[ÄÄÇ»ÅÍ/ÀÎÅͳÝ]

ÀÚ¹Ù½ºÅ©¸³Æ® ³»¿ëÁ» ¼³¸í ÇØÁÖ¼¼¿ä

rank ±òºÀ 2019-01-18 (±Ý) 04:58 Á¶È¸ : 674
var module = {
  name: "Blind SQL Injection Arithmetic Evaluation Differential Checks",
  category: "Injection Modules",
  differential: true
};

function initialize(ctx) {

  var ps = ctx.getPathState();
  var numeric = isNumericParameter(ps);

  if (ps.isParametric()) {

    var uri = String(ps.getPath().getUri());
    var uripart = uri.replace(/\?.*/, "");
    var param = ps.getFuzzableParameter().name;
    var pathkey;

    if (ps.getPath().isPostTarget() == true) {
      pathkey = "vinfo-sql-inject:" + uripart + "?" + "post" + "?" + param;
    }
    else
    {
      pathkey = "vinfo-sql-inject:" + uripart + "?" + "get" + "?" + param;
    }

    var k= pathkey;


    if (ctx.alertExists(k)) {
      return;
    }

    if (numeric) {
      ctx.submitAlteredRequest(process, "-0", true, 0);
      ctx.submitAlteredRequest(process, "-0-0", true, 1);
      ctx.submitAlteredRequest(process, "-0-9", true, 2);
    } else {
      ctx.submitAlteredRequest(process, "9-8", 0);
      ctx.submitAlteredRequest(process, "8-7", 1);
      ctx.submitAlteredRequest(process, "9-1", 2);
    }
    submit(ctx, 3, "\\\'\\\"");
    submit(ctx, 4, "\'\"");
    submit(ctx, 5, "\\\\\'\\\\\"");

    if (numeric) {
      ctx.submitAlteredRequest(process, " - 0 - 0", true, 6);
      ctx.submitAlteredRequest(process, " 0 0 - -", true, 7);
    } else {
      ctx.submitAlteredRequest(process, "9 - 1", 6);
      ctx.submitAlteredRequest(process, "9 1 -", 7);
    }
  }
}

function submit(ctx, idx, val) {
  var req = ctx.getPathState().createAlteredRequest(val, true);
  var s1 = "vega" + val;
  var s2 = s1 + ",en";
  req.addHeader("User-Agent", s1);
  req.addHeader("Referer", s1);
  req.addHeader("Accept-Language", s2);
  ctx.submitRequest(req, process, idx);
}


function isNumericParameter(ps) {
  if (!ps.isParametric()) return false;
  var p = ps.getFuzzableParameter();
  if (!(p && p.value)) return false;
  var v = p.value;
  var numchars = "01234567890.+-";
  for (var i = 0; i < v.length; i++) {
    if (numchars.indexOf(v[i]) == -1) return false;
  }
  return true;

}

function process(req, res, ctx) {
  if (ctx.hasModuleFailed()) return;
  var ps = ctx.getPathState();

  if (res.fetchFail) {
    ctx.error(req, res, "During SQL injection checks");
    ctx.setModuleFailed();
    return;
  }

  ctx.addRequestResponse(req, res);
  if (ctx.incrementResponseCount() < 8) return;

  var uri = String(ps.getPath().getUri());
  var uripart = uri.replace(/\?.*/, "");
  var param = ps.getFuzzableParameter().name;
  var pathkey;

  if (ps.getPath().isPostTarget() == true) {
    pathkey = "vinfo-sql-inject:" + uripart + "?" + "post" + "?" + param;
  }
  else
  {
    pathkey = "vinfo-sql-inject:" + uripart + "?" + "get" + "?" + param;
  }

  if (ctx.isFingerprintMatch(0, 1) && !ctx.isFingerprintMatch(0, 2)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(0), ctx.getSavedResponse(0), {
      output: ctx.getSavedResponse(0).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"

    });

    ctx.responseChecks(0);
    ctx.responseChecks(2);
  }

  if (ctx.isFingerprintMatch(1, 6) && !ctx.isFingerprintMatch(6, 7)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(7), ctx.getSavedResponse(7), {
      output: ctx.getSavedResponse(7).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"
    });
    ctx.responseChecks(6);
    ctx.responseChecks(7);
  }

  if (!ctx.isFingerprintMatch(3, 4) && !ctx.isFingerprintMatch(3, 5)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(4), ctx.getSavedResponse(4), {
      output: ctx.getSavedResponse(4).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"
    });

