๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

์ „์ฒด ๊ธ€37

[๊ทธ๊ฒƒ์ด ์•Œ๊ณ  ์‹ถ๋‹ค] ๋ถํ•œ ํ•ด์ปค ํŽธ ๅŒ—ํ•ด์ปค, SNS·๋น„ํŠธ์ฝ”์ธ์œผ๋กœ ์žฅ๊ต ๋งค์ˆ˜…'์ „์žฅ๋ง' ํ†ต์งธ๋กœ ๋šซ๋ฆด๋ป”(์ข…ํ•ฉ) | ์—ฐํ•ฉ๋‰ด์Šค (์„œ์šธ=์—ฐํ•ฉ๋‰ด์Šค) ์ด์ •ํ˜„ ์ •๋น›๋‚˜ ๊ธฐ์ž = ๋ถํ•œ ํ•ด์ปค(๊ณต์ž‘์›)๊ฐ€ ๊ฐ€์ƒํ™”ํ๋ฅผ ๋Œ€๊ฐ€๋กœ ํ˜„์—ญ ์žฅ๊ต๋ฅผ ํฌ์„ญํ•ด ๊ตฐ์‚ฌ๊ธฐ๋ฐ€์„ ๋นผ๋‚ด๊ณ  ์ „์žฅ๋ง ํ•ดํ‚น๊นŒ์ง€ ์‹œ๋„ํ•œ ์‚ฌ... www.yna.co.kr ์ด๋ฒˆ์— ์ด์Šˆ๊ฐ€ ๋˜์—ˆ๋˜ ๋‚ด์šฉ์ด๋‹ค. ๊ฐ€์ƒํ™”ํ๋ฅผ ๋Œ€๊ฐ€๋กœ ํ˜„์—ญ ์žฅ๊ต๋ฅผ ํฌ์„ญํ•ด ๊ตฐ์‚ฌ ๊ธฐ๋ฐ€์„ ํƒˆ์ทจ ํ•˜๊ณ ์ž ํ–ˆ์—ˆ๊ณ  ๊ทธ ๋ฐฐํ›„์—๋Š” ๋ถํ•œ ํ•ด์ปค๊ฐ€ ์žˆ๋‹ค๋Š” ๋‚ด์šฉ์ด๋‹ค. ์ธํ„ฐ๋„ท ๋ณด๊ธ‰์œจ์ด ๋†’์•„์ง€๋Š” ๋งŒํผ ๋” ๋งŽ์€ ์œ„ํ˜‘์— ๋…ธ์ถœ๋˜๊ณ  ์žˆ๋Š” ๊ฒƒ ๊ฐ™๋‹ค.. 2022. 7. 10.
[์„œ๋น„์Šค ์†Œ๊ฐœ] IP ์™ธ๋ถ€ ํ‰ํŒ ์กฐํšŒ - IBM X-Force Exchange ์˜ค๋Š˜ ํฌ์ŠคํŒ…ํ•˜๋Š” ์‚ฌ์ดํŠธ๋Š” IP ํ‰ํŒ ์กฐํšŒ๋ฅผ ํ•  ์ˆ˜ ์žˆ๋Š” ์‚ฌ์ดํŠธ์ž…๋‹ˆ๋‹ค. IP ์™ธ์—๋„ ๋‹ค๋ฅธ IOC ์ •๋ณด๋“ค์ด ๋งŽ์ด ๋“ฑ๋ก๋˜์–ด ์žˆ๊ณ  ์‚ฌ์šฉ ๋ฐฉ๋ฒ•์€ ์•„๋ž˜ ํŽ˜์ด์ง€ ์ ‘์† ํ›„ ๊ฒ€์ƒ‰์ฐฝ์— ๋„๋ฉ”์ธ, IP ์ •๋ณด๋ฅผ ์ ๊ณ  ๊ฒ€์ƒ‰ํ•˜๋ฉด ๊ทธ์— ๋Œ€ํ•œ ํ‰ํŒ ์ •๋ณด๋ฅผ ํ™•์ธ ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. 1. IBM ํ™ˆํŽ˜์ด์ง€ https://exchange.xforce.ibmcloud.com/ IBM X-Force Exchange IBM X-Force Exchange is a threat intelligence sharing platform enabling research on security threats, aggregation of intelligence, and collaboration with peers exchange.xforce.ibmcloud.com.. 2022. 6. 17.
