ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 1

Anois dĂ©anfaimid iarracht ar bhealach eile instealladh SQL. A ligean ar a fheiceĂĄil mĂĄ leanann an bunachar sonraĂ­ le caith teachtaireachtaĂ­ earrĂĄide. Tugtar "fanacht le moill" ar an modh seo, agus scrĂ­obhtar an mhoill fĂ©in mar seo a leanas: waitfor delay 00:00:01 '. DĂ©anaim Ă© seo a chĂłipeĂĄil ĂłnĂĄr gcomhad agus Ă© a ghreamĂș isteach i mbarra seoltaĂ­ an bhrabhsĂĄlaĂ­.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Tugtar "instealladh SQL sealadach dall" air seo go lĂ©ir. NĂ­l ĂĄ dhĂ©anamh againn anseo ach a rĂĄ, "fan le moill 10 soicind." MĂĄ thug tĂș faoi deara, ag an mbarr ar chlĂ© tĂĄ an inscrĂ­bhinn “connecting...” againn, is Ă© sin, cad a dhĂ©anann ĂĄr leathanach? Fanann sĂ© leis an nasc, agus tar Ă©is 10 soicind feictear an leathanach ceart ar do mhonatĂłir. Ag baint ĂșsĂĄide as an teicnĂ­c seo, dĂ©anaimid teagmhĂĄil leis an mbunachar sonraĂ­ ionas go ligeann sĂ© dĂșinn cĂșpla ceist eile a chur air, mar shampla, mĂĄs Ă© Joe an t-ĂșsĂĄideoir, ansin nĂ­ mĂłr dĂșinn fanacht 10 soicind. TĂĄ sĂ© soilĂ©ir? MĂĄ tĂĄ an t-ĂșsĂĄideoir dbo, fan freisin 10 soicind. Is Ă© seo an modh dall instealladh SQL.

Is dĂłigh liom nach socrĂłidh forbrĂłirĂ­ an leochaileacht seo agus iad ag cruthĂș paistĂ­. Is instealladh SQL Ă© seo, ach nĂ­ fheiceann ĂĄr gclĂĄr IDS Ă© ach an oiread, cosĂșil le modhanna instealladh SQL roimhe seo.
DĂ©anaimis iarracht rud Ă©igin nĂ­os suimiĂșla. DĂ©anaimis an lĂ­ne seo a chĂłipeĂĄil leis an seoladh IP agus Ă© a ghreamĂș isteach sa bhrabhsĂĄlaĂ­. D'oibrigh sĂ©! D’iompaigh an barra TCP inĂĄr gclĂĄr dearg, thug an clĂĄr faoi deara 2 bhagairt slĂĄndĂĄla.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Go hiontach, feicimis cad a tharla ina dhiaidh sin. Tå bagairt amhåin againn ar bhlaosc XP, agus bagairt eile - iarracht instealladh SQL. San iomlån, tugadh faoi deara dhå iarracht chun ionsaí a dhéanamh ar an bhfeidhmchlår gréasåin.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Ceart go leor, cabhraigh liom anois le loighic. TĂĄ paicĂ©ad sonraĂ­ ionsĂĄite againn ina ndeir IDS gur fhreagair sĂ© d’ionsuithe Ă©agsĂșla sa bhlaosc XP.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Må scrollaíonn muid síos, feicimid tåbla de chóid HEX, ar dheis a bhfuil bratach leis an teachtaireacht xp_cmdshell + &27ping, agus is léir go bhfuil sé seo go dona.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

A ligean ar a fheiceĂĄil anseo cad a tharla. Cad a rinne an freastalaĂ­ SQL?

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

DĂșirt an freastalaĂ­ SQL: “Is fĂ©idir leat an pasfhocal a bheith agat chuig mo bhunachar sonraĂ­, is fĂ©idir leat na taifid go lĂ©ir a fhĂĄil i mo bhunachar sonraĂ­, ach a dhuine uasail, nĂ­l mĂ© ag iarraidh go rithfeadh tĂș d’orduithe orm, nĂ­l sĂ© sin iontach ar chor ar bith”!

