๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

์ •๋ณด๋ณด์•ˆ8

[Burp Suite] ์„ค์น˜ ๋ฐฉ๋ฒ• ๋ฐ ๊ธฐ๋Šฅ ์•Œ์•„๋ณด๊ธฐ! Burp Suite ์— ๋Œ€ํ•ด์„œ ์„ค์น˜์™€ ๊ธฐ๋ณธ์ ์ธ ๊ธฐ๋Šฅ์„ ์„ค๋ช…ํ•˜๊ณ ์ž ํ•ฉ๋‹ˆ๋‹ค! ๋จผ์ € Proxy ์˜ ๊ฐœ๋…์— ๋Œ€ํ•œ ์ดํ•ด๊ฐ€ ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. Proxy(ํ”„๋ก์‹œ) ๋ž€? Proxy๋Š” ํด๋ผ์ด์–ธํŠธ์™€ ์„œ๋ฒ„ ์‚ฌ์ด์—์„œ ๋ฐ์ดํ„ฐ๋ฅผ ์ „๋‹ฌ(์ค‘๊ณ„)ํ•ด ์ฃผ๋Š” ์—ญํ• ์„ ์ˆ˜ํ–‰ํ•ฉ๋‹ˆ๋‹ค. ์ค‘๊ฐ„์—์„œ ๋ฐ์ดํ„ฐ๋ฅผ ๋ฐ›์•„์„œ ๋Œ€์‹  ์ „๋‹ฌํ•ด์ค€๋‹ค๊ณ  ์ƒ๊ฐํ•˜๋ฉด ๋ฉ๋‹ˆ๋‹ค. ๊ธฐ๋ณธ ํ†ต์‹  ํ™˜๊ฒฝ Proxy ๊ตฌ์„ฑ ์‹œ ์œ„์น˜ Burp Suite๋ž€? Brup Suite๋Š” Proxy ๊ธฐ์ˆ ์„ ํ™œ์šฉํ•˜๋Š” ๋„๊ตฌ์ด๋ฉฐ ์š”์ฒญ/์‘๋‹ต์— ๋Œ€ํ•œ ๋‹ค์–‘ํ•œ ๊ธฐ๋Šฅ์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค. Burp Suite ๋‹ค์šด๋กœ๋“œ ๋ฐ ์„ค์น˜ 1. ํ™ˆํŽ˜์ด์ง€์—์„œ Community ๋ฒ„์ „์œผ๋กœ ๋‹ค์šด๋กœ๋“œ ํ•ฉ๋‹ˆ๋‹ค. https://portswigger.net/burp/communitydownload 2. ์„ค์น˜ ํŒŒ์ผ ์‹คํ–‰ํ•˜์—ฌ ์•ˆ๋‚ด๋Œ€๋กœ ์ง„ํ–‰ํ•ฉ๋‹ˆ๋‹ค. โ–ถ ์ €๋Š” ํ…Œ์ŠคํŠธ .. 2023. 5. 4.
PDF ๋ฐ”์ด๋Ÿฌ์Šค / ์•…์„ฑ์ฝ”๋“œ ํ™•์ธ ๋ฐฉ๋ฒ• PDF ๋‚ด ์•…์„ฑ์ฝ”๋“œ / URL์„ ํŽธ๋ฆฌํ•˜๊ฒŒ ํ•œ๋ˆˆ์— ๋ณผ ์ˆ˜ ์žˆ๋Š” ๋ฐฉ๋ฒ•์ด ์žˆ์–ด์„œ ์†Œ๊ฐœํ•ด ๋“œ๋ ค ๋ณด๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค. ์šฐ์„  Python์„ ํ™œ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์œผ๋กœ ๋ถ„์„ํ•˜๋Š” PC์— Python์ด ์„ค์น˜๋˜์–ด ์žˆ์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค 1. Python ์„ค์น˜ํ•˜๊ธฐ Download Python The official home of the Python Programming Language www.python.org ๊ทธ๋Ÿผ ์ด์ œ ๋ถ„์„์— ํ™œ์šฉํ•  Pdfid.py ํŒŒ์ผ์„ ๋‹ค์šด๋ฐ›์œผ๋ฉด ๋ฉ๋‹ˆ๋‹ค 2. Pdfid.py ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ PDF Tools Here is a set of free YouTube videos showing how to use my tools: Malicious PDF Analysis Workshop. pdf-parser.py This tool .. 2022. 12. 24.
