ABOUT ME

-

Today
-
Yesterday
-
Total
-
  • Webhacking.kr :: old-23๋ฒˆ
    SECURITY/Webhacking 2021. 2. 15. 17:45

    ๋ฌธ์ œ๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™๋‹ค.

     

    ์ œ์ถœ์„ ๋ˆ„๋ฅด๋ฉด ์ž…๋ ฅํ•œ ๊ฒƒ์„ ์ถœ๋ ฅํ•ด์ค€๋‹ค.

     

    ๊ทธ๋ฆฌ๊ณ  script, href, alert ๋“ฑ๋“ฑ ์—ฌ๋Ÿฌ ๋ฌธ์ž์—ด์„ ์‹œ๋„ํ•ด๋ณด์•˜์ง€๋งŒ ๋‹ค no hack ์ด ๋–ด๋‹ค.

    ์ •๋ง ์ด๊ฑฐ๊นŒ์ง€ ? ์‹ถ์€๊ฒƒ๋„ ์ž…๋ ฅํ•˜๋‹ˆ๊นŒ no hack ์ด ๋– ์„œ ๋ณด๋‹ˆ, ์•„๋ฌด ๋ฌธ์ž์—ด์ด๋“  ์˜๋ฌธ์ž๋ฅผ 2๊ฐœ ์ด์ƒ ์—ฐ์†์ ์œผ๋กœ ์ž…๋ ฅํ•˜๋ฉด no hack ์ด ๋œจ๋Š” ๊ฒƒ์œผ๋กœ ์œ ์ถ”ํ•  ์ˆ˜ ์žˆ์—ˆ๋‹ค.

    (ํ•œ๊ธ€์€ ๊ทธ๋ƒฅ ๋„˜์–ด๊ฐ€๋“œ๋ผ~)

     

    ๊ทธ๋ž˜์„œ ์ค‘๊ฐ„์ค‘๊ฐ„ ๋„์›Œ์ ธ์žˆ๋‹ค๊ณ  ์†์ด๋„๋ก, ๊ฐ ๋ฌธ์ž์—ด ์‚ฌ์ด์— ๋„๋ฌธ์ž(%00)๋ฅผ ๋„ฃ์–ด์ฃผ์—ˆ๋‹ค.

    <s%00c%00r%00i%00p%00t>a%00l%00e%00r%00t(1);</s%00c%00r%00i%00p%00t>

     

    ์ด๊ฑธ url ๋กœ ๋„ฃ์–ด์ฃผ๋ฉด,

     

    ๋!

    'SECURITY > Webhacking' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

    Webhacking.kr :: old-36๋ฒˆ  (0) 2021.02.16
    Webhacking.kr :: old-20๋ฒˆ  (0) 2021.02.16
    Webhacking.kr :: old-42๋ฒˆ  (0) 2021.02.02
    Webhacking.kr :: old-58๋ฒˆ  (0) 2021.02.02
    Webhacking.kr :: old-47๋ฒˆ  (0) 2021.02.02

    ๋Œ“๊ธ€

Designed by Tistory.