Cyberââ Readiness Challengeãªãã©ã€ã³ãããã³ã°ããŒãã¡ã³ãã®ããããã®åå è
éææ¥ãã·ãã³ããã¯ãšCROCãå®æœãããªã³ã©ã€ã³ãããã³ã°ã²ãŒã Cyberââ Readiness ChallengeãçµäºããŸããã
å€ãã®å Žåãå°éçãªæ å ±ã»ãã¥ãªãã£ããã¯çšé ã人ã ãè¡ãããã¯ã¯ãšã¹ãããããŸãã ãã®ãããªã¯ãšã¹ãã¯ãã¿ã¹ã¯ãæšæž¬ããããšã§èªèã§ããŸããåæ Œã«ã¯ã幞éãèè ãèããŠãããã®ãæšæž¬ããã»ã©ã®ã¹ãã«ã¯å¿ èŠãããŸããã ãããŠãããã§ã¯ãéåžžã«ãŸããªããšãå€æããããã§ãããã®ç«¶äºã¯ãæ å ±ãžã£ã±ããã§å€§éšããã人ã ã«ãã£ãŠè¡ãããŸããããåæã«CTFã®äžçããã¯é ãé¢ããŠããŸããã ãã®çµæãã¿ã¹ã¯ã¯äžæ¹ã§çŽ æŽã§ããããšãå€æããŸããããåæã«æè¡çã«ã¯æ£ãããã®ã§ããã ãã競äºã§ã¯ããã°ãªãããã¹ãã£ã³ããŸãã ãããã¯ãŒã¯äžã«äœå°ã®è»ããããŸããïŒãããŒãã³ã¢ã®ããã«ããè©°ãŸã£ãbase64ãããã¯ã解èªãããã«ããã€ãxorããŒã¯äžæã§ãããVlad "vos" Roskov
倧èŠæš¡ãªEDCäŒæ¥ã®ãããã¯ãŒã¯ãã·ãã¥ã¬ãŒãããã·ãã¥ã¬ãŒã¿ã«æ¥ç¶ããåå è ã ã·ããªãªã«ãããšãEDCã»ãã¥ãªãã£ã·ã¹ãã ã§ããã€ãã®ã€ã³ã·ãã³ããçºçããŸããã å瀟ã¯ããããã³ã°ã®å¯èœæ§ã蚌æãŸãã¯åŠå®ããããã«äœãèµ·ãã£ãã®ããç解ããããã«ãæ å ±ã»ãã¥ãªãã£ã®åéã§æé«ã®å°é家ãéçšããŠããŸãã
äžè¬ã«ãã²ãŒã ã¯çŽ3070æéïŒåå è ãè²»ãããåèšæéïŒããããŸããã åèšã§ããã·ã¢ã®ããŸããŸãªå°åã®143人ã®ãã¬ã€ã€ãŒãããŒãã¡ã³ãã«ãã°ã€ã³ãããã®ãã¡çŽ3åã®2ãç©æ¥µçã«åå ããŸããã
åè³è
é 眮-vos-Vlad Roskov-ãµã³ã¯ãããã«ãã«ã¯;
IIäœ-VY_CMa-ã€ãŽãŒã«ã«ãã®ã³-ãªã ã¹ã¯;
IIIäœ-AV1ctOr-ã¢ã¹ã¯ã¯åºèº«ã®Victor Alyushinã
ãªã³ã©ã€ã³éšåã®çµæã«ãããšãVlad Roskovã¯vosãšããããã¯ããŒã ã§è©±ããŠåã¡ãŸããã 圌ã¯ã»ãšãã©ããã«ãªãŒãããæåŸãŸã§ãããä¿æããŸããã圌ã¯ã38.800ã®å¯èœæ§ã®ãããã€ã³ãã®ãã¡36.800ããæ¥ãŸãããããã¯90ã®ã¿ã¹ã¯ã®ãã¡88ã§ãïŒèª°ãæåŸã®2ã€ã®ãã©ã°ãåã£ãïŒ ä»ãç§ãã¡ã¯9æ10æ¥ã«ããŒãã¡ã³ãã®ãªãã©ã€ã³éšåã§VladãåŸ ã£ãŠããŸãã
