1581, 20/80 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   whqkdnf000
   netcatÀÇÈ°¿ë(3)

http://www.hackerschool.org/HS_Boards/zboard.php?id=Free_Lectures&no=637 [º¹»ç]


NetcatÀÇ ÀÌ¿ë


Netcat(ÀÌÇÏ nc·Î Ç¥±â)Àº Network connection ¿¡¼­ raw-data read, write¸¦ ÇÒ¼ö ÀÖ´Â À¯Æ¿¸®Æ¼ ÇÁ·Î±×·¥ÀÌ´Ù. ÀϹÝÀûÀ¸·Î´Â UNIXÀÇ cat°ú ºñ½ÁÇÑ »ç¿ë¹ýÀ» °¡Áö°í ÀÖÁö¸¸ catÀÌ ÆÄÀÏ¿¡ ¾²°Å³ª ÀеíÀÌ nc´Â network connection¿¡ Àаųª ¾´´Ù. ÀÌ°ÍÀº ½ºÅ©¸³Æ®¿Í º´¿ëÇÏ¿© network¿¡ ´ëÇÑ debugging, testing tool·Î½á ¸Å¿ì Æí¸®ÇÏÁö¸¸ ¹Ý¸é ÇØÅ·¿¡µµ ÀÌ¿ë¹üÀ§°¡ ¸Å¿ì ³Ð´Ù.



¿É¼Ç
usage: nc [options] [target host] [ports]
-n : È£½ºÆ® ³×ÀÓ°ú Æ÷Æ®¸¦ ¼ýÀڷθ¸ ÀԷ¹޴´Ù.
-v : verbosity ¸¦ Áõ°¡ ½ÃŲ´Ù. ´õ ¸¹Àº Á¤º¸¸¦ ¾òÀ»¼ö ÀÖ´Ù.
-o [filename]: º¸³»°Å³ª ¹ÞÀº µ¥ÀÌÅ͸¦ Çí½º´ýÇÁÇÏ¿© ÆÄÀÏ¿¡ ÀúÀåÇÑ´Ù.
-u : TCP connection ´ë½Å¿¡ UDP connection ÀÌ ÀÌ·ç¾î Áø´Ù.
-p [port number or name]: local-port ¸¦ ÁöÁ¤ÇÑ´Ù. ÁÖ·Î -l °ú °°ÀÌ »ç¿ëÇÏ°Ô µÈ´Ù.
-s [ip address or DNS]: local ip address ¸¦ ÁöÁ¤ÇÑ´Ù. ¸ðµç Ç÷¿Æû¿¡¼­ Áö¿øµÇÁö´Â ¾Ê´Â´Ù.
-l : listen ¸ðµå·Î ncÀ» ¶ì¿ì°Ô µÈ´Ù. ´ç¿¬È÷ target host´Â ÀÔ·ÂÇÏÁö ¾Ê´Â´Ù. -p¿Í °°ÀÌ »ç¿ëÇÏ°Ô µÈ´Ù nc¸¦ server ·Î¼­ ¾µ¶§ »ç¿ë.
-e [filename]: -DGAPING_SECURITY_HOLE ¿É¼ÇÀ¸·Î Make µÇ¾úÀ» ¶§ »ç¿ë°¡´ÉÇÏ´Ù.
connection ÀÌ ÀÌ·ç¾î Á³À» ¶§ fileÀ» exec ½ÃŲ´Ù. -l °ú °°ÀÌ »ç¿ëµÇ¸é ÇÑ instance¸¸À» »ç¿ëÇÏ´Â inetd¿Í ºñ½ÁÇÏ´Ù.
-t : -DTELNET ¿É¼ÇÀ¸·Î ÄÄÆÄÀÏ µÇ¾úÀ» ¶§ »ç¿ë°¡´ÉÇÏ´Ù. telnetd¿¡ Á¢¼ÓÀÌ °¡´ÉÇϵµ·Ï Á¢¼Ó½Ã telnet°ú °°Àº Çù»ó°úÁ¤À» °ÅÄ£´Ù.
-i [interval time]: nc´Â ÀϹÝÀûÀ¸·Î 8K ¾¿ µ¥ÀÌÅ͸¦ º¸³»°í ¹Þ´Âµ¥ ±×·¸°Ô Standard inputÀÇ ÇÑ ¶óÀξ¿ interval time¸¶´Ù º¸³»°Ô µÈ´Ù.
-z : connectionÀ» ÀÌ·ç±âÀ§ÇÑ ÃÖ¼ÒÇÑÀÇ µ¥ÀÌÅÍ ¿Ü¿¡´Â º¸³»Áö ¾Êµµ·Ï ÇÏ´Â ¿É¼Ç.
-r : port ÁöÁ¤ÀÌ ¿©·¯°³·Î µÇ¾î ÀÖÀ¸¸é À̶§ scanning ¼ø¼­¸¦ randomizeÇÏ°í (ÀϹÝÀûÀ¸·Î ¹üÀ§·Î ÁöÁ¤ÇÏ¸é ³ôÀº ¹øÈ£ÀÇ Æ÷Æ®ºÎÅÍ ½ºÄµÇÑ´Ù) ¶ÇÇÑ -p ¿É¼Ç¿¡¼­ ÁöÁ¤°¡´ÉÇÑ local portµµ randomizeÇÑ´Ù. À̶§ ÁÖÀÇ ÇÒ °ÍÀº -p°¡ -rÀ» override ÇÑ´Ù´Â °ÍÀÌ´Ù.
-g : ??
-G : ??

»ç¿ë
multi-port connection
nc´Â ÇÑ È£½ºÆ®¿¡ ÇÑ ¹ø¿¡ ¿©·¯ connection À» ¸¸µé¼ö ÀÖ´Ù. ÀÌ ¶§ ´ÙÀ½°ú °°ÀÌ ¿©·¯°³ÀÇ Æ÷Æ®¸¦ ±â¼úÇÒ ¼ö ÀÖ´Ù.
nc [target host] 20-30

À̶§ std inputÀ¸·Î ÀԷµǴ µ¥ÀÌÅÍ´Â ÇѲ¨¹ø¿¡ º¸³»Áö°Ô µÈ´Ù.


port scanning
target host ÀÇ ÁöÁ¤µÈ ¹üÀ§³»¿¡¼­ÀÇ ¾î¶² Æ÷Æ®°¡ ¾î¶»°Ô »ç¿ëµÇ°í ÀÖ´Â °¡¸¦ °Ë»öÇÒ ¼ö ÀÖ´Ù.

nc -v -w 3 -z wm.hanyang.ac.kr 20-30, 70-90

À§ÀÇ ¸í·ÉÀº ´ÙÀ½ °á°ú¿Í °°ÀÌ 20-30, 70-90 ±îÁöÀÇ Æ÷Æ®µé¿¡ ´ëÇÑ Á¤º¸¸¦ º¸¿©ÁØ´Ù.

[xixi@wm xixi]$ nc -v -w 3 -z wm.hanyang.ac.kr 20-30, 70-90
iruril [127.0.0.1] 23 (telnet) open
iruril [127.0.0.1] 22 (ssh) open
iruril [127.0.0.1] 21 (ftp) open
iruril [127.0.0.1] 80 (http) open


À̰ͺ¸´Ù ´õ ÀÚ¼¼ÇÑ Á¤º¸¸¦ ¾ò°íÀÚ ÇÒ¶§´Â

echo QUIT | nc -v -w 3 [target host] [ports]

¶ó°í Çϸé ÀÀ´äÀ̳ª ¿¡·¯¸Þ¼¼Áö·ÎºÎÅÍ ¹öÀüÁ¤º¸µîµµ ¾òÀ» ¼ö ÀÖ´Ù.

[xixi@wm xixi]$ echo QUIT | nc -v -w 3 wm.hanyang.ac.kr 20-30, 70-90
iruril [127.0.0.1] 23 (telnet) open
????????iruril [127.0.0.1] 22 (ssh) open
SSH-1.99-OpenSSH_3.6.1p2
Protocol mismatch.
iruril [127.0.0.1] 21 (ftp) open
220 (vsFTPd 1.2.0)
221 Goodbye.
iruril [127.0.0.1] 80 (http) open
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>501 Method Not Implemented</title>
</head><body>
<h1>Method Not Implemented</h1>
<p>QUIT to /index.html not supported.

</p>
<hr />
<address>Apache/2.0.48 (Fedora) Server at wm.hanyang.ac.kr Port 80</address>
</body></html>
[xixi@wm xixi]$


simple data transfer agent
nc¸¦ ÀÌ¿ëÇØ °£´ÜÇÑ data Àü¼ÛÀ» ÇÒ ¼ö ÀÖ´Ù.

receiver : nc -l -p 1234 | uncompress -c | tar xvfp -
sender : tar cfp - /some/dir | compress -c | nc -w 3 othermachine 1234


substitute of inetd
nc¸¦ ÀÌ¿ëÇØ inetd¿¡ µî·ÏÇÏÁö ¾Ê°í, º°´Ù¸¥ ³×Æ®¿÷ ¼³Á¤ ¾øÀÌ ÇÁ·Î±×·¥À» Å×½ºÆ®ÇÒ ¼ö ÀÖ´Ù.

nc -l -p [port] -e [filename]


/*test.c*/ #include < stdio.h > main(){ getchar(); printf("<html><head></head><body>ÇáÇÏ</body></html>\n");
nc -l -p 1234 -e test

ÀÌ·¸°Ô ÇÏ¸é °£ÀÌ www server µµ µÈ´Ù.

connection redirecting
inetd.confÀ» ¾Æ·¡¿Í °°Àº Çü½ÄÀ¸·Î °íÃļ­ ´Ù¸¥ ¼­¹ö·Î redirectingÀ» ÇÒ¼ö ÀÖ´Ù.

www stream tcp nowait /etc/tcpd /bin/nc -w 3 zero 80

À§ÀÇ °ÍÀº ÇöÀç ¼­¹ö¿¡¼­ http¼­ºñ½º¸¦ zero¼­¹ö·Î redirect½ÃÄ×´Ù.

performance testing
nc¸¦ ÀÌ¿ëÇؼ­ Å« µ¥ÀÌÅ͸¦ ¼­·Î º¸³»°í ¹ÞÀ½À¸·Î½á networkÀÇ performance¸¦ Å×½ºÆ®ÇÒ¼ö ÀÖ´Ù.

