SWLUG/์›น ํ•ดํ‚น 32

[LoS.Rubiya.kr] gremlin

https://los.rubiya.kr ๋ฌธ์ œ๋ฅผ ์„ ํƒํ•˜๋ฉด ๋‚˜์˜ค๋Š” ์ฒ˜์Œ ํ™”๋ฉด. ์ด ์‚ฌ์ดํŠธ์˜ ๋ฌธ์ œ๋ฅผ ์ฒ˜์Œ ํ’€์–ด๋ณด๋Š”๋ฐ ์—ฌ๊ธฐ์„œ ์–ด๋–ป๊ฒŒ ํ•ด์•ผํ• ์ง€ ๊ฐ์ด ์˜ค์ง€ ์•Š์•„์„œ ๊ตฌ๊ธ€๋ง์„ ํ–ˆ๋‹ค. php ์ฝ”๋“œ๋ฅผ ํ•ด์„ํ•ด๋ณด๋ฉด ์ฟผ๋ฆฌ๋ฅผ ์ž‘์„ฑํ•˜์—ฌ ๋งŒ์•ฝ ๊ทธ ์ฟผ๋ฆฌ์— ์ž…๋ ฅ๋œ id๊ฐ’์ด ์žˆ๋‹ค๋ฉด solve("gremlin") ํ•จ์ˆ˜๋ฅผ ์‹คํ–‰์‹œ์ผœ์ค€๋‹ค. ๋Š” ๋‚ด์šฉ์ด๋ผ๊ณ  ํ•œ๋‹ค. ์œ— ๋ถ€๋ถ„์„ ๋ณด๋ฉด ์ฟผ๋ฆฌ์— ๋Œ€ํ•ด์„œ๋„ ์ง์ ‘ ์–ธ๊ธ‰ํ•ด์ฃผ์—ˆ๋‹ค. ๊ฐ„๋‹จํ•œ ์ฟผ๋ฆฌ๋ฅผ ์ž‘์„ฑํ•˜๋ฉด ํ•ด๊ฒฐ๋˜๋Š” ๋ฌธ์ œ๋ผ๊ณ  ํ•œ๋‹ค. ?id=admin' or '1==1' %23 # id๊ฐ€ admin์ด๊ฑฐ๋‚˜ 1์ด 1๊ณผ ๊ฐ™์œผ๋ฉด ์ฐธ(%23 : #์œผ๋กœ, ๋’ค ์ฟผ๋ฆฌ ๋‚ด์šฉ์„ ์ฃผ์„์ฒ˜๋ฆฌ) # ๋ฌด์กฐ๊ฑด ๊ฐ™๊ฒŒ ๋งŒ๋“œ๋Š” ์‹์ด๋ฏ€๋กœ ๊ฒฐ๊ณผ์ ์œผ๋กœ ์ฐธ์ด ๋‚˜์™€ ์ฟผ๋ฆฌ๋ฌธ์ด ์‹คํ–‰๋œ๋‹ค. ์ฃผ์†Œ ๋’ค์— ์ž…๋ ฅํ•˜๋ฉด ๋œ๋‹ค๊ณ  ํ•œ๋‹ค. ์ฐธ๊ณ : https://dohunny.tist..

