1583, 1/80 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   whqkdnf000
   netcatÀÇ ¼Ò°³(1)

http://www.hackerschool.org/HS_Boards/zboard.php?id=Free_Lectures&no=635 [º¹»ç]


NetcatÀÇ ¼Ò°³

Netcat(ÀÌÇÏ nc·Î Ç¥±â)Àº Network connection ¿¡¼­ raw-data read, write¸¦ ÇÒ¼ö ÀÖ´Â À¯Æ¿¸®Æ¼ ÇÁ·Î±×·¥ÀÌ´Ù. ÀϹÝÀûÀ¸·Î´Â UNIXÀÇ cat°ú ºñ½ÁÇÑ »ç¿ë¹ýÀ» °¡Áö°í ÀÖÁö¸¸ catÀÌ ÆÄÀÏ¿¡ ¾²°Å³ª ÀеíÀÌ nc´Â network connection¿¡ Àаųª ¾´´Ù. ÀÌ°ÍÀº ½ºÅ©¸³Æ®¿Í º´¿ëÇÏ¿© network¿¡ ´ëÇÑ debugging, testing tool·Î½á ¸Å¿ì Æí¸®ÇÏÁö¸¸ ¹Ý¸é ÇØÅ·¿¡µµ ÀÌ¿ë¹üÀ§°¡ ¸Å¿ì ³Ð´Ù.

Options
--------------------------------------------------------------------------

usage: nc [options] [target host] [ports]

-n : È£½ºÆ® ³×ÀÓ°ú Æ÷Æ®¸¦ ¼ýÀڷθ¸ ÀԷ¹޴´Ù.

-v : verbosity ¸¦ Áõ°¡ ½ÃŲ´Ù. ´õ ¸¹Àº Á¤º¸¸¦ ¾òÀ»¼ö ÀÖ´Ù.

-o [filename]: º¸³»°Å³ª ¹ÞÀº µ¥ÀÌÅ͸¦ Çí½º´ýÇÁÇÏ¿© ÆÄÀÏ¿¡ ÀúÀåÇÑ´Ù.

-u : TCP connection ´ë½Å¿¡ UDP connection ÀÌ ÀÌ·ç¾î Áø´Ù.

-p [port number or name]: local-port ¸¦ ÁöÁ¤ÇÑ´Ù. ÁÖ·Î -l °ú °°ÀÌ »ç¿ëÇÏ°Ô µÈ´Ù.

-s [ip address or DNS]: local ip address ¸¦ ÁöÁ¤ÇÑ´Ù. ¸ðµç Ç÷¿Æû¿¡¼­ Áö¿øµÇÁö´Â ¾Ê´Â´Ù.

-l : listen ¸ðµå·Î ncÀ» ¶ì¿ì°Ô µÈ´Ù. ´ç¿¬È÷ target host´Â ÀÔ·ÂÇÏÁö ¾Ê´Â´Ù. -p¿Í °°ÀÌ »ç¿ëÇÏ°Ô µÈ´Ù. nc¸¦ server ·Î¼­ ¾µ¶§ »ç¿ë.

-e [filename]: -DGAPING_SECURITY_HOLE ¿É¼ÇÀ¸·Î Make µÇ¾úÀ» ¶§ »ç¿ë°¡´ÉÇÏ´Ù.
connection ÀÌ ÀÌ·ç¾î Á³À» ¶§ fileÀ» exec ½ÃŲ´Ù. -l °ú °°ÀÌ »ç¿ëµÇ¸é ÇÑ instance¸¸À» »ç¿ëÇÏ´Â inetd¿Í ºñ½ÁÇÏ´Ù.

-t : -DTELNET ¿É¼ÇÀ¸·Î ÄÄÆÄÀÏ µÇ¾úÀ» ¶§ »ç¿ë°¡´ÉÇÏ´Ù. telnetd¿¡ Á¢¼ÓÀÌ °¡´ÉÇϵµ·Ï
Á¢¼Ó½Ã telnet°ú °°Àº Çù»ó°úÁ¤À» °ÅÄ£´Ù.

