NeoQUEST-2015äºéžã©ãŠã³ãã¯ãŸããªãéå§ãããŸããããã«åããŠãNeoQUEST-2014ãã«ã¿ã€ã ãã¢ãŒã®ã¿ã¹ã¯ãäžç·ã«è¡ãããšãææ¡ããŸãã æ¢ã«NeoQUEST-2014ãã©ã®ããã«é²ãã§ããããäŒã ãã¬ããŒããšåçãå ±æããŸããïŒèª°ããèªåèªèº«ãèŠã€ãããããããŸããïŒïŒã ã§ã¯ãèŽè¡ã®ç®ããã¯ç¥ç§çã§é ãããŠããããšã«ã€ããŠã話ãããŸããããããããNeoQUESTã®æãéèŠãªéšåã¯ã2æã®ãªã³ã©ã€ã³ãã¢ãŒã®çµæã«ãããšæé«ã®ãµã€ããŒã»ãã¥ãªãã£å°é家ã®ç«¶äºã§ãã
åå è ã®å¯Ÿç«ã«ã¯5ã€ã®ã¿ã¹ã¯ãå«ãŸããŠããŸãããããã®ãã¡ã®1ã€ã¯å€±æããŸããã ãã®èšäºã§ã¯ãåæ Œãã4ã€ãåæããŸãã
- ãAm I JokerïŒã -ãœãŒã·ã£ã«ãããã¯ãŒã¯ããååŸãããã¹ãŠã®ãŠãŒã¶ãŒæ å ±ã䜿çšããŠããµãŒãããŒãã£ã®ãµã€ãã«ã¢ã¯ã»ã¹ãããã®è匱æ§ãæªçšããŠã競åä»ç€Ÿã®æ å ±ã«åãçµãã§ããŸãã
- ãäºæããªãæ€çŽ¢ã -ã³ã³ãã¥ãŒã¿ãŒãšãã©ãã·ã¥ãã©ã€ãã¯ãããŸãããããŠã¹ãããŒããŒãã¯ãããŸãããïŒ ãã©ãã·ã¥ãã©ã€ãã¯åçŽã§ã¯ãªããSecureDriveã䜿çšããŠãããã³ã³ãã¥ãŒã¿ãŒã¯ãã®ã»ã¯ã·ã§ã³ã®1ã€ãCDãšããŠèå¥ã§ãããããåé¡ã§ã¯ãããŸããã
- ãããªãã®ç®ãä¿¡ããªãã§ãã ããã -ãããã¯ãŒã¯ã¢ã¯ãã£ããã£ãé ããåæã«ãã£ã¹ã¯äžã®ãã¡ã€ã«ã§ããæªæã®ããããã°ã©ã ãã³ã³ãã¥ãŒã¿ãŒã§èŠã€ããæ¹æ³
- ããã¬ãŒã ããã¹ãŠã決å®ããŸãã -Android OSãæèŒããé»è©±æ©ã§äºæããèµ·åããWebãµãŒããŒã«æ¥ç¶ããããŒãååŸããããã®ç¹å¥ãªjarãäœæããŸãã
ã¿ã¹ã¯ã®åæã«é²ãåã«ãæãéèŠãªããšãèšããŸããã-ããã«ããããããã誰ãNeoQUEST-2014ã®åè ã«ãªããŸãããïŒ
眮ããŸã-AV1ct0r
IIäœ-Dor1s
IIIäœ-Abr1k0s
AV1ct0rãäž»ãªè³ãåè³ããŸãã-æ å ±ã»ãã¥ãªãã£ã«é¢ããåœéäŒè°ãžã®æ ã§ãç·ãã¡ã¯ã¬ãŽãããããšè²ã®ä»ãããã©ã¹ããã¯ã®ã»ãããä»ãã3Dãã³ããäºãã«åããŸããã
ã¡ãªã¿ã«ããã®ã€ãã³ãã®å€ãã®ã²ã¹ãã¯ãã³ã³ãã¹ãã§ç²åŸããå°ãããªããã楜ãããã¬ãŒã³ããæ®ããŸããïŒããã«ã€ããŠã¯ãNeoQUEST-2014ãã«ã¿ã€ã ãã¢ãŒã®çµç·¯ã«é¢ããèšäºã§è©³ãã説æããŠããŸãïŒã
ç§ã¯ãžã§ãŒã«ãŒã§ããïŒ -ã¿ã¹ã¯çªå·1
ã¿ã¹ã¯ãžã®ãšã³ããªãã€ã³ãã¯ãã¿ã€ãã«èªäœã«é ãããŠããŸããã å²ãåœãŠã®ãããªãé²å±ã¯ã次ã®æ®µéã«åããããŸããã
- google.comã§amijokerãã¬ãŒãºãæ€çŽ¢ãããšãåå è
ã«èå³æ·±ãæ
å ±ãæäŸãããŸããã
- 芳å ã³ãã¥ããã£ãTurbinaãã®ãµã€ãäžã®åãååã®ã¢ã«ãŠã³ã
