ÇÁ·Î±×·¡¹Ö

 3206, 8/161 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ¹Ùº¼ÀÌ
   À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù..

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_programming&no=2455 [º¹»ç]


À©µµ¿ì¿¡¼­ ·Î¿ì¼ÒÄÏÀ¸·Î TCP ÆÐŶÀ» º¸³»´Â ¿¬½ÀÀ» Á» ÇÏ°íÀÖ¾ú´Âµ¥¿ä,

·Î¿ì¼ÒÄÏÀ» ¸¸µå´Â°Ç µÇ´Âµí Çѵ¥ ÆÐŶÀÌ ¾È º¸³»Áö´õ±º¿ä...

±×·¡¼­ °Ë»öÀ» ÇØ º» °á°ú Windows XP SP2 ºÎÅÏ º¸¾ÈÀ» À§ÇØ ·Î¿ì¼ÒÄÏ ±â´ÉÀ» ´ëºÎºÐ ¸ø ¾²°Ô Çسõ¾Ò´Ù´Â ±ÛÀ» ¿©·µ ¹ß°ßÇß½À´Ï´Ù.

±× ±Û Áß Çϳª:
Windows XP SP2 - Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.

..¹Þ´Â °Ç µÇ´Âµ¥ º¸³»´Â°Ç ICMP, IGMP, º¯Á¶µÇÁö ¾ÊÀº IPÇì´õ¸¦ °¡Áø UDP ¸¸ÀÌ µÈ´Ù°í ³ª¿ÍÀÖ½À´Ï´Ù.



..¶ó°í Çϴµ¥ ¸Ç óÀ½ °Ë»öÇÒ¶§ ºÃ´ø ±Û:
(WinPcap.txt)
WinPcap À» ÀÌ¿ëÇÑ raw¼ÒÄÏ¿¡ ´ëÇÑ ¹®¼­ÀÔ´Ï´Ù. ¹ÞÀ»¶© WinPcapÀ», º¸³¾¶© libnet ¶óÀ̺귯¸®¸¦ ÀÌ¿ëÇÏ¸é µÈ´Ù°í ¼³¸íµÇ¾î Àֳ׿ä.

À§ ±Û¿¡¼± ¾ÈµÈ´Ù, ¹Ø ±Û¿¡¼± µÈ´Ù, ÇÏ´Ï Àú´Â È¥µ·¿¡ ÈÛ½ÎÀ̱⠽ÃÀÛÇß½À´Ï´Ù. -_-


Á¤¸» libnetÀ¸·Î full raw socket packetÀ» º¸³¾¼ö Àִ°ǰ¡¿ä?
±×µ¿¾È °ü½Éµµ º°·Î ¾ø¾ú´ø ÅͶó È®½ÇÇÑ »ç¿ë¹ýÀ» ¸ô¶ó ¾ÆÁ÷ libnetÀ» ½áº¸Áø ¾Ê¾Ò½À´Ï´Ù.

libnetÀÌ ÇÒ¼ö ¾ø´Ù¸é Àú´Â µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ ÇؾßÇÏ´Â? Áö°æ±îÁö À̸£°Ô µÇ¾î¹ö¸³´Ï´Ù ¤Ì¤Ì


ÀÏ´Ü »ðÁú¿¡ µé¾î°¡±â Àü¿¡ ´ë°­ Á¤º¸µéÀ» ¾ò°í ½Í½À´Ï´Ù..

1. libnet À¸·Î raw socket TCP packet Àü¼ÛÀÌ 100% °¡´ÉÇÑÁö.
2. µå¶óÀ̹ö¸¦ ¸¸µé¾î¼­ Çϴ°ÍÀÌ °¡´ÉÇÏ´Ù¸é, ¾î¶»°Ô ÇؾßÇÏ´ÂÁö.
3. À©µµ¿ìÀÇ ¼û°ÜÁø ±â´ÉÀÌ¶óµµ ÀÖ´ÂÁö.

ÁÁÀº ´äº¯ Áֽø®¶ó ¹Ï½À´Ï´Ù.

°¨»çÇÕ´Ï´Ù.


PS
¿¹»óµÇ´Â ´äº¯µé¤Ì

1. ±¸Â÷ÇÏ°Ô À©µµ¿ì¼­ ÇÏÁö¸»°í ¸®´ª½º¿¡¼­ Çضó : À©µµ¿ì¼­ Çغ¸°í ½ÍÀ¸´Ï±î Áú¹®ÇÏ´Â °Ì´Ï´Ù. Èæ

2. libnet »ç¿ëºÎÅÍ Çغ¸°í Áú¹®Çضó : Áö±ÝºÎÅÍ Çغ¼°Ì´Ï´Ù¸¸.. '´ë°­ Á¤º¸¸¦ ¾ò°í ½Í½À´Ï´Ù'¶ó°í À§¿¡..

3. ¹«´äº¯ : À¸¾Æ¾Æ¾Ç Áö±Ý±îÁö ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû¾î!!!