-i [interval time]: nc´Â ÀϹÝÀûÀ¸·Î 8K ¾¿ µ¥ÀÌÅ͸¦ º¸³»°í ¹Þ´Âµ¥ ±×·¸°Ô Standard inputÀÇ ÇÑ ¶óÀξ¿ interval time¸¶´Ù º¸³»°Ô µÈ´Ù.

-z : connectionÀ» ÀÌ·ç±âÀ§ÇÑ ÃÖ¼ÒÇÑÀÇ µ¥ÀÌÅÍ ¿Ü¿¡´Â º¸³»Áö ¾Êµµ·Ï ÇÏ´Â ¿É¼Ç.

-r : port ÁöÁ¤ÀÌ ¿©·¯°³·Î µÇ¾î ÀÖÀ¸¸é À̶§ scanning ¼ø¼­¸¦ randomizeÇÏ°í (ÀϹÝÀûÀ¸·Î ¹üÀ§·Î ÁöÁ¤ÇÏ¸é ³ôÀº ¹øÈ£ÀÇ Æ÷Æ®ºÎÅÍ ½ºÄµÇÑ´Ù) ¶ÇÇÑ -p ¿É¼Ç¿¡¼­ ÁöÁ¤°¡´ÉÇÑ local portµµ randomizeÇÑ´Ù. À̶§ ÁÖÀÇ ÇÒ °ÍÀº -p°¡ -rÀ» override ÇÑ´Ù´Â °ÍÀÌ´Ù.

-g : ??

-G : ??

Using
--------------------------------------------------------------------------

multi-port connection

nc´Â ÇÑ È£½ºÆ®¿¡ ÇÑ ¹ø¿¡ ¿©·¯ connection À» ¸¸µé¼ö ÀÖ´Ù. ÀÌ ¶§ ´ÙÀ½°ú °°ÀÌ ¿©·¯°³ÀÇ Æ÷Æ®¸¦ ±â¼úÇÒ ¼ö ÀÖ´Ù.
nc [target host] 20-30

À̶§ std inputÀ¸·Î ÀԷµǴ µ¥ÀÌÅÍ´Â ÇѲ¨¹ø¿¡ º¸³»Áö°Ô µÈ´Ù.

port scanning

target host ÀÇ ÁöÁ¤µÈ ¹üÀ§³»¿¡¼­ÀÇ ¾î¶² Æ÷Æ®°¡ ¾î¶»°Ô »ç¿ëµÇ°í ÀÖ´Â °¡¸¦ °Ë»öÇÒ ¼ö ÀÖ´Ù.
nc -v -w 3 -z sparcs.kaist.ac.kr 20-30, 70-90

À§ÀÇ ¸í·ÉÀº ´ÙÀ½ °á°ú¿Í °°ÀÌ 20-30, 70-90 ±îÁöÀÇ Æ÷Æ®µé¿¡ ´ëÇÑ Á¤º¸¸¦ º¸¿©ÁØ´Ù.

sparcs.kaist.ac.kr [143.248.8.2] 25 (smtp) open
sparcs.kaist.ac.kr [143.248.8.2] 23 (telnet) open
sparcs.kaist.ac.kr [143.248.8.2] 21 (ftp) open
sparcs.kaist.ac.kr [143.248.8.2] 80 (http) open
sparcs.kaist.ac.kr [143.248.8.2] 79 (finger) open
sparcs.kaist.ac.kr [143.248.8.2] 70 (gopher) open

À̰ͺ¸´Ù ´õ ÀÚ¼¼ÇÑ Á¤º¸¸¦ ¾ò°íÀÚ ÇÒ¶§´Â

echo QUIT | nc -v -w 3 [target host] [ports]

¶ó°í Çϸé ÀÀ´äÀ̳ª ¿¡·¯¸Þ¼¼Áö·ÎºÎÅÍ ¹öÀüÁ¤º¸µîµµ ¾òÀ» ¼ö ÀÖ´Ù.