- ãœãŒã·ã£ã«ãããã¯ãŒã¯Facebookã®ãŠãŒã¶ãŒãããã¡ã€ã«ãžã®ãªã³ã¯
- Turbina Webãµã€ãã®ã¢ã«ãŠã³ãããæçšãªæ
å ±ãååŸããã«ã¯ãåå è
ããã®ç»é²ã¯å¿
èŠãããŸããã§ããã 以äžã¯ãåå è
ãAmIJokerãŠãŒã¶ãŒãããã¡ã€ã«ã泚ææ·±ãèŠããšãã«æ°ä»ãããšãã§ãããã®ã§ãã
- John Smith Twitterããã°ãªã³ã¯
- Twitterãã©ããŒã¢ããã³ãŒã«
- ãŠãŒã¶ãŒãããã°ã©ããŒãšããŠåããŠãããšããæ å ±
- ãŠãŒã¶ãŒã®Twitterããã°ã«ã¢ã¯ã»ã¹ããŠè³Œèªãããšããã®çŽåŸã«John Smithãã¡ã³ããŒã®ã¢ã«ãŠã³ãã«ãµã€ã³ã¢ãããã次ã®ããã¹ããå«ãå人ã¡ãã»ãŒãžãéä¿¡ããŸããã å²ãåœãŠã®ãã®éšåã§ã¯ãåå è ã¯pngã®ååãã¹ãã¬ãã°ã©ãã£ãŒã䜿çšããŠé衚瀺ã«ããå¿ èŠããããšæšæž¬ããå¿ èŠããããŸããã ãããããã¹ãŠã®ã¢ã«ãŽãªãºã ãæ©èœãããšã¯éããŸããã ç®çã®ã¢ã«ãŽãªãºã ãæ€çŽ¢ããã¢ã€ãã¢ã®ãã¡ãæãè«ççãªã®ã¯ãFacebookã¢ã«ãŠã³ãã§æ€çŽ¢ãããšããã¢ã€ãã¢ã§ããã
- å®éãgithub.comã«æçš¿ããããããžã§ã¯ããžã®ãªã³ã¯ã¯ã¢ã«ãŠã³ããŠã©ãŒã«ã«å ¬éãããgithub.comãžã®å¥ã®ãªã³ã¯ã¯å人æ å ±ã«å ¬éãããŠããŸãã
- æåã®ãªã³ã¯ã§github.comã«ã¢ã¯ã»ã¹ãããããžã§ã¯ãã確èªããŸãã ãã®ããã°ã©ã ã¯PHPã§èšè¿°ãããŠãããTwitter APIã§åäœããŸãã ããã䜿çšããŠãåçãã¢ããããŒãã§ããŸãããAPIãšOAuthã«ååãªããŒããããŸããã ããã¯ãgithub.comãžã®2çªç®ã®ãªã³ã¯ã䟿å©ãªå Žæã§ããã¯ãªãã¯ããŸãã
- ãã®ãªããžããªã«ã¯ãCã§æžããããããžã§ã¯ããå«ãŸããŠããŸããæãåçŽãªã¹ãã¬ãã°ã©ãã£ã¢ã«ãŽãªãºã ã®1ã€ãå®è£ ããŠããŸãã ããããTwitter APIã§åäœããããŒãååŸããæ¹æ³ã¯ïŒ
- ããã§ã¯ãåå è ã®æ³šæåããã§ãã¯ãããŸããïŒ äŒèª¬ã§ã¯ããšã¢ãã¹ãã¹ã®æãGirls Of Summerããèšåãããã®ã¯ç¡é§ã§ã¯ãããŸããã§ããã çãæ€çŽ¢ã®åŸãå€ãã®äººãå€ã®å¥³ã®åã®ãµã€ããèŠã€ããŸããã ãŸãããã®ãµã€ãã®ã¢ãã¬ã¹ã¯ãFacebookã®ã¢ã«ãŠã³ãã®äžè¬æ å ±ã«èšèŒãããŠããŸãã ãã®ãµã€ãã¯å€ã¯æ°é®®ã§ãç®ã楜ããŸããŠãããŸãïŒ
- ãã®ãµã€ãã«ã¯ç¹å¥ãªæ©èœã¯ãããŸããããçµéšã®ãã人ã¯GETãã©ã¡ãŒã¿ãŒãéä¿¡ããããšã§åçã®åãæ¿ããçºçããããšã«æ°ä»ããããããŸããã 2ã€ã®ãã©ã¡ãŒã¿ãŒã®1ã€ã¯ãSQLã€ã³ãžã§ã¯ã·ã§ã³ã«å¯ŸããŠè匱ã§ãã ãã®åçŽãªæ³šå
¥ã«ãããåå è
ã¯twitter APIãæäœããããã«å¿
èŠãªããŒãååŸã§ããŸãã
- id 1
- apiKey 603445921-b8c9k8OMhalLS8FakTpDHoUuXIzKuHLabOPWspsR