  Hit : 5977     Date : 2010/05/21 09:52



    
gladia ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû´Ù±æ·¡... °Ë»öÁ»Çغôµ¥¿ä,

Raw Sockets and Windows

First of all, it must be understood very clearly that raw sockets is not a feature of the network API (although it must be present there as an option) but of the OS protocol stack. To implement raw sockets, all we have to do is to inform the OS that the packet buffer we are providing will have the header and so the OS should transmit it as is without "adding any header"; that's all, nothing more to do. The Unix operating system has raw socket support since ancient times. But the problem is with Windows. None of Windows 95, 98, 98SE supported raw sockets. Raw sockets became available on Windows from Windows 2000; Windows XP continued this. But suddenly, raw socket support was removed from Windows XP through a patch in SP2. Vista probably doesn't have it. Windows 95, 98, 98SE do not support raw sockets, but this doesn't end the story. If you want the facility, then the solution is to use a third party packet driver like Winpcap. Such packet drivers will do your task irrespective of what the OS likes and dislikes. Windows XP and XP SP1 have full raw socket support and so life is easy. So if you want to do raw socketing on Windows, then either use Winpcap or don't feel desperate to install SP2, or otherwise use Windows 2003 which, as per my knowledge, has raw socket support. So let's brief up.

1. Windows 95, 98, 98SE, NT4.0 -- Only raw ICMP and IGMP with restricted features.
2. Windows 2000, XP, XP SP1, 2003 -- Full raw socket support for both receiving and sending purposes.
3. Windows XP SP2 -- Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers.


À©µµ¿ìÀÚü¿¡¼­ RAW Socket À» ¼­Æ÷Æ®ÇØÁÖÁö ¾Ê±â¶§¹®¿¡ Winpcap À̶ó´Â º°µµ¿¡ µå¶óÀ̹ö? ÇÁ·Î±×·¥? À» »ç¿ëÇؼ­ º¸³¾¼öÀִٴ°ų»¿ä. °á±¹ À©µµ¿ì´Â ¸øÇÏ°ÔÇسùÁö¸¸ Æí¹ýÀ¸·Î WINPCAP À» ¾²´Â°Å°°³»¿ä.
2010/05/22  
¹Ùº¼ÀÌ WinPcapÀº ¹Þ´Â°Í¸¸ °¡´ÉÇÏ´Ù°í µé¾ú´Âµ¥¿ä.. 2010/05/22  
3066   c¾ð¾î ±¸Á¶Ã¼ ¹è¿­ Æ÷ÀÎÅÍ·Î ÇÔ¼ö·Î Àü´ÞÇϴµ¥...[3]     my10045139
12/13 6079
3065   [VC] Help -> Index -> MSDNÄ÷º¼ÇÀÌ ¾ø½À´Ï´Ù.     ¿µ¿øÇÑ°øºÎ
07/02 6072
3064   ÄÄÇ»ÅÍ ÇÁ·Î±×·¡¸Ó ÀÚ°ÝÁõ ¸»Àä[6]     gkswls123
03/12 6067
3063   cp¸í·É¾î ±¸ÇöÁßÀä À߸øµÈÁ¡Á» ÁöÀûÇØÁÖ¼¼¿ä[1]     hehesk
09/16 6051
3062   µð¹ö±ëÀ̶õ? ½ßÃʺ¸¶ó ¤Ð¤Ð [3]     milkily
10/12 6050
3061   MFC ¸ÅÅ©·Î ¸¸µé±â Áú¹®![1]     musalhk
02/15 6049
3060   win 32 api ·Î ¹ÂÁ÷Ç÷¹ÀÌ¾î ¸¸µé±â     khfs200
05/25 6034
3059   ¾î¼Àºí¸®¾î, ±â°è¾î ¹è¿öº¸·Á°íÇϴµ¥¿ä ¤Ð[6]     hygasyde
01/24 6033
  À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù..[2]     ¹Ùº¼ÀÌ
05/21 5976
3057   [c¾ð¾î] Å°,³ªÀÌ,¼ºº°ÀÔ·ÂÇϸé ÇÑÁÙ·Î ¶ß°ÔÇÒ·Á°íÇϴµ¥ ,, ¿¡·¯°¡..[3]     SKTCTO
03/25 5953
3056   [c¾ð¾î]vc 2010 error [c++ ÇÁ·ÎÁ§Æ®¿¡ intellisense ¹× °Ë»ö Á¤º¸ »ç¿ë ºÒ°¡]     goldbear564
01/20 5948
3055     [re] c 몆°¡Áö ¸í·É¾îÁ» Áú¹®ÀÌ¿ä!![1]     indra
09/05 5938
3054     [re] C¾ð¾î ¸»Àä..^^;     ¼ÒÀ¯
09/12 5916
3053   ¾î¼Àºí¸®...[7]     µÎ·ç¹¶¼ú
02/28 5912
3052   ¸®´ª½º ³×Æ®¿öÅ© ÇÁ·Î±×·¥ ¼Ò½ºÄÚµå ±¸ÇÏ°í ½ÍÀºµ¥¿ä.[1]     aiurchar
09/16 5878
3051   [ASP]ASP¿¡¼­ rs.open¿¡¼­ ¿À·ù°¡ ³ª³×¿ä[2]     Çܺ¸Ä­²ÊÂîÂÞ
12/03 5866
3050   c ‘p°¡Áö ¸í·É¾îÁ» Áú¹®ÀÌ¿ä!![1]     darkstar12
09/04 5823
3049   C¾ð¾î ¸»Àä..^^;[1]     canrose
09/06 5799
3048     [re] ÆäÀÌÁö ·Îµù½Ã Áñ°Üã±â ÀÚµ¿À¸·Î Ãß°¡µÇ±âÁ» °¡¸£ÃÄ ÁÖ¼¼¿ä     ¼ÒÀ¯
09/13 5790
3047     [re] ¸®´ª½º»ó DES¾Ë°í¸®Áò(C·Î ±¸¼º)..¾î¶»°Ô ÄÄÆÄÀÏ ÇÏ´ÂÁö...[4]     indra
10/06 5770
[1][2][3][4][5][6][7] 8 [9][10]..[161]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org