1581, 33/80 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   bugfixer2
   ;cat À» »ç¿ëÇÏ´Â ÀÌÀ¯ .

http://www.hackerschool.org/HS_Boards/zboard.php?id=Free_Lectures&no=732 [º¹»ç]


°á·ÐÀº , '|' ¶§¹®¿¡ ;cat À» ºÙ¿©¾ß¸¸ µÇ´Â °Ì´Ï´Ù.

¤¡) (  A ¸í·É  ) | ./attackme   ÀÌ·± ÀÔ·ÂÀ» Çß´Ù¸é.

(perl -e 'print "\x32\xff\xff\xbf . . ..";cat)|./attackme ¶ó´Â ¿¹¸¦ µéÁÒ.

¤¡) °ú °°Àº ¹æ¹ýÀ» ÅëÇؼ­..

ÀÎÀÚÀü´Þ ¹æ½ÄÀÌ ¾Æ´Ñ, Ç¥ÁØÀÔ·Â(Å°º¸µå)À» ÅëÇØ µû·Î ÀÔ·ÂÀ» ¹Þ´Â

attackme ÇÁ·Î±×·¥ °°Àº °æ¿ì¶óµµ  '|' À» ÅëÇØ º¯¼ö¿¡ ³»°¡ ¿øÇÏ´Â °ªÀ» ³Ö¾î¼­

¿À¹öÇ÷ο츦 ½Ãų¼ö´Â ÀÖ¾úÁö¸¸.

attackme ÀÇ ÄÚµå Áß¿¡ system("/bin/sh") ¿¡ ÀÇÇØ »ý¼ºµÇ´Â ÇÁ·Î¼¼½º ¶ÇÇÑ

| ±âÁØÀ» ¿ÞÂÊ¿¡ ÀÖ´Â. ´Ù½Ã¸»Çؼ­ ( A ) ÀÚ¸®ÀÇ ÇÁ·Î¼¼½ºÀÇ Ç¥ÁØ Ãâ·Â ³»¿ëÀ»  

ÀԷ¹ÞÀ¸·Á°í Çϴ°ÅÁÒ..


*¿ø·¡ ½©(/bin/sh) ´Â ÇÁ·ÒÇÁÆ® $ ¸¦ ¶ç¿ì°í Ç¥ÁØÀÔ·Â(Å°º¸µå) ·ÎºÎÅÍ
ÀÔ·ÂÀ» ±â´Ù¸®´Â °ÍÀÌÁö¸¸...  À§ÀÇ °æ¿ì¿¡´Â | ¶§¹®¿¡
Å°º¸µå ´ë½Å ( A ) ÀÚ¸®ÀÇ ÇÁ·Î¼¼½ºÀÇ Ç¥ÁØÃâ·Â ³»¿ëÀ»
ÀԷ¹ÞÀ¸·Á ÇÑ´Ù´Â °ÅÁÒ..


Çåµ¥, ( A )ÀÚ¸®¿¡ ÀÖ´ø ÇÁ·Î¼¼½º°¡ Á¾·áµÇ¸é ´õÀÌ»ó ÀԷ¹ÞÀ» ³»¿ëÀÌ ¾ø±â ¶§¹®¿¡ Á¾·á µË´Ï´Ù.

µû¶ó¼­ ,ÆÄÀÌÇÁ ¿¬°áÀ» Áö¼ÓÀûÀ¸·Î À¯Áö½ÃÅ°±â À§Çؼ­

cat À» Çϳª ´õ Áý¾î³Ö¾î¼­ °è¼ÓÀûÀ¸·Î ( A ) ÀÚ¸®¿¡¼­ Ç¥ÁØÃâ·ÂÀ» ½Ãų¼ö ÀÖµµ·Ï

¸¸µé¾î Áִ°ÅÁÒ.. ±×°Ô ¹Ù·Î ;cat ÀÇ ¿ªÇÒ ÀÔ´Ï´Ù.


±×¸²À¸·Î ³ªÅ¸³»¾î º¸ÀÚ¸é..

perl  ===================    attackme (fget( ); ÆÄÀÌÇÁ·Î ³Ñ¾î¿Â°É ¹Þ°ÚÁÒ.)
|       ( ÆÄÀÌÇÁ )             |
|                              |
Ãâ·Â¸¶Ä¡°í Á¾·á.           system("/bin/sh"); ¶§¹®¿¡ ½© ÇÁ·Î¼¼½º ½ÇÇà.
                                |
(X¾øÀ½.) =  =   =  =  = =  =    {»õ·Î¿î ½©}
          (¿¬°á²÷±è)              => ÀÌ ½©Àº Ç¥ÁØÀÔ·Â(Å°º¸µå) ´ë½Å¿¡
                                  ÆÄÀÌÇÁ¸¦ ÅëÇØ ÀÔ·ÂÀ» ¹ÞÀ¸·ÁÇÑ´Ù.
                                  ÇÏÁö¸¸, perlÀº Á¾·áµÇ°í, ´õÀÌ»ó
                                  ÀԷ¹ÞÀ»°ªÀÌ ¾øÀ¸¹Ç·Î, terminateµÈ´Ù.

