Å©·¡Å· ÇÇÇØ

 423, 10/22 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   ¸Û¸Û
   http://hackerschool.org
   [re] [re] ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..

http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_recover&no=223 [º¹»ç]


access_log.2 ÀÇ ´ÙÀ½ ºÎºÐÀÌ À¥¼­¹ö°¡ Å©·¡Å· ´çÇÏ´Â °úÁ¤À» º¸¿©ÁÝ´Ï´Ù.

´ÙÀ½Àº ÁÖ¿ä ·Î±×¸¸ °£Ã߸° °ÍÀÔ´Ï´Ù.

195.234.130.38 - - [15/Jun/2006:04:45:16 +0900] "GET /~digitz/bbs/zboard.php?id=Animation HTTP/1.1" 200 41516 "http://www.google.ro/search?as_q=&num=10&hl=ro&btnG=C%C4%83utare+Google&as_epq=zboard+php&as_oq=&as_eq=&lr=&as_ft=i&as_filetype=&as_qdr=all&as_occt=url&as_dt=i&as_sitesearch=bacchus.snucse.org" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8) Gecko/20051111 Firefox/1.5"

==> Á¦·Îº¸µå¿¡ Á¢±ÙÇÕ´Ï´Ù.
    ±¸±Û °Ë»öÀ» ÅëÇØ ¼­¹ö¿¡ Á¢±ÙÇÏ¿´À½À» ¾Ë ¼ö ÀÖ½À´Ï´Ù. (HTTP_REFERER)
    °Ë»ö¾î´Â allinurl:  "zboard php" site:bacchus.snucse.org ÀÔ´Ï´Ù.
    ±¸±Û °Ë»öÀ» ÅëÇØ Á¦·Îº¸µå°¡ ¼³Ä¡µÈ ¼­¹ö¸¦ ãÀº ÈÄ, bacchus.snucse.org¸¦
    ¹ß°ßÇÏ¿© ´Ù½Ã Àç°Ë»öÇÑ °ÍÀ¸·Î º¸ÀÔ´Ï´Ù. (ȤÀº óÀ½ºÎÅÍ Å¸°ÙÀ¸·Î Àâ¾ÒÀ»
    °¡´É¼ºµµ ¹èÁ¦ÇÒ ¼ö´Â ¾ø½À´Ï´Ù.)
    zboard.php ÆÄÀÏ¸í¸¸À¸·Î´Â °Ô½ÃÆÇ¿¡ Á¢±ÙÇÒ ¼ö ¾ø°í, °Ô½ÃÆÇ id °ªÀ»
    ¾Ë¾Æ¾ß Çϱ⠶§¹®¿¡ À§¿Í °°Àº °Ë»öÀ» ÇÑ °Í °°½À´Ï´Ù.

195.234.130.38 - - [15/Jun/2006:04:45:19 +0900] "POST /~digitz/bbs/write_ok.php HTTP/1.1" 200 174 "http://bacchus.snucse.org/~digitz/bbs/write.php?id=Animation&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=&mode=write&sn1=&divpage=1" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)"

==> »õ ±ÛÀ» µî·ÏÇÕ´Ï´Ù. ÀÌ Å©·¡Ä¿´Â °è¼Ó FireFox¸¦ »ç¿ëÇÏ´Ù°¡ À¯µ¶ °ø°Ý
    °ü·Ã ºÎºÐ¿¡¼­¸¸ Explorer¸¦ »ç¿ëÇÏ´Â °ÍÀÌ Àǽɽº·¯¿î ºÎºÐÀÔ´Ï´Ù.

195.234.130.38 - - [15/Jun/2006:04:45:21 +0900] "GET /~digitz/bbs/data/Animation/shell.php HTTP/1.1" 200 143 "http://bacchus.snucse.org/~digitz/bbs/zboard.php" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)"

==> °Ô½Ã¹° µî·Ï ÈÄ shell.php°¡ »ý¼ºµË´Ï´Ù.

195.234.130.38 - - [15/Jun/2006:04:45:23 +0900] "POST /~digitz/bbs/delete_ok.php HTTP/1.1" 200 2678 "http://bacchus.snucse.org/~digitz/bbs/delete.php?id=Animation&page=1&sn1=&divpage=1& sn=off&ss=off&sc=on&select_arrange=headnum&desc=asc&no=149" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)"

==> ÀÚ½ÅÀÌ ¾´ ±ÛÀ» »èÁ¦ÇÕ´Ï´Ù.