- apiSecret O0DWIqmlNT02RKUZcXHIvkyMWG7Hwd9vKzAjd7JJ89Kbg
- consumerKey vlC5S1NCMHHg8mD1ghPRkA
- consumerSecret 3w4cIrHyI3IYUZW5O2ppcFXmsACDaENzFdLIKmEU84
å¿ èŠãªããŒã«ããã¹ãŠåãåã£ãã®ã§ãå®æããããã°ã©ã ã®ããŒã眮ãæããŠãåçãTwitterã«ã¢ããããŒãããã ãã§æžã¿ãŸããã
åå è ã®ååãpngãã¡ã€ã«å ã«æ£ããæžã蟌ãŸããŠããå Žåãåçã«å¿ããŠããžã§ãããŒãå«ãå人çãªã¡ãã»ãŒãžãåãåããŸããã
äžè¬ã«ãã¿ã¹ã¯ã¹ããŒã ã¯æ¬¡ã®ããã«ãªããŸããã
äºæãã¬çºèŠ-ã¯ãšã¹ãçªå·2
åå è ã«äžããããã®ã¯ãå ¥åæ段ã®ãªãã³ã³ãã¥ãŒã¿ãŒãšãSecureDriveæ©èœãåãããã©ã³ã»ã³ããã©ãã·ã¥ãã©ã€ãã ãã§ãã...ã¢ãã¿ãŒãšUSBããŒãã®ã¿ãã³ã³ãã¥ãŒã¿ãŒã§åäœããããŠã¹ãåããããŒããŒãã¯æ©èœããŸããã§ããã ã¡ãªã¿ã«ãBIOSã¯ãã¹ã¯ãŒãã§ä¿è·ãããŠãããããåå è ã¯èªåã®æã£ãŠãããã®ã«éã«åãããå¿ èŠããããŸããã å²ãåœãŠæã«ãåå è ã¯ãã®ã³ã³ãã¥ãŒã¿ãŒããéä¿¡ãããã¡ãŒã«ã®ããã¯ã¢ããã³ããŒãã³ããŒããç§å¯éµã®ããæçŽãèŠã€ããå¿ èŠããããŸããã
ãã®ç¶æ³ã§ã¯ããã©ãã·ã¥ãã©ã€ãããããã°ã©ã ãèªåå®è¡ããããšã«ãã£ãŠã®ã¿ã³ã³ãã¥ãŒã¿ãŒãšã®å¯Ÿè©±ãå¯èœã«ãªãããšã¯æããã§ãã ç°¡åãªãã§ãã¯ã§ããªã ãŒããã«ã¡ãã£ã¢ããã®èªåå®è¡ãç¡å¹ã«ãªã£ãŠããããšãããããŸãã ããã§ã¯ããããããã ãã§ãªãCDãããèªåå®è¡ãå¯èœã§ããããšãèŠããŠããå¿ èŠããããŸãããŸããçºè¡ããããã©ãã·ã¥ãã©ã€ããã€ãŸãSecureDriveã«ã泚æãæãå¿ èŠããããŸãã ãã©ãã·ã¥ãã©ã€ãã«ã¯ã»ã¯ã·ã§ã³ããããã³ã³ãã¥ãŒã¿ãŒã«ãã£ãŠCDãšããŠå®çŸ©ãããä»ã®ã»ã¯ã·ã§ã³ã«ã¯ããã©ãã·ã¥ãã©ã€ãã®ä¿è·ãããã»ã¯ã·ã§ã³ãæ©èœããŠããç¹å¥ãªããã°ã©ã ããããŸããã ããã¯ããªãèªèº«ã®ç®çã®ããã«ã»ã¯ã·ã§ã³ã䜿çšãããšããèãã«ã€ãªãã£ãã¯ãã§ãïŒ
ãã®ãããªãã©ãã·ã¥ãã©ã€ãã¯éåžžã«åºãæ®åããŠãããèµ·åå¯èœãªãã©ã€ããšããŠãã䜿çšããããããä»®æ³CD-ROMã®å 容ãèªåã®CD-ROMã«çœ®ãæããæ¹æ³ã«é¢ããæ å ±ãèŠã€ããã®ã¯ç°¡åã§ãã ãã®ããã«ã補é å ã®ãŠãŒãã£ãªãã£ã§ããJetFlash Online Recoveryã䜿çšããŠãããã€ã¹ã«åé¡ãçºçããå Žåã«SecureDriveã§ããŒãã£ã·ã§ã³ã埩å ããŸãã ãŠãŒãã£ãªãã£ã®èª¿æ»ã«ãããšãããŒãã£ã·ã§ã³ã¯å®è¡å¯èœãã¡ã€ã«ãšã¯å¥ã«ä¿åãããISOã€ã¡ãŒãžã«åºã¥ããŠäœæãããŸãã ãã®å Žåããã§ãã¯ã¯è¡ãããŸããããã®çµæããã©ãã·ã¥ãã©ã€ãã®å¿ èŠãªå€æŽã¯ããã®ã€ã¡ãŒãžãç¹å¥ã«æºåãããã€ã¡ãŒãžã§çœ®ãæããããšã«ãã£ãŠå®çŸãããŸãã
