๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

๋ฆฌ๋ฒ„์‹ฑ6

[Reverse Engineering] CodeEngn Basic RCE L19 WriteUp ๐Ÿ’’ CodeEngn Basic RCE L19 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 19 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. ๊ด€๋ จ ์ •๋ณด ์ˆ˜์ง‘์„ ์œ„ํ•ด Detect It Easy ๋ฅผ ํ†ตํ•ด ํŒŒ์ผ ์˜คํ”ˆ --> ํŒŒ์ผ์ด UPX ํ˜•์‹์œผ๋กœ ํŒจํ‚น๋˜์–ด์žˆ์Œ์„ ํ™•์ธ ++ ์•„์ง Detect It Easy ๋ฅผ ์„ค์น˜ํ•˜์ง€ ์•Š์•˜๋‹ค๋ฉด? --> https://www.majorgeeks.com/ MajorGeeks.Com - MajorGeeks www.majorgeeks.com 4. ํŒจํ‚น๋œ ์ƒํƒœ์ธ 19 ํŒŒ์ผ์— ๋Œ€ํ•˜์—ฌ ์–ธํŒจํ‚น ์ง„ํ–‰ ++ UPX ํŒจํ‚น๋œ ํŒŒ์ผ ์–ธํŒจํ‚นํ•˜๊ธฐ --> https://alim11.tistory.com/456 [UPX Un/Packer] UPX .. 2023. 11. 17.
[Reverse Engineering] CodeEngn Basic RCE L18 WriteUp ๐Ÿคก CodeEngn Basic RCE L18 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 18 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. 18.exe ์„ ์‹คํ–‰ํ•˜์—ฌ ์ž„์˜์˜ ๊ฐ’ ์ž…๋ ฅ ํ›„ "Check" ํด๋ฆญ --> Serial ๊ฐ’์ด ํ‹€๋ ธ๋‹ค๋Š” ๊ฒฝ๊ณ ๋ฌธ ํ™•์ธ 4. Immunity Debugger ์„ ํ†ตํ•ด 18.exe ํŒŒ์ผ ์˜คํ”ˆ --> ์„ฑ๊ณต & ์‹คํŒจ ๋ฉ”์‹œ์ง€์™€ OR ์—ฐ์‚ฐ๋ฌธ ๋ฐœ๊ฒฌ 5. ๋ฐœ๊ฒฌํ•œ OR ์—ฐ์‚ฐ๋ฌธ๊ณผ ๊ทธ ์•„๋ž˜ ๋ถ€๋ถ„์— BreakPoint ์„ค์ • --> Debug ์‹คํ–‰ 6. ํŒ์—…์ฐฝ์— ์•„๋ž˜์™€ ๊ฐ™์ด ์ž…๋ ฅ ํ›„ Check ๋ฒ„ํŠผ ํด๋ฆญ --> "CodeEngn" ์˜ Serial ๋ฐœ๊ฒฌ # ์ž…๋ ฅํ•œ Serial : 1234 # ์ž…๋ ฅํ•œ Name : CodeEngn # ๋ฐœ๊ฒฌ.. 2023. 11. 16.
[Reverse Engineering] CodeEngn Basic RCE L17 WriteUp ๐ŸŽฏ CodeEngn Basic RCE L17 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 17 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. 17.exe ์„ ์‹คํ–‰ํ•˜์—ฌ ์ž„์˜์˜ ๊ฐ’ ์ž…๋ ฅ ํ›„ "Check it!" ํด๋ฆญ --> "Please Enter More Chars..." ์ด๋ผ๋Š” ๊ฒฝ๊ณ ๋ฌธ ํ™•์ธ 4. Immunity Debugger ์„ ํ†ตํ•ด 17.exe ํŒŒ์ผ ์˜คํ”ˆ --> ์„ฑ๊ณต & ์‹คํŒจ ๋ฉ”์‹œ์ง€์™€ ๋น„๊ต๋ฌธ ๋ฐœ๊ฒฌ 5. ๋ฐœ๊ฒฌํ•œ ๋น„๊ต๋ฌธ์„ 03 --> 01๋กœ ๋ณ€๊ฒฝ 6. ์‹คํŒจ๋ฌธ๊ณผ ๊ทธ ์•„๋ž˜ BreakPoint ์„ค์ • --> ํŒจ์น˜ ์‚ฌํ•ญ ์ €์žฅ 7. Debugging ์‹คํ–‰ ํ›„ ASCII ์‹œ๋ฆฌ์–ผ์ด ์ƒ์„ฑ๋œ ๊ฒƒ์„ ํ™•์ธ 8. 17.0045B850 ํ•จ์ˆ˜์— BreakPoint ์„ค์ •.. 2023. 11. 15.
[Reverse Engineering] CodeEngn Basic RCE L12 WriteUp ๐Ÿ’ฅ CodeEngn Basic RCE L12 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 12 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. 12.exe ํŒŒ์ผ์„ ์‹คํ–‰ํ•˜์—ฌ ์ž„์˜์˜ ๊ฐ’์„ ์ž…๋ ฅํ•œ ํ›„ "Check" ๋ฒ„ํŠผ ํด๋ฆญ --> ์•„๋ฌด ์ผ๋„ ์ผ์–ด๋‚˜์ง€ ์•Š์Œ์„ ํ™•์ธ 4. 12.exe ํŒŒ์ผ์„ Immunity Debugger ์—์„œ ์‹คํ–‰ 5. ์Šคํฌ๋กค์„ ๋‚ด๋ฆฌ๋‹ค๋ณด๋‹ˆ, ์‚ฌ์šฉ์ž๋กœ๋ถ€ํ„ฐ ์ž…๋ ฅ๋ฐ›์€ Key ๊ฐ’์„ ์ง„์งœ Key ๊ฐ’๊ณผ ๋น„๊ตํ•˜๋Š” ๋ถ€๋ถ„ ๋ฐœ๊ฒฌ ++ ์œ ์ถ” ๊ฐ€๋Šฅํ•œ ์‚ฌ์‹ค๋“ค # ์ง„์งœ Key ๊ฐ’ : 7A2896BF # ์‚ฌ์šฉ์ž๊ฐ€ ์ž…๋ ฅํ•œ Key ๊ฐ’ : EAX ๋ ˆ์ง€์Šคํ„ฐ์— ์ €์žฅ 6. ๋‹ค์‹œ 12.exe ํŒŒ์ผ์„ ๋”๋ธ”ํด๋ฆญํ•˜์—ฌ ