player, Silverlight๊นŒ์ง€ ๊ฐ์ข… ๋ธŒ๋ผ์šฐ์ €์˜ .. 2022. 8. 27.
์‹œ์Šคํ…œ ๋ณด์•ˆ - Autorun Attack, USB, CD ์ €์žฅ ์žฅ์น˜๋ฅผ ์ž๋™์œผ๋กœ ์‹คํ–‰์‹œํ‚ค๋Š” ํ…์ŠคํŠธ ํŒŒ์ผ(Autorun.inf) "autorun.inf"์€ Windows ๊ณ„์—ด์—์„œ ์ž‘๋™ ๊ฐ€๋Šฅํ•œ ํŒŒ์ผ์ด๋ฉฐ ํ”Œ๋กœํ”ผ๋””์Šคํฌ, CD, USB ๊ฐ™์€ ์ €์žฅ ์žฅ์น˜๋ฅผ ์ปดํ“จํ„ฐ ์—ฐ๊ฒฐ ์‹œ์— ์ž๋™์œผ๋กœ ํ”„๋กœ๊ทธ๋žจ์„ ์‹คํ–‰์‹œํ‚ค๋Š” ๊ธฐ๋Šฅ์„ ๊ฐ€์ง€๊ณ  ์žˆ๋‹ค. (๊ทธ ์™ธ์—๋„ ์ €์žฅ์žฅ์น˜์˜ ์•„์ด์ฝ˜์ด๋‚˜ ์ด๋ฆ„์„ ์„ค์ •ํ•˜๋Š”๋ฐ๋„ ์‚ฌ์šฉ๋จ) ์ฃผ๋กœ setup.exe ๊ฐ™์€ ์„ค์น˜ ํ”„๋กœ๊ทธ๋žจ์„ ์ž๋™์œผ๋กœ ์‹คํ–‰์‹œํ‚ค๋Š” ๋ชฉ์ ์œผ๋กœ ์“ฐ์ธ๋‹ค. ๋‹น์—ฐํ•˜๊ฒ ์ง€๋งŒ ๋ฐ”์ด๋Ÿฌ์Šค๋ฅผ ์‹คํ–‰์‹œํ‚ค๋Š” ์ผ์ด ์ƒ๊ฒจ๋‚˜๊ณ ๋ถ€ํ„ฐ๋Š” Windows 7๋ถ€ํ„ฐ ๊ธฐ๋ณธ์ ์œผ๋กœ USB๋Š” ์ž๋™ ํ”„๋กœ๊ทธ๋žจ ์‹คํ–‰ ๊ธฐ๋Šฅ์„ ๋ง‰์•„๋‘์—ˆ๋‹ค. โญ ์ง์ ‘ ํ•ด๋ณด๊ธฐ [autorun] icon=icon.ico label=My USB open=setup.exe icon: ์ €์žฅ ์žฅ์น˜์— ํ‘œ์‹œ๋  ์•„์ด์ฝ˜ ์ง€์ • label: ์ €์žฅ ์žฅ์น˜์— ํ‘œ์‹œ๋  ์ด๋ฆ„ ์ง€์ •(ํ•œ๊ธ€์€ ๊นจ์ง„๋‹ค) open: ์ €์žฅ ์žฅ์น˜ ์—ฐ๊ฒฐ ์‹œ์— ์ž.. 2022. 8. 26.
๊ฒŒ์ž„ ํ•ดํ‚น - ๋ จ์„  ์›จ์–ด https://namu.wiki/w/%EB%A0%A8%EC%84%A0%EC%9B%A8%EC%96%B4 2022. 8. 26.
๊ฒŒ์ž„ ํ•ดํ‚น - ์น˜ํŠธ ์—”์ง„ ์ •์  ๋ฉ”๋ชจ๋ฆฌ ์˜ต์…‹ ์ฐพ๊ธฐ https://youtu.be/8oC0w6WhZ1E ์ฒด๋ ฅ์˜ ๋ฉ”๋ชจ๋ฆฌ ์ฃผ์†Œ ๊ฐ’์„ ์ฐพ์€ ํ›„์— ๊ฒŒ์ž„์„ ์ข…๋ฃŒํ•˜๊ณ  ๋‹ค์‹œ ํ‚ค๊ฒŒ ๋˜๋ฉด ์•„๊นŒ ์ฐพ์€ ๋ฉ”๋ชจ๋ฆฌ ์ฃผ์†Œ๊ฐ€ ์—‰๋šฑํ•œ ๊ณณ์„ ๊ฐ€๋ฆฌํ‚ค๊ณ  ์žˆ๋Š” ๊ฒƒ์„ ๋ณผ ์ˆ˜๊ฐ€ ์žˆ๋Š”๋ฐ ์ด๋Ÿฌํ•œ ํ˜„์ƒ์„ ํ•ด๊ฒฐํ•  ์ˆ˜ ์žˆ๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค. ์˜ต์…‹ ๋ณ€๊ฒฝ ์งˆ๋ฌธ๊ธ€ ์ฐธ์กฐ ๊ฒ€์ƒ‰์–ด: c# readprocessmemory offsets https://stackoverflow.com/questions/41419467/how-to-read-process-memory-with-base-adress-and-pointers How to read process memory with Base adress and Pointers I have been working on a small project - I am trying to creat.. 2022. 8. 26.
์‹œ์Šคํ…œ ํ•ดํ‚น - ๋ฐ”์ด๋Ÿฌ์Šค ๊ฒ€์‚ฌํ•ด์ฃผ๋Š” ์‚ฌ์ดํŠธ(VirusTotal) ์ฃผ์†Œ https://www.virustotal.com/gui/home/upload VirusTotal Analyse suspicious files and URLs to detect types of malware, automatically share them with the security community www.virustotal.com ๋ฐ”์ด๋Ÿฌ์Šค ํ† ํƒˆ์€ ๊ตฌ๊ธ€์˜ ์žํšŒ์‚ฌ๋กœ, ๋ฐ”์ด๋Ÿฌ์Šค๋‚˜ ์›œ ํŠธ๋กœ์ด ๋“ฑ์„ ๊ฒ€์‚ฌํ•˜๊ณ  ๋ง‰๋Š” ์‚ฌ์ดํŠธ์ด๋‹ค. ์ด ์‚ฌ์ดํŠธ๋Š” ์—ฌ๋Ÿฌ ๊ฐœ์˜ ๋ฐฑ์‹  ์—”์ง„์œผ๋กœ ๊ฒ€์‚ฌํ•˜์—ฌ ๊ทธ ๊ฒฐ๊ณผ๋ฅผ ํˆฌ๋ช…ํ•˜๊ฒŒ ๋ณด์—ฌ์ค€๋‹ค. ๊ฒŒ๋‹ค๊ฐ€ ์—ฌ๋Ÿฌ ๊ฐœ์˜ ํŒŒ์ผ ๊ฒ€์‚ฌ๋„ ๊ฐ€๋Šฅํ•˜๋‹ค. ํŒŒ์ผํ˜•์‹์— ๋”ฐ๋ผ ํ•ด๋‹น ํŒŒ์ผ์„ ๋ถ„์„ํ•œ ๊ฒฐ๊ณผ๋ฅผ ๋ณด์—ฌ์ฃผ๊ธฐ๋„ ํ•œ๋‹ค. ๊ฐ€๋ น ์•ˆ๋“œ๋กœ์ด๋“œ์šฉ ์–ดํ”Œ๋ฆฌ์ผ€์ด์…˜ ํŒŒ์ผ(APK ํŒŒ์ผ)์„ ์˜ฌ๋ฆฌ๋ฉด ๊ถŒํ•œ, ์•กํ‹ฐ๋น„ํ‹ฐ, ์„œ๋น„์Šค, ์„œ๋ช…, ์••์ถ•ํŒŒ์ผ ์†.. 2022. 8. 24.