[Dreamhack/๋“œ๋ฆผํ•ต] simple_sqli

https://dreamhack.io/wargame/challenges/24 simple_sqli ๋กœ๊ทธ์ธ ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. SQL INJECTION ์ทจ์•ฝ์ ์„ ํ†ตํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” flag.txt, FLAG ๋ณ€์ˆ˜์— ์žˆ์Šต๋‹ˆ๋‹ค. Reference Server-side Basic dreamhack.io ๋ฌธ์ œ ์ฒซ ์‹œ์ž‘ ํ™”๋ฉด์ด๋‹ค. ์œ„์ชฝ์— HOME, ABbout, Contact ๋ฉ”๋‰ด๊ฐ€ ์žˆ๊ณ  (์ดˆ๊ธฐ ํ™”๋ฉด = HOME ํด๋ฆญ ์‹œ ๋‚˜์˜ค๋Š” ํŽ˜์ด์ง€ ํ™”๋ฉด) About, Contact๋ฅผ ๋ˆ„๋ฅด๋ฉด ์œ„์™€ ๊ฐ™์€ ํŽ˜์ด์ง€๋กœ ์ด๋™ํ•˜๋Š”๋ฐ ๋กœ๊ทธ์ธ์„ ์•ˆ ํ•œ ์ƒํƒœ์—ฌ์„œ ๊ทธ๋Ÿฐ๊ฐ€? ์ฃผ์†Œ๋งŒ ๋ฐ”๋€Œ๊ณ  HOME๊ณผ ๊ฐ™์€ ํ™”๋ฉด์ด ๋œฌ๋‹ค. ๋ฉ”์ธ ํ™”๋ฉด์—๋Š” ์•„์ด๋””์™€ ํŒจ์Šค์›Œ๋“œ๋ฅผ ์ž…๋ ฅํ•˜๋Š” ํ™”๋ฉด์œผ๋กœ ๋„˜์–ด๊ฐ€๋Š” Login ๋ฒ„ํŠผ์ด ์žˆ๋‹ค. ์˜ค๋ฅธ์ชฝ ์œ„์— ์žˆ๋Š” Login ๋ฒ„ํŠผ๋„..

[Dreamhack/๋“œ๋ฆผํ•ต] image-storage

https://dreamhack.io/wargame/challenges/38 image-storage php๋กœ ์ž‘์„ฑ๋œ ํŒŒ์ผ ์ €์žฅ ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์„ ์ด์šฉํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” /flag.txt์— ์žˆ์Šต๋‹ˆ๋‹ค. Reference Server-side Basic dreamhack.io "php๋กœ ์ž‘์„ฑ๋œ ํŒŒ์ผ ์ €์žฅ ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์„ ์ด์šฉํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” /flag.txt์— ์žˆ์Šต๋‹ˆ๋‹ค." ์ด์ „์— ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์„ ์ด์šฉํ•œ ๋ฌธ์ œ๋ฅผ ํ’€์—ˆ๋Š”๋ฐ ๋„์›€์ด ๋˜์—ˆ์œผ๋ฉด ์ข‹๊ฒ ๋‹ค๊ณ  ์ƒ๊ฐํ•˜๊ณ  ์‹œ์ž‘ํ–ˆ๋‹ค. ๊ฐ€์žฅ ์ฒ˜์Œ์˜ ํ™”๋ฉด์ด๋‹ค. ์ด ํ™”๋ฉด์€ Home ์นดํ…Œ๊ณ ๋ฆฌ์— ํ•ด๋‹นํ•˜๋Š” ํ™”๋ฉด. List๋ฅผ ๋ˆŒ๋Ÿฌ๋ณด๋ฉด ๋นˆ ํ™”๋ฉด์ด ๋œจ๋Š”๋ฐ ์•„์ง ์˜ฌ๋ฆฐ ํŒŒ์ผ์ด ์—†์–ด์„œ ์•„๋ฌด๊ฒƒ๋„ ์•ˆ ๋œจ๋‚˜๋ณด๋‹ค. Upload ์นดํ…Œ๊ณ ๋ฆฌ..