ããã20ã æåã®ãã¬ã€ã€ãŒéã®ã®ã£ããã«æ³šæããŠãã ããã
ããŒãã¡ã³ãã«é¢ããVladã®ç©èª
Vladèªèº«ããã®ã²ãŒã ã«ã€ããŠã¬ããŒã¿ãŒã«èªã£ãããšã¯æ¬¡ã®ãšããã§ãã
ãã³ã³ãã¥ãŒã¿ãŒã»ãã¥ãªãã£ã³ã³ããã£ã·ã§ã³ïŒCTFïŒã§èŠåŽããŠç²åŸããåå è ã®ç§ã®æèŠã§ã¯ããã®ã²ãŒã ã¯é©ãã¹ããã®ã§ãããã¿ã¹ã¯ã¯çŽ æŽã§ããããåæã«é åçã§ããã ããã¯éåžžã«ãŸãã§ãã ã·ã³ãã«ãã€åæã«æè¡çã«æèœãªISã¿ã¹ã¯ã§æãè©Šããã人ã¯ã次åã®ãµã€ããŒãã£ã¬ã³ãžã«åå ããããšã匷ããå§ãããŸãã ãªãã©ã€ã³ãã§ãŒãºã«é¢å¿ãæã£ãŠæåŸ ããŠããŸããã·ãã³ããã¯ãšCROCã®ãã°ãããã¯ãšã¹ãã«æè¬ããŸããã
ãããŠãããã«åœŒãHabrã®ããã«ãã§ã«ç§ã«èšã£ãããšããããŸãïŒä»¥äžããããã¯ç¥èªã§ããã察話ãèµ·ãã£ãŠããããã€ãã®æçŽã®éãŸãã§ãïŒïŒ
ç§ã¯ãã®èª²é¡ã«ã€ããŠèªåã®æèŠãæã£ãŠããŸãããçŒããCTFã¡ã³ããŒã®å°éçãªå€åœ¢ã«ãã£ãŠãããã«æªããããŠããŸãã Simantekã®ããã¯ã¯ãšã¹ãã¯é©ããŸãããããã¯ãçŽ æŽã§èå³æ·±ãããšãå€æããŸããã ããã¯ãŸãã§ãã
圌ã¯äžæ©äžç ããŸãã-ããã¯ç¥èã§ã:)
å®éãåæ¥ã«85ãã®ã¿ã¹ã¯ã解決ããŸããïŒã¿ã¹ã¯ãªã¹ããžã®ã¢ã¯ã»ã¹ã«é¢ããåé¡ã«è¿ éã«å¯Ÿå¿ããã·ãã³ããã¯ã®ãµããŒãã®ãããã§ïŒã ãã®åŸãæ£çŽãªãšãããç§ã¯äžéå端ã§ã34300ãã€ã³ããš15æ¥ã®æåŸã®æã®é éã§é·ãéæããããŸããã æçµæ¥ãç§ã¯ãŸã ãããã³ã°ãããŠã3ã€ã®ã¿ã¹ã¯ãçµããŸããã
芪Relativeã¯ãããŒãããœã³ã³ã«éŒ»ãè²»ãããäžæ¥ãæè¬ããŠããŸããã§ãã:-D
æãç°¡åãªããšã¯ãã²ãŒã VPNãæ¥ç¶ãããŠããå Žåãã€ã³ã¿ãŒãããã¢ã¯ã»ã¹ã®äžè¶³ã«èããããšã§ãã
æ倧ã®å°é£ã¯ãç»é²æã«3æåããé·ãããã¯ããŒã ãæãä»ãããšã§ãã
