์ „์ฒด ๊ธ€ 56

[Webhacking.kr | ์›นํ•ดํ‚น] g00gle1

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ๊ตฌ๊ธ€ํผ์ด ๋“ฑ์žฅํ•œ๋‹ค. ์ฒดํฌ ํ™•์ธ์„ ๋ˆŒ๋ €๋”๋‹ˆ "์ •ํ™•ํžˆ 0๊ฐœ์˜ ์˜ต์…˜์„ ์„ ํƒํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค." ๋ผ๋Š” ๊ธ€์ž๊ฐ€ ๋œฌ๋‹ค.  ์•„๋ฌด๊ฒƒ๋„ ํด๋ฆญ ์•ˆ ํ•˜๊ณ  ์ œ์ถœ์„ ๋ˆ„๋ฅด๋‹ˆ "ํ•„์ˆ˜ ์งˆ๋ฌธ์ž…๋‹ˆ๋‹ค." ์ด๋ ‡๊ฒŒ ๋œฌ๋‹ค. ๊ฐœ๋ฐœ์ž ๋„๊ตฌ๋ฅผ ์—ด์–ด script๋ฅผ ํ™•์ธํ•ด๋ณด๋‹ˆ ๋ˆˆ์— ๋„๋Š” ๋ฌธ์žฅ๋“ค์ด ์žˆ๋‹ค. flag ๊ฐ’์ด ๋Œ€๋†“๊ณ  ๋‚˜์™€์žˆ๋‹ค ...  ์›นํ•ดํ‚น ํ™ˆํŽ˜์ด์ง€ Auth์— ์ œ์ถœํ•˜๋‹ˆ ํ•ด๊ฒฐ๋˜์—ˆ๋‹ค.

[๋“œ๋ฆผํ•ต | ์›นํ•ดํ‚น] LEVEL 1: php-1

๐Ÿ‘พ ๋ฌธ์ œ ์„ค๋ช…php๋กœ ์ž‘์„ฑ๋œ Back Office ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.LFI ์ทจ์•ฝ์ ์„ ์ด์šฉํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” /var/www/uploads/flag.php์— ์žˆ์Šต๋‹ˆ๋‹ค. ๐Ÿ“Ž https://dreamhack.io/wargame/challenges/46 php-1php๋กœ ์ž‘์„ฑ๋œ Back Office ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. LFI ์ทจ์•ฝ์ ์„ ์ด์šฉํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” /var/www/uploads/flag.php์— ์žˆ์Šต๋‹ˆ๋‹ค. Reference Server-side Basicdreamhack.io ๋ฌธ์ œ ํŒŒ์ผ์„ ๋‹ค์šด๋กœ๋“œ ํ•œ๋‹ค.  4๊ฐœ์˜ ํŒŒ์ผ์ด ์กด์žฌํ•œ๋‹ค. ๊ฐ ํŒŒ์ผ ๋‹น ์ฃผ์š” ๋ถ€๋ถ„์„ ๊ณต์œ ํ•ด๋ณด๊ฒ ๋‹ค. ์ ‘์† ์ •๋ณด์— "์„œ๋ฒ„ ์ƒ์„ฑํ•˜๊ธฐ"๋ฅผ ๋ˆŒ๋Ÿฌ์„œ ๋งํฌ์— ์ ‘์†ํ•œ๋‹ค.  List์˜ flag.php๋ฅผ ํด๋ฆญํ–ˆ๋”๋‹ˆ Permissi..

[๋“œ๋ฆผํ•ต | ์›นํ•ดํ‚น] LEVEL 1: command-injection-chatgpt

๐Ÿ‘พ ๋ฌธ์ œ ์„ค๋ช…ํŠน์ • Host์— ping ํŒจํ‚ท์„ ๋ณด๋‚ด๋Š” ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.Command Injection์„ ํ†ตํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” flag.py์— ์žˆ์Šต๋‹ˆ๋‹ค.chatGPT์™€ ํ•จ๊ป˜ ํ’€์–ด๋ณด์„ธ์š”! ๐Ÿ“Ž https://dreamhack.io/wargame/challenges/768 command-injection-chatgptํŠน์ • Host์— ping ํŒจํ‚ท์„ ๋ณด๋‚ด๋Š” ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. Command Injection์„ ํ†ตํ•ด ํ”Œ๋ž˜๊ทธ๋ฅผ ํš๋“ํ•˜์„ธ์š”. ํ”Œ๋ž˜๊ทธ๋Š” flag.py์— ์žˆ์Šต๋‹ˆ๋‹ค. chatGPT์™€ ํ•จ๊ป˜ ํ’€์–ด๋ณด์„ธ์š”! Reference Webhacking Roadmapdreamhack.io์ ‘์† ์ •๋ณด์— "์„œ๋ฒ„ ์ƒ์„ฑํ•˜๊ธฐ"๋ฅผ ๋ˆŒ๋Ÿฌ์„œ ๋งํฌ์— ์ ‘์†ํ•œ๋‹ค.  ์ด๋Ÿฐ ํŽ˜์ด์ง€๊ฐ€ ๋“ฑ์žฅํ•œ๋‹ค. 8.8.8.8์„ ์ž…๋ ฅํ•ด ping test๋ฅผ ์ˆ˜ํ–‰ํ–ˆ..