    ctx.responseChecks(3);
    ctx.responseChecks(4);
  }
}

¿äûÀÚ°¡ ÀÚ½ÅÀÇ 500Æ÷ÀÎÆ®¸¦ °É¾ú½À´Ï´Ù. ´äº¯ÀÌ Ã¤ÅõǸé 250Æ÷ÀÎÆ®¸¦ µå¸³´Ï´Ù.
´ñ±Û 7°³ ´ñ±Û¾²±â
rankÀ¯¶ûõÇÏ 2019-01-18 (±Ý) 10:35
Ȥ½Ã ÇÁ·Î±×·¡¹Ö ¾ð¾î¿¡ ´ëÇØ ¹è¿ï ±âȸ°¡ ÀÖ¾ú´ÂÁö¿ä?
var = variable º¯¼ö°í¿ä.
function À̶ó°í ÀÖ´Â ºÎºÐÀÌ ½ÇÇà ÇÏ´Â ±â´É ´ÜÀ§µéÀÔ´Ï´Ù.
È£Ãâ¿¡ ÀÇÇؼ­ ÀÛµ¿ÇÏ°í if ¶ó´Â Á¶°ÇÀýÀ» ÃæÁ·Çϸé if ¾È¿¡ ÀÖ´Â ¸í·ÉµéÀ» ½ÇÇàÇÏÁÒ. ÀÌ·± ±âº» Áö½ÄÀÌ ÀÖÀ¸¸é ±×°Å¸¦ ¹ÙÅÁÀ¸·Î µû¶ó °¡´Â°Å¶ó ±Û·Î ¼³¸íÇϱⰡ ³ì·ÏÇÏÁö°¡ ¾Ê³×¿ä..
     
       
rank±òºÀ ±Û¾´ÀÌ 2019-01-18 (±Ý) 15:37
»ó´Ü Äڵ带 ÀÐÀ» Á¤µµÀÇ ½Ç·ÂÀÌ µÇÁö ¾Ê¾Æ¼­ µ¿ÀÛ¿ø¸®¸¦ ¾Ë°í½Í¾î¼­ Áú¹® µå·È½À´Ï´ç..
rankda1011 2019-01-18 (±Ý) 12:45
µé¾î¿À´Â ÀԷ°ªÀÌ ÇØÅ·À» À§ÇÑ Äڵ尡 ½É¾îÁ® ÀÖ´ÂÁö È®ÀÎÇÏ´Â ÄÚµåÀÔ´Ï´Ù
     
       
rank±òºÀ ±Û¾´ÀÌ 2019-01-18 (±Ý) 15:36
SQL Injection °ü·Ã °ø°Ý ÄÚµåÀÔ´Ï´Ù.
¾î¶»°Ô µ¹¾Æ°¡´ÂÁö µ¿ÀÛ¿ø¸®¸¦ ¾Ë°í ½Í¾î¼­¿ë..
          
            
rankda1011 2019-01-20 (ÀÏ) 19:25
https://github.com/subgraph/Vega/wiki/Basic-Module-Context-Object

Page Fingerprints
ÆäÀÌÁö Áö¹®

Vega¸¦ ºñ·ÔÇÑ ¸¹Àº À¥ ÀÀ¿ë ÇÁ·Î±×·¥ º¸¾È °Ë»ç´Â ÆäÀÌÁö À¯»ç¼ºÀ» ±â¹ÝÀ¸·Î Èï¹Ì·Î¿î µ¿ÀÛÀ» ½Äº°ÇÕ´Ï´Ù. Vega´Â ºÐ¼® µÈ °¢ ÆäÀÌÁö¿¡¼­ ÆäÀÌÁö Áö¹®À» ÃßÃâÇÕ´Ï´Ù. ÆäÀÌÁö À¯»ç¼ºÀ» ÆǺ°ÇÏ´Â °ÍÀº ¼­·Î ºñ±³µÇ´Â Áö¹®ÀÔ´Ï´Ù.

¿¹¸¦ µé¾î, SQL ÀÎÁ§¼ÇÀ» Å×½ºÆ®ÇÏ°í ¿¬»êÀ» »ç¿ëÇÏ¿© ¼öÇàÇÏ´Â °æ¿ì, ÇϳªÀÇ Å×½ºÆ®´Â ´ÙÀ½°ú °°ÀÌ ÀÛµ¿ÇÕ´Ï´Ù.

