rosieblue
article thumbnail
728x90

์˜ค๋Š˜์€ ๋ฒ„ํ”„์Šค์œ„ํŠธ์˜ cluster bomb ๊ธฐ๋Šฅ์„ ๋Œ€์ถฉ ์š”์•ฝํ•œ ๊ธ€์ด๋‹ค. ์ฃผ์ €๋ฆฌ ๋งŽ์Œใ…Žใ…Ž ใ… 

Portswigger ํ™ˆํŽ˜์ด์ง€์—์„œ ์บก์ณํ•จ

 

Burp Suite์˜ Intruder๋ฅผ ์ด์šฉํ•ด Blind SQL Injection์„ ์ง„ํ–‰ํ•˜๋˜ ๋„์ค‘ ๋ณ€์ˆ˜ 2๊ฐœ์— ๋Œ€ํ•ด ๊ฐ๊ธฐ ๋‹ค๋ฅธ ๊ทœ์น™์„ ์ ์šฉํ•ด์ฃผ์–ด์•ผํ•˜๋Š” ์ผ์ด ์žˆ์—ˆ๋‹ค. ๋‚˜๋Š” ๋ฐ”๋ณด๊ฐ™์ด......... Cluster Bomb์ด๋ผ๋Š” ๋ฉ‹์ง„ ์•„์ด๊ฐ€ ์žˆ๋Š” ์ค„๋„ ๋ชจ๋ฅด๊ณ  ...... ์ˆ˜๋™์œผ๋กœ ๊ณต๊ฒฉ์„ ์ง„ํ–‰ํ–ˆ๋‹ค.......

 

์œ„ ๊ธ€์— ๋”ฐ๋ฅด๋ฉด "This attack iterates through a different payload set for each defined position. The Cluster Bomb Attack is useful where an attack requires unrelated or unknown input to be inserter in multiple places within the request. ์ด๋ผ๊ณ  ์ ํ˜€์žˆ๋‹ค..

 

 

์ฐธ์œผ๋กœ ๋‚˜๋ฅผ ์œ„ํ•œ ๊ธฐ๋Šฅ์ด ์•„๋‹ ์ˆ˜ ์—†๋‹ค....... ์‚ฌ์‹ค Cluster Bomb์ด ์žˆ๋Š”์ง€ ๋ชฐ๋ผ์„œ Python์œผ๋กœ ์ž๋™ํ™” ์Šคํฌ๋ฆฝํŠธ๋ฅผ ๋งŒ๋“ค์–ด์„œ ๋Œ๋ฆฌ๋ ค๊ณ  ํ–ˆ๋Š”๋ฐ(์ง€๊ธˆ๋„ ํ•  ์˜ˆ์ •), ๋ญ”๊ฐ€ ๋ฒ„ํ”„๋กœ๋„ ๋ฌธ์ œ๋ฅผ ์ œ๋Œ€๋กœ ์™„๊ฒฐ์ง€์–ด๋ณด๊ณ ์‹ถ์—ˆ๋‹ค.... ์•”ํŠผ ์–˜๋ฅผ ์‚ฌ์šฉํ•ด์„œ ๊ณต๊ฒฉ์„ ํ•ด๋ณด๊ฒ ๋‹น

 

 

๋Œ€์ถฉ ์—ฌ๊ธฐ์„œ ์ˆซ์ž ์ชฝ์€ 1~20๊นŒ์ง€ ๋ฐ˜๋ณต, a ์ชฝ์€ alphanumeric ํ•œ ๊ฐ’์„ ๋„ฃ์–ด์ฃผ์–ด์•ผํ•˜๋Š” ์ƒํ™ฉ์ด๋‹ค ์ด ๋ฌธ์ œ์— ๋Œ€ํ•œ ํฌ์ŠคํŠธ๋Š” ์กฐ๋งŒ๊ฐ„ ์˜ฌ๋ผ๊ฐˆ ์˜ˆ์ •!

