[์ •๋ณด] http ๊ณต๊ฒฉ ์Šคํ‚ฌ

2023. 6. 27. 13:49ยท๐Ÿค–์ •๋ณด๋ณด์•ˆ/โค๏ธ๋ ˆ๋“œํŒ€

CRLF -> ๋กœ๊ทธ ์ธ์ ์…˜, ๋กœ๊ทธ ํฌ์ด์ฆˆ๋‹ -> XSS, RCE

redirection ์ฒ˜๋ฆฌ๋˜๋Š” ํŒŒ๋ผ๋ฏธํ„ฐ์— Response ํŒจํ‚ท์— CRLF ๊ณต๊ฒฉ์„ ํ†ตํ•˜์—ฌ ์ž„์˜์˜ ๋ฐ์ดํ„ฐ(html ๊ตฌ์กฐ ๋“ฑ)๋ฅผ ์‚ฝ์ž…ํ•  ์ˆ˜ ์žˆ๋‹ค.

๊ฐœํ–‰๋ฌธ์ž๋ฅผ ์‚ฝ์ž…ํ•˜์—ฌ ๊ทธ๋Œ€๋กœ ์‹œ์Šคํ…œ์—์„œ ์ธ์‹ํ•˜๋Š” ๊ฒƒ์ด ์ทจ์•ฝํ•˜๋‹ค ์ด๋ฅผ ๋ฐฉ์ง€ํ•˜๊ธฐ ์œ„ํ•ด์„œ URL๋กœ ์ธ์ฝ”๋”ฉ๋˜๋„๋ก ํ•˜์—ฌ CRLF ์ธ์ ์…˜์„ ๋ฐฉ์ง€ ํ•œ๋‹ค.

 

์œ„์˜ ๊ณต๊ฒฉ์€ HTTP Request ํŒจํ‚ท์˜ ํŒŒ๋ผ๋ฏธํ„ฐ ๋“ฑ์„ ์กฐ์ž‘ํ•˜์—ฌ ์‚ฌ์šฉ์ž์—๊ฒŒ ์˜ค๋Š” Response ํŒจํ‚ท์˜ ์‘๋‹ต์„ ์กฐ์ž‘ํ•˜๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค.

ํ…Œ์ŠคํŒ… ํˆด๋กœ๋Š” ํŒŒ์ด์ฌ์˜ crlfsuite๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด ๋œ๋‹ค

pip3 install crlfsuite


KoCOnU72@htb[/htb]$ crlfsuite -h
usage: crlfsuite [-h] [-t TARGET] [-iT TARGETS] [--pipe] [-m METHOD] [-d DATA] [-c COOKIE] [-tO TIMEOUT] [--ssl] [--delay DELAY] [--stable] [--headers [HEADERS]] [-oN NOUT] [-oJ JOUT]
                 [-cT THREADS] [-v VERBOSE] [-r] [-sL] [-sH] [-cL]
                                                                                               
optional arguments:           
  -h, --help            show this help message and exit
  -cT THREADS, --concurrent-threads THREADS                                                    
                        Number of concurrent threads, default: 10
  -v VERBOSE, --verbose VERBOSE
                        Verbosity level (1:3)
  -r, --resume          Resume scan using resume.cfg
  -sL, --silent         Silent mode
  -sH, --skip-heuristic
                        Skip heuristic scanning 
  -cL, --clean          Remove CRLFsuite generated files.

Main arguments:
  -t TARGET, --target TARGET
                        Target URL
<SNIP>
์ €์ž‘์žํ‘œ์‹œ ๋น„์˜๋ฆฌ ๋ณ€๊ฒฝ๊ธˆ์ง€ (์ƒˆ์ฐฝ์—ด๋ฆผ)

'๐Ÿค–์ •๋ณด๋ณด์•ˆ > โค๏ธ๋ ˆ๋“œํŒ€' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