[์ •๋ณด๋ณด์•ˆ๊ธฐ์‚ฌ] ๊ธฐ๋ฐ€์„ฑ, ๋ฌด๊ฒฐ์„ฑ, ๊ฐ€์šฉ์„ฑ ์ •๋ณด๋ณดํ˜ธ์˜ ๋ชฉํ‘œ 1. ๊ธฐ๋ฐ€์„ฑ : ๋ˆ„๊ตฐ๊ฐ€ ๋‚˜์˜ ๋ฐ์ดํ„ฐ๋ฅผ ํ›”์ณ๋ณด๋Š” ๊ฒƒ 2. ๊ฐ€์šฉ์„ฑ : ์„œ๋น„์Šค ์ค‘๋‹จ ์—†์ด ์šด์˜ 3. ๋ฌด๊ฒฐ์„ฑ : ๋ฐ์ดํ„ฐ๊ฐ€ ์ œ 3์ž์— ์˜ํ•ด ์†์ƒ๋˜์ง€ ์•Š๋„๋ก ํ•˜๋Š” ๊ฒƒ (์›๋ณธ์ด ์ˆ˜์ •๋˜์ง€ ์•Š๋„๋ก) 4. ์ธ์ฆ : ํ˜„์žฌ ์‚ฌ์šฉ์ž๊ฐ€ ์‹ค์ œ ์‚ฌ์šฉ์ž ๋ณธ์ธ์ด ๋งž๋Š”์ง€ ํ™•์ธํ•˜๋Š” ๊ณผ์ • 5. ๋ถ€์ธ๋ฐฉ์ง€ : ์‚ฌ์šฉ์ž๊ฐ€ ๋ฐ์ดํ„ฐ ์ˆ˜์ • ํ›„ ๊ทธ ์‚ฌ์‹ค์„ ์‚ฌํ›„์— ์ฆ๋ช…ํ•จ์œผ๋กœ์จ ์‚ฌ์‹ค ๋ถ€์ธ์„ ๋ฐฉ์ง€ํ•˜๋Š” ๋ณด์•ˆ ๊ธฐ์ˆ  ๊ธฐ๋ฐ€์„ฑ - ์ •๋ณด ๊ตํ™˜ ์‹œ ๋ถˆํŠน์ • ์ธ์›์ด ์ •๋ณด๋ฅผ ๊ฐ€๋กœ์ฑ„์„œ ํ›”์ณ๋ณผ ๋•Œ ๊ธฐ๋ฐ€์„ฑ์ด ์นจํ•ด๋˜์—ˆ๋‹ค๊ณ  ํ•œ๋‹ค. - ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ๋ฐ ์ ‘๊ทผ์ œ์–ด ์„ค์ • ํ•„์š” ๋ฌด๊ฒฐ์„ฑ - ์ •๋ณด๊ฐ€ ๋ถˆํŠน์ • ์ธ์›์— ์˜ํ•ด ๋ณ€๊ฒฝ๋˜์—ˆ์„ ๋•Œ ๋ฌด๊ฒฐ์„ฑ์ด ์นจํ•ด๋˜์—ˆ๋‹ค๊ณ  ํ•œ๋‹ค - ๋ฌด๊ฒฐ์„ฑ ๋ณด์žฅ์„ ์œ„ํ•ด ๋ฉ”์‹œ์ง€ ์ธ์ฆ, ์ ‘๊ทผ์ œ์–ด ์„ค์ •์ด ํ•„์š”ํ•˜๋‹ค. ๊ฐ€์šฉ์„ฑ - ํ†ต์‹ , ์ •๋ณด๊ตํ™˜ ๋ฐ ์„œ๋น„์Šค๊ฐ€ ๋ถˆ๊ฐ€๋Šฅ ํ•  ๋•Œ ๊ฐ€์šฉ์„ฑ.. 2022. 6. 1.