ã¿ãŒã²ããã³ã³ãã¥ãŒã¿ã§ä»»æã®ã³ãã³ããå®è¡ã§ããããã«ãªã£ãããããã¯ã¢ããã®æ€çŽ¢ãéå§ã§ããŸãã ãã¹ã¯ãããã«IISã·ã§ãŒãã«ãããååšãããšããŠãŒã¶ãŒã¯CïŒ\ãã©ã€ãã®ã«ãŒãã«å¯Ÿå¿ãããã©ã«ããŒãååšãããã©ããã確èªããããã«æ±ããããŸãã
dir C:\
ããã¯ã¢ãããã©ã«ããããã«ãããŸãã ããŒããŒãã䜿çšããã«ç®çã®æåãæ€çŽ¢ããã«ã¯æéããããå¯èœæ§ãããããã次ã®ã¹ãããã§ã¯ããã®ãã©ã«ããŒããã©ãã·ã¥ãã©ã€ãã®2çªç®ã®ã»ã¯ã·ã§ã³ã«ã³ããŒããŸãã ãã®åã«ãã³ããŒã³ãã³ããæºåããããã«ãããã«å²ãåœãŠããããã©ã€ãæåã決å®ããå¿ èŠããããŸãã
xcopy C:\backup F:\backup /I /Q /Y
æåã®ãããã¡ã€ã«ã®æ°ãå€ããããã³ããŒã«æéãããããŸãã åãçç±ã§ãå¿ èŠãªæåãæåã§èŠã€ããããšãã§ããŸããã ãã ããã¯ãšã¹ãã®äŒèª¬ã«ã¯ãã³ãããããŸããç§å¯éµã¯6æ12æ¥ã«éµéãããŸããã ãã©ã¡ãŒã¿ãŒã䜿çšããŠæ€çŽ¢ããã»ã¹ãèªååããããšã®ã¿ãæ®ããŸãããããã¯éåžžã«ç°¡åã§ãã
grep -l "12 Jun" * | sort -u | xargs grep -E "\<[a-f0-9]{32}\>"
èŠã€ãã£ãè¡ã®äžãããç®çã®ããŒããã§ã«æåã§èŠã€ããããšãã§ããŸãã
ããªãã®ç®ãä¿¡ããªãã§ãã ãã-ã¿ã¹ã¯â3
ããŒãèŠã€ããããã«ãåå è ã«ã¯RDPãšããåèªãIPã¢ãã¬ã¹ãããã³ãã°ã€ã³ãã¹ã¯ãŒããå«ãNeoQUESTããŽã®ã·ãŒããäžããããŸããã æåã®è«ççãªèãã¯ãæå®ãããã³ã³ãã¥ãŒã¿ãŒã§RDPãå ¥åããããšããããšã§ã...ãããŠããã¯åäœããŸãïŒ
ãã®ã¿ã¹ã¯ã§ã¯ãããŒãæ¢ãæ¹æ³ã«ã€ããŠã¯äœãèšãããŠããŸãããã€ãŸããããªãã¯æãåã£ãŠè¡åããå¿ èŠããããŸãã ã³ã³ãã¥ãŒã¿ãŒã®ãã¹ã¯ãããã¯ç©ºã§ãããããã©ãŠã¶ã®ãã3ã€ã®ã·ã§ãŒãã«ããã¯äŸå€ãšããŠããã«æ確ã«é 眮ãããŠããŸããã Google Chromeãèµ·åããããšããŠããäœãèµ·ãããŸããã éåžžã®ãã©ãŠã¶ãŠã£ã³ããŠãéããä»»æã®ãµã€ãã«ç§»åããŠãã¥ãŒã¹ãèªãããšãã§ããŸãã Mozilla Firefoxãèµ·åãããšãç¶æ³ã¯äŒŒãŠããŸãã Internet Explorer-ãã¹ãŠå€æŽãªãã ãã©ãŠã¶ãŒåºæã®ããŒã¿ïŒWebããŒãžãžã®ã¢ã¯ã»ã¹å±¥æŽãä¿åããããã¹ã¯ãŒããCookieãªã©ïŒã確èªããã®ã¯çã«ããªã£ãŠããŸãããããããã¹ãŠãç¡é§ã§ããããšãå€æããŸããã