[Webhacking.kr | ์›นํ•ดํ‚น] old-20

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ์ฐฝ์ด ๋œฌ๋‹ค. "nickname"๊ณผ "comment"๋ฅผ ์ž…๋ ฅํ•˜๊ณ  captcha๋กœ ์ธ์ฆ์„ ํ•œ ํ›„ Submitํ•˜๋Š” ๊ตฌ์กฐ๋‹ค.๊ทธ๋Ÿฌ๋‚˜ ์ƒ๋‹จ์„ ํ™•์ธํ•ด ๋ณด๋ฉด time limit : 2 second ์ฆ‰, 2์ดˆ์•ˆ์— Submit ํ•ด์•ผํ•˜๊ธฐ ๋•Œ๋ฌธ์— ์ง์ ‘ ์ž…๋ ฅํ•˜๋Š” ๊ฒƒ์€ ์•„๋‹Œ ๊ฒƒ ๊ฐ™๊ณ  ์ฝ”๋“œ๋ฅผ ๋ณด๊ณ  ์–ด๋–ป๊ฒŒ ํ•ด์•ผํ• ์ง€ ๊ณ ๋ฏผํ•ด๋ณด์•„์•ผ ํ•  ๊ฒƒ ๊ฐ™๋‹ค. ๊ฐœ๋ฐœ์ž ๋„๊ตฌ๋ฅผ ํ†ตํ•ด script ๋ถ€๋ถ„์„ ํ™•์ธํ•ด๋ณด๊ฒ ๋‹ค. ์ด ์ฝ”๋“œ๋Š” JavaScript๋กœ ์ž‘์„ฑ๋œ ํ•จ์ˆ˜์ธ๋ฐ, 1. `function ck() {`: `ck`๋ผ๋Š” ํ•จ์ˆ˜๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.2. `if(lv5frhttp://m.id.value=="") { lv5frhttp://m...

Generative Agent ๋…ผ๋ฌธ ๋ฆฌ๋ทฐ

๐Ÿชป Generative Agent Project ์ƒˆ๋กœ์šด ํ”„๋กœ์ ํŠธ ์‹œ์ž‘! ๐Ÿณ ์ฃผ์ œ Generative Agent ๐Ÿณ ์ง„ํ–‰ ๊ณ„ํš Zep์„ ํ™œ์šฉํ•ด์„œ ๊ตฌํ˜„ํ•˜๊ณ ์ž ํ•œ๋‹ค. ๋…ผ๋ฌธ Generative Agents : Interactive Simulacra of Human Behavior์˜ ์›๋ฆฌ์™€ ์ฝ”๋“œ๋ฅผ ์ฐธ๊ณ ํ•˜์—ฌ ๊ด€๋ จ๋œ ๋ถ€๋ถ„์„ ๊ตฌํ˜„ํ•ด๋ณด๊ณ ์ž ํ•œ๋‹ค. ๐Ÿณ ์ฐธ๊ณ  ์ž๋ฃŒ ๋…ผ๋ฌธ Generative Agents: Interactive Simulacra of Human Behavior (https://arxiv.org/abs/2304.03442) Communicative Agents for Software Development (https://arxiv.org/abs/2307.07924) ๊นƒํ—ˆ๋ธŒ generative_agents (htt..