[songa@sparcs.kaist.ac.kr] ~ 13 echo QUIT | nc -v -w 3 sparcs 20-30, 70-90
sparcs.kaist.ac.kr [143.248.8.2] 25 (smtp) open
220 sparcs.kaist.ac.kr ESMTP Sendmail 8.8.7/8.8.7; Fri, 8 Jan 1999 15:21:36
+0900
221 sparcs.kaist.ac.kr closing connection
sparcs.kaist.ac.kr [143.248.8.2] 23 (telnet) open
   sparcs.kaist.ac.kr [143.248.8.2] 21 (ftp) open
220 sparcs.kaist.ac.kr FTP server (Version wu-2.4.2-academ[BETA-18](1) Mon Aug 3
19:17:20 EDT 1998) ready.
221 Goodbye.
sparcs.kaist.ac.kr [143.248.8.2] 80 (http) open
sparcs.kaist.ac.kr [143.248.8.2] 79 (finger) open
finger: QUIT: no such user.
sparcs.kaist.ac.kr [143.248.8.2] 70 (gopher) open


simple data transfer agent

nc¸¦ ÀÌ¿ëÇØ °£´ÜÇÑ data Àü¼ÛÀ» ÇÒ ?ÀÖ´Ù.
receiver : nc -l -p 1234 | uncompress -c | tar xvfp -

sender : tar cfp - /some/dir | compress -c | nc -w 3 othermachine 1234


substitute of inetd

nc¸¦ ÀÌ¿ëÇØ inetd¿¡ µî·ÏÇÏÁö ¾Ê°í, º°´Ù¸¥ ³×Æ®¿÷ ¼³Á¤ ¾øÀÌ ÇÁ·Î±×·¥À» Å×½ºÆ®ÇÒ ¼ö ÀÖ´Ù.
nc -l -p [port] -e [filename]


/*test.c*/
#include < stdio.h >
main(){
getchar();
printf("<html><head></head><body>ÇáÇÏ</body></html>\n");


nc -l -p 1234 -e test

ÀÌ·¸°Ô ÇÏ¸é °£ÀÌ www server µµ µÈ´Ù.

connection redirecting
inetd.confÀ» ¾Æ·¡¿Í °°Àº Çü½ÄÀ¸·Î °íÃļ­ ´Ù¸¥ ¼­¹ö·Î redirectingÀ» ÇÒ¼ö ÀÖ´Ù.

www stream tcp nowait /etc/tcpd /bin/nc -w 3 zero 80

À§ÀÇ °ÍÀº ÇöÀç ¼­¹ö¿¡¼­ http¼­ºñ½º¸¦ zero¼­¹ö·Î redirect½ÃÄ×´Ù.

performance testing

nc¸¦ ÀÌ¿ëÇؼ­ Å« µ¥ÀÌÅ͸¦ ¼­·Î º¸³»°í ¹ÞÀ½À¸·Î½á networkÀÇ performance¸¦ Å×½ºÆ®ÇÒ¼öÀÖ´Ù.
[songa@sparcs.kaist.ac.kr] /etc 31 > yes AAAA | nc -v -v -l -p 1234 > /dev/nul&
[1] 3258 3259
[songa@sparcs.kaist.ac.kr] /etc 32 > listening on [any] 1234 ...
[songa@sparcs.kaist.ac.kr] /etc 32 >
[songa@sparcs.kaist.ac.kr] /etc 32 >
[songa@sparcs.kaist.ac.kr] /etc 32 > yes BBBB | nc sparcs 1234 > /dev/null &
[2] 3475 3476
[songa@sparcs.kaist.ac.kr] /etc 33 > connect to [143.248.8.2] from sparcs.kaisac.kr
[143.248.8.2] 31844
[songa@sparcs.kaist.ac.kr] /etc 33 > kill %
[songa@sparcs.kaist.ac.kr] /etc 34 > sent 23470080, rcvd 21675480





±×¸®°í

http://www.wowhacker.com/BoArD/view.php?id=abc_lecture&page=1&category=&sn=off&ss=on&sc=on&keyword=netcat&select_arrange=headnum&desc=asc&no=152

¿©±âµµ ÀÖ±¸¿ä..