[Root me] Install files

https://www.root-me.org/en/Challenges/Web-Server/Install-files Challenges/Web - Server : Install files [Root Me : Hacking and Information Security learning platform] yeah all my nmap scans are reported as down, even when using -Pn www.root-me.org ๋ฌธ์ œ ํ’€์ด ํŽ˜์ด์ง€๋ฅผ ๋“ค์–ด๊ฐ€๋ฉด ์•„๋ฌด๊ฒƒ๋„ ๋‚˜์˜ค์ง€ ์•Š๋Š”๋‹ค. ํฐ ํ™”๋ฉด๋งŒ ๋‚˜์˜จ๋‹ค. (์ฒ˜์Œ์—” ๋ญ๊ฐ€ ์ž˜๋ชป๋œ ์ค„ ์•Œ๊ณ  ๊ณ„์† ์ฐฝ์„ ์ง€์šฐ๊ณ  ๋‹ค์‹œ ์‹œ์ž‘ํ•ด๋ด„.) ๋ฐ”๋กœ ๊ฐœ๋ฐœ์ž ๋„๊ตฌ๋ฅผ ์—ด์–ด ์†Œ์Šค์ฝ”๋“œ๋ฅผ ํ™•์ธํ•ด๋ณด์ž. ์†Œ์Šค์ฝ”๋“œ๋ฅผ ํ™•์ธํ•ด๋ณด๋‹ˆ ์–ด๋–ค ๊ฒฝ๋กœ๊ฐ€ ์žˆ์–ด์„œ ์ ‘์†ํ•ด๋ณด์•˜๋‹ค. ๋“ค์–ด๊ฐ€๋ดค๋Š”๋ฐ ํ™”๋ฉด์—๋Š” ๋ณ„ ๊ฒŒ..

[Root me] File upload - Double extensions

https://www.root-me.org/en/Challenges/Web-Server/File-upload-Double-extensions Challenges/Web - Server : File upload - Double extensions [Root Me : Hacking and Information Security learning platform] www.root-me.org Statement Your goal is to hack this photo galery by uploading PHP code.Retrieve the validation password in the file .passwd at the root of the application. => ๋ชฉํ‘œ๋Š” PHP ์ฝ”๋“œ๋ฅผ ์—…๋กœ๋“œํ•˜์—ฌ ์ด ์‚ฌ์ง„ ..

[Webhacking.kr] old-28

https://webhacking.kr/chall.php Webhacking.kr webhacking.kr old-28 ๋ฌธ์ œ๋ฅผ ๋ˆ„๋ฅด๋ฉด ๊ฐ€์žฅ ์ฒ˜์Œ์œผ๋กœ ๋‚˜์˜ค๋Š” ํ™”๋ฉด์ด๋‹ค. ๋ฏธ์…˜์€ ./upload/gKlIl1weasuc/flag.php ํŒŒ์ผ์„ ์ฝ๋Š” ๊ฒƒ์ด๊ณ  ๋‚ด ํŒŒ์ผ์€ ./upload/gKlIl1weasuc/ ์— ์—…๋กœ๋“œ ๋œ๋‹ค๊ณ  ํ•œ๋‹ค. ./upload/gKlIl1weasuc/flag.php ์„ ๋ˆ„๋ฅด๋ฉด ์•„๋ฌด๊ฒƒ๋„ ๋‚˜์˜ค์ง€ ์•Š๋Š”๋‹ค~ ์ผ๋‹จ [ํŒŒ์ผ ์„ ํƒ] ๋ฒ„ํŠผ์„ ๋ˆŒ๋Ÿฌ์„œ ์•„๋ฌด ์‚ฌ์ง„์ด๋‚˜ ์˜ฌ๋ ค๋ดค๋‹ค. "file too big"์ด๋ผ๋Š” ๋ฌธ๊ตฌ๊ฐ€ ์ƒ๊ฒผ๊ณ , http://webhacking.kr:10002/index.php --> ์ดˆ๊ธฐํ™”๋ฉด ์›นํŽ˜์ด์ง€ ์ฃผ์†Œ๋’ค์— /index.php ๊ฐ€ ์ถ”๊ฐ€๋๋‹ค. ๋ฐฉ๊ธˆ ์˜ฌ๋ ธ๋˜ ์ด๋ฏธ์ง€ ํŒŒ์ผ์ด ๋„ˆ๋ฌด ํฌ๋‹ค๊ธธ๋ž˜, ํŒŒ์ผ ํฌ๊ธฐ๊ฐ€..