ã¿ã¹ã¯88ã89ã®ãã³ããèªã¿ãŸãããå©ãã«ã¯ãªããŸããã§ããã
ãã¬ã€ã€ãŒã®ã€ã³ãã©ã¹ãã©ã¯ãã£ãäºãã«éé¢ãããŠããã®ã奜ãã§ãé©ããŸããã ç§ã¯ãŸã ãããã©ã®ããã«å®è£ ããããç解ããŠããŸããã æ°çŸäººã®ãã¬ãŒã€ãŒã®ããããã«å¯ŸããŠä»®æ³ãã·ã³ã®ã»ãããäœæãããŸãããïŒ
äœããããèšèé£ããç°¡åãªã¿ã¹ã¯ãè³ãåãããããã解決ããããã®ç°åžžãªæ¹æ³ãæãã€ããããšã奜ãã§ããã ã¢ã€ãã¢ãåããŠæ©èœãããšããããã¯éåžžã«ã¯ãŒã«ãªæãã§ãã
ãã¯ã¿ãŒã»ã¢ãªã¥ãŒã·ã³ïŒIIIäœïŒïŒ
ç§ã¯æ¯æ©å¯ãŠããŸããããããå€ãã©ãããããã¯æ©èœããŸãã-mysqlã®ãã¹ã¯ãŒããåãåããŸããã ååãšããŠãMetasploitãXSSãmysqlã®ãã¹ã¯ãŒãéžæãããã³ã¬ãã«4ã®2ããã³3ãã©ã°ãé€ãããã¹ãŠãã·ã³ãã«ã§ãã
ç§ã¯ã»ãšãã©ãã¹ãŠãäžåºŠã«è¡ããŸãããããªã³ã©ã€ã³ã§mysqlã®ãã¹ã¯ãŒããéžæããæ¹æ³ãç¥ããŸããã§ãã...ããªãã®ããããæ©èœããªãã£ããšããbanter.edcã解決ããæ¹æ³ãèãããšããIIS 4.0ãã¯ã©ãã¯ããªããã°ãªããªããšæããŸããã 泚ïŒ78ãš79ã®ãã©ã°ã«ã€ããŠè©±ããŠãã-ååãªæ°ã®åå è ããã©ã°ã«å°éãããšããã«ãåé¡ãç¹å®ããŠä¿®æ£ããããšãå€æããã ãã³ããšã¹ã³ã¢ãåæã«åŸ©å ãããŸããã
äœããããç§ã¯é ããŸã§è¡ããã®ã奜ãã§ãéå±ããå¿ èŠã¯ãããŸããã§ããã ãŸããã¹ã³ã¢ããŒãCookieãšbanter.edcããããã³ã°ããŸããã ã¢ã«ãŽãªãºã ã«å€æŽãå ããŠç©Žãéããªãããã«ãããšããèŠæ±ã§ãããCookieã®åŸ©å·åã§ã¯ãCookieã¢ã¬ãã¯ã¹ãçãæ©èœãé€ããŠãç¹å¥ãªè匱æ§ã¯ãããŸããã§ããã
ãªãã©ã€ã³ ãã¡ããããã æåŸ ããŠãã ããïŒç§ã¯ã¢ã¹ã¯ã¯ã«äœãã§ããã®ã§ãé ãã¯ãããŸããã
Teymur Kheirkhabarovã®ç©èªïŒIVã®å ŽæïŒ