±×·¡¼­...  ( ) ºÎºÐ¿¡ ;cat À»³Ö°Ô µÇ¸é.

perl  ===================    attackme (fget();)
|       ( ÆÄÀÌÇÁ )             |
|                              |
Ãâ·Â¸¶Ä¡°í Á¾·á.           system("/bin/sh"); ¶§¹®¿¡ ½© ÇÁ·Î¼¼½º ½ÇÇà.
|                              |
cat   ====================  {»õ·Î¿î ½©}

;cat ¶§¹®¿¡
cat½ÇÇàµÇ°í Å°º¸µå·ÎºÎÅÍ ÀԷ±â´Ù¸®¸é¼­
ÀԷ¹ÞÀº³»¿ëÀ» Ç¥ÁØÃâ·ÂÀ¸·Î
º¸³»°í , ÀÌ°ÍÀº ÆÄÀÌÇÁ¸¦ µû¶ó ÀüÇØÁý´Ï´Ù.



Âü°í·Î..

(perl -e ' ';cat)|./attackme   ÀÌ·± ÇüŸ¦ µð¹ö±ëÇÏ·Á¸é

perl -e '...') > arg   ¸í·ÉÀ¸·Î Ãâ·Â³»¿ëÀ» ÆÄÀÏ¿¡´Ù ÀúÀåÇÑ´ÙÀ½

(gdb) r < ./arg  ÇÏ¸é µË´Ï´Ù.

µµ¿òÁֽŠIDNED ´Ô °¨»çÇÕ´Ï´Ù.¤¾

  Hit : 10541     Date : 2007/05/18 09:57



    
pinode ¦¦¦ 2007/08/12  
¼Ò¿ï ¦¦¦(2) 2010/05/04  
3rdlifer ¿À¿À ´ë¹Ú ¤£¤£¿ä 2012/01/09  
941   sdsdfdfgfh[4]     witched14
11/06 37694
940   ³×Æ®¿öÅ© ÇØÅ· ½ºÅ͵ð ÇϽǺРã¾Æ¿©[6]     kiriro
11/04 39112
939   bufffer over flow [BOF] test     ÇØÄ¿ Hades
10/24 38888
938   ³×Æ®¿öÅ© ±âº»¿ë¾î[7]     chlckdghsla
10/14 45336
937   ¸®´ª½º ±âº»¸í·É¾î~[6]     chlckdghsla
10/14 54119
936   net send°¡ ¾ÈµÇ¿ä[2]     dldvk9999
10/11 38491
935   ¾Æ±Û±¸¿ä[3]     dldvk9999
10/11 38312
934   ¸· °£Áö³ª°Ô ÇØÅ·ÇÏ°í½Í¾î¿ä[14]     dldvk9999
10/11 41021
933   [Á¤º¸] ÄÄÇ»ÅÍ ÀÚ°ÝÁõ ±âÃâ¹®Á¦ ¸ðÀ½ ÇÁ·Î±×·¥[5]     inwoox
09/26 40179
932   Ç÷¡½¬¸¦ ÀÌ¿ëÇÑ xss ÇØÅ·[3]     4irjuno
09/23 41454
931   ¹éÆ®·¢5 »ç¿ë¹ý/ÀÚ¼¼È÷Á» ¾Ë·ÁÁÖ¼¼¿ä[3]     cswcys
09/20 43384
930   [CTF] ³»°¡ ´©±ºÁö ¾Æ´Ï?     4irjuno
09/09 40038
929   [CTF] ½´ÆðÔÀÓÀÌ Á¶¾Æ¿ä.     4irjuno
09/09 40362
928   [CTF] ±â±«ÇÑ À½¾Ç Ç®ÀÌ[3]     4irjuno
09/09 42202
927   [CTF]Ä¿½ºÅÒ À¥ ºê¶ó¿ìÁ® Ç®ÀÌ     4irjuno
09/09 39939
926   [Á¤º¸] À©µµ¿ì ´Þ·Â ÇÁ·Î±×·¥[3]     4irjuno
09/09 41455
925   Á¦ ³×ÀÌÆ®¿Â ÁÖ¼Ò (ÇØÄ· cpu ¹ßÇ¥)...[6]     aalswn
09/02 38507
924   ÅÚ³ÝÀÌ¾ÈµÇ ÀÌ»óÇÏ°Ô¶ä[2]     dygks3157
09/02 37519
923     [re] ÅÚ³ÝÀÌ¾ÈµÇ ÀÌ»óÇÏ°Ô¶ä[1]     enrjfenrjf
05/10 33774
922   ÅÚ³ÝÀ̾ȵé¾î°¡Á®¿©[3]     dygks3157
08/28 39699
[1]..[31][32] 33 [34][35][36][37][38][39][40]..[80]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org