[webhacking.kr] old-12๋ฒˆ

[webhacking.kr] old-19๋ฒˆhttps://webhacking.kr/challenge/code-3/ Challenge 12 webhacking.kr ๋ฌธ์ œ ๋งํฌ๋กœ ๋“ค์–ด๊ฐ€๋ฉด ๋‚˜์˜ค๋Š” ํ™”๋ฉด์ด๋‹ค. "javascript challenge"๋ผ๊ณ  ์“ฐ์—ฌ์žˆ์œผ๋ฏ€๋กœ ๊ฐœ๋ฐœ์ž ๋„๊ตฌ๋กœ ๋“ค์–ด๊ฐ€ ์ค€๋‹ค. ์ œ์ผ ๋จผ์ € ๋ˆˆ์— ๋ˆ ๊ฑด ์•Œ ์ˆ˜ ์—†๋Š” ์ด๋ชจํ‹ฐ์ฝ˜๋“ค... ์–ด๋–ป๊ฒŒ ํ•ด์•ผ ํ• ์ง€ ๋ชจ๋ฅด๊ฒ ์–ด์„œ ๊ตฌ๊ธ€๋ง์„ ํ–ˆ๋‹ค. ( ์ฐธ๊ณ : https://security-nanglam.tistory.com/281 ) ๋‹ค์Œ์€ ํƒœ๊ทธ ์‚ฌ์ด์— ์žˆ๋Š” ์•Œ ์ˆ˜ ์—†๋Š” ์ด๋ชจํ‹ฐ์ฝ˜๋“ค์— ๋Œ€ํ•œ ์„ค๋ช…์ด๋‹ค. ์ด ๋‚œ๋…ํ™” ๋ฐฉ๋ฒ•์€ aaencode ๋ฐฉ์‹์œผ๋กœ, ์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ๋ฅผ ์ด๋ชจํ‹ฐ์ฝ˜์œผ๋กœ ๋ฐ”๊ฟ”์ฃผ๋Š” ์•”ํ˜ธํ™” ๋ฐฉ์‹์ด๋‹ค. ์ผ๋ณธ์˜ ๊ฐœ๋ฐœ์ž๊ฐ€ ๋งŒ๋“ค์—ˆ๋‹ค๊ณ  ํ•œ๋‹ค. ์ฝ”๋“œ ๋‚œ๋…ํ™”๋Š” ํ”„๋กœ๊ทธ๋ž˜๋ฐ ์–ธ์–ด๋กœ ์ž‘์„ฑ๋œ ์ฝ”๋“œ..

[Root Me] Javascript - Webpack

https://www.root-me.org/en/Challenges/Web-Client/Javascript-Webpack Challenges/Web - Client : Javascript - Webpack [Root Me : Hacking and Information Security learning platform] TCP - Back to school just blocks when i try to read the flag after i have sent the calculation. Not sure if my calculation is wrong or what is is? www.root-me.org Start the challenge ๋ฒ„ํŠผ์„ ๋ˆŒ๋Ÿฌ ๋ฌธ์ œ ํ’€์ด๋ฅผ ์‹œ์ž‘ํ•˜์ž. ๋ฌธ์ œ ํ’€์ด์˜ ์ฒ˜์Œ ํ™”๋ฉด์ด๋‹ค. Q..

[Root Me] Javascript - Authentication 2

https://www.root-me.org/en/Challenges/Web-Client/Javascript-Authentication-2 Challenges/Web - Client : Javascript - Authentication 2 [Root Me : Hacking and Information Security learning platform] TCP - Back to school just blocks when i try to read the flag after i have sent the calculation. Not sure if my calculation is wrong or what is is? www.root-me.org Start the challenge ๋ฒ„ํŠผ์„ ๋ˆŒ๋Ÿฌ ๋ฌธ์ œ๋ฅผ ํ‘ธ๋Š” ์›นํŽ˜์ด์ง€๋กœ..