ããŠããã©ãŠã¶ãéåžžã©ãããå€éšçã«ãæ©èœããæããããæããªãå Žåãå¹³åçãªãŠãŒã¶ãŒã«ã¯èŠããªããå éšãæäœã«ã¯ãç¬èªã®ç¹æ§ããããŸãã ãããŠãæåã«æ€åºãããæ©èœã¯ãéããŠããã¿ãã空ã§ããã«ããããããããã©ãŠã¶ã®ãªã¢ãŒããµãŒããŒãžã®å®æçãªåŒã³åºãã§ãã ãã®ãããªã¢ã¯ã·ã§ã³ã¯ãæšæºã®ãªãã¬ãŒãã£ã³ã°ã·ã¹ãã ã¢ããªã±ãŒã·ã§ã³ã§ãããªãœãŒã¹ã¢ãã¿ãŒã«ãã£ãŠç°¡åã«æ€åºãããŸãã
Wiresharkã¹ããã¡ãŒãã€ã³ã¹ããŒã«ããçºä¿¡ãã©ãã£ãã¯ãåæããããšã«ãããåå è ã¯ãstub.phpãã¡ã€ã«ãžã®10.0.25.120 WEBãµãŒããŒãžã®ããŒã¿ã¹ããªãŒã ãæ€åºã§ããŸããã é¢çœãããïŒ ãã ãããã®IPã¢ãã¬ã¹ããããã¹ãã£ã³ããŠãããã®ãµãŒããŒã«ãããäŸµå ¥ããŠããçµæã¯ãããŸããã ãããŠãå®éã«ã¯ããµãŒããŒã¯å®å šã«ç©ºã§ããã貎éãªæ å ±ã¯ãªããåå è ãæ£ããæ¹åã«ç§»åããŠããããšã瀺ãããã«ã®ã¿äœ¿çšãããŸãã
次ã®æ©èœã¯ããã©ãŠã¶ã®ããã»ã¹ãã€ãŸããã©ãŠã¶ã䜿çšãããªãœãŒã¹ã®æ©èœã®è©³çŽ°ãªåæã®åŸã§ãã ãããè¡ãã«ã¯ãæšæºããŒã«ïŒãªãœãŒã¹ã¢ãã¿ãŒïŒãšãµãŒãããŒãã£ããŒã«ã®äž¡æ¹ã䜿çšã§ããŸãïŒããã¯ãããµãŒãããŒãã£ããRussinovichããè³éãã©ã®ããã«åŒã³åºãããšãã§ããããšããåé¡ã§ããïŒProcess ExplorerãšProcess Monitorã§ãã
Process Explorerã䜿çšãããšãããã»ã¹ã®é局衚瀺ããã®ããããã£ãã»ãã¥ãªãã£èšå®ãããã»ã¹ã«ãããªãœãŒã¹ãªã©ã衚瀺ã§ããŸãã ãããã倧ãŸããªã¹ãã£ã³ã§ã¯ãé¢å¿ã®ããããã»ã¹ã«ã¯èå³æ·±ããã®ã¯äœã衚瀺ãããŸããã
ããããããã»ã¹ã¢ãã¿ãŒã䜿çšããåŸã¯ãã¿ã¹ã¯ã«å¯Ÿããçãã¯å®è³ªçã«æã«ãããŸãã
Process Monitorã¯ããã¹ã¯ãããäžã«ããkey.txtãã¡ã€ã«ã«å¯ŸããŠå®æçã«èŠæ±ãè¡ãããããšã瀺ããŠããŸãã å¥åŠã§ããããã®ãããªãã¡ã€ã«ã¯ãããŸããã ã«ãªãæ¹æ³ ãããŠãããã§ã¯å€ãããªãã¯ãèŠããŠãã䟡å€ããããŸã-ãã¡ã€ã«ã¯é ãããŠãããããããŸããããå Žæãç¥ã£ãŠããã°ããããéãããšãã§ããŸãã çŽ æŽãããããã°ã©ã ã䜿çšãããšããããå®è¡ã§ããŸãïŒæ¯ãåããŸãïŒïŒïŒNotepad.exe
以äžã§ãã éããã¡ã¢åž³ãŠã£ã³ããŠã«ãåå è ã«å¿ èŠãªããŒããããŸãã åå©ïŒ
ããã§ãã¹ãŠãæããã«ãªããŸããã ã³ã³ãã¥ãŒã¿ãŒã«ã¯ãã«ãŠã§ã¢ããããäœããã®æ¹æ³ã§ãã¹ãŠã®ãã©ãŠã¶ãŒã«ã³ãŒããåã蟌ã¿ããã®å©ããåããŠWebãµã€ããšã®ãããã¯ãŒã¯éä¿¡ãé ããŸãã ããã«ããã£ã¹ã¯äžã®ãã¡ã€ã«ãç¹ã«ã¿ã¹ã¯ã®ããŒãæã€ãã¡ã€ã«ãé衚瀺ã«ããŸãã
å¹¹éšããã¹ãŠã決ãã-ã¿ã¹ã¯â4
äŒèª¬ã§ã¯ãåå è ã¯1人ã®ããžãã¹äžã®é£çµ¡å ã远跡ããå¿ èŠããããšèšãããŸããïŒã確ãã«å€ãã®æçšãªçªå·ãé»è©±åž³ã«ä¿åãããŠããŸããïŒäŒèª¬ããã®æç²ïŒãããŠããã®æ¬ã«ã¢ã¯ã»ã¹ã§ããIPã¢ãã¬ã¹ãäžããããŸããã