์•”ํ˜ธ - ํŒจ์Šคํ”„๋ ˆ์ด์ฆˆ ํŒจ์Šคํ”„๋ ˆ์ด์ฆˆ(passphrase) ์ผ๋ฐ˜์ ์ธ ๋น„๋ฐ€๋ฒˆํ˜ธ๋ณด๋‹ค ๊ธธ์ด๊ฐ€ ๊ธธ๊ณ  ๊ธฐ์–ตํ•˜๊ธฐ ์‰ฌ์šด ๋ฌธ์žฅ์„ ํ™œ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ‘135!@p’๋ผ๋Š” ๋น„๋ฐ€๋ฒˆํ˜ธ ๋Œ€์‹  ‘iloveher’์™€ ๊ฐ™์€ ๋ฌธ์žฅ์œผ๋กœ ์“ฐ๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค. ์ผ๋ถ€ ์•”ํ˜ธ ํ”„๋กœ๊ทธ๋žจ์—์„œ ์š”๊ตฌํ•˜๋Š” ํŒจ์Šคํ”„๋ ˆ์ด์ฆˆ๋Š” ์ตœ๊ณ  100 ๋ฌธ์ž๊นŒ์ง€ ๊ตฌ์„ฑ๋œ ๋ถ€๋ถ„๋„ ์žˆ๋‹ค. ์ถœ์ฒ˜: https://www.scienceall.com/%ED%8C%A8%EC%8A%A4%ED%94%84%EB%A0%88%EC%9D%B4%EC%A6%88passphrase/ ํŒจ์Šคํ”„๋ ˆ์ด์ฆˆ(passphrase) | ๊ณผํ•™๋ฌธํ™”ํฌํ„ธ ์‚ฌ์ด์–ธ์Šค์˜ฌ ๊ณผํ•™์˜ ๋ชจ๋“  ๊ฒƒ, ์‚ฌ์ด์–ธ์Šค์˜ฌ! ๊ณผํ•™ํ•™์Šต, ๊ณผํ•™์ฒดํ—˜, ๊ณผํ•™๋ฌธํ™” ์ฝ˜ํ…์ธ  ์ œ๊ณต www.scienceall.com http://wiki.hash.kr/index.php/%EC%9D%B8%EC.. 2022. 8. 24.
๋ชจ๋ฐ”์ผ ํ•ดํ‚น - ์ „ํ™”๋ฒˆํ˜ธ ๊ฐ€๋กœ ์ฑ„๊ธฐ ๊ด€๋ จ ์˜์ƒ๋“ค https://youtube.com/shorts/LmM7bHYM-3U?feature=share https://youtu.be/KvEkeBkh83k ๋‘ ์˜์ƒ ๊ณตํ†ต์ ์œผ๋กœ ์•…์„ฑ ์•ฑ์ด ์„ค์น˜๋˜์–ด์žˆ๊ณ , ์–ด๋– ํ•œ ๊ธฐ๊ด€์— ์ „ํ™”๋ฅผ ๊ฑธ๊ฒŒ ๋˜๋ฉด ์—ฐ๋ฝ์ด ์ž…๋ ฅํ•œ ๋ฒˆํ˜ธ๋กœ ๊ฐ€๊ฒŒ ๋˜๋Š” ๊ฒƒ์ด ์•„๋‹ˆ๋ผ 010 ๋ฒˆํ˜ธ(๊ณต๊ฒฉ์ž์˜ ๋ฒˆํ˜ธ)๋กœ ๋ฐ”๋€Œ๊ฒŒ ๋œ๋‹ค. ์›๋ฆฌ ์ถœ์ฒ˜: https://m.blog.naver.com/jim2478/221782728943# [์•…์„ฑํ”„๋กœ๊ทธ๋žจ #1] ๊ธˆ์œต๊ถŒ ์‚ฌ์นญ ๋ชจ๋ฐ”์ผ ์•…์„ฑ์ฝ”๋“œ/์•…์„ฑ์•ฑ ๋ถ„์„ ์ •๋ณดํ†ต์‹ ๋ง ์นจํ•ดํ–‰์œ„ ๋“ฑ์˜ ๊ธˆ์ง€ โ‘  ๋ˆ„๊ตฌ๋“ ์ง€ ์ •๋‹นํ•œ ์ ‘๊ทผ๊ถŒํ•œ ์—†์ด ๋˜๋Š” ํ—ˆ์šฉ๋œ ์ ‘๊ทผ๊ถŒํ•œ์„ ๋„˜์–ด ์ •๋ณดํ†ต์‹ ... blog.naver.com (1) ๋ธŒ๋กœ๋“œ์บ์ŠคํŠธ ๋ฆฌ์‹œ๋ฒ„๋ฅผ ์ด์šฉํ•ด ๋ฐœ์‹ ์ „ํ™”๋ฅผ ๊ฐ€๋กœ์ฑ„๊ธฐ ์œ„ํ•œ ํด๋ž˜์Šค๋ฅผ ์ƒ์„ฑํ•œ๋‹ค. (2) ์ „ํ™” .. 2022. 8. 23.
