ÇÁ·Î±×·¡¹Ö

 3204, 8/161 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ¹Ùº¼ÀÌ
   À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù..

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_programming&no=2455 [º¹»ç]


À©µµ¿ì¿¡¼­ ·Î¿ì¼ÒÄÏÀ¸·Î TCP ÆÐŶÀ» º¸³»´Â ¿¬½ÀÀ» Á» ÇÏ°íÀÖ¾ú´Âµ¥¿ä,

·Î¿ì¼ÒÄÏÀ» ¸¸µå´Â°Ç µÇ´Âµí Çѵ¥ ÆÐŶÀÌ ¾È º¸³»Áö´õ±º¿ä...

±×·¡¼­ °Ë»öÀ» ÇØ º» °á°ú Windows XP SP2 ºÎÅÏ º¸¾ÈÀ» À§ÇØ ·Î¿ì¼ÒÄÏ ±â´ÉÀ» ´ëºÎºÐ ¸ø ¾²°Ô Çسõ¾Ò´Ù´Â ±ÛÀ» ¿©·µ ¹ß°ßÇß½À´Ï´Ù.

±× ±Û Áß Çϳª:
Windows XP SP2 - Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.

..¹Þ´Â °Ç µÇ´Âµ¥ º¸³»´Â°Ç ICMP, IGMP, º¯Á¶µÇÁö ¾ÊÀº IPÇì´õ¸¦ °¡Áø UDP ¸¸ÀÌ µÈ´Ù°í ³ª¿ÍÀÖ½À´Ï´Ù.



..¶ó°í Çϴµ¥ ¸Ç óÀ½ °Ë»öÇÒ¶§ ºÃ´ø ±Û:
(WinPcap.txt)
WinPcap À» ÀÌ¿ëÇÑ raw¼ÒÄÏ¿¡ ´ëÇÑ ¹®¼­ÀÔ´Ï´Ù. ¹ÞÀ»¶© WinPcapÀ», º¸³¾¶© libnet ¶óÀ̺귯¸®¸¦ ÀÌ¿ëÇÏ¸é µÈ´Ù°í ¼³¸íµÇ¾î Àֳ׿ä.

À§ ±Û¿¡¼± ¾ÈµÈ´Ù, ¹Ø ±Û¿¡¼± µÈ´Ù, ÇÏ´Ï Àú´Â È¥µ·¿¡ ÈÛ½ÎÀ̱⠽ÃÀÛÇß½À´Ï´Ù. -_-


Á¤¸» libnetÀ¸·Î full raw socket packetÀ» º¸³¾¼ö Àִ°ǰ¡¿ä?
±×µ¿¾È °ü½Éµµ º°·Î ¾ø¾ú´ø ÅͶó È®½ÇÇÑ »ç¿ë¹ýÀ» ¸ô¶ó ¾ÆÁ÷ libnetÀ» ½áº¸Áø ¾Ê¾Ò½À´Ï´Ù.

libnetÀÌ ÇÒ¼ö ¾ø´Ù¸é Àú´Â µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ ÇؾßÇÏ´Â? Áö°æ±îÁö À̸£°Ô µÇ¾î¹ö¸³´Ï´Ù ¤Ì¤Ì


ÀÏ´Ü »ðÁú¿¡ µé¾î°¡±â Àü¿¡ ´ë°­ Á¤º¸µéÀ» ¾ò°í ½Í½À´Ï´Ù..

1. libnet À¸·Î raw socket TCP packet Àü¼ÛÀÌ 100% °¡´ÉÇÑÁö.
2. µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ Çϴ°ÍÀÌ °¡´ÉÇÏ´Ù¸é, ¾î¶»°Ô ÇؾßÇÏ´ÂÁö.
3. À©µµ¿ìÀÇ ¼û°ÜÁø ±â´ÉÀÌ¶óµµ ÀÖ´ÂÁö.

ÁÁÀº ´äº¯ Áֽø®¶ó ¹Ï½À´Ï´Ù.

°¨»çÇÕ´Ï´Ù.


PS
¿¹»óµÇ´Â ´äº¯µé¤Ì

1. ±¸Â÷ÇÏ°Ô À©µµ¿ì¼­ ÇÏÁö¸»°í ¸®´ª½º¿¡¼­ Çضó : À©µµ¿ì¼­ Çغ¸°í ½ÍÀ¸´Ï±î Áú¹®ÇÏ´Â °Ì´Ï´Ù. Èæ

2. libnet »ç¿ëºÎÅÍ Çغ¸°í Áú¹®Çضó : Áö±ÝºÎÅÍ Çغ¼°Ì´Ï´Ù¸¸.. '´ë°­ Á¤º¸¸¦ ¾ò°í ½Í½À´Ï´Ù'¶ó°í À§¿¡..

3. ¹«´äº¯ : À¸¾Æ¾Æ¾Ç Áö±Ý±îÁö ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû¾î!!!