Naver ํ”ผ์‹ฑ ํŽ˜์ด์ง€ URL์„ ํฌํ•จํ•œ ์ŠคํŒธ๋ฉ”์ผ ์œ ํฌ Naver ๋กœ๊ทธ์ธ ํŽ˜์ด์ง€๋ฅผ ์‚ฌ์นญํ•œ ํ”ผ์‹ฑ ํŽ˜์ด์ง€๋ฅผ ํ™•์ธ ํ–ˆ์Šต๋‹ˆ๋‹ค. ์ŠคํŒธ๋ฉ”์ผ์— URL ์„ ์ ‘์†ํ•˜๋„๋ก ํฌํ•จํ•˜์—ฌ ๋ฐœ์†ก ํ•˜์˜€๊ณ  ๋ฐœ์‹ ์ž ์ฃผ์†Œ๋Š” NAVER๋กœ ๋ณ€์กฐํ•˜์ง€ ์•Š์•˜์Šต๋‹ˆ๋‹ค. ์ฃผ์†Œ๋ฅผ ์ฃผ์˜ ๊นŠ๊ฒŒ ๋ณธ๋‹ค๋ฉด ํ”ผ์‹ฑ์ธ๊ฑธ ์•Œ ์ˆ˜ ์žˆ์„ ๊ฒƒ ๊ฐ™์Šต๋‹ˆ๋‹ค. IOC ์นจํ•ด์ง€ํ‘œ URL : naver-corpid432bajsd.weihnachts-backstube[.]de IP : 81.169.145.66 "๋„ค์ด๋ฒ„ ์•„์ด๋”” ๋ณดํ˜ธ์กฐ์น˜ ํ•ด์ œ"๋กœ ์œ„์žฅํ•œ ํ”ผ์‹ฑ๋ฉ”์ผ ์œ ํฌ ์ฃผ์˜! ์•ˆ๋…•ํ•˜์„ธ์š”? ์ด์ŠคํŠธ์‹œํ๋ฆฌํ‹ฐ ์‹œํ๋ฆฌํ‹ฐ๋Œ€์‘์„ผํ„ฐ(์ดํ•˜ ESRC)์ž…๋‹ˆ๋‹ค. ๊ตญ๋‚ด ํฌํ„ธ์‚ฌ์ดํŠธ ๋„ค์ด๋ฒ„์˜ ์•„์ด๋”” ๋ณดํ˜ธ์กฐ์น˜๊ฐ€ ์‹ค์‹œ๋˜์—ˆ๋‹ค๋Š” ๋‚ด์šฉ์˜ ํ”ผ์‹ฑ ๊ณต๊ฒฉ์ด ๋‹ค์ˆ˜ ๋ฐœ๊ฒฌ๋˜์–ด ์‚ฌ์šฉ์ž๋“ค์˜ ์ฃผ์˜๊ฐ€ ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค blog.alyac.co.kr 2022. 10. 29.
[์„œ๋น„์Šค ์†Œ๊ฐœ] OSINT Open Source + Intelligence ๋ž€? OSINT(Open Source Intelligence)๋Š” ๊ณต๊ฐœ๋œ ์ถœ์ฒ˜๋ผ๋Š” ์˜๋ฏธ๋กœ Open Source์™€ ๊ตฐ(Military)์—์„œ ์ •๋ณด๋ฅผ ์ˆ˜์ง‘ํ•˜๋Š” ์ฒฉ๋ณดํ™œ๋™์—์„œ ์œ ๋ž˜๋œ Intelligence๊ฐ€ ํ•ฉ์ณ์ ธ ํƒ„์ƒํ•œ ์šฉ์–ด ์ถœ์ฒ˜ : https://www.kisec.com/rsrh_rpt_det.do?id=163 ๊ฐ„๋‹จํ•˜๊ฒŒ๋Š” ์˜จ๋ผ์ธ ์ƒ์— ๋„๋ฆฌ ํผ์ ธ ์žˆ๋Š” ๊ฐ์ข… ์ •๋ณด๋“ค์„ ํ•œ ๊ณณ์— ๋ชจ์•„์„œ ๋ณผ ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ฃผ๋Š” ์—ญํ• ์„ ํ•˜๋Š” ๊ฒƒ ๊ฐ™๋‹ค 1. Shodan Shodan Search engine of Internet-connected devices. Create a free account to get started. www.shodan.io 2. Criminal IP Cybersecu.. 2022. 9. 3.