๋ชจ๋ฐ”์ผ ํ•ดํ‚น - ์•ˆ๋“œ๋กœ์ด๋“œ RAT(AndroRAT) ๋‹ค์šด๋กœ๋“œ ๋ฐ ๊นƒํ—ˆ๋ธŒ ์ฃผ์†Œ https://github.com/karma9874/AndroRAT GitHub - karma9874/AndroRAT: A Simple android remote administration tool using sockets. It uses java on the client side and pyth A Simple android remote administration tool using sockets. It uses java on the client side and python on the server side - GitHub - karma9874/AndroRAT: A Simple android remote administration tool u... github.com ์„ค์น˜ gi.. 2022. 8. 23.
์‹œ์Šคํ…œ ํ•ดํ‚น - TPM์ด๋ž€? TPM(Trusted Platform Module) TPM์€ ํ•˜๋“œ์›จ์–ด์ ์œผ๋กœ ์—ฌ๋Ÿฌ ๊ฐ€์ง€ ๋ณด์•ˆ ๊ธฐ๋Šฅ์„ ์ œ๊ณตํ•˜๊ธฐ ์œ„ํ•œ ๋ชจ๋“ˆ์ด๋‹ค. ๋ฐฑ์‹ ๊ณผ ๋‹ค๋ฅด๊ฒŒ ์†Œํ”„ํŠธ์›จ์–ด๊ฐ€ ์•„๋‹Œ ํ•˜๋“œ์›จ์–ด์ด๊ธฐ ๋•Œ๋ฌธ์— ๊ณต๊ฒฉ์ž๊ฐ€ TPM์„ ์กฐ์ž‘ํ•˜๋Š” ๊ฒƒ์ด ๊ฑฐ์˜ ๋ถˆ๊ฐ€๋Šฅํ•˜๋‹ค. TPM์—์„œ๋Š” ์•”ํ˜ธํ™” ํ‚ค ์ƒ์„ฑ๊ธฐ(RSA, SHA-1, ๋‚œ์ˆ˜์ƒ์„ฑ)๋ฅผ ํ†ตํ•ด์„œ ์•”ํ˜ธํ™” ํ‚ค๋ฅผ ์ƒ์„ฑํ•จ๊ณผ ๋™์‹œ์— ์ด ํ‚ค๋ฅผ ๋น„ํœ˜๋ฐœ์„ฑ ๋ฉ”๋ชจ๋ฆฌ์—๋‹ค๊ฐ€ ์•ˆ์ „ํ•˜๊ฒŒ ๋ณด๊ด€ํ•œ๋‹ค. ๋””์Šคํฌ ์•”ํ˜ธํ™” ์†Œํ”„ํŠธ์›จ์–ด๋กœ ์•Œ๋ ค์ง„ ๋น„ํŠธ๋ผ์ปค ๋˜ํ•œ ์ด TPM์—์„œ ๋งŒ๋“ค์–ด์ง„ ์•”ํ˜ธํ™” ํ‚ค๋ฅผ ํ†ตํ•ด์„œ ํŒŒ์ผ์˜ ์•”ํ˜ธํ™”, ๋ณตํ˜ธํ™”๊ฐ€ ์ด๋ฃจ์–ด์ง„๋‹ค. ๋‚ด PC์—์„œ TPM์„ ์ง€์›ํ•˜๋Š”์ง€ ํ™•์ธํ•˜๊ธฐ Windows 10 PC์— ์ด๋ฏธ TPM์ด ์žˆ๋Š”์ง€ ํ™•์ธํ•˜๋ ค๋ฉด ์‹œ์ž‘ > ์„ค์ • > ์—…๋ฐ์ดํŠธ ๋ฐ ๋ณด์•ˆ > Windows ๋ณด์•ˆ > ์žฅ์น˜ ๋ณด์•ˆ์œผ๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค. ์ด ์„น์…˜์ด ์žˆ๋Š” ๊ฒฝ.. 2022. 8. 21.