Is Ă© an rud is gĂĄ dĂșinn a dhĂ©anamh nĂĄ a chinntiĂș, fiĂș mĂĄ thuairiscĂ­onn an IDS bagairt ar bhlaosc XP, go ndĂ©antar neamhaird den bhagairt. MĂĄ tĂĄ SQL Server 2005 nĂł SQL Server 2008 ĂĄ ĂșsĂĄid agat, ansin mĂĄ aimsĂ­tear iarracht instealladh SQL, cuirfear blaosc ordaithe an chĂłrais oibriĂșchĂĄin faoi ghlas, rud a chuirfidh cosc ​​ort leanĂșint ar aghaidh le do chuid oibre. TĂĄ sĂ© seo an-annoying. Mar sin, cad ba cheart dĂșinn a dhĂ©anamh? Ba chĂłir duit iarracht a dhĂ©anamh an-chineĂĄlta a iarraidh ar an bhfreastalaĂ­. Ar cheart duit Ă© seo a rĂĄ: “Le do thoil, a DhaidĂ­, an fĂ©idir liom na fianĂĄin seo a bheith agam”? Sin a dhĂ©anfaidh mĂ©, dĂĄirĂ­re, iarraim go mĂșinte ar an bhfreastalaĂ­! Iarraim roghanna breise, iarraim athchumrĂș, agus iarraim go n-athrĂłfaĂ­ socruithe bhlaosc XP chun an bhlaosc a dhĂ©anamh inrochtana toisc go dteastaĂ­onn uaim Ă©!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Feicimid gur bhraith IDS Ă© seo - feiceann tĂș, tugadh faoi deara 3 bhagairt anseo cheana fĂ©in.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

FĂ©ach anseo - shĂ©id muid suas na logaĂ­ slĂĄndĂĄla! BreathnaĂ­onn sĂ© cosĂșil le crann Nollag, tĂĄ an oiread sin ar crochadh anseo! Mar a oiread agus 27 bagairtĂ­ slĂĄndĂĄla! Guys DĂ©an deifir, rug muid an hacker, fuair muid Ă©!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

NĂ­limid buartha go ngoidfidh sĂ© ĂĄr sonraĂ­, ach mĂĄs fĂ©idir leis orduithe cĂłrais a fhorghnĂ­omhĂș inĂĄr “bosca” - tĂĄ sĂ© seo tromchĂșiseach cheana fĂ©in! Is fĂ©idir leat bealach Telnet a tharraingt, FTP, is fĂ©idir leat mo chuid sonraĂ­ a ghlacadh ar lĂĄimh, tĂĄ sĂ© sin fionnuar, ach nĂ­ fĂ©idir liom a bheith buartha faoi, nĂ­ ba mhaith liom go mbainfidh tĂș ceannas ar bhlaosc mo “bhosca”.

Ba mhaith liom labhairt faoi rudaĂ­ a fuair mĂ© i ndĂĄirĂ­re. OibrĂ­m le heagraĂ­ochtaĂ­, tĂĄ mĂ© ag obair dĂłibh le blianta fada, agus tĂĄ mĂ© ag rĂĄ seo leat mar go gceapann mo chailĂ­n go bhfuil mĂ© dĂ­fhostaithe. Ceapann sĂ­ gurb Ă© an t-aon rud a dhĂ©anaim nĂĄ seasamh ar stĂĄitse agus comhrĂĄ, nĂ­ fĂ©idir Ă© seo a mheas mar obair. Ach deirim: “nĂ­ hea, mo lĂșchĂĄir, is comhairleoir mĂ©â€! Sin an difrĂ­ocht - labhraĂ­m m'intinn agus Ă­octar as.

DĂ©arfaidh mĂ© seo - is breĂĄ linne, mar hackers, an bhlaosc a bhriseadh, agus dĂșinne nĂ­l aon sĂĄsamh nĂ­os mĂł ar domhan nĂĄ "slogtha an bhlaosc." Nuair a scrĂ­obhann anailĂ­sithe IDS a gcuid rialacha, feiceann tĂș go scrĂ­obhann siad iad chun cosaint a dhĂ©anamh i gcoinne cur isteach ar bhlaosc. Ach mĂĄ labhraĂ­onn tĂș leis an CIO faoin bhfadhb a bhaineann le heastĂłscadh sonraĂ­, iarrfaidh sĂ© ort smaoineamh ar dhĂĄ rogha. Ligean le rĂĄ go bhfuil feidhmchlĂĄr agam a dhĂ©anann 100 "pĂ­osa" in aghaidh na huaire. Cad atĂĄ nĂ­os tĂĄbhachtaĂ­ domsa: slĂĄndĂĄil na sonraĂ­ go lĂ©ir san fheidhmchlĂĄr seo nĂł slĂĄndĂĄil bhlaosc an “bhosca” a chinntiĂș? Ceist thromchĂșiseach Ă­ seo! Cad ba cheart duit a bheith buartha faoi nĂ­os mĂł?

