Latest
OWASP Top 10 Mobile- 2017 모바일 보안의 숨겨진 위험: Top 10 리스크 완벽 가이드
OWASP Top 10 Mobile Risks: A Complete Guide 모바일 보안의 숨겨진 위험: Top 10 리스크 완벽 가이드 모바일 환경은 독특한 보안 과제를 안고 있습니다. OWASP Top 10 Mobile은......
The Dirty COW Race Condition Attack Introduction
Introduction Introduction Race condition vulnerability의 일종이며 Linux기반의 모든 OS에 영향을 주는 취약점이다. 공격자는 읽기 모드라도 모든 protected file을 수정할 수 있게......
Race Condition Vulnerability Introduction
Introduction Introduction Race condition problem이란 when two concurrent threads of execution access a shared resource in a way that unintentionally produces......
Return to libc Attack Introduction
Introduction Introduction Stack은 주로 data가 담기는 곳이기 때문에 거기서 코드를 실행 시킬 필요는 없다. 그렇기 때문에 x86과 같은 컴퓨터 구조나 gcc에서......
Buffer overflow attack The five segments in a process’s memory layout for a typical C program.
Memory Layout of a Typical C Process The five segments in a process’s memory layout for a typical C program. Text segment: stores the executable code of......
Shellshock Attack Shell이란?
What is a Shell? Shell이란? Shell이란 command-line interpreter이다. 유저와 OS사이에서 명령어들을 읽고 그것들을 실행시켜준다. sh, bash, csh, zsh, Windows PowerShell 등이 있다. 그 중......
SET-UID Program 3가지 유저의 형태
SET-UID Programs and Privilege Escalation privileged program: 접근 권한이 적용되어 있는 프로그램 이런 프로그램에 접근하기 위해서는 2가지 방법이 필요하다. Set-UID program. 사용자가 필요에 따라 privilege변환이......
Registry Analysis 3가지 유저의 형태
RegRipper Windows registry files에서 데이터를 추출하는 오픈소스 포렌식 도구이다. privileged program: 접근 권한이 적용되어 있는 프로그램 이런 프로그램에 접근하기 위해서는 2가지 방법이 필요하다. Set-UID program. 사용자가 필요에 따라 privilege변환이......
Autopsy 3가지 유저의 형태
Introduce to Usage Open source tool이고 The Sleuth Kit을 포함하고 있다. 새로운 case number를 기입하고 data source를 추가하여 examination을 시작한다.... privileged program: 접근 권한이 적용되어 있는 프로그램 이런 프로그램에 접근하기 위해서는 2가지 방법이 필요하다. Set-UID program. 사용자가 필요에 따라 privilege변환이......