[๋ฆฌ๋ˆ…์Šค] ํŒŒ์ผ ์‚ญ์ œ ๋ช…๋ น์–ด ํ…Œ์ŠคํŠธ ํ™˜๊ฒฝ์€ ์•„๋ž˜ ํ™˜๊ฒฝ์œผ๋กœ ์ง„ํ–‰ - a, b, c ์ด๋ฆ„์˜ ํ…์ŠคํŠธ ํŒŒ์ผ์ด ์žˆ์Œ [desk@localhost TEST]$ ls -l total 0 ##### -rw-rw-r--. 1 desk desk 0 May 3 22:41 a.txt -rw-rw-r--. 1 desk desk 0 May 3 22:41 b.txt -rw-rw-r--. 1 desk desk 0 May 3 22:41 c.txt /* Line Number CSS */ 1. ํŒŒ์ผ์„ ํ•˜๋‚˜ ์‚ญ์ œ ํ•  ๋•Œ [ rm ] - a.txt ํŒŒ์ผ ์‚ญ์ œ! [desk@localhost TEST]$ rm a.txt [desk@localhost TEST]$ ls -l total 0 -rw-rw-r--. 1 desk desk 0 May 3 22:41 b.txt -rw-r.. 2022. 5. 3.
์ŠคํŒŒ์ด๋”๋งจ-๋…ธ์›จ์ดํ™ˆ ๋‹ค์šด๋กœ๋“œ๋ฅผ ์‚ฌ์นญํ•œ ์•…์„ฑ ํŒŒ์ผ ์•ˆ๋…•ํ•˜์„ธ์š”! ์ €๋ฒˆ์ฃผ ์ŠคํŒŒ์ด๋”๋งจ - ๋…ธ์›จ์ด ํ™ˆ์ด ๊ฐœ๋ด‰ ํ–ˆ๋Š”๋ฐ์š”, ๋‹ค๋“ค ๋ณด์…จ๋‚˜์š”?? ์ธ๊ธฐ๊ฐ€ ์ƒ๋‹นํ•œ ๋งŒํผ ์ด๋ฅผ ์ด์šฉํ•ด์„œ ๋‹ค์šด๋กœ๋“œ(torrent) ํŒŒ์ผ์„ ์ด์šฉํ•ด ์•…์„ฑ ์„ ์ „ํŒŒ์‹œํ‚ค๊ณ  ์žˆ๋‹ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค. ์›๋ณธ ํŒŒ์ผ๋ช…(๋Ÿฌ์‹œ์•„์–ด) : spiderman_net_putidomoi.torrent.exe Torrent์— ํ‘œ์‹œ๋˜๋Š” ํŒŒ์ผ๋ช… : spiderman_no_wayhome.torrent.exe ์•…์„ฑ์ฝ”๋“œ ๋ช… : Cryptominer -> ํ”ผํ•ด์ž ๊ธฐ๊ธฐ์˜ ์ฒ˜๋ฆฌ ๋Šฅ๋ ฅ์„ ๊ฐ€๋กœ์ฑ„ ์ด๋ฅผ ์ด์šฉํ•ด ๊ฐ€์ƒํ™”ํ๋ฅผ ์ฑ„๊ตดํ•˜๋„๋ก ์„ค๊ณ„๋œ ์•…์„ฑ ํŒŒ์ผ ๋ฐฑ๊ทธ๋ผ์šด๋“œ์—์„œ ์‹คํ–‰๋˜๋ฉฐ ์‚ฌ์šฉ์ž ๋ชจ๋ฅด๊ฒŒ ๊ณ„์† PC์˜ ์ž์›์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. https://threatpost.com/spider-man-no-way-home-download-installs-cryptominer/1.. 2021. 12. 29.
Windows ๋กœ๊ทธ์ธ ๊ธฐ๋ก ํ™•์ธ ๋ฐฉ๋ฒ• ์•ˆ๋…•ํ•˜์„ธ์š”! ํฌ๋ Œ์ง ์ž‘์—…์„ ์œ„ํ•ด ์‚ฌ์šฉ์ž PC์˜ ์‚ฌ์šฉ ์ด๋ ฅ ํ™•์ธ์ด ํ•„์š”ํ•œ ๊ฒฝ์šฐ๊ฐ€ ์žˆ์Šต๋‹ˆ๋‹ค ๋‹ค๋ฅธ ์‹œ์Šคํ…œ์—์„œ ๊ด€๋ จ ๋กœ๊ทธ๋ฅผ ๊ธฐ๋กํ•˜๋ฉด ์ข‹๊ฒ ์ง€๋งŒ ๊ทธ๋ ‡์ง€ ์•Š์€ ๊ฒฝ์šฐ Windows ์ž์ฒด์— ๊ธฐ๋ก๋œ ๋กœ๊ทธ๋ฅผ ํ™•์ธํ•  ์ˆ˜ ๋„ ์žˆ์Šต๋‹ˆ๋‹ค. 1. ๋จผ์ € Windows ์ด๋ฒคํŠธ ๋ทฐ์–ด๋ฅผ ์‹คํ–‰ ํ•ฉ๋‹ˆ๋‹ค 2. ์ด๋ฒคํŠธ ๋ทฐ์–ด์˜ ์™ผ์ชฝ ๋„ค๋น„๊ฒŒ์ด์…˜ ๋ฐ”์—์„œ "Windows ๋กœ๊ทธ" -> "๋ณด์•ˆ" ์„ ์„ ํƒ ํ•ฉ๋‹ˆ๋‹ค. 3. "ํ˜„์žฌ ๋กœ๊ทธ ํ•„ํ„ฐ๋ง" ์„ ์„ ํƒ ํ•ฉ๋‹ˆ๋‹ค. 4. ํ•ด๋‹น ๊ฐ’์„ ํ•„ํ„ฐ์— ์ถ”๊ฐ€ ํ•ฉ๋‹ˆ๋‹ค - ์ด๋ฒคํŠธ ID : 4624 ( ๋กœ๊ทธ์ธ ) - ์ด๋ฒคํŠธ ID : 4634 ( ๋กœ๊ทธ์˜คํ”„ ) ์ด๋ ‡๊ฒŒ ํ•˜๋ฉด ์•„๋ž˜์™€ ๊ฐ™์ด ๋กœ๊ทธ์ธ ๋กœ๊ทธ๋ฅผ ํ™•์ธ ํ•  ์ˆ˜ ์žˆ๋‹ค!! 2021. 12. 28.
Log4j ์ทจ์•ฝ์ ! / CVE-2021-44228 ์ด๋ฒˆ์— ์ „ ์„ธ๊ณ„์—์„œ ์ด์Šˆ์ธ Log4j๊ฐ€ ์žˆ์–ด ์ธํ„ฐ๋„ท์—์„œ ์ฐพ์€ ์ •๋ณด๋ฅผ ํ•œ๊ณณ์— ์ •๋ฆฌ ํ•ด๋ดค๋‹ค! 1. Log4j ๋ž€? - Apache Software Foundation์—์„œ ๊ฐœ๋ฐœ - Java ๋กœ๊น… ํ”„๋ ˆ์ž„ ์›Œํฌ๋กœ ํ”„๋กœ๊ทธ๋žจ์˜ ๋กœ๊ทธ ๋‚จ๊ธฐ๋Š” ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ - ๋Œ€๋ถ€๋ถ„์˜ ํ”„๋กœ๊ทธ๋žจ์—์„œ ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์–ด ๋”์šฑ ์‹ฌ๊ฐํ•œ ์ทจ์•ฝ์ ์ด๋‹ค. 2. ์–ด๋–ค ์ทจ์•ฝ์ ์ธ๊ฐ€? - CVE-2021-44228 - ํ•œ์ค„์˜ ์ฝ”๋“œ ๋งŒ์œผ๋กœ ์„œ๋ฒ„์— ์›ํ•˜๋Š” ๋ช…๋ น์„ ๋‚ด๋ ค ๊ณต๊ฒฉ์ž๊ฐ€ ์›ํ•˜๋Š” ๊ธฐ๋Šฅ ์ˆ˜ํ–‰ ๊ฐ€๋Šฅ. - ๋””๋ ‰ํ† ๋ฆฌ(LDAP ๋””๋ ‰ํ† ๋ฆฌ)๋ฅผ ํ†ตํ•ด ๋ฐ์ดํ„ฐ๋ฅผ ์ฐพ๊ธฐ ์œ„ํ•ด Java ํ”„๋กœ๊ทธ๋žจ์—์„œ ์‚ฌ์šฉํ•˜๋Š” Java Naming and Directory Interface (JNDI)๋ฅผ ์‚ฌ์šฉ ๋ฐฑ๋ฌธ์ด ๋ถˆ์—ฌ์ผ๊ฒฌ, ์•„๋ž˜ ์˜์ƒ์„ ๋ณด๋ฉด ์–ด๋–ค ๋Š๋‚Œ์ธ์ง€ ์ดํ•ด๊ฐ€ ๋œ๋‹ค https://youtu.be/NOx.. 2021. 12. 19.