214, 6/11 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   bigshott
   php ¿ìȸ Áú¹® µå¸³´Ï´Ù.

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_Web&no=3 [º¹»ç]


¾È³çÇϼ¼¿ä~

sql ÀÎÁ§¼Ç °øºÎÇÏ´Ù°¡ ±Ã±ÝÇÑ ºÎºÐÀÌ À־ ÀÌ·¸°Ô Áú¹®µå¸³´Ï´Ù. ^^

¿äÁò °øºÎ ÇÏ´Ù º¸´Ï ¿ö³« ÇãÁ¢Çؼ­ ÀÚÁÖ Áú¹®µå¸®°Ô µÇ³×¿ä ^^

phpÇÔ¼ö¿¡ º¸¸é eregi ÇÔ¼ö·Î ÇÊÅ͸µÀ» °É´øµ¥¿ä~

if(eregi("--|2|50|\+|substring|from|infor|mation|lv|%20|=|!|<>|sysM|and|or|table|column",$ck)) exit("Access Denied!");

À§¿Í °°ÀÌ ÇÊÅ͸µÀÌ °É·Á ÀÖ½À´Ï´Ù.

?val=1 union select 2  

¿ä·¸°Ô ÀÔ·ÂÇؼ­ °ªÀ» ³Ö¾î¾ß µÇ´Âµ¥¿ä~

2°¡ eregi ÇÔ¼ö¿¡ °É·Á¼­ ³Ñ¾î°¡Áú ¾Ê½À´Ï´Ù.

url encode, hex µîµî ´Ù ÇغÁµµ °É¸®³×¿ä~

¿ìȸ ÇÒ¼ö ÀÖ´Â ÁÁÀº ¹æ¹ý ¾øÀ»±î¿ä?

°í¼ö´Ôµé Á¶¾ð Á» ºÎŹµå¸³´Ï´Ù. ^^

¼ö°íÇϼ¼¿ä~



* ¸Û¸Û´Ô¿¡ ÀÇÇؼ­ °Ô½Ã¹° À̵¿µÇ¾ú½À´Ï´Ù (2010-11-28 12:14)

  Hit : 7831     Date : 2010/11/10 04:37



    
lMaxl04 2°¡ %32 ·Î µÇÁö¾ÊÀ»±î¿ä?
Àü À¥À» ¸ô¶ó¼­... ¾ÆÇÏÇÏÇÏÇÏ
2010/11/10  
ÇÁ¶óÀ̵å 3-1 µµ 2 ÀÌ°í 5-3µµ 2ÀÔ´Ï´Ù ¤»¤»
select¹®À¸·Î °¡Á®¿Ã¶§ ¼ö½ÄÀ»°è»êÇÑ °á°úµµ °¡Á®¿Ã¼öÀÖ½À´Ï´Ù :D
2010/11/10  
zzguswhd ³ªµµ ¾ð³Õ PHPÇÏ°í½Í´ç ¤Ð¤Ð¤Ð¤Ð 2010/11/14  
bigshott ´Ùµé ´äº¯ Á¤¸» °¨»çÇÕ´Ï´Ù. ^^
ÇÁ¶óÀ̵å´Ô ±×·¸°Ôµµ µÇ´Â±º¿ä ^^. °¨»çÇÕ´Ï´Ù.
´Ùµé Áñ°Å¿î ÇÏ·çµÇ¼¼¿ä~
2010/11/17  
114   POST METHOD     ewqqw
03/13 2404
113   Post Method[2]     ewqqw
03/16 2534
112   php¿¡¼­ Á¡(.)[3]     ka0r1
07/11 3709
111   PHP¿¡¼­ À̸ÞÀÏ Àü¼ÛÇÒ¶§ °¡·Îç ¼ö ÀÖ³ª¿ä?[9]     drrobot333
11/16 2578
110   phpÃ¥ Ãßõ ºÎŹµå¸³´Ï´Ù.[1]     h@cking2013
06/05 3918
  php ¿ìȸ Áú¹® µå¸³´Ï´Ù.[4]     bigshott
11/10 7830
108   passward cracking Áú¹®ÀÖ½À´Ï´Ù[2]     °æ³²123
01/27 3388
107   paros¸¦ ±¸µ¿ÇÑ »óÅ¿¡¼­ ¾î¶² À¥»çÀÌÆ®¸¦ µé¾î°¥ ¶§     asdwho
03/24 3699
106   Paros Åø °ü·Ã Áú¹®[2]     stalaction
10/21 4948
105   Odysseus ¶ó´Â ÇÁ·Î±×·¥¿¡ ´ëÇØ ¿©ÂÞ¾î º¾´Ï´Ù.     ygh159
08/18 3620
104   MySQL Áú¹®[2]     ka0r1
04/15 3488
103   load of sql injectinÀ» Ç®±¸ÀÖ½À´Ï´Ù..[3]     deadbeef
02/15 3787
102   LibrettoCMS 2.2.2 - Arbitrary File Upload ¾Æ½Ã´ÂºÐ °è½Å°¡¿ä?     Á¦·Î½Ã
06/16 3371
101   LFI¿ÍRFI½ÄÀ¸·Î ÆÄÀϾ÷·Îµå Áú¹®[1]     ygh357
10/18 4142
100   level1¿¡¼­¿ä...[2]     studen1
06/05 3387
99   KISA ÇØÅ·¹æ¾î ÈÆ·ÃÀå WEB ¹®Á¦¿Í °ü·ÃÇؼ­ Áú¹®µå¸³´Ï´Ù.[1]     jhjang1005
07/16 3478
98   javascript ¹× xss ¿¡ °üÇÑ Áú¹®ÀÔ´Ï´Ù.[1]     haxx
10/23 3486
97   ip¸¸À¸·Î ÇØÅ·°¡´ÉÇÑ°¡¿ä?[5]     clova777
06/25 7676
96   IP ÁÖ¼Ò¿¡ ´ëÇÑ Áú¹®ÀÔ´Ï´Ù ^^[5]     ½º³ë
03/27 3771
95   HTTP Çì´õ[1]     chaneyoon
04/30 2806
[1][2][3][4][5] 6 [7][8][9][10]..[11]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org