SQL ÀÎÁ§¼ÇÀÌ ¹ß»ýÇÏ¸é µ¥ÀÌÅͺ£À̽º¿¡¼­ ÂüÀÎ °ÍÀ¸·Î Æò°¡µÇ´Â SQLÀÇ »ê¼ú Ç¥Çö½Ä°ú ÇÔ²² µÎ °³ÀÇ ¿äû (1, 2)À» º¸³À´Ï´Ù.
SQL ÀÎÁ§¼ÇÀÌ ¹ß»ýÇϸé true·Î Æò°¡Çؼ­´Â ¾ÈµÇ´Â Ç¥Çö½ÄÀ» »ç¿ëÇÏ¿© ÇϳªÀÇ ¿äû (3)À» º¸³À´Ï´Ù.
ÆäÀÌÁö Áö¹® 1°ú 2°¡ µ¿ÀÏÇÏÁö¸¸ 1°ú 3ÀÌ ´Ù¸¥ °æ¿ì SQL ÁÖÀÔ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÒ ¼ö ÀÖ½À´Ï´Ù.
               
                 
rankda1011 2019-01-20 (ÀÏ) 19:32
function process(req, res, ctx) <--À̺κÐÀÌ °ËÁõ Äڵ尡 ÀÖ´Â ºÎºÐÀεí ÇÏ°í
ctx.addRequestResponse(req, res); <--context object ¿¡ req¿Í res¸¦ »ðÀÔÇÑ ÈÄ¿¡
if (ctx.isFingerprintMatch(0, 1) && !ctx.isFingerprintMatch(0, 2)) <--°ËÁõ Å×½ºÆ® Äڵ尡 µé¾î°¡¹Ç·Î
process¸¦ È£ÃâÇÏ´Â ºÎºÐÀ» º¸¼Å¾ß ÇÒ µí Çϳ׿ä
                    