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

DĂ­reach mar go bhfuil do bhlaosc “bhosca” truaillithe nĂ­ gĂĄ go gciallaĂ­onn sĂ© sin go bhfuil rochtain faighte ag duine ar oibriĂș inmheĂĄnach na bhfeidhmchlĂĄr. Sea, tĂĄ sĂ© seo nĂ­os dĂłichĂ­, agus mura bhfuil sĂ© tarlaithe fĂłs, d'fhĂ©adfadh sĂ© tarlĂș go luath. Ach tabhair faoi deara go bhfuil go leor tĂĄirgĂ­ slĂĄndĂĄla tĂłgtha ar an toimhde go bhfuil ionsaitheoir ag bogadh trĂ­ do lĂ­onra. Mar sin tugann siad aird ar fhorghnĂ­omhĂș orduithe, ar chur i bhfeidhm orduithe, agus nĂ­ mĂłr duit a thabhairt faoi deara gur rud tromchĂșiseach Ă© seo. Tugann siad aird ar leochaileachtaĂ­ fĂĄnach, ar scripteĂĄil tras-suĂ­omh an-simplĂ­, ar instealladh SQL an-simplĂ­. Is cuma leo faoi ardbhagairtĂ­ nĂł faoi theachtaireachtaĂ­ criptithe, is cuma leo faoi na cineĂĄlacha rudaĂ­ sin. D'fhĂ©adfĂĄ a rĂĄ go bhfuil na tĂĄirgĂ­ slĂĄndĂĄla go lĂ©ir ag lorg torainn, go bhfuil siad ag lorg yap, tĂĄ siad ag iarraidh stop a chur le rud Ă©igin atĂĄ ag bĂ©iceadh do rĂșitĂ­n. Seo an mĂ©id atĂĄ foghlamtha agam agus mĂ© ag dĂ©ileĂĄil le tĂĄirgĂ­ slĂĄndĂĄla. NĂ­ gĂĄ duit tĂĄirgĂ­ sĂĄbhĂĄilteachta a cheannach, nĂ­ gĂĄ duit an trucail a thiomĂĄint ar chĂșl. TeastaĂ­onn daoine inniĂșla, oilte uait a thuigeann an teicneolaĂ­ocht. Sea, mo Dhia, go dĂ­reach daoine! NĂ­limid ag iarraidh na milliĂșin dollar a chaitheamh ar na saincheisteanna seo, ach d'oibrigh go leor agaibh sa rĂ©imse seo agus tĂĄ a fhios agat, a luaithe a fheiceann do shaoiste fĂłgra, go ritheann sĂ© chuig an siopa ag screadaĂ­l, "NĂ­ mĂłr dĂșinn an rud seo a fhĂĄil! " Ach nĂ­ gĂĄ dĂșinn i ndĂĄirĂ­re, nĂ­l le dĂ©anamh againn ach an praiseach atĂĄ taobh thiar dĂșinn a rĂ©iteach. Ba Ă© sin an bonn a bhĂ­ leis an lĂ©iriĂș seo.

Is rud Ă© an timpeallacht slĂĄndĂĄla inar chaith mĂ© go leor ama ag tuiscint conas a oibrĂ­onn na meicnĂ­ochtaĂ­ slĂĄndĂĄla. Nuair a thuigeann tĂș na meicnĂ­ochtaĂ­ cosanta, nĂ­l sĂ© deacair an chosaint a sheachaint. Mar shampla, tĂĄ feidhmchlĂĄr grĂ©asĂĄin agam atĂĄ cosanta ag a bhalla dĂłiteĂĄin fĂ©in. DĂ©anaim seoladh an phainĂ©il socruithe a chĂłipeĂĄil, Ă© a ghreamĂș isteach i mbarra seoltaĂ­ an bhrabhsĂĄlaĂ­ agus tĂ©igh go dtĂ­ na socruithe agus bain triail as scripteĂĄil tras-lĂĄithreĂĄin.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Mar thoradh air sin, faighim teachtaireacht balla dĂłiteĂĄin faoi bhagairt - cuireadh bac orm.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

SĂ­lim go bhfuil sĂ© seo go dona, an aontaĂ­onn tĂș? ThĂĄinig tĂș ar thĂĄirge slĂĄndĂĄla. Ach cad a tharlĂłidh mĂĄ bhainim triail as rud Ă©igin mar seo: cuirim isteach an paraimĂ©adar Joe'+OR+1='1

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Mar a fheiceann tĂș, d'oibrigh sĂ©. Ceartaigh mĂ© mĂĄ tĂĄ mĂ© mĂ­cheart, ach tĂĄ instealladh SQL feicthe againn defeat balla dĂłiteĂĄin an iarratais. Anois dĂ©anaimis ligean orainn gur mian linn cuideachta forfheidhmithe slĂĄndĂĄla a thosĂș, mar sin cuirfimid orainn ĂĄr hata dĂ©antĂłir bogearraĂ­. Anois corpraimid an t-olc mar is hata dubh Ă©. Is comhairleoir mĂ©, agus mar sin is fĂ©idir liom an rud cĂ©anna a dhĂ©anamh le monarĂłirĂ­ bogearraĂ­.