 

Payload๊ฐ€ ์•„๋‹ˆ๋ผ Positions ํƒญ์˜ Attack type์—์„œ Cluster Bomb์„ ๊ณจ๋ผ์ค€๋‹ค.

 

 

์ดํ›„ ๋ณ€์ˆ˜ 1,2์˜ ๊ทœ์น™์„ ๊ณจ๋ผ์ฃผ์ž. ์•„๋งˆ ๋ณ€์ˆ˜ ์ˆœ์„œ๋Œ€๋กœ payload set์˜ ์ˆœ์„œ๋„ ์ •์˜ํ•˜๋Š” ๊ฒƒ ๊ฐ™๋‹ค. ์ฒซ๋ฒˆ์งธ๋Š” 1~20๊นŒ์ง€ ํ•ด์ค˜์•ผํ•˜๋ฏ€๋กœ Payload type์„ Numbers๋กœ ๋ฐ”๊พธ๊ณ  ์œ„์ฒ˜๋Ÿผ pyaload set๋ฅผ ์ •์˜ํ•ด์ฃผ์—ˆ๋‹ค!!

 

์ฐธ๊ณ ๋กœ ๋‚ด๊ฐ€ ๋งค๋ฒˆ ์“ฐ๋˜ Sniper๋Š” ํ•˜๋‚˜์˜ Payload set๋งŒ ์„ค์ •ํ•˜์—ฌ ๊ณต๊ฒฉํ•˜๊ณ , ๋งŒ์•ฝ ์—ฌ๋Ÿฌ๊ฐœ์˜ Payload Position์ด ์ •ํ•ด์ ธ์žˆ์œผ๋ฉด ํฌ์ง€์…˜๋ณ„๋กœ payload set์„ ์‚ฌ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค (์˜ˆ: position1 - set1, position2 - set1, position3 - set1 ....)

์šฐ๋ฆฌ๋Š” ํฌ์ง€์…˜ ๋ณ„๋กœ payload set๊ฐ€ ๋‹ฌ๋ผ์ ธ์•ผํ•˜๋ฏ€๋กœ ์ด ๋ฐฉ๋ฒ•์€ ์ ํ•ฉํ•˜์ง€ ์•Š๋‹ค.

 

intruder์˜ ๋‹ค๋ฅธ ๊ณต๊ฒฉ๋ฐฉ์‹์ด ๊ถ๊ธˆํ•˜๋‹ค๋ฉด ์—ฌ๊ธฐ๋ฅผ ์ฐธ๊ณ ํ•˜์ž. 

 

cluster bomb์ด์šฉ

clusterbomb์„ ์ด์šฉํ•˜๋ฉด payload1๊ณผ payload2๊ฐ€ ๋ฐ˜๋ณตํ•ด์„œ ๋Œ์•„๊ฐ„๋‹ค. payload ๊ทœ์น™์€ ์œ„์— ์˜ฌ๋ผ๊ฐ€๋ฉด ๋‚˜์˜จ๋‹ค.

 

์•„๋ฌดํŠผ ์ด๋ ‡๊ฒŒํ•ด์„œ cluster bomb์„ ์ด์šฉํ•  ์ˆ˜ ์žˆ๋‹ค. ๊ทธ๋Ÿฐ๋ฐ ์‹œ๊ฐ„์ด ์ข€ ๊ฑธ๋ ค์„œ ์ž๋™ํ™” ์Šคํฌ๋ฆฝํŠธ ์ฝ”๋“œ๋ฅผ ์งœ์„œ ๋‹ค์Œ์—๋Š” ๋Œ๋ ค๋ด์•ผ๊ฒ ๋‹ค.

profile

rosieblue

@Rosieblue

ํฌ์ŠคํŒ…์ด ์ข‹์•˜๋‹ค๋ฉด "์ข‹์•„์š”โค๏ธ" ๋˜๋Š” "๊ตฌ๋…๐Ÿ‘๐Ÿป" ํ•ด์ฃผ์„ธ์š”!