[์„œ๋น„์Šค ์†Œ๊ฐœ] IP ์™ธ๋ถ€ ํ‰ํŒ ์กฐํšŒ - IBM X-Force Exchange ์˜ค๋Š˜ ํฌ์ŠคํŒ…ํ•˜๋Š” ์‚ฌ์ดํŠธ๋Š” IP ํ‰ํŒ ์กฐํšŒ๋ฅผ ํ•  ์ˆ˜ ์žˆ๋Š” ์‚ฌ์ดํŠธ์ž…๋‹ˆ๋‹ค. IP ์™ธ์—๋„ ๋‹ค๋ฅธ IOC ์ •๋ณด๋“ค์ด ๋งŽ์ด ๋“ฑ๋ก๋˜์–ด ์žˆ๊ณ  ์‚ฌ์šฉ ๋ฐฉ๋ฒ•์€ ์•„๋ž˜ ํŽ˜์ด์ง€ ์ ‘์† ํ›„ ๊ฒ€์ƒ‰์ฐฝ์— ๋„๋ฉ”์ธ, IP ์ •๋ณด๋ฅผ ์ ๊ณ  ๊ฒ€์ƒ‰ํ•˜๋ฉด ๊ทธ์— ๋Œ€ํ•œ ํ‰ํŒ ์ •๋ณด๋ฅผ ํ™•์ธ ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. 1. IBM ํ™ˆํŽ˜์ด์ง€ https://exchange.xforce.ibmcloud.com/ IBM X-Force Exchange IBM X-Force Exchange is a threat intelligence sharing platform enabling research on security threats, aggregation of intelligence, and collaboration with peers exchange.xforce.ibmcloud.com.. 2022. 6. 17.
[์ •๋ณด๋ณด์•ˆ๊ธฐ์‚ฌ] ๊ธฐ๋ฐ€์„ฑ, ๋ฌด๊ฒฐ์„ฑ, ๊ฐ€์šฉ์„ฑ ์ •๋ณด๋ณดํ˜ธ์˜ ๋ชฉํ‘œ 1. ๊ธฐ๋ฐ€์„ฑ : ๋ˆ„๊ตฐ๊ฐ€ ๋‚˜์˜ ๋ฐ์ดํ„ฐ๋ฅผ ํ›”์ณ๋ณด๋Š” ๊ฒƒ 2. ๊ฐ€์šฉ์„ฑ : ์„œ๋น„์Šค ์ค‘๋‹จ ์—†์ด ์šด์˜ 3. ๋ฌด๊ฒฐ์„ฑ : ๋ฐ์ดํ„ฐ๊ฐ€ ์ œ 3์ž์— ์˜ํ•ด ์†์ƒ๋˜์ง€ ์•Š๋„๋ก ํ•˜๋Š” ๊ฒƒ (์›๋ณธ์ด ์ˆ˜์ •๋˜์ง€ ์•Š๋„๋ก) 4. ์ธ์ฆ : ํ˜„์žฌ ์‚ฌ์šฉ์ž๊ฐ€ ์‹ค์ œ ์‚ฌ์šฉ์ž ๋ณธ์ธ์ด ๋งž๋Š”์ง€ ํ™•์ธํ•˜๋Š” ๊ณผ์ • 5. ๋ถ€์ธ๋ฐฉ์ง€ : ์‚ฌ์šฉ์ž๊ฐ€ ๋ฐ์ดํ„ฐ ์ˆ˜์ • ํ›„ ๊ทธ ์‚ฌ์‹ค์„ ์‚ฌํ›„์— ์ฆ๋ช…ํ•จ์œผ๋กœ์จ ์‚ฌ์‹ค ๋ถ€์ธ์„ ๋ฐฉ์ง€ํ•˜๋Š” ๋ณด์•ˆ ๊ธฐ์ˆ  ๊ธฐ๋ฐ€์„ฑ - ์ •๋ณด ๊ตํ™˜ ์‹œ ๋ถˆํŠน์ • ์ธ์›์ด ์ •๋ณด๋ฅผ ๊ฐ€๋กœ์ฑ„์„œ ํ›”์ณ๋ณผ ๋•Œ ๊ธฐ๋ฐ€์„ฑ์ด ์นจํ•ด๋˜์—ˆ๋‹ค๊ณ  ํ•œ๋‹ค. - ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ๋ฐ ์ ‘๊ทผ์ œ์–ด ์„ค์ • ํ•„์š” ๋ฌด๊ฒฐ์„ฑ - ์ •๋ณด๊ฐ€ ๋ถˆํŠน์ • ์ธ์›์— ์˜ํ•ด ๋ณ€๊ฒฝ๋˜์—ˆ์„ ๋•Œ ๋ฌด๊ฒฐ์„ฑ์ด ์นจํ•ด๋˜์—ˆ๋‹ค๊ณ  ํ•œ๋‹ค - ๋ฌด๊ฒฐ์„ฑ ๋ณด์žฅ์„ ์œ„ํ•ด ๋ฉ”์‹œ์ง€ ์ธ์ฆ, ์ ‘๊ทผ์ œ์–ด ์„ค์ •์ด ํ•„์š”ํ•˜๋‹ค. ๊ฐ€์šฉ์„ฑ - ํ†ต์‹ , ์ •๋ณด๊ตํ™˜ ๋ฐ ์„œ๋น„์Šค๊ฐ€ ๋ถˆ๊ฐ€๋Šฅ ํ•  ๋•Œ ๊ฐ€์šฉ์„ฑ.. 2022. 6. 1.
IP ์™ธ๋ถ€ ํ‰ํŒ ์กฐํšŒ - AbuseIPDB ์•ˆ๋…•ํ•˜์„ธ์š” ๐Ÿ˜Š ์˜ค๋Š˜ ์†Œ๊ฐœํ•ด๋“œ๋ฆด ์‚ฌ์ดํŠธ๋Š” IP์˜ ํ‰ํŒ์„ ์กฐํšŒ ํ•  ์ˆ˜ ์žˆ๋Š” ๊ณณ ์ž…๋‹ˆ๋‹ค. ์•„๋ž˜์™€ IP ๊ฒ€์ƒ‰์œผ๋กœ ๊ฐ™์ด ํ•ด๋‹น IP์˜ ๋“ฑ๋ก ๊ตญ๊ฐ€, Hostname, ISP ์—…์ฒด๋ฅผ ํ™•์ธ ๊ฐ€๋Šฅํ•ฉ๋‹ˆ๋‹ค ๋˜ํ•œ ์•„๋ž˜ ์ฒ˜๋Ÿผ AbuseIPDB์€ ๋‹ค์–‘ํ•œ ์‚ฌ์šฉ์ž๋“ค์ด ํ•ด๋‹น IP์— ๋Œ€ํ•ด์„œ Report๋ฅผ ์ œ์ถœํ•˜๋ฉฐ ํ•ด๋‹น IP์— ๋Œ€ํ•œ ๋‹ค์–‘ํ•œ ์˜๊ฒฌ์„ ํ™•์ธ ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. www.abuseipdb.com/ AbuseIPDB - IP address abuse reports - Making the Internet safer, one IP at a time Check an IP Address, Domain Name, or Subnet e.g. 211.249.218.4, microsoft.com, or 5.188.10.0/24 www.abuseipd.. 2021. 4. 25.