ãã©ãŠã¶ãããã®IPã«åãæ¿ãããšããŠãŒã¶ãŒã¯åçãã¢ããããŒãããããã«æ±ããããŸããã ãŠãŒã¶ãŒãjpgãã¡ã€ã«ãã¢ããããŒãããå Žåãç·šéãããç»åãžã®ãªã³ã¯ãæäŸãããŸããã
äžèŠãããã¯Webã»ãã¥ãªãã£ã¿ã¹ã¯ã§ããããŸã£ããããã§ã¯ãããŸããã Webãµã€ãã®éžæãéå§ãããšãããã€ãã®èå³æ·±ãããšãããããŸãã
ãŸãããœãŒã¹ã³ãŒãé瀺ã®è匱æ§ã®å©ããåããŠããã©ãŠã¶ã®ã¢ãã¬ã¹ããŒã«192.168.0.222ïŒ8080 / upload.phpã®ããã«æžã蟌ããããã¡ã€ã«æ¡åŒµåã®å€§æåå°æåãå€æŽããã ãã§ãupload.phpãã¡ã€ã«ãããŠã³ããŒãã§ããŸãã upload.phpã®ãœãŒã¹ã³ãŒãã¯æ¬¡ã®ãšããã§ãã
<html> <head> <title>Make your retro pattern</title> </head> <body> <?php $my_name = htmlspecialchars(trim($_POST["action"])); echo $my_name; $date = date_create(); if($_FILES["filename"]["size"] > 1024*1024) { echo ("Sorry bro ... your file is more then 1Mb..."); exit(); } $valid_types = array("jpg", "jar"); $ext = substr($_FILES['filename']['name'], 1 + strrpos($_FILES['filename']['name'], ".")); if (!in_array($ext, $valid_types)) { echo 'invalid file type'; exit(); } if(copy($_FILES["filename"]["tmp_name"], "/sdcard/pws/www/".$my_name."_".md5($_FILES["filename"]["name"].date_timestamp_get($date)).$_FILES["filename"]["name"])) { echo("success"); } else { echo("error"); } sleep(5); echo("<br>Your file is here"); $url="/res/".$my_name."_".md5($_FILES["filename"]["name"].date_timestamp_get($date)).$_FILES["filename"]["name"]; echo("<p><a href=".$url.">Your new file</p>"); ?> </body> </html>
ããã§é¢çœãã®ã¯äœã§ããïŒ ãŸããé¢çœããªãjpgã ãã§ãªããéåžžã«èå³æ·±ãjarãããŠã³ããŒãã§ããããšãããããŸããæããã«ããã®ãµãŒããŒã¯Javaã§åäœããŸãã 次ã«ããã¹ã/ sdcard / pws / www /ãã衚瀺ãããŸããåèªsdcardã¯ããµãŒããŒãé»è©±ã«ä¹ã£ãŠãããšããäºå®ã«éåžžã«ãã䌌ãŠããŸãïŒä¿¡ããããšã¯ãŸã é£ããã§ãïŒïŒã ãããŠããã®è¡ãGoogleã§ååŸããŠæ€çŽ¢ãããšããããAndroidã§äœæãããPalapa Web Serverã§ãããšããäºå®ãšéåžžã«ãã䌌ããã®ã«ãªããŸãã