TeastaĂ­onn uainn cĂłras braite tamper nua a chruthĂș agus a imscaradh, mar sin cuirfimid tĂșs le cuideachta braite tamper. TĂĄ na cĂ©adta mĂ­lte sĂ­nithe bagairtĂ­ cur isteach ar Snort, mar thĂĄirge foinse oscailte. NĂ­ mĂłr dĂșinn gnĂ­omhĂș go heiticiĂșil, mar sin nĂ­ ghoidfimid na sĂ­nithe seo Ăł fheidhmchlĂĄir eile agus nĂ­ chuirfimid isteach inĂĄr gcĂłras iad. SuĂ­fidh muid sĂ­os agus athscrĂ­obhfaimid iad go lĂ©ir - hug, Bob, Tim, Joe, tar anseo, rith trĂ­d na 100 sĂ­niĂș seo go tapa!

NĂ­ mĂłr dĂșinn scanĂłir leochaileachta a chruthĂș freisin. TĂĄ a fhios agat go bhfuil 80 mĂ­le sĂ­nithe agus scripteanna maith ag Nessus, clĂĄr chun leochaileachtaĂ­ a chuardach go huathoibrĂ­och, a sheiceĂĄil le haghaidh leochaileachtaĂ­. GnĂ­omhĂłidh muid go heiticiĂșil arĂ­s agus athscrĂ­obhfaimid iad go lĂ©ir inĂĄr gclĂĄr fĂ©in.
FiafraĂ­onn daoine dĂ­om, “Joe, dĂ©anann tĂș na tĂĄstĂĄlacha seo go lĂ©ir ag baint ĂșsĂĄide as bogearraĂ­ foinse oscailte cosĂșil le Mod Security, Snort agus a leithĂ©idĂ­, cĂ© chomh cosĂșil agus atĂĄ siad le tĂĄirgĂ­ dĂ©antĂșsĂłirĂ­ eile?” FreagraĂ­m iad: “NĂ­ fhĂ©achann siad mar a chĂ©ile ar chor ar bith!” Toisc nach ngoideann monarĂłirĂ­ rudaĂ­ Ăł thĂĄirgĂ­ slĂĄndĂĄla foinse oscailte, suĂ­onn siad sĂ­os agus scrĂ­obhann siad na rialacha seo go lĂ©ir iad fĂ©in.

MĂĄs fĂ©idir leat do chuid sĂ­nithe fĂ©in agus teaghrĂĄin ionsaĂ­ a dhĂ©anamh gan ĂșsĂĄid a bhaint as tĂĄirgĂ­ foinse oscailte, is deis iontach Ă© seo duit. Mura bhfuil tĂș in ann dul san iomaĂ­ocht le tĂĄirgĂ­ trĂĄchtĂĄla, ag bogadh sa treo ceart, nĂ­ mĂłr duit coincheap a aimsiĂș a chabhrĂłidh leat a bheith cĂĄiliĂșil i do rĂ©imse.

TĂĄ a fhios ag gach duine go n-Ăłlaim. Lig dom a thaispeĂĄint duit cĂ©n fĂĄth a n-Ăłl mĂ©. MĂĄ rinne tĂș iniĂșchadh cĂłd foinse riamh i do shaol, beidh tĂș ag Ăłl cinnte, muinĂ­n dom, ina dhiaidh sin tosĂłidh tĂș ag Ăłl.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Mar sin, is Ă­ an teanga is fearr linn C++. BreathnaĂ­mid ar an gclĂĄr seo - Web Knight, is feidhmchlĂĄr balla dĂłiteĂĄin Ă© do fhreastalaithe grĂ©asĂĄin. TĂĄ eisceachtaĂ­ aige de rĂ©ir rĂ©amhshocraithe. TĂĄ sĂ© seo suimiĂșil - mĂĄ imscarann ​​mĂ© an balla dĂłiteĂĄin seo, nĂ­ chosnĂłidh sĂ© mĂ© Ăł Outlook Web Access.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Iontach! TĂĄ sĂ© seo amhlaidh toisc go dtarraingĂ­onn go leor dĂ­oltĂłirĂ­ bogearraĂ­ rialacha Ăł fheidhmchlĂĄr amhĂĄin agus iad a ghreamĂș isteach ina dtĂĄirge gan a lĂĄn taighde a dhĂ©anamh. Mar sin nuair a imscaraim an feidhmchlĂĄr balla dĂłiteĂĄin grĂ©asĂĄin, cinnim go bhfuil gach rud faoi rĂ­omhphost dĂ©anta go mĂ­cheart! Toisc go sĂĄraĂ­onn beagnach aon rĂ­omhphost an tslĂĄndĂĄil de rĂ©ir rĂ©amhshocraithe. TĂĄ cĂłd grĂ©asĂĄin agat a fhorghnĂ­omhaĂ­onn orduithe cĂłrais agus fiosruithe do LDAP nĂł aon stĂłr bunachar sonraĂ­ ĂșsĂĄideora eile go dĂ­reach ar an IdirlĂ­on.