195.234.130.38 - - [15/Jun/2006:04:45:46 +0900] "GET /~digitz/bbs/data/Animation/shell.php HTTP/1.1" 200 143 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8) Gecko/20051111 Firefox/1.5"

==> ÇÏÁö¸¸ »èÁ¦ÇßÀ½¿¡µµ ºÒ±¸ÇÏ°í shell.php´Â ³²¾Æ ÀÖ½À´Ï´Ù.

°á·ÐÀ» ³»¸®ÀÚ¸é..

- Á¦·Îº¸µåÀÇ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© ¹éµµ¾î ÆÄÀÏ(shell.php)À» ¾÷·ÎµåÇÏ¿´½À´Ï´Ù.

- °ø°Ý ½Ã°£ÀÌ Âª°í, ÆÄÀÏ ¿äû °£°ÝÀÌ ±ÔÄ¢ÀûÀÎ °ÍÀ¸·Î º¸¾Æ °ø°Ý °úÁ¤¿¡¼­
ÀÚµ¿È­ ÅøÀ» »ç¿ëÇÏÁö ¾Ê¾Ò³ª ½Í½À´Ï´Ù. (ȤÀº ¼ÕÀÌ ¹«Àð°Ô ºü¸£°Å³ª..)

- php È®ÀåÀÚÀÇ ÆÄÀÏÀÌ ¹Ù·Î ¾÷·ÎµåµÇ¾ú´Ù´Â °Í°ú °Ô½Ã¹° »èÁ¦ ½Ã ÷ºÎ ÆÄÀÏÀÌ
  ³²¾Æ ÀÖ´Â Á¡ÀÌ ÀÌÇØ°¡ µÇÁö ¾Ê½À´Ï´Ù. Ȥ½Ã ÀڽŸ¸ÀÇ ºñ°ø°³ Ãë¾àÁ¡À» ÀÌ¿ëÇÑ
  °ÍÀº ¾Æ´Ñ°¡ Àǽɽº·´½À´Ï´Ù.
  
ÀÏ´Ü ¾î´À ¹öÁ¯ÀÇ Á¦·Îº¸µå¸¦ »ç¿ëÇÏ´ÂÁö ¾Ë·ÁÁֽñ⠹ٶø´Ï´Ù.
ÇØ´ç ¹öÁ¯¿¡¼­ À§¿Í °°Àº Ãë¾àÁ¡ÀÌ ¹ß»ýÇÒ °¡´É¼ºÀÌ ÀÖ´ÂÁö ¾Ë¾Æº¸µµ·Ï ÇÏ°Ú½À´Ï´Ù.


  Hit : 10098     Date : 2006/06/28 08:39



    
soarrr 147.46.127.69 <- ¹®Á¦ÀÇ È¨ÆäÀÌÁö IP ÀÔ´Ï´Ù... 2006/06/28  
soarrr Á¦·Îº¸µå ¼³Ä¡ À§Ä¡¸¦ È®ÀÎÇϴµ¥ ÀÌ°Ô ¾îµð·Î ¸µÅ©µÇ¾î ÀÖ´ÂÁö ã°íÀÖ½À´Ï´Ù¸¸.. php °°Àº È®ÀåÀÚµµ ¾÷·Îµå°¡ °¡´ÉÇÑÁö¿ä? 2006/06/28  
¸Û¸Û ·Î±×¸¦ º¸¸é.. ¾Æ¸¶µµ /home/digitz/bbs/ ¿¡ ÀÖÀ» °Ì´Ï´Ù. 2006/06/28  
¸Û¸Û license.txt ÆÄÀÏÀ» ¿­¾îº¸½Ã¸é ÃÖ»ó´Ü¿¡ ¹öÁ¯ Á¤º¸°¡ ³ª¿É´Ï´Ù. 2006/06/28  
¸Û¸Û php È®ÀåÀÚ´Â ±âº»À¸·Î ¾÷·Îµå°¡ ±ÝÁöµÇ¾î ÀÖ½À´Ï´Ù. ÀÌ Á¦ÇÑÀ» ¿ìȸÇÏ´Â ¾î¶² °ø°Ý ±â¼úÀ» »ç¿ëÇÑ °Í °°½À´Ï´Ù. 2006/06/28  
soarrr ±×·¸±º¿ä.. 4.1 pl 4 (2003.8.7) ¹öÀüÀ̳׿ä -_-;; 2006/06/28  
soarrr Âü ±¹³» À¯ÀÏÀÇ ´ëÇлýµéÀÌ ÀÌ·¸°Ô º¸¾È¿¡ °ü½ÉÀÌ ¾ø¾î¼­¾ß.. ³­°¨ÇÕ´Ï´Ù.. 2006/06/28  
¸Û¸Û pl4 ÀÌÈÄ·Î À§¿Í °°Àº Ãë¾àÁ¡ÀÌ º¸°íµÈ ÀûÀº ¾ø´Â °ÍÀ¸·Î ¾Ë°í ÀÖ½À´Ï´Ù. 2006/06/28  
¸Û¸Û ´õ ºÐ¼®À» Çغ¸°í ÇØ°á ¹æ¾ÈÀ» ¾Ë·Áµå¸®µµ·Ï ÇÏ°Ú½À´Ï´Ù. 2006/06/28  
¸Û¸Û pr0sper´ÔÀ̳ª indra´Ôµµ Á» µµ¿ÍÁÖ¼ÌÀ¸¸é ÁÁ°Ú³×¿ä. 2006/06/28  
¸Û¸Û ¸µÅ©ÇØÁֽŠ°ü·Ã ·Î±×µéÀº ´Ù¸¥ ºÐµéÀÌ Âü°íÇÒ ¼ö ÀÖ°Ô ´çºÐ°£ »èÁ¦ÇÏÁö ¸»¾ÆÁֽñ⠹ٶø´Ï´Ù. 2006/06/28  
soarrr ³×.. ¾Ë°Ú½À´Ï´Ù.. Á¤¸» °í¸¿½À´Ï´Ù.. 2006/06/28  
¸Û¸Û È®ÀÎ °á°ú °ø°³µÈ Ãë¾àÁ¡(preg_replace)¿¡ °ø°Ý´çÇÑ °ÍÀ̾ú½À´Ï´Ù. ÃֽŠ¹öÁ¯ÀÇ Á¦·Îº¸µå(pl8)·Î ¾÷±×·¹À̵åÇϽøé ÇØ°áµÇ°Ú½À´Ï´Ù. 2006/06/28  
¸Û¸Û ±× ¿Ü Ãß°¡·Î ¼³Ä¡µÈ ¹éµµ¾î´Â ¾ø´ÂÁö È®ÀÎÇØ º¸½Ã°í¿ä. (setuid file, rootkit, bindshell µî..) 2006/06/28  
soarrr ±×·¸±º¿ä... Á¦·Îº¸µå¿¡µµ ÀÚµ¿ ¾÷µ¥ÀÌÆ® ±â´ÉÀ» ³Ö¾úÀ¸¸é ÇÏ´Â ^^ ¹Ù·¥À̾ú½À´Ï´Ù.. 2006/06/28  
soarrr ´Ù¸¥Åøµµ ´Ù ã¾Æº¸¾ÒÁö¸¸ º°´Ù¸¥°Ç ¾ø´õ¶ó±¸¿ä.. ¼ö°íÇϼ̽À´Ï´Ù.. ¹°·Ð Á¤¸» °¨»çµå¸®±¸¿ä.. 2006/06/28  
pr0sp3r ÀÌÁ¦¾ß º¸°Ô ¤§¤Ê¤¶½À´Ï´Ù. ·Î±×´Â ´Ù¿î·Îµå µÇÁö ¾Ê´Â°ü°è·Î.. º¸Áö ¸øÇß½À´Ï´Ù. ¸Û¸Û´ÔÀÇ ´ñ±ßÀ» º¸°Çµ¥.. Á¦·Îº¸µå Ãë¾àÁ¡À» ÀÌ¿ëÇÑ°ÍÀ¸·Î º¸ÀÔ´Ï´Ù. 2006/06/28  
pr0sp3r pl8¿¡µµ ¹ßÇ¥µÇÁö ¾ÊÀº xss¿Í sql ÀÎÁ§¼Ç°ú ¸î¸îÀÇ ¾÷·Îµå Ãë¾àÄÚµå, ´Ù¼öÀÇ ½ºÅ² º¸¾ÈÃë¾àÁ¡ÀÌ Àִ°ÍÀ¸·Î ¾Ð´Ï´Ù. 2006/06/28  