ããã«ãåå è ã¯ããµã€ãã®ãã¡ã€ã«æ§é ã決å®ããArxScanSiteãªã©ã®ã¹ãã£ããŒã§ãµã€ããã¹ãã£ã³ããã ãã§ãéåžžã«èå³æ·±ãæ å ±ãã¡ã€ã«ãèŠã€ããããšãã§ããŸãã ãã®ãã¡ã€ã«ã¯äžã®åçã§ãã
ãããŠãã®åŸããããé»è©±ã§ããããšã«çãã¯ãã¯ãæ®ãã¹ãã§ã¯ãããŸããã Java +é»è©±= Androidãæ¥ç¶ããããã«æ®ã£ãŠãããNmapã§ã¹ãã£ã³ããããšã§å床確èªããããšãã§ããŸãããAndroidé»è©±ã§WebãµãŒããŒãçºçããŠããããšãããããŸãã
ã€ãŸããAndroidã«WebãµãŒããŒãããããµãŒããŒã®ã«ãŒãã/ sdcard / pws / www /ããžã®ãã¹ãããã£ãŠããã®ã§ãjarãã¡ã€ã«ãã¢ããããŒãã§ããŸãã ããã§æãéèŠãªããšã¯ãã¿ã¹ã¯ã§ã確ãã«å€ãã®æçšãªæ°åãé»è©±åž³ã«ä¿åãããŠããããšèšãããããšãèŠããŠããããšã§ããã€ãŸããããŠã³ããŒãããç»åã«åŸã£ãŠãAndroidã¹ããŒããã©ã³ã«ä¿åãããŠãããã¹ãŠã®é»è©±çªå·ãã¡ã¢ãªã«ãŒãäžã®ãã¡ã€ã«ã«æžã蟌ãjarãäœæããå¿ èŠãããããšãæå³ããŸã次ã®ãã¹ïŒã/ sdcard / pws / www /ãã åçãèŠããšãã³ã³ããã¹ããšContentResolverãåãåããé»è©±çªå·ããã¡ã€ã«ã«æžã蟌ãstartã¡ãœãããäœæããcom.example.QUEST2014.contactBackupããã±ãŒãžãäœæããå¿ èŠãããããšãæããã«ãªããŸãã
次ã«ããã®jarãAndroidã«é©çšã§ããããã«ããå¿ èŠããããŸããããã€ãã®æ¹æ³ããããŸãã æåã®ãã¹ã¯4段éã§å®è¡ãããŸãã
- ã¯ã©ã¹ã®ã¿ãjarãã¡ã€ã«ã«ãšã¯ã¹ããŒãããŸãããã®åŸãéåžžã®jarãã¡ã€ã«ããã¯ã©ã¹ãã¡ã€ã«ãå«ãzipã¢ãŒã«ã€ããšããŠååŸããŸãã
- jar2dexãŠãŒãã£ãªãã£ã䜿çšããŠjarãã¡ã€ã«ããdexãã¡ã€ã«ãäœæãããšãclasses.dexãã¡ã€ã«ãäœæãããŸãã
- classes.dexãã¡ã€ã«ãzipã¢ãŒã«ã€ãã«ã¢ãŒã«ã€ãããŸãã
- çµæã®zipã¢ãŒã«ã€ãã®ååãjarãã¡ã€ã«ã«å€æŽããŸãã
å¥ã®æ¹æ³ã«ã¯5ã€ã®ã¹ããããå«ãŸããŸãã
- ã¢ããªã±ãŒã·ã§ã³ã®ã³ã³ãã€ã«ã
- Android SDKãé 眮ãããŠãããã£ã¬ã¯ããªãdx.batãŠãŒãã£ãªãã£ãå«ããã£ã¬ã¯ããªïŒããšãã°ããandroid-sdk \ platform \ android-3 \ toolsãïŒãæ€çŽ¢ããŸãã
- ãã®ãã£ã¬ã¯ããªã«ä»»æã®ååïŒããšãã°ãã1ãïŒã§ãã£ã¬ã¯ããªãäœæããŸãã ãã£ã¬ã¯ããªã1ãå ã«ãã¢ããªã±ãŒã·ã§ã³ã®æ§é ã«äŒŒããã¡ã€ã«æ§é ãäœæããŸãã ã1 \ com \ example \ QUEST2014 \ contactBackupãã
- ã\ out \ production \ APPLICATION_NAME \ com \ example \ QUEST2014 \ contactBackupããã£ã¬ã¯ããªã®å 容ããã®ãã£ã¬ã¯ããªã«ã³ããŒããŸãã