์‹œ์Šคํ…œ ํ•ดํ‚น - ์œˆ๋„์šฐ ๋กœ๊ทธ์ธ ๋‹จ๊ณ„๋ฅผ ์šฐํšŒํ•˜๋Š” ๋ฆฌ๋ˆ…์Šค USB ์‹ค์ œ ์‚ฌ๋ก€์™€ ์›๋ฆฌ http://www.hanuribiz.com/news/articleView.html?idxno=7536 ํ—ˆ์ˆ ํ–ˆ๋˜ ๋ณด์•ˆ์ด ์›์ธ…์•”ํ˜ธ ๋ฌด๋ ฅํ™”์‹œํ‚จ '๋ฆฌ๋ˆ…์Šค USB' ๋ž€? - ํ•œ์šฐ๋ฆฌ๊ฒฝ์ œ 7๊ธ‰ ๊ณต๋ฌด์› ์‹œํ—˜ ์‘์‹œ์ƒ์˜ ์ •๋ถ€์„œ์šธ์ฒญ์‚ฌ ์‚ฌ๋ฌด์‹ค์— ์นจ์ž…ํ•ด ์„ฑ์ ์กฐ์ž‘ํ•˜๋‹ค ๊ฒฝ์ฐฐ์— ์ฒดํฌ๋œ ์‚ฌ๊ฑด์œผ๋กœ ๊ณต๋ฌด์› ์กฐ์ง ๋ฟ๋งŒ์•„๋‹ˆ๋ผ ์ „๊ตญ๋ฏผ์ด ์ถฉ๊ฒฉ์— ๋น ์กŒ๋‹ค. ๋‹จ์ˆœ ์„ฑ์ ์กฐ์ž‘ ๋ฒ”์ฃ„๋ผ๊ธฐ๋ณด๋‹ค๋Š” ๊ตญ๊ฐ€๋ณด์•ˆ ๊ด€ www.hanuribiz.com ์œ„ ๊ธฐ์‚ฌ์ฒ˜๋Ÿผ ์‚ฌ์šฉ์ž PC์˜ ์œˆ๋„์šฐ ๋กœ๊ทธ์ธ ๋‹จ๊ณ„๋ฅผ ์šฐํšŒํ•˜์—ฌ ํ•˜๋“œ ์•ˆ์— ์žˆ๋˜ ์ค‘์š”ํ•œ ์ž๋ฃŒ๋ฅผ ์กฐ์ž‘ํ•œ ์‚ฌ๋ก€๊ฐ€ ์žˆ๋Š”๋ฐ ์ด๋Š” ๊ณ ๋„์˜ ์šฐํšŒ๊ธฐ์ˆ ์ด๋ผ๊ธฐ ๋ถ€๋ฅด๊ธฐ๋Š” ์• ๋งคํ•œ ๊ทธ์ € USB ๋ฉ”๋ชจ๋ฆฌ๋ฅผ ํ™œ์šฉํ•˜๋Š” ๋ฆฌ๋ˆ…์Šค์˜ ๋ผ์ด๋ธŒ USB๋ฅผ ์ด์šฉํ•œ ๊ณต๊ฒฉ ๋ฐฉ์‹์ด๋‹ค. ์›๋ž˜๋Š” ์œˆ๋„์šฐ ์šด์˜์ฒด์ œ์— ์˜ํ•ด์„œ ๋กœ๊ทธ์ธ ๋‹จ๊ณ„๋ฅผ ๊ฑฐ์ณ์•ผ๋งŒ ๋ถ€ํŒ…์ด ์™„๋ฃŒ๋˜์–ด .. 2022. 8. 21.