[root@wm xixi]# yes AAAA | nc -v -v -l -p 1234 > /dev/nul& listening on [any] 1234 ... [1] 14861 [root@wm xixi]# yes BBBB | nc iruril 1234 > /dev/null & [2] 14865 connect to [127.0.0.1] from iruril [127.0.0.1] 33029[root@wm xixi]#
[root@wm xixi]# kill % punt! sent 559853568, rcvd 438149120 [root@wm xixi]#
---------------------

³ÝÇØÅ· ¹× ½Ã½ºÅÛ, À¥ÇØÅ·±îÁö ±¤¹üÀ§ÇÏ°Ô »ç¿ëµÇ´Â netcat [ nc ] ÀÇ °£´ÜÇÑ ¼³¸íÀÌ ÀÖ´Â ¹®¼­ÀÔ´Ï´Ù.

¿ø·¡ ÇØÅ·¿ë µµ±¸·Î½áÀÇ ¿ªÇÒµµ ÀÖ¾úÁö¸¸, ¼ÒÄÏ ÇÁ·Î±×·¡¹ÖÀ» Å×½ºÆ®Çϰųª, ³×Æ®¿÷ °øºÎ¿¡ À¯ÀÍÇÑ µµ±¸À̱⵵ ÇÕ´Ï´Ù.

È°¿ëÇϽñæ..

¼ö°íÇϼ̽À´Ï´Ù.

Ãâó:http://data.oss.or.kr/sw/view.html?sort=&num=589&page=1


  Hit : 9525     Date : 2007/02/22 04:01



    
whqkdnf000 ¹«Çà ¹«¼­¿ö^- 2007/02/26  
1201   ´ë¿ë·® DB¿¡¼­ ÀڷḦ ÃßÃâÈÄ ¿¢¼¿ÀڷḦ ¸¸µé¾î¾ß ÇÒ ¶§     rootguy
12/28 9569
1200   - [º¸¾È³ëÆ®] Æ÷Æ®½ºÄ³´× (2)     twinz
08/28 9562
1199   ÇØÄ¿(Hacker)ÀÇ ½Ç·Âº° ºÐ·ù[7]     csw10141
06/07 9558
1198   - ¼­¹ö°ü¸®ÀÚ¸¦ À§ÇÑ 50°¡Áö ºñ¹ý     twinz
08/27 9545
1197   [Æß]boost ¶óÀ̺귯¸® ÁýÁß ºÐ¼®     hch19860906
11/21 9542
1196   ÄÄÇ»ÅÍÇØÄ¿[4]     bongcheur
07/07 9541
1195   C¾ð¾î º¹½À¿ëÀ¸·Î´Â ¿©±â°¡ ¯,, ¸ð¸£¸é °£Ã¸[2]     xodnr631
03/01 9540
1194   [ÀÚÀÛ]¸®´ª½º¿¡¼­ C¾ð¾î ¿¬½ÀÀ»À§ÇÑ ¼ÂÆÃ[6]     rbgud89
10/26 9540
  netcatÀÇÈ°¿ë(3)[1]     whqkdnf000
02/22 9524
1192   »ó¼Ó, ¿À¹ö¶óÀ̵ù, ´ÙÁß»ó¼Ó     tmdrbs9021
10/13 9521
1191   À©µµ¿ìÁîxp ÆÁ(1)[8]     ÄÁƼ´º
10/09 9506
1190   »õ·Î¿î ÀÎÅÍ³Ý º¸¾È¹ý VPN!![6]     6Moderato
09/06 9485
1189   [Æß] ¿©·¯°¡Áö Å©·¡Å· ¹æ¹ý(1)[3]     dzhfldk
08/22 9478
1188   ½ºÇÁÇΰø°Ý [1][6]     Nuker
12/28 9472
1187   ÇØÅ·°ú ÇØÄ¿[7]     ¶Ë¸¶·ç
01/08 9462
1186   ÇØÅ·°ü·Ã ÁÁÀº »çÀÌÆ®[7]     piranha
12/25 9459
1185   ºô°ÔÀÌÃ÷¿¡ ´ëÇؼ­[2]     asdzxc301
12/13 9456
1184     [re] ÇãÁ¢ÆÁ] ¾ÏÈ£¸¦ ¹Ù²ã ÇØÅ·ÇÇÇØ ÁÙÀÌÀ𠤻 ^^; ´õ ÁÁÀº¹æ¹ý[9]     xeon400
10/14 9436
1183   ping °­ÁÂ...[11]     kgt2001sus
02/13 9414
1182   c¾ð¾î ¹è¿ì±â ÁÁÀº ½ÎÀÌÆ®[3]     ÇØÄ¿¿õ»ïÀÌ
09/21 9408
[1]..[11][12][13][14][15][16][17][18][19] 20 ..[80]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org