æåŸã®4ã¬ãã«ã«å°éãããšã5åã®ãã¡2åã®ãã©ã°ãåããŸãããäžè¬ã«ã87åã®ãã©ã°ãåéãã4äœã«ãªããŸããã ã²ãŒã ã«è²»ãããåèšæéãèšãã®ã¯é£ããã§ãã 圌ã¯3æ¥éããå®å šã«ãã¬ãŒãå§ããå€æ¹ã®ã¿ãååŸã«ã¯ä»äºãå¿ èŠã§ããã æšå€ã ãå¯ãªãã£ãã®ã§ãæ®ãã®æéã¯ãããè²·ãäœè£ããªãã£ãã®ã§ãæ6æã«èµ·ããŸããã ç§ã«ãšã£ãŠã®äž»ãªåé¡ã¯ãä»äºã®ããã®æéã®äžè¶³ã§ããã ã²ãŒã ã«ååãªæéãå²ããé±æ«ããã£ããã£ããããã«ãããšãã°æ°Žææ¥ã«ã²ãŒã ãéå§ãããããããšæããŸãã 圌ãã®å€ãã¯åã人ã家æãæã£ãŠããã®ã§ãæŒå¥ãã人ãæŒå¥ããã人ã®å€ãã¯ç§ã«åæãããšæããŸãã
æãåçŽãªã¿ã¹ã¯ã¯ãç¹å®ã®ãœãããŠã§ã¢ã®ã©ã®ããŒãžã§ã³ããµãŒããŒã«ã€ã³ã¹ããŒã«ããããããŸãã¯ãããã¯ãŒã¯å ã«ããã€ã®ãã¹ãããã£ãããšããã«ããŽãªãŒããã®ãã®ã§ããã æ倧ã®å°é£ã¯3ã€ã®ã¿ã¹ã¯ãåå ã§ããã ãããã®1ã€ã¯ãMySQL DBMSãŠãŒã¶ãŒã®ãã«ãŒããã©ãŒã¹ãã¹ã¯ãŒãã§ãã ç§ã¯çŽ2æ¥éãã¹ã¯ãŒããèŠã€ããããšããŸããããçµå±ã䜿çšãããã«ãŒããã©ãŒã¹ããŒã«ãæ£ããæ©èœãããæå¹ãªãã¹ã¯ãŒããèŠéãããšãããããŸããã ããŒã«ãå€æŽããåŸãæ°åã§ãã¹ã¯ãŒããéžæãããŸããã ã²ãŒã ãµãŒããŒã®æè¡çãªåé¡ã®ããã第3段éã®2ã€ã®ã¿ã¹ã¯ãéåžžã«é·ãæéå®äºã§ããŸããã§ããã ãã®ãããäœãééã£ãããšãããŠããã®ããã²ãŒã ãµãŒããŒãæ¬åœã«ã¯ã©ãã·ã¥ããã®ãã¯æ確ã§ã¯ãããŸããã§ããã ãã®çµæãæåŸã«ãªããŸããã
ååãªç¥èããããæã«ã¯å®çšçãªã¹ãã«ãæ¬ ããŠããŸããã ãã®ãŠãŒãã£ãªãã£ã®äœ¿çšäŸããã°ãŒã°ã«ã§æ€çŽ¢ãããå¿ èŠããããŸããã
äœããããã²ãŒã ã®ç¬¬3ã¹ããŒãžãšç¬¬4ã¹ããŒãžã奜ãã§ãããã«ã¯æ¬åœã«ããªããæãããããºã«ããããŸããã ãããŠãã¡ãããã²ãŒã ã®æåŸã®æ°æéã¯ãããã10ã®è©äŸ¡ã®åå è ã®éã§æ·±å»ãªéäºãç¹°ãåºããããŸããã
ãªãã©ã€ã³ ã»ãšãã©ãªãã§ãããã ç§ã¯ã¢ã¹ã¯ã¯ããé ãé¢ããã¯ã©ã¹ãã€ã«ã¹ã¯ã«äœãã§ããŸãã
ãã¡ãã¯ããžã£ãŒããªã¹ãåãã§ã¯ãªããã¢ã³ãã¬ã€ã»ã¬ãªããïŒVIIäœïŒã®ç©èªã§ãã
圌ã¯86åã®æãåã£ãã ãããã®ããã€ãã¯ããã¹ãŠã®ãã³ãã䜿çšããŠãã¡ã¬ããªãã§æ®åœ±ããå¿ èŠããããŸããã
