½Ã½ºÅÛ ÇØÅ·

 1576, 1/79 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   lht94
   level4 ¹®Á¦ Áú¹®µå¸³´Ï´Ù. ÇöÀç ftz ¿î¿µÇÏ°í °è½Ã´Â ºÐµµ ºÁÁÖ¼ÌÀ¸¸éÇÕ´Ï´Ù.

http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=1759 [º¹»ç]


finger ¼­ºñ½º°¡ level5 ±ÇÇÑÀ¸·Î ½ÇÇàµÇ´Â°ÍÀ» ÀÌ¿ëÇØ ¹®Á¦¸¦ ÇØ°áÇØ¾ßµÇ´Â°Ç ¾Ë°Ú½À´Ï´Ù.
±×·¡¼­ finger ¼­ºñ½ºÀÇ ½ÇÇàµÉ µ¥¸óÆÄÀÏ °æ·Î¸í¿¡ ¸Â°Ô ½ÇÇàÆÄÀÏÀ» ¸¸µé¾ú½À´Ï´Ù.

finger ¼­ºñ½ºÀÇ server=/home/level4/tmp/backdoor

°æ·Î¿¡ ¸Â°Ô backdoor ½ÇÇàÆÄÀÏÀ» ¸¸µé¾ú½À´Ï´Ù.

Å×½ºÆ®°â

#include<stdlib.h>
int main()
{

system("id");

}
ÀÇ ¼Ò½ºÄÚµå·Î ¸¸µé¾ú°í¿ä ÄÄÆÄÀÏ ÀßµÇ°í ½ÇÇ൵ Àߵ˴ϴÙ.

netstat -na¸¦ ÅëÇØ
finger ¼­ºñ½ºÀÇ 79Æ÷Æ®µµ listenÁßÀÎ »óÅÂÀ롃 ¾Ë°í¿ä
±×·±µ¥ finger level4@localhost ¸í·ÉÀ» ÁÖ¸é ¾Æ¹«·± °á°ú°¡ ¾ø½À´Ï´Ù. backdoor½ÇÇàÀÌ µÇ¸é id¸í·É°á°ú°¡ Ãâ·ÂµÇ¾ßµÇ´Âµ¥ ±×·¯Áöµµ¾Ê°í
´ÙÀ½ ¸í·ÉÀ» ¹Þ±âÀ§ÇÑ [level4@ftz tmp] ÇöÀçÀ§Ä¡µµ ¾È¶ß°í
±×³É  ´ÙÀ½Ä­Àº ºó°ø°£ÀÌ°í ±×»óÅ¿¡¼­ °è¼Ó º¯È­°¡¾ø¾î¼­ ctrl +z ·Î ³¡³À´Ï´Ù. ÁøÇàÀÌ¾ÈµÇ³×¿ä ¹¹°¡ ¹®Á¦ÀÎÁö ¸ô¶ó Áú¹®µå¸³´Ï´Ù.

  Hit : 3295     Date : 2014/09/01 12:05