|
http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=36733 [º¹»ç]
http://www.hackerschool.org/Sub_Html/HS_Community/index.html?Type=Board&BID=Free_Board
[»ó±âÇÑ ÁÖ¼Ò¿¡ ´ñ±Û·Î ´Þ¸° ³»¿ëÀÌ Á¦ ±Ã±ÝÁõ¿¡ ´ëÇÑ ÇØ°áÀÌ ¸Â´ÂÁö ¾Æ¸®¼ÛÇØ¼¿ä..¤¾¤¾;;]
1)
ÀÌ ¹®Á¦¸¦ Ç® ¶§ Á¦ÀÏ ±ä°¡¹Î°¡ÇÑ °ÍÀÌ..
$finger level4@localhost
ÀÌ·¸°Ô ¸í·É¾î¸¦ ÀÔ·ÂÇϸé
"finger ¸í·É¾î·Î localhost¿¡ Á¢¼ÓÇÏ¿© level4ÀÇ °èÁ¤Á¤º¸¸¦ Ãâ·ÂÇ϶ó"
°¡ ¸Â³ª¿ä?
2)
À̶§, @localhost¸¦ ºÙÀÌ´Â ÀÌÀ¯°¡
$finger
ÀÌ·¸°Ô ¸í·É¾î¸¦ ±âÀÔÇÒ ¶§ ½ÇÇàµÇ´Â finger ¸í·É¾î´Â
$echo $PATH
¸¦ ÅëÇØ¼ ãÀ» ¼ö ÀÖ´Â
/usr/bin µð·ºÅ͸®¿¡ ÀúÀåµÈ finger À̱⠶§¹®¿¡
xinetd¶ó´Â ½´ÆÛµ¥¸ó ¾È¿¡ backdoor·Î º¯ÁúµÈ(?) finger ¸¦ ½ÇÇàÇϱâ
À§Çؼ´Â level4¿¡ Á¢¼ÓÇØ¼ finger¸¦ ½ÇÇà½ÃÄѾßÇϱ⠶§¹®Àΰ¡¿ä..??
¸¸¾à ±×·¸´Ù¸é, fingerÀÇ »ç¿ë¹ýÀ¸·Î ¾Ë·ÁÁø
$finger
$finger @addr
´Â ¼·Î ¿ÏÀüÈ÷ ´Ù¸¥ finger¸¦ ÀǹÌÇÏ´Â °ÍÀΰ¡¿ä..?
(ÀüÀÚ´Â /usr/bin ÀÇ finger, ÈÄÀÚ´Â µ¥¸ó finger)
µÎ¼¾ø´Â Áú¹® Á˼ÛÇÕ´Ï´Ù.. |
Hit : 4928 Date : 2019/01/02 06:20
|