ã²ãŒã å šäœããã¬ã€ããã«ã¯åèšã§50æéããã£ããšæããŸãããã»ãŒåãããŒã¹ã§ã ç§ã¯1æ¥4æéå¯ãŸããã
äºæ³ã©ããããããã¯ãŒã¯ã€ã³ãã©ã¹ãã©ã¯ãã£ãšLinuxããŒã«ãããã®åæã¯ããŸãåŸæã§ã¯ãããŸããã åŸè ã®ããã87ãã©ã°ãååŸããããšã¯ã§ããŸããã§ããïŒ1.1.2.19ãã·ã³ãä»ããŠããŒãããªãã€ã¬ã¯ãããå¿ èŠãããããšãç解ããããã§ç§ãå©ããããšãã§ããããšããç解ããŸããããncãŸãã¯socatã®ããããã§å ·äœçãªå®è£ ãèŠã€ããããšãã§ããŸããã§ããïŒããšãŠãæ®å¿µã§ãã é äœãé«ããªããŸãã
äœãå€æŽããŸããïŒ ã¿ã¹ã¯ã®äžéšãç¹ã«åçŽãªã¿ã¹ã¯ã¯ãç§ã«ãšã£ãŠã¯éåžžã«åçŽã§ãæ å ±ã»ãã¥ãªãã£ã®åéããã§ã¯ãªãããã«æããŸããã
ä»ã®ããŒãã¡ã³ããšã®éãã¯äœã§ããïŒ ç§åŠçã«äººæ°ããããŸãã ããŒãã¡ã³ãã®ã¹ã³ã¢ããŒãã ãã§ãªããæ°ããç¥èãç²åŸãããšããç¹ã§ããæäœéã®ç¥èã§ã倧ããªé¡æã§åå ããæªãçµæãéæããããšã¯ã§ããŸããã§ããã
é£ãã...ãŸãããã¹ãŠãç°¡åã§ã-ç§ã¯æ¬¡ã®ãã©ã°ã«2ã€ãŸãã¯3ã€ã®ãã³ããè²»ãããŸããïŒ
-å éšãããã¯ãŒã¯ã§ãªã³ã©ã€ã³ã«ãªã£ãŠãããã¹ãã®æ°
-netadminããŒã¿ããŒã¹ãŠãŒã¶ãŒããã®ãã¹ã¯ãŒã-ããã§ã¯ãããã©ã¯æ¬åœã«ç§ã倱æããã200Kã®ãã¹ã¯ãŒããäŸçµŠããŸãããã圌女ã¯é»ã£ãŠããŸããã ãã«ããã¹ã¯ã¯ããã¹ã¯ãŒãã¯äžè¬çãªãã¹ã¯ãŒãã®èŸæžã®1ã€ã«ãããšåçããŸããã ãã«ãŒãããŒã«ãmetasploit / mysql_loginã«å€æŽãããšãæ°åã§çããè¿ã£ãŠããŸããã ãããŠãç§ã¯ãã®æã§äžæ¥ãéãããŸããïŒ
-ãã©ã°78-å€ãã®äººã圌ã«èªã£ãã ããããé£ããã¯ãç§ãäœããã¹ãããç解ããŠããªãã£ãããšã§ã¯ãªãããããã®å¥åŠãªä»äºã§ãã ããããããã§-ãã®ãŸãŸã æãå¥åŠãªããšã¯ãçŽåã«ããŒããããã¬ãã«ããŒãã«ã«ã3ã€ã®ãã³ããã¹ãŠã䜿çšãããšããæ å ±ããªãããšã§ãã å¥è·¡ïŒïŒ ïŒæ³š-ããã§ã®ãã¹ãŠã¯ãäžèšãšåãåé¡ã«ãã£ãŠã説æãããŸãïŒã
