๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

โœ’๏ธ Security issues & Technology trends2

[Security issues & Technology trends] ๊ตญ์„ธ์ฒญ์„ ์‚ฌ์นญํ•˜์—ฌ ์ „์ž์„ธ๊ธˆ๊ณ„์‚ฐ์„œ๋ฅผ ๋„์šฉํ•˜๊ณ  ์•…์„ฑ์ฝ”๋“œ๋ฅผ ์œ ํฌํ•œ ์ •ํ™ฉ ๋ฐœ๊ฒฌ 9/12 ) ๊ตญ์„ธ์ฒญ์„ ์‚ฌ์นญํ•˜์—ฌ ์ „์ž์„ธ๊ธˆ๊ณ„์‚ฐ์„œ๋ฅผ ๋„์šฉํ•˜๊ณ  ์•…์„ฑ์ฝ”๋“œ๋ฅผ ์œ ํฌํ•œ ์ •ํ™ฉ ๋ฐœ๊ฒฌ ์ตœ๊ทผ ๋ˆ„๊ตฐ๊ฐ€๊ฐ€ ๊ตญ์„ธ์ฒญ์„ ์‚ฌ์นญํ•˜์—ฌ ์ „์ž์„ธ๊ธˆ๊ณ„์‚ฐ์„œ๋ฅผ ๋„์šฉํ•˜๊ณ , ์•…์„ฑ์ฝ”๋“œ๋ฅผ ์œ ํฌํ•œ ์ •ํ™ฉ์ด ๋ฐœ๊ฒฌ๋˜์—ˆ๋‹ค. ์‹œํ์•„์ด์˜ ์œ„ํ˜‘๋ถ„์„๊ทธ๋ฃน์€ ๋ฌธ์ œ์˜ ๋ฉ”์ผ์ด ๋ฆฌ๋ˆ…์Šค์˜ ์ด๋ฉ”์ผ ํด๋ผ์ด์–ธํŠธ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์†ก์‹ ์ž์˜ ์ฃผ์†Œ๋ฅผ ์œ„์กฐํ•˜์˜€๊ณ , ์นœํ™˜๊ฒฝ ๊ธฐ๋Šฅ์„ฑ ํ™”ํ•™์ œํ’ˆ์„ ์ œ์กฐํ•˜๋Š” ํšŒ์‚ฌ์˜ ์ง์›๋“ค์„ ๋Œ€์ƒ์œผ๋กœ ๋ฐœ์†ก๋˜์—ˆ์Œ์„ ๋ฐํ˜”๋‹ค. ์œ„์˜ ๋ฉ”์ผ์— ์ฒจ๋ถ€๋œ ํŒŒ์ผ์€ Portable executable ํŒŒ์ผ๋กœ, ํ™•์žฅ์ž๋กœ .pdf.exe๋ผ๋Š” ํ™•์žฅ์ž๋ฅผ ๊ฐ€์ง€๋Š”๋ฐ, ์ด๋กœ ์ธํ•ด ๋ณด๊ธฐ ์˜ต์…˜ ์„ค์ • ์ƒํƒœ์— ๋”ฐ๋ผ PDF ํ™•์žฅ์ž๋กœ ๋ณด์ผ ์ˆ˜ ์žˆ๋‹ค. ํŒŒ์ผ ์† ์•…์„ฑ์ฝ”๋“œ๋Š” Nullsoft Installer๋กœ ์ œ์ž‘๋˜์—ˆ์œผ๋ฉฐ, ๊ณต๊ฒฉ ๊ฒฝ๋กœ๋Š” ์•„๋ž˜์™€ ๊ฐ™๋‹ค. 1. Installer์„ ํ†ตํ•ด ์•…์„ฑ DLL์ด ํ”„๋ ˆ์ž„์›Œํฌ์˜ .. 2022. 9. 12.
[Security issues & Technology trends] ์ทจ์•ฝ์  CVE - 2018 - 15982 ๋ฅผ ์ด์šฉํ•œ ์•…์„ฑ ํ•œ๊ธ€๋ฌธ์„œ์˜ ๋“ฑ์žฅ 9/4 ) ์ทจ์•ฝ์  CVE - 2018 - 15982 ๋ฅผ ์ด์šฉํ•œ ์•…์„ฑ ํ•œ๊ธ€๋ฌธ์„œ์˜ ๋“ฑ์žฅ ์š”์ฆ˜ ํ•œ๊ธ€ ํŒŒ์ผ์˜ ํ”„๋กœํ•„ ์–‘์‹์œผ๋กœ ์œ„์žฅํ•˜์—ฌ OLE ๊ฐœ์ฒด๋ฅผ ์‚ฝ์ž…ํ•˜๋Š” ์•…์„ฑ ํ•œ๊ธ€๋ฌธ์„œ๊ฐ€ ์ด์Šˆ๊ฐ€ ๋˜๊ณ  ์žˆ๋‹ค. ์—ฌ๊ธฐ์„œ OLE ๊ฐœ์ฒด๋ž€ Object Linking and Embedding์˜ ์•ฝ์ž๋กœ, ๊ฐœ์ฒด์˜ ์—ฐ๊ฒฐ ๋ฐ ์‚ฝ์ž…๊ณผ ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๊ฐ„ ์ž๋ฃŒ๊ตํ™˜์„ ์˜๋ฏธํ•œ๋‹ค. ๊ด€๋ จ ์•…์„ฑ ํ•œ๊ธ€๋ฌธ์„œ๋Š” ํ”Œ๋ž˜์‹œ ์ทจ์•ฝ์ ์ธ CVE - 2018 - 15982 ๋ฅผ ์ด์šฉํ•˜์˜€๊ณ , ๋ณธ ํ”Œ๋ž˜์‹œ ์ทจ์•ฝ์ ์ด ๋ฐœ๊ฒฌ๋œ 2020๋…„ ๋•Œ์™€ ๋™์ผํ•œ ์•…์„ฑ URL์„ ์‚ฌ์šฉํ•œ๋‹ค. ์ „๋ฌธ๊ฐ€๋“ค์˜ ๋ถ„์„ ๊ฒฐ๊ณผ ๊ณต๊ฒฉ์ž๊ฐ€ ์•…์„ฑ ํ•œ๊ธ€ํŒŒ์ผ ๋‚ด๋ถ€์— ์กด์žฌํ•˜๋Š” OLE ๊ฐœ์ฒด๋ฅผ ๋ณด์ด์ง€ ์•Š๊ฒŒ ํ•˜๊ธฐ ์œ„ํ•ด ์œ„์˜ ๊ทธ๋ฆผ์ฒ˜๋Ÿผ ํฐ์ƒ‰ ์ด๋ฏธ์ง€๋ฅผ ๋ฐฐ์น˜ํ•˜์˜€๋‹ค๋Š” ๊ฒƒ์ด ์•Œ๋ ค์กŒ๋‹ค. ๋ฌธ์„œ์— ๋“ค์–ด์žˆ๋Š” ๊ฐœ์ฒด ์ค‘ hword.exe์™€ hwp.exe๊ฐ™์€.. 2022. 9. 4.