                      
rank±òºÀ ±Û¾´ÀÌ 2019-01-22 (È­) 01:23
°¨»çÇÕ´Ï´Ù µµ¿òÀÌ ¸¹ÀÌ µÇ¾ú½À´Ï´Ù ^^

¹øÈ£ Á¦¸ñ ±Û¾´ÀÌ »óÅ Æ÷ÀÎÆ® ³¯Â¥ Á¶È¸
[°øÁö]  ¡Ø Áö½ÄiN °Ô½ÃÆÇ ÀÌ¿ë¾È³» rankeToLAND
0 03-28
[°øÁö]  ¡Ø Å䷻Ʈ»çÀÌÆ®Áú¹®,ÀúÀÛ±Ç ÀÚ·á¿äû ±ÝÁö rankeToLAND
0 08-25
[º¸Çè»ó´ã½Ç]  ½Ç¼Õº¸Çè 1¼¼´ë ¹®ÀÇ À͸í
129595 [±âŸ]  ¼Ò¾×»ç±â °ü·ÃÇÏ¿© ¹è»ó¸í·É½Åû¼­ ÀÛ¼º ¹æ¹ý ¿©Â庾´Ï´Ù À̹ÌÁö rank¼ÒÁÖ¶û´ß¶ËÁý
5000 04-19 46
129594 [TV/¿µ»ó]  ÇØ¿Ü¿¡¼­ ¿¾³¯ Çѱ¹ ¿¹´É µîÀ» ¹«·á·Î º¸´Â »çÀÌÆ®¸¦ ã°í ÀÖ½À´Ï´Ù. (5) rank¥É¥É¥É¥É¥É¥É¥É¥É
1000 04-19 81
129593 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  MsMpEng.exe ÆÄÀÏ ¾ø¾Ö´Â °Ç Á¤³ç ¹æ¹ýÀÌ ¾ø´Â °Ç°¡¿ä? (2) rankwpfhfh
2000 04-19 73
129592 [°æÁ¦/ÀçÅ×Å©]  ºÒ¾ÈÇؼ­ ¿©ÇàÀÚº¸ÇèÀÌ¶óµµ Á» Àß µé¾îº¸·Á°í Çϴµ¥¿ä rank¼ö¸·ÀÌ
300 04-19 60
129591 [°ÔÀÓ]  ¼Ò¿ï½ºÅæ ¼­¹ÙÀ̹ú ÀßÇϽôºР°è½Å°¡¿ä? rankenrilj
1000 04-19 58
129590 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À©µµ¿ìµðÆæ´õ Äѱâ~ (2) À̹ÌÁö rankÇÔ³ÄÇÔ³ÄÇÔ
2000 04-19 135
129589 [TV/¿µ»ó]  2007 Mnet KM Music Festival Redcafet ¿µ»ó ã¾Æ¿ä. rank´Þ´öÀÌ
3000 04-18 67
129588 [°Ç°­/ÀÇÇÐ]  ÀÌ´¢Á¦ Àå±âº¹¿ëÇصµ µÉ±î¿ä? (6) rankÁß´ëÀåÀÌ´Ù
1000 04-18 105
129587 [Ãë¹Ì/»ýÈ°]  Èçµé¸®´Â °Ç ±ê¹ßÀÌ ¾Æ´Ï¶ó ³× ¸¶À½ÀÌ´Ù - ¿µ¾î·Î - rankÀÏ»ó»ýÈ°¸ðÇè
333 04-18 104
129586 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À¯Æ©ºê À½¾Ç _ ¿øº» ¼öÁØ mp3 ·Î ´Ù¿î ¹Þ´Â ¹æ¹ý ÀÖÀ»±î¿ä ??? (5) rankÀÏ»ó»ýÈ°¸ðÇè
333 04-17 136
129585 [±âŸ]  ½Å¹ß µÚ²ÞÄ¡ ¾µ·Á¼­ ¾ÆÇÁ³×¿ä, (2) rankÁ¤´Ù¼Ø
200 04-17 111
129584 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À¯ÅõºÎ Àç»ý¹Ù°¡ ÀÌ»óÇØÁ³³×¿ä. rankÀÚÀÛ±Ø
500 04-17 139
129583 [TV/¿µ»ó]  °¡Àå ÃÖ±ÙÀÇ 3D ¿µÈ­´Â? (1) rankº£ÁöŸ¸Æ½º
800 04-16 110
129582 [±âŸ]  ¼ö¾Ð ½ë Çعٶó±â »þ¿ö±â Çìµå ÃßõºÎŹµå·Á¿ä (3) rankºñ¹öu
2000 04-16 131
129581 [TV/¿µ»ó]  ¼Âž¹Ú½º¿Í TV hdmi ÄÉÀÌºí¿¡ ´ëÇؼ­ Áú¹®ÇÕ´Ï´Ù (2) rank·£µð113
300 04-16 95
129580 [°Ç°­/ÀÇÇÐ]  ÇöÀç ¼­¿ï TOP5 ´ëÇк´¿ø ¿¹¾àÇÏ´Â ¹æ¹ý ÀÖÀ»±î¿ä? (1) rankIlIIllIll
1000 04-16 121
129579 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÀÎÅÍ³Ý ¾øÀÌ ¿ÍÀÌÆÄÀ̸¸ »ç¿ë°¡´ÉÇÒ±î¿ä? (4) rankKingÅ·½º¸Ç
500 04-16 197
129578 [±âŸ]  ¼ö½À±â°£Áß Á÷¿øÇØ°í½Ã ½Ç¾÷ ±Þ¿© ¹× ±Þ¿© °è»ê¹ý ¹®ÀÇ [ÀÚÇÊ] (7) rank¿¡·ÎÁ
2000 04-15 245
129577 [±âŸ]  ¾Ë¶ã¿ä±ÝÁ¦ À߾ƽôºР°è½Å°¡¿ä?.txt (4) rank¿©Àڿ;ÆÀ̴³öÁà
2000 04-13 153
129576 [°ÔÀÓ]  ÅÁÅÁƯ°ø´ë ¾²´ø Æù °èÁ¤À¸·Î PC¿¬µ¿ ÇÏ´Â ¹æ¹ý Á» ¤Ð (2) rank23455
3000 04-13 134
129575 [±âŸ]  ÀÌ°Ô ¹«½¼ ¹ú·¹ÀÎÁö ¾Ë¼öÀÖÀ»±î¿ä?.jpg (2) À̹ÌÁö rankMr·ç