å人çã«ã¯ãç§ã®åæ¥çé¢å¿ã¯Webã¢ããªã±ãŒã·ã§ã³ã®è匱æ§ã§ãã è¯ããŠéãã XXEã¯ã©ãã«ãããŸããïŒ:)åçŽãªWAFã¯ã©ãã«ãããŸããïŒå°ãªããšããurlencod'itã«åŒçšç¬Šãå¿ èŠãªããã«ïŒã éèŠã§ã¯ãªãã¿ã¹ã¯ã§ã¯ãæ¯èŒçæ°ããäœã-SSRFãèŠãã®ã¯é¢çœãã§ãããã ããšãã°ã ãŸãã¯ããã»ã©æçœã§ãªããã¯ãã«ã ããã¯ãã§ã«ç§ã®æ°ãŸããã§ã-ç§ã¯ãããç解ããŠããŸããç§ã¯mod_rewriteãä»ããŠåäœãã1è¡ã®ãŠããªã³ãæã£ãŠããŸããããã¯è±¡=ãžã®ãã³ãã§ãïŒããã¯ãã£ãšé¢çœãã ããã
ãªãã©ã€ã³ =ïŒãç»é²ããå¿ èŠããããŸãã å人çã«ãèªåèªèº«ãèŠããŠãä»ã®äººãèŠãŠãã ããã ãŽã©ã¹ãšæ¡æãããã§ãã ãšãŠãèå³æ·±ã5æ¥éãæ¬åœã«ããããšãããããŸããã ãã€ãããã·ãªãŒãºã¯çŽ æŽãããã£ã-ç§ãã¡ã¯æ¬¡ãåŸ ã£ãŠããŸã:)
ã¢ã³ãã¬ã€ã¯ãŸãããŸã å ¬éããŠããªãããã€ãã®ããšãèšã£ãããããã¯æãããªãã¿ãã¬ã ïŒæåã®ãªã³ã©ã€ã³ããŒãã¡ã³ãã¯ãã·ã¢ã§éå¬ãããããä»ã®åœã§ã¯éå¬ãããïŒã
ç§ãã¡ã®çµéš
ç§ãèšã£ãããã«ãCRCãªã³ã©ã€ã³ããŒãã¡ã³ãã¯ãç§ãã¡ã®æ å ±ã«ãããšåããŠéå¬ãããŸããã å€ãã®åå è ããã³ãã¥ãã±ãŒã·ã§ã³ã®ããã«IRCãã£ã³ãã«ãäžããããã«é Œã¿ãŸãããããã«ãééã£ããã³ãã1ã€ãããèšç®ã«èª€ãããããŸããïŒãã«ãŒããã©ãŒã¹ãã¹ã¯ãŒãã®è€éãã«ã€ããŠå€ãã®äžæºããããŸããïŒã ãããã®ã³ã¡ã³ãããã®ä»ã®ã³ã¡ã³ããèæ ®ããããã«ãã¹ãŠã®åå è ã«ããééã®çµ±èšã®åæãçµäºããããã¿ã¹ã¯ãšãã³ããå€æŽããããšããããŸãã ãã®åŸãããŒãã¡ã³ãã¯ç§ãã¡ã®åœã ãã§ãªãéå¬ãããŸãã
誰ãããŒãã¡ã³ããéå¬ãããã®çç±ã¯ïŒ
Symantec CorporationïŒã»ãã¥ãªãã£ãããŒã¿ããã¯ã¢ãããé«å¯çšæ§ãœãªã¥ãŒã·ã§ã³ã®äžççãªãŒããŒïŒããã³CROCïŒITã€ã³ãã©ã¹ãã©ã¯ãã£äœæåéã«ããããã·ã¢ã®ãªãŒããŒã2002幎ãã2012幎ã®IDCã¬ããŒãã«ãããšãã·ã¹ãã çµ±åãµãŒãã¹ã§ãã·ã¢ç¬¬1äœïŒ ã ãã·ã¢ããã³äžçäžã®ãµã€ããŒæºåãã£ã¬ã³ãžã®äž»ãªç®æšã¯æè²ã§ãã éå»ã®äžçããŒãã¡ã³ãããã®ã¬ããŒãã¯ããã«ãããŸã ã ãªã³ã©ã€ã³ã©ãŠã³ãã§ã¯ãå¯èœãªéãæ£ç¢ºã«å°åãã«ããŒããããšèããŠããŸããããªãã©ã€ã³ã®éšåã¯ã¢ã¹ã¯ã¯ã«ãããå šå¡ãåå ã§ããããã§ã¯ãããŸããã