pr0sp3r ¿Ü±¹¿¡¼­´Â php Áö¿ø¿¡¼­ safe_mode ¿Ü¿£ ´ë¾ÈÀÌ ¾ø´Ù°í ÇÒÁ¤µµÀÔ´Ï´Ù. Æ÷·»½ÄÇϽǶ§ ·£¼±ºÎÅÍ »ÌÀ¸½Ã´Â°Å ÀØÁö ¸¶¼¼¿ä :) 2006/06/28  
indra À¹... Àúµµ ÀÌÁ¦ ºÃ½À´Ï´Ù.. µµ¿òÀÌ ¸ø µÇµå·Á¼­ Á˼ÛÇÏÁö¸¸.. ±×·¡µµ.. ¸Û¸Û´Ô²²¼­ Àß ÇØ°áÇØÁּ̳׿ä...^^; 2006/07/03  
6Moderato ¸ðµÎ °í¼ö´Ù 2006/09/04  
Petra None 2007/06/06
243     [re] ¾û¶×ÇÑÁþÇÏ´Ù°¡ ¸ÁÇ߾ ÇïÇÁ¹Ì Çø®½º..ÈæÈæ[2]     ¼ÒÀ¯
10/18 5135
242     [re] ¹Ù¶÷Àdzª¶ó ´ëÇ¥ÀÛ....     X-line
12/15 3514
241     [re] ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..[14]     ¸Û¸Û
06/28 4560
240     [re] ¸í·É ÇÁ·ÒÇÁÆ®     msp
10/20 3503
239     [re] µµ¿ÍÁÖ¼¼¿ä..     ChuRack
03/14 3398
238     [re] µðµµ½ºÇØÅ·À¸·Î ¼­¹ö°¡ ´Ù¿îµÈ´Ù¸é ¾î¶»°Ô ȸº¹½ÃÄÑ¾ß Çϳª¿ä??[1]     k1rha
12/07 3871
237     [re] µÇÁö¾Ê½À´Ï´Ù.[2]     geniusevil
12/22 3732
236     [re] ´äº¯ ¹Ù¶÷ .. ;; ¹éµµ¾î ÇÁ·Î±×·¥ °ü·Ã     fragrantra
12/22 3561
235     [re] ±×·³ ÀÌ·±°æ¿ìµµ ÇØÅ·ÀÌ µÇ´ÂÁö¿ä     ¹«¼ÒÀ¯
12/20 4117
234     [re] ¡Ú½ºÅäÄ¿ÇØÅ·¿¡ ´ëÇÑ Áú¹®ÀÔ´Ï´Ù °í¼ö´Ôµé ´äº¯ºÎŹµå¸³´Ï´Ù     ljh0234
09/03 3639
233     [re] ¡Ú½ºÅäÄ¿ÇØÅ·¿¡ ´ëÇÑ Áú¹®ÀÔ´Ï´Ù °í¼ö´Ôµé ´äº¯ºÎŹµå¸³´Ï´Ù[2]     prosper
09/05 3974
232     [re] ÄÄÇ»ÅÍ°¡ ÀÌ»óÇØ¿ä ±ÞÇØ¿ä![1]     ¸Û¸Û
06/10 4004
231     [re] ÆÄÀÏÅ©·¢¿¡ °üÇÑÁú¹®ÀÔ´Ï´Ù     karah
03/02 4324
230     [re] ÆÄÀÏÅ©·¢¿¡ °üÇÑÁú¹®ÀÔ´Ï´Ù     whqkdnf000
05/31 3887
229     [re] Å©·¡Å·À̶õ...     mnet21
05/04 4135
228     [re] Å©·¡Å· ÇÇÇØ »ó´ãÀÔ´Ï´Ù. º¹±¸ÇØ´Þ¶ó°Å³ª ±×·±°Ô ¾Æ´Ï°í ±Ã±ÝÇÑ Á¡ÀÌ À־¿ä.     muzen2540
09/15 4364
227       [re] [re] ¿ÕÃʺ¸ÀÔ´Ï´Ù.. ±âº»ÀûÀÎ ÇØÅ·Áú¹®Á» µå¸±²²¿ä..²À Á» µµ¿ÍÁÖ¼¼¿©!!     hoonet
08/13 3267
      [re] [re] ¸®´ª½º Å©·¡Å· Á¶¾ð ºÎŹµå¸³´Ï´Ù..[22]     ¸Û¸Û
06/28 10097
225         [re] [re] [re] ¿ÕÃʺ¸ÀÔ´Ï´Ù.. ±âº»ÀûÀÎ ÇØÅ·Áú¹®Á» µå¸±²²¿ä..²À Á» µµ¿ÍÁÖ¼¼¿©!!     hackcool
08/13 3233
224       [re] [re] ÇØÄ¿¿Í Å©·¡Ä¿[1]     ¼Û½Ã
11/18 4236
[1][2][3][4][5][6][7][8][9] 10 ..[22]

Copyright 1999-2024 Zeroboard / skin by Hackerschool.org / Secure Patch by Hackerschool.org