300 04-12 206
129574 [Ãë¹Ì/»ýÈ°]  ÁÖº¯ ´Ù¸¥ ¾ÆÆÄÆ® ºÐ¸®¼ö°ÅÀÏ ±Ã±Ý..¤» ¾²·¡±â ½ºÆ¿·¯~~~~@ (3) rankÀÏ»ó»ýÈ°¸ðÇè
369 04-12 139
129573 [±âŸ]  Á¦°¡ ¿ø·ë»ç´Âµ¥ ¿ÍÀκ´ ¹ö¸®´Â°Å ¶§¹®¿¡ ±Ã±ÝÇÑ°Ô;; (2) rank123dcf
1000 04-12 258
129572 [¼îÇÎ]  ¾Ë¸®¿¡¼­ ȯºÒ ¸Þ¼¼Áö°¡ ¿Ô´Âµ¥¿ä, ¾îµð·Î ¿Â°Ç°¡¿ä? (1) rank·¹µå·¹¿À
500 04-12 199
129571 [Ãë¹Ì/»ýÈ°]  »çÁø ÀÎÈ­ÇÏ·Á¸é ¾î¶»°Ô Çϳª¿ä ??? (1) rankÀÏ»ó»ýÈ°¸ðÇè
369 04-12 113
129570 [°Ç°­/ÀÇÇÐ]  Ä¡°ú ½Å°æÄ¡·á Çغ¸½Å ºÐ °è½Å°¡¿ä?.txt (9) rank¿©Àڿ;ÆÀ̴³öÁà
1000 04-11 153
129569 [±âŸ]  ÀÚÀÏ´ë¿ìÁßÇü¹ö½º ·¹½ºÅ¸ Á¤ºñ¼Ò rankGoldT
500 04-11 101
129568 [¼îÇÎ]  ´ç±ÙÆäÀÌ °èÁ¿¬°á¾øÀÌ ±¸¸Å°¡´ÉÇÑ°¡¿ä? (2) rankenrilj
1000 04-10 116
129567 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  hdmi2.1 ÇØ»óµµ¿Í ÁÖ»çÀ² (2) rank±³¹Ì³×ÀÌÅÍ
3000 04-10 199
129566 [±âŸ]  ¸ÞÆ®¸®½º¿¡ ¶ô½º³¿¼¼ ¾î¶»°Ô ¾ø¾Ö³ª¿ä? (2) À̹ÌÁö rank±è±è°¨¸ÓÀÌ
500 04-09 121
129565 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À©µµ¿ì ÃʱâÈ­ÇÏ¸é °øµ¿ÀÎÁõ¼­ Áö¿öÁöÁÒ? (2) rank°¡ÀÏ
200 04-09 141
129564 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À©µµ¿ìÁî ´ÜÃàÅ° Áú¹® (2) rank»ö¸¸º¸
500 04-09 129
129563 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À¯Ç÷¯½º À¯Æ©ºê ¿¬µ¿ (1) ranktimeafte
200 04-08 146
129562 [±âŸ]  ¾çµµ¼Òµæ¼¼ ½Å°í ¾Æ½Ã´Â ºÐ °è½Ã³ª¿ä? [ÀÚÇÊ] (2) rankÁ¤¼®¾Öºñ
2500 04-07 141
129561 [ÀüÀÚ±â±â]  ÃæÀü·£ÅÏ ´Ù¸¥ ¾Æ´äÅÍ V A ÃæÀü°¡´ÉÇÑÁö (5) À̹ÌÁö rankÀÏ»ó»ýÈ°¸ðÇè
369 04-07 136
129560 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  MSI ¸ÞÀκ¸µå ¹ÙÀÌ¿À½º ¸ØÃã Çö»ó (3) rankDown
5000 04-07 182
129559 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ¹ÙÅÁÈ­¸éº¸±âÀ¯ÇüÀÌ À½¾ÇÀ¸·Î µÇ¾îÀִµ¥ ¾î¶»°ÔÀÌÀüÀ¸·Î µ¹¸±¼öÀÖÀ¸±î¿ä? (1) À̹ÌÁö rankµµ¿ÍÁà¿äµµ¸®±º
500 04-06 122
129558 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ±¸±Û µå¶óÀ̺ê (9) À̹ÌÁö rank¶Ç¿ô´Ù¶Ç
5000 04-06 219
129557 [À½¾Ç]  ³ë·¡ ¾Æ½Ã´ÂºÐ? rank¿ÀÁöÄ¡Áî
500 04-06 115
129556 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  Å©·Ò À¯Æ©ºê ¶óÀ̺굿¿µ»ó ½Ãû½Ã ¸Þ¸ð¸® »ó½Â¹®Á¦ (10) rankºí·¢Á¶
5000 04-05 225

Áú¹®°ú´äº¯ ¿ù°£ ÃÖ´ÙäÅà ¿ì¼ö´äº¯È¸¿ø

  • rank¿©Àڿ;ÆÀ̴³öÁà äÅô亯¼ö (8)
  • rank±×±îÀ̲¨¹¹¶ó°í äÅô亯¼ö (5)
  • rankÀáÀûÁß Ã¤Åô亯¼ö (3)
  • rankdasari äÅô亯¼ö (2)
  • rank´É±ÛÀÌ3 äÅô亯¼ö (2)
  • rank³ª°Ö äÅô亯¼ö (1)
  • rank¹ìÆÄÀ̾î äÅô亯¼ö (1)
  • rankÈ£Á¶ äÅô亯¼ö (1)
  • rankpskgoo äÅô亯¼ö (1)
     1  2  3  4  5  6  7  8  9  10  ´ÙÀ½

    °øÀ¯Çϱâ

    ÀÌÅä·£µå ·Î°í

    °èÁ¤ ã±â ȸ¿ø°¡ÀÔ
    ¼Ò¼È·Î±×ÀÎ