åå ããæ¹æ³ã¯ïŒ
2013幎9æ10æ¥ã«ã¢ã¹ã¯ã¯ã§ãªãã©ã€ã³ãã£ã³ããªã³ã·ãããéå¬ããã18æ³ä»¥äžã§ããã°èª°ã§ãåå ã§ããŸãã å€å°è€éã«ãªããŸã-åå è ãRK Industriesãããã¯ãŒã¯ã«äŸµå ¥ãã競åä»ç€Ÿãžã®æ»æãžã®åå ã蚌æãŸãã¯æåŠããã«ã¯ã4æéããããŸãã
誰ããã®ãããªããŒãã¡ã³ãã«å©èšããŸããïŒ
Vlad Roskov ïŒåå¿è ã«ã¯çæ³çã§ãããã®äººã«ã¯è¯ããã¬ãŒãã³ã°ã§ãã
ã¢ã³ãã¬ã€ã»ã¬ãªãã ïŒè¯å¿ãæºãã¶ãããšãªããæ å ±ã»ãã¥ãªãã£ã®åéã§æ ãå§ããã°ããã®äººãã¡ã«ããã®ãããªããŒãã¡ã³ããå§ããŸãã ããã¯ãããŒãã¡ã³ããåçŽã ã£ããšããæå³ã§ã¯ãããŸããã ããããã¿ã¹ã¯å šäœã次ãã次ãžãšç¶ããæã«ã¯å®å šãªçããå«ãæãããããã£ããšããäºå®ãèãããšãå€ãã®æ°ããç¥èãåŸãããšãã§ããŸããã ãŸãã¯ããã³ããããªãã£ãå Žæãç解ããŠãã ãã:)
Victor Alyushin ïŒåå¿è ããããã®ãã³ãã¹ã¿ãŒããããŠãããã³ã°ã«ææŠããã人ãŸã§ãç§ã¯çµ¶å¯Ÿã«ã¢ããã€ã¹ããŸãã åŸè ã«ã€ããŠã¯ãã¹ããããã€ã¹ãããã®æé ãäœæããããšããå§ãããŸãïŒç¹ã«Metasploitã®å ŽåïŒãããšãã°ã¿ã¹ã¯ã®ã³ã¹ãã®110ïŒ ã«ã€ããŠèª¬æããŸã;ïŒã
Teymur Kheirkhabarov ïŒæ å ±ã»ãã¥ãªãã£ã®ãããã¯ãç¹ã«ãã®å®çšçãªåŽé¢ã«ç¡é¢å¿ã§ãªããã¹ãŠã®äººã ã«...ç§ã¯ãã®ãããªã€ãã³ãã«åããŠåå ããŸããã
ããã§ãªãã©ã€ã³éšåã«ç»é²ã§ããŸã ã ãŸã äœå°ããããŸãã
CROCãµã€ããŒäŒè°
䞊è¡ããŠãå°é家ãæ å ±ã»ãã¥ãªãã£ã®åé¡ã«ã€ããŠè°è«ããCROCãµã€ããŒäŒè°ãéå¬ãããŸãã ãã¹ãŠã®ã€ãã³ãã¯ãæ©å¯ããŒã¿ãä¿è·ããããšã®éèŠæ§ã«ã€ããŠãã·ã¢ã®äœæ°ã®æèãé«ããããšãç®çãšããŠããŸãã