ÇÁ·Î±×·¡¹Ö

 3206, 1/161 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ¹Ùº¼ÀÌ
   À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù..

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_programming&no=2455 [º¹»ç]


À©µµ¿ì¿¡¼­ ·Î¿ì¼ÒÄÏÀ¸·Î TCP ÆÐŶÀ» º¸³»´Â ¿¬½ÀÀ» Á» ÇÏ°íÀÖ¾ú´Âµ¥¿ä,

·Î¿ì¼ÒÄÏÀ» ¸¸µå´Â°Ç µÇ´Âµí Çѵ¥ ÆÐŶÀÌ ¾È º¸³»Áö´õ±º¿ä...

±×·¡¼­ °Ë»öÀ» ÇØ º» °á°ú Windows XP SP2 ºÎÅÏ º¸¾ÈÀ» À§ÇØ ·Î¿ì¼ÒÄÏ ±â´ÉÀ» ´ëºÎºÐ ¸ø ¾²°Ô Çسõ¾Ò´Ù´Â ±ÛÀ» ¿©·µ ¹ß°ßÇß½À´Ï´Ù.

±× ±Û Áß Çϳª:
Windows XP SP2 - Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.

..¹Þ´Â °Ç µÇ´Âµ¥ º¸³»´Â°Ç ICMP, IGMP, º¯Á¶µÇÁö ¾ÊÀº IPÇì´õ¸¦ °¡Áø UDP ¸¸ÀÌ µÈ´Ù°í ³ª¿ÍÀÖ½À´Ï´Ù.



..¶ó°í Çϴµ¥ ¸Ç óÀ½ °Ë»öÇÒ¶§ ºÃ´ø ±Û:
(WinPcap.txt)
WinPcap À» ÀÌ¿ëÇÑ raw¼ÒÄÏ¿¡ ´ëÇÑ ¹®¼­ÀÔ´Ï´Ù. ¹ÞÀ»¶© WinPcapÀ», º¸³¾¶© libnet ¶óÀ̺귯¸®¸¦ ÀÌ¿ëÇÏ¸é µÈ´Ù°í ¼³¸íµÇ¾î Àֳ׿ä.

À§ ±Û¿¡¼± ¾ÈµÈ´Ù, ¹Ø ±Û¿¡¼± µÈ´Ù, ÇÏ´Ï Àú´Â È¥µ·¿¡ ÈÛ½ÎÀ̱⠽ÃÀÛÇß½À´Ï´Ù. -_-


Á¤¸» libnetÀ¸·Î full raw socket packetÀ» º¸³¾¼ö Àִ°ǰ¡¿ä?
±×µ¿¾È °ü½Éµµ º°·Î ¾ø¾ú´ø ÅͶó È®½ÇÇÑ »ç¿ë¹ýÀ» ¸ô¶ó ¾ÆÁ÷ libnetÀ» ½áº¸Áø ¾Ê¾Ò½À´Ï´Ù.

libnetÀÌ ÇÒ¼ö ¾ø´Ù¸é Àú´Â µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ ÇؾßÇÏ´Â? Áö°æ±îÁö À̸£°Ô µÇ¾î¹ö¸³´Ï´Ù ¤Ì¤Ì


ÀÏ´Ü »ðÁú¿¡ µé¾î°¡±â Àü¿¡ ´ë°­ Á¤º¸µéÀ» ¾ò°í ½Í½À´Ï´Ù..

1. libnet À¸·Î raw socket TCP packet Àü¼ÛÀÌ 100% °¡´ÉÇÑÁö.
2. µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ Çϴ°ÍÀÌ °¡´ÉÇÏ´Ù¸é, ¾î¶»°Ô ÇؾßÇÏ´ÂÁö.
3. À©µµ¿ìÀÇ ¼û°ÜÁø ±â´ÉÀÌ¶óµµ ÀÖ´ÂÁö.

ÁÁÀº ´äº¯ Áֽø®¶ó ¹Ï½À´Ï´Ù.

°¨»çÇÕ´Ï´Ù.


PS
¿¹»óµÇ´Â ´äº¯µé¤Ì

1. ±¸Â÷ÇÏ°Ô À©µµ¿ì¼­ ÇÏÁö¸»°í ¸®´ª½º¿¡¼­ Çضó : À©µµ¿ì¼­ Çغ¸°í ½ÍÀ¸´Ï±î Áú¹®ÇÏ´Â °Ì´Ï´Ù. Èæ

2. libnet »ç¿ëºÎÅÍ Çغ¸°í Áú¹®Çضó : Áö±ÝºÎÅÍ Çغ¼°Ì´Ï´Ù¸¸.. '´ë°­ Á¤º¸¸¦ ¾ò°í ½Í½À´Ï´Ù'¶ó°í À§¿¡..

3. ¹«´äº¯ : À¸¾Æ¾Æ¾Ç Áö±Ý±îÁö ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû¾î!!!