[Webhacking.kr | ์›นํ•ดํ‚น] old-19

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr ๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ์ฐฝ์ด ๋œฌ๋‹ค. ๊ธฐ๋ณธ์ ์œผ๋กœ admin์ด ์ฑ„์›Œ์ ธ ์žˆ๊ณ , "์ œ์ถœ" ๋ฒ„ํŠผ์„ ๋ˆ„๋ฅด๋ฉด "you are not admin" ์ด๋ ‡๊ฒŒ ๋œฌ๋‹ค. ๊ทธ๋Ÿฌ๋‹ค ๋ช‡ ์ดˆ ํ›„ ๊ธˆ๋ฐฉ ๋‹ค์‹œ ์›๋ž˜ ํŽ˜์ด์ง€๋กœ ๋Œ์•„์˜ค๋Š” ๊ฒƒ์„ ํ™•์ธํ–ˆ๋‹ค. admin ๊ฐ’ ๋Œ€์‹  guest๋ฅผ ์ž…๋ ฅํ–ˆ๋”๋‹ˆ "hello guest"๋ผ๊ณ  ๋œฌ๋‹ค. ์•„๊นŒ admin๊ณผ ๋‹ค๋ฅด๊ฒŒ ๋ช‡ ์ดˆ ํ›„ ๋‹ค์‹œ ์ดˆ๊ธฐํ™”๋ฉด์œผ๋กœ ๋Œ์•„๊ฐ€์ง€ ์•Š๊ณ , "logout" ๋ฒ„ํŠผ์„ ๋ˆŒ๋Ÿฌ๋„ ์•„๋ฌด๋Ÿฐ ๋ณ€ํ™”๊ฐ€ ์—†์–ด์„œ ์ฟ ํ‚ค๊ฐ’์„ ํ™•์ธํ•ด๋ดค๋‹ค. YjJmNWZmNDc0MzY2NzFiNmU1MzNkOGRjMzYxNDg0NWQ3Yjc3NGVmZmU0YTM0OWM2ZGQ4MmFkNGY0ZjIxZDM0Y2UxNjcxN..

[Webhacking.kr | ์›นํ•ดํ‚น] old-17

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr ๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ์ฐฝ์ด ๋œฌ๋‹ค. ์†Œ์Šค์ฝ”๋“œ๋ฅผ ํ™•์ธํ•ด๋ณด์ž. check ๋ฒ„ํŠผ์„ ๋ˆ„๋ฅด๊ฒŒ๋˜๋ฉด subํ•จ์ˆ˜๋ฅผ ์‹คํ–‰์‹œํ‚ด์„ ํ™•์ธํ•  ์ˆ˜ ์žˆ๋‹ค. unlock ๋ณ€์ˆ˜๊ฐ’๊ณผ ๋™์ผํ•œ ๋ฐ์ดํ„ฐ๋ฅผ input์— ๋„ฃ์€ ๋‹ค์Œ check ๋ฒ„ํŠผ์„ ๋ˆ„๋ฅด๋ฉด ํ’€๋ฆฐ๋‹ค. unlock ๋ณ€์ˆ˜๊ฐ’๊ณผ ๋‹ค๋ฅผ ๋•Œ๋Š” wrong์ด๋ž€ alert์ด ๋œฌ๋‹ค. unlock ๊ฐ’์„ ๊ณ„์‚ฐํ•ด๋ณด์ž. ๊ฐ’์„ ๊ณ„์‚ฐํ•˜๊ธฐ ์œ„ํ•ด console์„ ์ด์šฉํ•œ๋‹ค.

[Webhacking.kr | ์›นํ•ดํ‚น] old-16

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr ๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ์ฐฝ์ด ๋œฌ๋‹ค. ์ฝ”๋“œ์˜ ์Šคํฌ๋ฆฝํŠธ๋ฅผ ํ™•์ธํ•ด๋ณด์•˜๋‹ค. document.body.innerHTML+="*"; function mv(cd){ kk(star.style.left-50,star.style.top-50); if(cd==100) star.style.left=parseInt(star.style.left+0,10)+50+"px"; if(cd==97) star.style.left=parseInt(star.style.left+0,10)-50+"px"; if(cd==119) star.style.top=parseInt(star.style.top+0,10)-50+"px"; if(cd==11..

[Webhacking.kr | ์›นํ•ดํ‚น] old-14

๐Ÿ“Ž https://webhacking.kr/chall.php Webhacking.kr webhacking.kr ๋ฌธ์ œ๋ฅผ ํด๋ฆญํ•˜๋ฉด ์ด๋Ÿฐ ์ฐฝ์ด ๋œฌ๋‹ค. ์•„๋ฌด๊ฑฐ๋‚˜ ์ž…๋ ฅํ•ด๋ดค๋”๋‹ˆ Wrong ํ‘œ์‹œ๊ฐ€ ๋œฌ๋‹ค. function ck(){ var ul=document.URL; ul=ul.indexOf(".kr"); ul=ul*30; if(ul==pw.input_pwd.value) { location.href="?"+ul*pw.input_pwd.value; } else { alert("Wrong"); } return false; } document.URL : ๋ฌธ์„œ์˜ URL์„ ๋ฐ˜ํ™˜ํ•˜๋Š” ์†์„ฑ indexOf( ) : ๋ฌธ์ž์—ด์—์„œ ์›ํ•˜๋Š” ๋ฌธ์ž์—ด์„ ๊ฒ€์ƒ‰ํ•˜๋Š” ๋‚ด์žฅํ•จ์ˆ˜๋กœ ์œ„์น˜๊ฐ’์„ index๋กœ ๋ฐ˜ํ™˜ pw.input_pwd.value : ์ž…๋ ฅ์ฐฝ..

728x90