Inis dom, cĂ©n phlĂĄinĂ©id ar fĂ©idir a leithĂ©id de rud a mheas sĂĄbhĂĄilte? Smaoinigh air: osclaĂ­onn tĂș Outlook Web Access, brĂșigh ctrl +K, cuardaigh ĂșsĂĄideoirĂ­ agus gach rud, bainistĂ­onn tĂș Active Directory go dĂ­reach Ăłn IdirlĂ­on, dĂ©anann tĂș orduithe cĂłrais ar Linux, mĂĄ ĂșsĂĄideann tĂș Iora Mail, nĂł Horde nĂł cibĂ© rud eile. TĂĄ tĂș ag fĂĄil rĂ©idh leis na rĂ­omhleabhair seo go lĂ©ir agus cineĂĄlacha eile feidhmiĂșlacht neamhshĂĄbhĂĄilte. DĂĄ bhrĂ­ sin, dĂ©anann go leor ballaĂ­ dĂłiteĂĄin iad a eisiamh Ăłn liosta rioscaĂ­ slĂĄndĂĄla, dĂ©an iarracht iarraidh ar do mhonarĂłir bogearraĂ­ faoi seo.

Fillfimid ar an bhfeidhmchlår Web Knight. Ghoid sé go leor rialacha slåndåla ón scanóir URL, a scanann na raonta seoltaí IP seo go léir. Mar sin, an bhfuil na raonta seoltaí seo go léir eisiata ó mo thåirge?

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Ar mhaith le haon duine agaibh na seoltaí seo a shuiteåil ar do líonra? Ar mhaith leat do líonra a rith ar na seoltaí seo? Sea, tå sé iontach. Ceart go leor, scrollaigh síos an clår seo agus breathnaímis ar rudaí eile nach bhfuil an balla dóiteåin seo ag iarraidh a dhéanamh.

Tugtar "1999" orthu agus tĂĄ siad ag iarraidh go rachaidh a bhfreastalaĂ­ grĂ©asĂĄin ar ais in am! An cuimhin le haon duine agaibh an truflais seo: /scripts, /iishelp, msads? B'fhĂ©idir go gcuimhneoidh cĂșpla duine le cumha cĂ© chomh spraoi a bhĂ­ sĂ© rudaĂ­ den sĂłrt sin a hack. “An cuimhin leat, a ghile, cĂ© chomh fada Ăł shin a “mharaĂ­odh” muid freastalaithe, bhĂ­ sĂ© iontach!”

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Anois, mĂĄ fhĂ©achann tĂș ar na heisceachtaĂ­ seo, feicfidh tĂș gur fĂ©idir leat na rudaĂ­ seo go lĂ©ir a dhĂ©anamh - msads, printĂ©irĂ­, iisadmpwd - na rudaĂ­ seo go lĂ©ir nach bhfuil ag teastĂĄil Ăł aon duine inniu. Cad faoi na horduithe nach bhfuil cead agat a fhorghnĂ­omhĂș?

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Is iad seo arp, at, cacls, chkdsk, cipher, cmd, com. Agus tĂș ĂĄ liostĂș, tĂĄ tĂș sĂĄraithe le cuimhnĂ­ na seanlaethanta, “a dhuine uasail, cuimhnigh nuair a ghlacamar an freastalaĂ­ sin i gceannas, cuimhnigh ar na laethanta sin”?

Ach seo cad atĂĄ an-suimiĂșil - an bhfeiceann duine ar bith WMIC nĂł b'fhĂ©idir PowerShell anseo? Samhlaigh go bhfuil feidhmchlĂĄr nua agat a fheidhmĂ­onn trĂ­ scripteanna a rith ar an gcĂłras ĂĄitiĂșil, agus is scripteanna nua-aimseartha iad seo toisc go dteastaĂ­onn uait Windows Server 2008 a rith, agus tĂĄim chun rud iontach a dhĂ©anamh trĂ­na chosaint le rialacha atĂĄ deartha do Windows 2000. Chun an chĂ©ad uair eile a thagann dĂ­oltĂłir chugat lena bhfeidhmchlĂĄr grĂ©asĂĄin, fiafraigh dĂ­obh: “Hey man, an bhfuil tĂș ag ĂĄireamh rudaĂ­ cosĂșil le giotĂĄn admin, nĂł ag rith orduithe powershell, an ndearna tĂș seiceĂĄil ar na rudaĂ­ eile go lĂ©ir, mar tĂĄimid chun nuashonrĂș a dhĂ©anamh agus an leagan nua de DotNET a ĂșsĂĄid"? Ach ba cheart go mbeadh na rudaĂ­ seo go lĂ©ir i lĂĄthair i dtĂĄirge slĂĄndĂĄla de rĂ©ir rĂ©amhshocraithe!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Is Ă© an chĂ©ad rud eile ba mhaith liom labhairt leat faoi earrĂĄidĂ­ loighciĂșla. A ligean ar dul go dtĂ­ 192.168.2.6. TĂĄ sĂ© seo thart ar an iarratas cĂ©anna leis an gceann roimhe seo.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Seans go dtabharfaidh tĂș faoi deara rud Ă©igin suimiĂșil mĂĄ scrollaĂ­onn tĂș sĂ­os an leathanach agus cliceĂĄil ar an nasc DĂ©an TeagmhĂĄil Linn.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