- ãdx --dex --no-strict --output = ctf.jar 1 /ããšãããã©ã¡ãŒã¿ãŒãæå®ããŠdx.batãåŒã³åºããŸãã ãã®çµæãç®çã®ãã¡ã€ã«ctf.jarãååŸããŸããã
ãã¹ãŠãåå©ã ã£ãããã«æããŸãããããã«ãããŸããïŒ ãã®jarãããŠã³ããŒãããããšãããšããµã€ãã¯convert.jarããã®ãããªãã¡ã€ã«ãç¥ããªããšãããšã©ãŒãåºããŸãã index.htmlãèŠããšããã¹ãŠãéåžžã«ã·ã³ãã«ã§ããããšãããããŸãïŒãœãŒã¹ã³ãŒãã以äžã«ç€ºããŸãïŒã ã¢ã¯ã·ã§ã³ãšåŒã°ããé ãã¿ã°ãupload.phpã«æž¡ãããå€ããconvert.jarãã§ããããšã«æ°ä»ããããããŸãã
<html> <head> <title>Make your retro pattern</title> </head> <body> <h2><p><b>Upload your image</b></p></h2> <form action="upload.php" method="post" enctype="multipart/form-data"> <input type="file" name="filename"> <input type="hidden" name="action" value="convert.jar"> <input type="submit" value="Upload"> </form> </body> </html>
ããã§ãå€ãããŠã³ããŒãããjarãã¡ã€ã«ã®ååã«å€æŽããå¿ èŠããããŸãã é£çµ¡å ã®ãªã¹ããååŸããŸãã
ID 190ã®ååMax Smithé»è©±+44234234234
ID 134ååMax Smithé»è©±+4467652341
ID 137ååAlex Smithé»è©±+4487653827
ID 193ååNeoQuestKey PHONE +78123123481
ID 4ã®ååAndrey Petrové»è©±+79219325680
ID 11ã®ååMax Sushinskyé»è©±+79843214982
ID 13ååArkady Mamontové»è©±000001
ID 1 NAMEãã¹ããã¹ãPHONE 1234567
ID 7ã®ååPetr Ivanové»è©±2359631
ID 119ååIvan Zhukové»è©±89215897894
NeoQuestKeyé»è©±ãååŸããããããããã·ã¥ãèšç®ããå¿ èŠãããããšã¯æããã§ãã ããŠãããã§ãã¹ãŠããã©ã°ãå®äºããã¿ã¹ã¯ãå®äºããŸããïŒ
ç¶ç¶ããã«ã¯...
èŽè¡ã¯ãµã€ããŒã»ãã¥ãªãã£ã«é¢ããã¬ããŒããèãã楜ããã³ã³ãã¹ãã«åå ããŠèŽãç©ãåãåããŸããããç§ãã¡ã®è±éçãªåå è ã¯éåžžã«åçã«ã¿ã¹ã¯ã«å¯ŸåŠããŸããã ããäžåºŠãåè³è ã®çãããããã§ãšãããããŸãããããŠãNeoQUEST-2015ã®ãªã³ã©ã€ã³ã¹ããŒãžããã§ã«è¿ã¥ããŠããããšãæãåºããŠãã ãããããã«èå³æ·±ãã¿ã¹ã¯ã¯ãç¥ç§çãªïŒå®éã«ã¯åžžã«ïŒäŒèª¬ã«ãã£ãŠçµã³ä»ããããŠããŸãã åœç€Ÿã®ãŠã§ããµã€ãããã³ããã°ã®Habrahabrã®æŽæ°ãã楜ãã¿ã«ã