Áö±ÝºÎÅÍ ¾Æ·¡³»¿ëÀÇ ¹®¼­´Â

http://security.xmecca.comÀÇ Oprix´ÔÀÌ ¾²½Å ±ÛÀÔ´Ï´Ù

  Hit : 8911     Date : 2007/02/22 03:59



    
pinode ¦¦¦ 2007/08/12  
kjund1 ÀÌ°Å netstat¶û ½ÇÇà¹æ¹ý ´Ù¸¥°Å¿¡¿ä?? 2007/10/14  
     [°øÁö] °­Á¸¦ ¿Ã¸®½Ç ¶§´Â ¸»¸Ó¸®¸¦ ´Þ¾ÆÁÖ¼¼¿ä^¤Ñ^ [29] ¸Û¸Û 02/27 18820
1582   ¸®´ª½º À¥ ·Î±× ºÐ¼®     ÇØÅ·ÀßÇÏ°í½Í´Ù
05/20 4
1581   ¸®´ª½º/À©µµ¿ì º¸¾È Àåºñ ·Î±×     ÇØÅ·ÀßÇÏ°í½Í´Ù
05/20 4
1580   °í¼ö´ÔµéÀÇ µµ¿òÀ» ¹Þ°í ½Í½À´Ï´Ù     vbnm111
02/11 282
1579   ¸®´ª½º Ä¿³Î 2.6 ¹öÀü ÀÌÈÄÀÇ LKM     jdo
07/25 780
1578   ½©ÄÚµå ¸ðÀ½     ÇØÅ·ÀßÇÏ°í½Í´Ù
01/15 1613
1577   Call by value VS Call by Reference     ÇØÅ·ÀßÇÏ°í½Í´Ù
01/15 981
1576   (²Ä¼ö) L.O.B Çѹ濡 Ŭ¸®¾îÇϱâ[2]     ÇØÅ·ÀßÇÏ°í½Í´Ù
01/14 1333
1575   towelroot.c (zip) ÄÚ¸àÆÃ.[1]     scube
08/18 3853
1574   levitator.c (¾Èµå·ÎÀÌµå ·çÆÃ) °ø°Ý ºÐ¼® ¼Ò½º ÄÚµå °øÀ¯.[4]     scube
08/17 3751
1573   ¹«·á Á¤º¸º¸¾È ±â¼úÀÎÀç ¾ç¼º °úÁ¤ ±³À°»ý ¸ðÁý     chanjung111
06/17 4567
1572   K-Shield ÁִϾî 5±â ¸ðÁý     lrtk
06/17 4287
1571   [ÆÁ] ÆÄÀ̽ã 2¼Ò½º¸¦ 3À¸·Î º¯°æÇØÁÖ´Â »çÀÌÆ®[3]     ÇѽÂÀç
05/13 3986
1570   ±¸±Û ¹é¸µÅ© ÀÛ¾÷ Áú¹®¿ä     wkatnxka
03/30 3422
1569   [ÆÁ] ¿ìºÐÅõ ¹Ì·¯¸µ¼­¹ö     ÇѽÂÀç
03/09 4114
1568 ºñ¹Ð±ÛÀÔ´Ï´Ù  °¨À»¸øÀâ°Ú³×¿ä¤Ì¤Ì     À×À×À×
01/15 3
1567   µ¥ºñ¾È °è¿­ ¸®´ª½º ÀÇÁ¸¼º ±úÁ³À»¶§ ÇØ°á¹ý     ÇѽÂÀç
11/27 4607
1566   È«º¸ÇÕ´Ï´Ù. ½Å»ý º¸¾ÈÄ¿¹Â´ÏƼÀÔ´Ï´Ù.     kimwoojin0952
10/26 4329
1565   ½Å±âÇÑ ÇÁ·Î±×·¡¹Ö ¾ð¾î[3]     koreal33t
09/06 4721
1564   À©µµ¿ì,¸®´ª½º¿¡¼­ ³» ip¸¦ È®ÀÎÇØ º¸ÀÚ [1]     koreal33t
09/06 3924
1 [2][3][4][5][6][7][8][9][10]..[80]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org