MĂĄ fhĂ©achann tĂș ar chĂłd foinse an tĂĄb “DĂ©an TeagmhĂĄil Linn”, atĂĄ ar cheann de na modhanna pentesting a dhĂ©anaim an t-am ar fad, tabharfaidh tĂș an lĂ­ne seo faoi deara.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Smaoinigh air! Cloisim nuair a chonaic siad Ă© seo, dĂșirt go leor: “Wow”! BhĂ­ mĂ© ag dĂ©anamh tĂĄstĂĄla treĂĄ uair amhĂĄin le haghaidh, abair, banc billionaire, agus thug mĂ© faoi deara rud Ă©igin cosĂșil leis. Mar sin, nĂ­l aon instealladh SQL nĂł scripteĂĄil tras-lĂĄithreĂĄin ag teastĂĄil uainn - tĂĄ na bunghnĂ©ithe, an barra seoltaĂ­ seo againn.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Mar sin, gan ĂĄibhĂ©il - d'inis an banc dĂșinn go raibh speisialtĂłir lĂ­onra agus cigire grĂ©asĂĄin acu, agus nĂ­or thug siad aon tuairimĂ­. Is Ă© sin, mheas siad go raibh sĂ© gnĂĄth go bhfĂ©adfaĂ­ comhad tĂ©acs a oscailt agus a lĂ©amh trĂ­ bhrabhsĂĄlaĂ­.

Is Ă© sin, is fĂ©idir leat an comhad a lĂ©amh go dĂ­reach Ăłn gcĂłras comhaid. DĂșirt ceannaire a bhfoirne slĂĄndĂĄla liom: “Sea, fuair ceann de na scanĂłirĂ­ an leochaileacht seo, ach mheas siad gur mionchĂșiseach a bhĂ­ ann.” A d'fhreagair mĂ©, ceart go leor, tabhair nĂłimĂ©ad dom. ClĂłscrĂ­obh mĂ© ainm an chomhaid=../../../../boot.ini isteach sa bharra seoltaĂ­ agus bhĂ­ mĂ© in ann comhad tosaithe an chĂłrais comhad a lĂ©amh!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Chuige seo dĂșirt siad liom: “nĂ­ hea, nĂ­ hea, nĂ­ comhaid rĂ­thĂĄbhachtacha iad seo”! D'fhreagair mĂ© - ach is Ă© seo Server 2008? DĂșirt siad go bhfuil, sĂ© Ă©. Deirim - ach tĂĄ comhad cumraĂ­ochta ag an bhfreastalaĂ­ seo atĂĄ suite i bhfrĂ©amheolaire an fhreastalaĂ­, ceart? “Ceart,” adeir siad. “Go hiontach,” a deirim, “cad mĂĄ dhĂ©anann ionsaitheoir Ă© seo,” agus clĂłscrĂ­obhaim filename=web.config sa bharra seoltaĂ­. Deir siad - mar sin cad, nĂ­ fheiceann tĂș rud ar bith ar an monatĂłir?

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

RĂĄ liom - cad mĂĄ mĂ© deaschliceĂĄil ar an monatĂłireacht a dhĂ©anamh agus roghnaigh an rogha TaispeĂĄin Leathanach Foinse? Agus cad a gheobhaidh mĂ© anseo? “NĂ­ dhĂ©anfaidh aon nĂ­ criticiĂșil”? Feicfidh mĂ© pasfhocal riarthĂłra an fhreastalaĂ­!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Agus deir tĂș nach bhfuil aon fhadhb anseo?

Ach is Ă© mo chuid is fearr leat an chĂ©ad cheann eile. NĂ­ cheadaĂ­onn tĂș dom orduithe a fhorghnĂ­omhĂș sa bhosca, ach is fĂ©idir liom pasfhocal agus bunachar sonraĂ­ riarthĂłir an fhreastalaĂ­ grĂ©asĂĄin a ghoid, breathnĂș trĂ­d an mbunachar sonraĂ­ ar fad, an t-ĂĄbhar ar fad a sracadh amach faoin mbunachar sonraĂ­ agus teipeanna cĂłrais, agus fĂĄil rĂ©idh leis go lĂ©ir. Seo cĂĄs den droch-fhear ag rĂĄ, "hug fear, is Ă© inniu an lĂĄ mĂłr"!