์›น ํ•ดํ‚น - ํด๋ผ์ด์–ธํŠธ์˜ ํ•‘๊ฑฐํ”„๋ฆฐํŠธ ํ™•์ธํ•˜๊ธฐ(ClientJS) const client = new ClientJS(); client.getBrowserData(); client.getFingerprint(); client.getCustomFingerprint(...); client.getUserAgent(); client.getUserAgentLowerCase(); client.getBrowser(); client.getBrowserVersion(); client.getBrowserMajorVersion(); client.isIE(); client.isChrome(); client.isFirefox(); client.isSafari(); client.isOpera(); client.getEngine(); client.getEngineVersion(); client.g.. 2022. 8. 15.
์•”ํ˜ธ - ๋‹ˆ๋ชจ๋‹‰(Mnemonic) ๋‹ˆ๋ชจ๋‹‰(Mnemonic)์ด๋ž€ ์ง€๊ฐ‘์„ ๋ณต๊ตฌํ•˜๊ธฐ ์œ„ํ•œ 12๊ฐœ์˜ ๋‹จ์–ด์ด๋‹ค. ๊ฐœ์ธ ํ‚ค๊ฐ€ ๋„ˆ๋ฌด ๋ณต์žกํ•œ ๋‹จ์–ด๋“ค๋กœ ๊ตฌ์„ฑ๋˜์–ด ์žˆ๊ธฐ ๋•Œ๋ฌธ์—, ์ด๋ฅผ ์‰ฝ๊ฒŒ ์ž…๋ ฅํ•  ์ˆ˜ ์žˆ๋„๋ก ๊ฐ–์ถฐ์ง„ ํ˜•์‹์ด๋‹ค. ๋‹ˆ๋ชจ๋‹‰์˜ ์–ด์›์€ ๊ทธ๋ฆฌ์Šค ์‹ ํ™”์˜ ๊ธฐ์–ต์˜ ์—ฌ์‹  ๋ฏ€๋„ค๋ชจ์‹œ๋„ค(Mnemosyne)์—์„œ ์œ ๋ž˜๋˜์—ˆ๋‹ค. ์ถœ์ฒ˜: http://wiki.hash.kr/index.php/%EB%8B%88%EB%AA%A8%EB%8B%89 ๋‹ˆ๋ชจ๋‹‰ - ํ•ด์‹œ๋„ท ๋‹ˆ๋ชจ๋‹‰(Mnemonic)์ด๋ž€ ์ง€๊ฐ‘์„ ๋ณต๊ตฌํ•˜๊ธฐ ์œ„ํ•œ 12๊ฐœ์˜ ๋‹จ์–ด์ด๋‹ค. ๊ฐœ์ธ ํ‚ค๊ฐ€ ๋„ˆ๋ฌด ๋ณต์žกํ•œ ๋‹จ์–ด๋“ค๋กœ ๊ตฌ์„ฑ๋˜์–ด ์žˆ๊ธฐ ๋•Œ๋ฌธ์—, ์ด๋ฅผ ์‰ฝ๊ฒŒ ์ž…๋ ฅํ•  ์ˆ˜ ์žˆ๋„๋ก ๊ฐ–์ถฐ์ง„ ํ˜•์‹์ด๋‹ค. ๋‹ˆ๋ชจ๋‹‰์˜ ์–ด์›์€ ๊ทธ๋ฆฌ์Šค ์‹ ํ™” wiki.hash.kr 2022. 8. 11.
728x90
๋ฐ˜์‘ํ˜•