  Hit : 5981     Date : 2010/05/21 09:52



    
gladia ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû´Ù±æ·¡... °Ë»öÁ»Çغôµ¥¿ä,

Raw Sockets and Windows

First of all, it must be understood very clearly that raw sockets is not a feature of the network API (although it must be present there as an option) but of the OS protocol stack. To implement raw sockets, all we have to do is to inform the OS that the packet buffer we are providing will have the header and so the OS should transmit it as is without "adding any header"; that's all, nothing more to do. The Unix operating system has raw socket support since ancient times. But the problem is with Windows. None of Windows 95, 98, 98SE supported raw sockets. Raw sockets became available on Windows from Windows 2000; Windows XP continued this. But suddenly, raw socket support was removed from Windows XP through a patch in SP2. Vista probably doesn't have it. Windows 95, 98, 98SE do not support raw sockets, but this doesn't end the story. If you want the facility, then the solution is to use a third party packet driver like Winpcap. Such packet drivers will do your task irrespective of what the OS likes and dislikes. Windows XP and XP SP1 have full raw socket support and so life is easy. So if you want to do raw socketing on Windows, then either use Winpcap or don't feel desperate to install SP2, or otherwise use Windows 2003 which, as per my knowledge, has raw socket support. So let's brief up.

1. Windows 95, 98, 98SE, NT4.0 -- Only raw ICMP and IGMP with restricted features.
2. Windows 2000, XP, XP SP1, 2003 -- Full raw socket support for both receiving and sending purposes.
3. Windows XP SP2 -- Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.


À©µµ¿ìÀÚü¿¡¼­ RAW Socket À» ¼­Æ÷Æ®ÇØÁÖÁö ¾Ê±â¶§¹®¿¡ Winpcap À̶ó´Â º°µµ¿¡ µå¶óÀ̹ö? ÇÁ·Î±×·¥? À» »ç¿ëÇؼ­ º¸³¾¼öÀִٴ°ų»¿ä. °á±¹ À©µµ¿ì´Â ¸øÇÏ°ÔÇسùÁö¸¸ Æí¹ýÀ¸·Î WINPCAP À» ¾²´Â°Å°°³»¿ä.
2010/05/22  
¹Ùº¼ÀÌ WinPcapÀº ¹Þ´Â°Í¸¸ °¡´ÉÇÏ´Ù°í µé¾ú´Âµ¥¿ä.. 2010/05/22  
3206   SNSÇØÅ·ÀÌ µÇ³ª¿ë? µµ¿ÍÁÖ¼¼¿ä ¤Ð¤Ð¤Ð [2]     ÇÑä¹Î
02/28 359
3205   Ä¡Æ®¿£Áø °í¼öºÐ °è½Ç±î¿ä[1]     rjsdudals123
02/15 202
3204   ¿À·ù Á» ã¾ÆÁÖ¼¼¿ä [1]     marunim
05/30 935
3203 ºñ¹Ð±ÛÀÔ´Ï´Ù  124     minsub87
08/17 1
3202   c¾ð¾î segmentation fault:11 ¿À·ù Áú¹®µå¸³´Ï´Ù![2]     leebk1124
05/21 2016
3201   C++ÇÔ¼ö°ü·Ã Áú¹®ÀÌ¿¡¿ë!![3]     1999dylee
05/11 1849
3200   ÆÄÀ̽ã Áö¹® µå¸³´Ï´Ù.[1]     kksh1107
04/24 1592
3199   ¸®¹ö½ÌÀÇ ¼¼¹ø¤Š ²É - ¿ª¶û-     nninni79
04/20 2293
3198   ´Þ°í³ª ¹®¼­ ½©ÄÚµå[1]     ghjk645
03/24 1615
3197 ºñ¹Ð±ÛÀÔ´Ï´Ù  c¾ð¾î ¼Ò¼ö °ª     adwefq
04/29 0
3196   C¾ð¾î ¼Ò½ºÁú¹®ÀÔ´Ï´Ù![5]     an0088
01/05 5149
3195   C++ /// ºôµå ¿¡·¯ ¤Ð¤Ð[1]     guichanta
08/23 2401
3194 ºñ¹Ð±ÛÀÔ´Ï´Ù  c¾ð¾î µµ¿ÍÁÖ¼¼¿ä¤Ð¤Ð     su6339
04/06 0
3193   ÇØÅ·À» ¹è¿ì·Á°íÇϴµ¥[3]     zoodem04
03/26 4183
3192   c¾ð¾î¸¦ ¹è¿ì°í½Í¾î¿ä ![7]     dwc07238
02/11 4074
3191   ½ºÅÃÀÌ ½×ÀÌ´Â ¹æÇâ¿¡ °üÇؼ­!![1]     hackxx123
12/10 3525
3190   ÇØÅ·Åø¿¡¼­ ip ¾øÀÌ Çϵ忡 ½É´Â°Å¿¡´Â ¾î¶²°Ô ÀÖÀ»±î¿ä?[2]     aowlrgmlals
11/27 4292
3189   C¾ð¾î Çϴµ¥ double ½Ç¼ö¸¦ ³ÖÀºµ¥ ÀÚ²Ù 0.0ÀÌ ³ª¿Í¿ä[2]     fatou10336
11/20 3750
3188   dumpcode.h ÀÌÇØÁ» µµ¿ÍÁÖ¼¼¿ä .[1]     cm6418
11/06 3719
3187   c¾ð¾î ¾Ë°í¸®Áò Áú¹®ÀÔ´Ï´Ù.[3]     alstn8150
10/12 3746
1 [2][3][4][5][6][7][8][9][10]..[161]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org