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

NĂĄ lig do thĂĄirgĂ­ sĂĄbhĂĄilteachta tĂș a dhĂ©anamh tinn! NĂĄ lig do thĂĄirgĂ­ sĂĄbhĂĄilteachta tĂș a dhĂ©anamh tinn! Aimsigh roinnt nerds, tabhair na cuimhneachĂĄin Star Trek sin ar fad dĂłibh, cuir spĂ©is iontu, spreag iad chun fanacht leat, mar is iad na stinkers leadrĂĄnach sin nach gcithfholcadh gach lĂĄ na cinn a chuireann ar do lĂ­onraĂ­ oibriĂș. Seo iad na daoine a chabhrĂłidh le do thĂĄirgĂ­ slĂĄndĂĄla oibriĂș mar ba chĂłir dĂłibh.

Inis dom, cĂ© mhĂ©ad agaibh atĂĄ in ann fanacht sa seomra cĂ©anna ar feadh i bhfad le duine a deir i gcĂłnaĂ­: “Ó, is gĂĄ dom an script seo a chlĂłscrĂ­obh go prĂĄinneach!”, agus cĂ© atĂĄ gnĂłthach leis seo an t-am ar fad? Ach nĂ­ mĂłr duit na daoine a dhĂ©anann do thĂĄirgĂ­ slĂĄndĂĄla a bheith ag obair.

DĂ©arfaidh mĂ© arĂ­s Ă© - bĂ­onn tĂĄirgĂ­ slĂĄndĂĄla dĂșr mar go ndĂ©anann soilse botĂșin i gcĂłnaĂ­, go ndĂ©anann siad rudaĂ­ caocha i gcĂłnaĂ­, nĂ­ sholĂĄthraĂ­onn siad slĂĄndĂĄil. NĂ­ fhaca mĂ© tĂĄirge slĂĄndĂĄla maith riamh nĂĄr ghĂĄ do dhuine le scriĂșire Ă© a dhĂ©anamh nĂ­os doichte nuair ba ghĂĄ le go n-oibreodh sĂ© nĂ­os mĂł nĂł nĂ­os lĂș de ghnĂĄth. NĂ­l ann ach liosta ollmhĂłr rialacha ag rĂĄ go bhfuil sĂ© olc, sin uile!

Mar sin ba mhaith liom go bhfĂ©achfaidh tĂș ar oideachas, ar rudaĂ­ cosĂșil le sĂĄbhĂĄilteacht, oiliĂșint il-theicniĂșil, mar tĂĄ go leor cĂșrsaĂ­ ar lĂ­ne saor in aisce ar shaincheisteanna sĂĄbhĂĄilteachta. Foghlaim Python, foghlaim TionĂłl, foghlaim tĂĄstĂĄil feidhmchlĂĄr grĂ©asĂĄin.

ComhdhĂĄil HACKTIVITY 2012. The Big Bang Teoiric: The Evolution of Security Pentesting. Cuid 2

Is Ă© seo an rud a chabhrĂłidh leat do lĂ­onra a chosaint. CosnaĂ­onn daoine cliste lĂ­onraĂ­, nĂ­ dhĂ©anann tĂĄirgĂ­ lĂ­onra! TĂ©igh ar ais ag obair agus inis do do shaoiste go dteastaĂ­onn nĂ­os mĂł buisĂ©id uait le haghaidh nĂ­os mĂł daoine cliste, tĂĄ a fhios agam gur gĂ©archĂ©im Ă© seo, ach inis dĂł ar aon nĂłs - nĂ­ mĂłr dĂșinn nĂ­os mĂł airgid do dhaoine, chun iad a oiliĂșint. MĂĄ cheannaĂ­mid tĂĄirge ach mura gceannaĂ­mid cĂșrsa ar conas Ă© a ĂșsĂĄid mar go bhfuil sĂ© costasach, cĂ©n fĂĄth a gceannaĂ­mid Ă© ar chor ar bith mura bhfuil muid chun daoine a mhĂșineadh conas Ă© a ĂșsĂĄid?

D'oibrigh mĂ© le go leor dĂ­oltĂłirĂ­ tĂĄirgĂ­ slĂĄndĂĄla, chaith mĂ© beagnach mo shaol ar fad ag cur na dtĂĄirgĂ­ sin i bhfeidhm, agus tĂĄ mĂ© tinn den rialĂș rochtana lĂ­onra agus rudaĂ­ mar gur shuiteĂĄil mĂ© agus rith mĂ© na tĂĄirgĂ­ cacamas sin go lĂ©ir. ThĂĄinig mĂ© chuig cliant uair amhĂĄin, bhĂ­ siad ag iarraidh an caighdeĂĄn 802.1x a chur i bhfeidhm don phrĂłtacal EAP, agus mar sin bhĂ­ seoltaĂ­ MAC agus seoltaĂ­ tĂĄnaisteacha acu do gach calafort. ThĂĄinig mĂ©, chonaic mĂ© go raibh sĂ© go dona, chas mĂ© thart agus thosaigh sĂ© ag brĂș cnaipĂ­ ar an printĂ©ir. TĂĄ a fhios agat, is fĂ©idir leis an printĂ©ir leathanach tĂĄstĂĄla de threalamh lĂ­onra a phriontĂĄil le gach seoltaĂ­ MAC agus seoltaĂ­ IP. Ach d'Ă©irigh sĂ© amach nach dtacaĂ­onn an printĂ©ir leis an gcaighdeĂĄn 802.1x, mar sin ba chĂłir Ă© a eisiamh.