[์ •๋ณด] Blutooth ํ•ดํ‚น ๊ธฐ๋ฒ• ์ข…๋ฅ˜  (0) 2023.10.31
[์ •๋ณด] ํ•ด์‹œ  (0) 2023.06.27
[์ •๋ณด] DLL Injection ํŒŒ์ด์ฌ ์ฝ”๋“œ  (0) 2023.03.15
[์ •๋ณด] ๋‹ค๋ฅธ ์›๊ฒฉ์ง€์— ์žˆ๋Š” ํ”„๋กœ๊ทธ๋žจ๊ณผ ํ†ต์‹ ํ•˜๋Š” ๋ฐฉ๋ฒ•  (0) 2023.02.15
[์ •๋ณด] HTTPs/TLS Attacks์ด๋ž€  (0) 2023.02.15
'๐Ÿค–์ •๋ณด๋ณด์•ˆ/โค๏ธ๋ ˆ๋“œํŒ€' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€
  • [์ •๋ณด] Blutooth ํ•ดํ‚น ๊ธฐ๋ฒ• ์ข…๋ฅ˜
  • [์ •๋ณด] ํ•ด์‹œ
  • [์ •๋ณด] DLL Injection ํŒŒ์ด์ฌ ์ฝ”๋“œ
  • [์ •๋ณด] ๋‹ค๋ฅธ ์›๊ฒฉ์ง€์— ์žˆ๋Š” ํ”„๋กœ๊ทธ๋žจ๊ณผ ํ†ต์‹ ํ•˜๋Š” ๋ฐฉ๋ฒ•
TwoIceFish
TwoIceFish
https://github.com/TwoIceFIsh
  • TwoIceFish
    Cyber-Luna
    TwoIceFish
  • ์ „์ฒด
    ์˜ค๋Š˜
    ์–ด์ œ
    • ๋ถ„๋ฅ˜ ์ „์ฒด๋ณด๊ธฐ (593)
      • ๐Ÿค–์ •๋ณด๋ณด์•ˆ (77)
        • ๐Ÿ’™๋ธ”๋ฃจํŒ€ (24)
        • โค๏ธ๋ ˆ๋“œํŒ€ (21)
        • ๐Ÿ’œํผํ”ŒํŒ€ (1)
        • ๐Ÿ’ 1๋ถ„์ง€์‹ (30)
      • ํ”„๋กœ์ ํŠธ (14)
        • ๐Ÿ’Œ ์ •๋ณด๋ณด์•ˆ ๋ฉ”์ผ๋ง ์‹œ์Šคํ…œ (8)
        • ๐Ÿ” ์ธ์ฆ์„œ ๊ด€๋ฆฌ ์‹œ์Šคํ…œ (1)
        • ๐Ÿ ๊ธˆ์œต ์ปค๋ฎค๋‹ˆํ‹ฐ (5)
      • ๐Ÿžํ”„๋กœ๊ทธ๋ž˜๋ฐ (49)
        • Next.js (9)
      • ๊ธฐํƒ€์ •๋ณด (68)
        • ๐ŸŒ๊ทธ๋ฆฟ์š”๊ฑฐํŠธ (11)
  • ๋ธ”๋กœ๊ทธ ๋ฉ”๋‰ด

    • ํ™ˆ
    • ๋ฐฉ๋ช…๋ก
    • ๋กœ์ผ“ํŽ€์น˜
    • ๊นƒํ—ˆ๋ธŒ
    • ์ฝ”์ฝ”๋„ˆ์ธ 
    • ๊ทธ๋ฆฟ์š”๊ฑฐํŠธ
  • ๋งํฌ

  • ๊ณต์ง€์‚ฌํ•ญ

    • ์•ˆ๋…•ํ•˜์„ธ์š”
  • ์ธ๊ธฐ ๊ธ€

  • ํƒœ๊ทธ

    ์‘๋‹ต์—†์Œ
    vpn ์„ค์น˜
    ์ฝ”์ฝ”๋„›์ธ 
    ๋‹จ์ผ ๋„๋ฉ”์ธ ์ธ์ฆ์„œ ์—ฌ๋Ÿฌ๊ฐœ
    ์ธ์ฆ์„œ ์—ฌ๋Ÿฌ๊ฐœ
    ์•…์„ฑ๋ฉ”์žƒ๋ถ„์„
    ํ†ฐ์บฃ ์„œ๋ธ”๋ฆฟ
    ์•…์„ฑ๋ฉ”์ผ
    nmap
    ๋ฐฉ๋ฒ™
    ๋ถ€๋™์‚ฐ ์ˆ˜์ต๋ฅ  ๊ณ„์‚ฐ๊ธฐ
    vpn ์˜คํ”ˆ์†Œ์Šค
    jsp
    ๋ถ€ํŠธ์ŠคํŠธ๋žฉ
    ์„œ๋ธŒ๋„๋ฉ”์ธ ์ธ์ฆ์„œ
    tomcat servlet
    eclipse
    SKํ•˜์ด๋‹‰์Šค
    ISMS-P
    ์™€์ดํŒŒ์ด ๋น„๋ฐ€๋ฒˆํ˜ธ ํƒˆ์ทจ
    Visual Studio
    servlet 404
    ๋ฉ”์ผํ—ค๋”๋ถ„์„
    ์œ ๋‹ˆํ‹ฐ
    ์ˆ˜์ต๋ฅ  ๊ณ„์‚ฐ๊ธฐ
    ์• ํ”ŒํŽ˜์ด ์„ค์ •๋ฐฉ๋ฒ•
    ๋ชจ์˜ํ•ดํ‚น
    jsp 200
    ์ง€๊ฐ‘ ์•ฑ์— ์นด๋“œ ์ถ”๊ฐ€
    ์‚ผ์„ฑ์ „์ž์šฐ
  • ์ตœ๊ทผ ๋Œ“๊ธ€

  • hELLOยท Designed By์ •์ƒ์šฐ.v4.10.0
TwoIceFish
[์ •๋ณด] http ๊ณต๊ฒฉ ์Šคํ‚ฌ
์ƒ๋‹จ์œผ๋กœ

ํ‹ฐ์Šคํ† ๋ฆฌํˆด๋ฐ”