  Hit : 5993     Date : 2010/05/21 09:52



    
gladia ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû´Ù±æ·¡... °Ë»öÁ»Çغôµ¥¿ä,

Raw Sockets and Windows

First of all, it must be understood very clearly that raw sockets is not a feature of the network API (although it must be present there as an option) but of the OS protocol stack. To implement raw sockets, all we have to do is to inform the OS that the packet buffer we are providing will have the header and so the OS should transmit it as is without "adding any header"; that's all, nothing more to do. The Unix operating system has raw socket support since ancient times. But the problem is with Windows. None of Windows 95, 98, 98SE supported raw sockets. Raw sockets became available on Windows from Windows 2000; Windows XP continued this. But suddenly, raw socket support was removed from Windows XP through a patch in SP2. Vista probably doesn't have it. Windows 95, 98, 98SE do not support raw sockets, but this doesn't end the story. If you want the facility, then the solution is to use a third party packet driver like Winpcap. Such packet drivers will do your task irrespective of what the OS likes and dislikes. Windows XP and XP SP1 have full raw socket support and so life is easy. So if you want to do raw socketing on Windows, then either use Winpcap or don't feel desperate to install SP2, or otherwise use Windows 2003 which, as per my knowledge, has raw socket support. So let's brief up.

1. Windows 95, 98, 98SE, NT4.0 -- Only raw ICMP and IGMP with restricted features.
2. Windows 2000, XP, XP SP1, 2003 -- Full raw socket support for both receiving and sending purposes.
3. Windows XP SP2 -- Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.


À©µµ¿ìÀÚü¿¡¼­ RAW Socket À» ¼­Æ÷Æ®ÇØÁÖÁö ¾Ê±â¶§¹®¿¡ Winpcap À̶ó´Â º°µµ¿¡ µå¶óÀ̹ö? ÇÁ·Î±×·¥? À» »ç¿ëÇؼ­ º¸³¾¼öÀִٴ°ų»¿ä. °á±¹ À©µµ¿ì´Â ¸øÇÏ°ÔÇسùÁö¸¸ Æí¹ýÀ¸·Î WINPCAP À» ¾²´Â°Å°°³»¿ä.
2010/05/22  
¹Ùº¼ÀÌ WinPcapÀº ¹Þ´Â°Í¸¸ °¡´ÉÇÏ´Ù°í µé¾ú´Âµ¥¿ä.. 2010/05/22  
3064   [PHP] <¼¼¼Ç À¯Áö> ¿¡ ´ëÇÑ Áú¹®ÀÔ´Ï´Ù..[5]     U_SoRang
05/07 6149
3063   ÄÄÇ»ÅÍ ÇÁ·Î±×·¡¸Ó ÀÚ°ÝÁõ ¸»Àä[6]     gkswls123
03/12 6099
3062   [VC] Help -> Index -> MSDNÄ÷º¼ÇÀÌ ¾ø½À´Ï´Ù.     ¿µ¿øÇÑ°øºÎ
07/02 6095
3061   win 32 api ·Î ¹ÂÁ÷Ç÷¹ÀÌ¾î ¸¸µé±â     khfs200
05/25 6084
3060   ¾î¼Àºí¸®¾î, ±â°è¾î ¹è¿öº¸·Á°íÇϴµ¥¿ä ¤Ð[6]     hygasyde
01/24 6075
3059   µð¹ö±ëÀ̶õ? ½ßÃʺ¸¶ó ¤Ð¤Ð [3]     milkily
10/12 6068
3058   cp¸í·É¾î ±¸ÇöÁßÀä À߸øµÈÁ¡Á» ÁöÀûÇØÁÖ¼¼¿ä[1]     hehesk
09/16 6067
3057   MFC ¸ÅÅ©·Î ¸¸µé±â Áú¹®![1]     musalhk
02/15 6065
  À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù..[2]     ¹Ùº¼ÀÌ
05/21 5992
3055   [c¾ð¾î] Å°,³ªÀÌ,¼ºº°ÀÔ·ÂÇϸé ÇÑÁÙ·Î ¶ß°ÔÇÒ·Á°íÇϴµ¥ ,, ¿¡·¯°¡..[3]     SKTCTO
03/25 5986
3054   [c¾ð¾î]vc 2010 error [c++ ÇÁ·ÎÁ§Æ®¿¡ intellisense ¹× °Ë»ö Á¤º¸ »ç¿ë ºÒ°¡]     goldbear564
01/20 5980
3053     [re] c 몆°¡Áö ¸í·É¾îÁ» Áú¹®ÀÌ¿ä!![1]     indra
09/05 5979
3052     [re] C¾ð¾î ¸»Àä..^^;     ¼ÒÀ¯
09/12 5944
3051   ¾î¼Àºí¸®...[7]     µÎ·ç¹¶¼ú
02/28 5935
3050   ¸®´ª½º ³×Æ®¿öÅ© ÇÁ·Î±×·¥ ¼Ò½ºÄÚµå ±¸ÇÏ°í ½ÍÀºµ¥¿ä.[1]     aiurchar
09/16 5907
3049   [ASP]ASP¿¡¼­ rs.open¿¡¼­ ¿À·ù°¡ ³ª³×¿ä[2]     Çܺ¸Ä­²ÊÂîÂÞ
12/03 5886
3048   c ‘p°¡Áö ¸í·É¾îÁ» Áú¹®ÀÌ¿ä!![1]     darkstar12
09/04 5853
3047     [re] ÆäÀÌÁö ·Îµù½Ã Áñ°Üã±â ÀÚµ¿À¸·Î Ãß°¡µÇ±âÁ» °¡¸£ÃÄ ÁÖ¼¼¿ä     ¼ÒÀ¯
09/13 5827
3046   C¾ð¾î ¸»Àä..^^;[1]     canrose
09/06 5825
3045   include & link Áú¹®Àä // c ¾ð¾î¿ä //[2]     tack7
12/18 5807
[1][2][3][4][5][6][7] 8 [9][10]..[161]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org