Ansin dhĂ­phlug mĂ© an printĂ©ir agus d'athraigh mĂ© seoladh MAC mo rĂ­omhaire glĂșine go seoladh MAC an printĂ©ir agus cheangail mĂ© mo rĂ­omhaire glĂșine, rud a sheachnĂłidh an rĂ©iteach MAC costasach seo, smaoinigh air! Mar sin, cad Ă© an tairbhe is fĂ©idir leis an rĂ©iteach MAC seo a dhĂ©anamh domsa mĂĄs fĂ©idir le duine pĂ­osa trealaimh ar bith a chur ar aghaidh mar phrintĂ©ir nĂł mar fhĂłn VoIP?

Mar sin inniu, is trua domsa go gcaitheann mĂ© am ag iarraidh an tĂĄirge slĂĄndĂĄla atĂĄ ceannaithe ag mo chliant a thuiscint agus a thuiscint. Sa lĂĄ atĂĄ inniu ann tĂĄ na cromĂĄin, na NIPS, na gĂĄire, an MACS seo go lĂ©ir ag gach banc a ndĂ©anaim tĂĄstĂĄil treĂĄ orthu agus sraith iomlĂĄn d'acrainmneacha eile atĂĄ iomlĂĄn cacamas. Ach tĂĄ mĂ© ag iarraidh a dhĂ©anamh amach cad atĂĄ na tĂĄirgĂ­ seo ag iarraidh a dhĂ©anamh agus conas atĂĄ siad ag iarraidh Ă© a dhĂ©anamh. Ansin, tar Ă©is dom a dhĂ©anamh amach cĂ©n cineĂĄl modheolaĂ­ochta agus loighic a ĂșsĂĄideann siad chun cosaint a sholĂĄthar, nĂ­ bhĂ­onn sĂ© deacair ar chor ar bith Ă© a sheachbhĂłthar.

MS 1103 a thugtar ar an tĂĄirge is fearr liom a fhĂĄgfaidh mĂ© leat. Go deimhin, tĂĄ sĂ© deartha chun sĂ­nithe HIPS a sheachbhĂłthar. NĂ­l mĂ© ag iarraidh a thaispeĂĄint conas a oibrĂ­onn sĂ© mar nĂ­l mĂ© ag iarraidh am chun Ă© a lĂ©iriĂș, ach dĂ©anann sĂ© jab iontach an tslĂĄndĂĄil sin a sheachaint agus ba mhaith liom go mbainfidh tĂș triail as.
OK guys, tå mé ag fågåil anois.

Seinn fĂ­seĂĄn

Roinnt fógraí 🙂

Go raibh maith agat as fanacht linn. An maith leat ĂĄr n-alt? Ar mhaith leat ĂĄbhar nĂ­os suimiĂșla a fheiceĂĄil? Tacaigh linn trĂ­ ordĂș a dhĂ©anamh nĂł moladh a thabhairt do chairde, scamall VPS d'fhorbrĂłirĂ­ Ăł $4.99, analĂłg uathĂșil de fhreastalaithe leibhĂ©al iontrĂĄla, a cheap muid duit: An fhĂ­rinne iomlĂĄn a insint faoi VPS (KVM) E5-2697 v3 (6 Cores) 10GB DDR4 480GB SSD 1Gbps Ăł $19 nĂł conas freastalaĂ­ a roinnt? (ar fĂĄil le RAID1 agus RAID10, suas le 24 croĂ­leacan agus suas le 40GB DDR4).

Dell R730xd 2x nĂ­os saoire i lĂĄrionad sonraĂ­ Equinix Tier IV in Amstardam? Ach anseo 2 x Intel TetraDeca-Core Xeon 2x E5-2697v3 2.6GHz 14C 64GB DDR4 4x960GB SSD 1Gbps 100 teilifĂ­se Ăł $199 san ÍsiltĂ­r! Dell R420 - 2x E5-2430 2.2Ghz 6C 128GB DDR3 2x960GB SSD 1Gbps 100TB - Ăł $99! LĂ©igh faoi Conas corprĂș bonneagair a thĂłgĂĄil. rang le hĂșsĂĄid freastalaithe Dell R730xd E5-2650 v4 fiĂș 9000 euro ar phingin?

Foinse: will.com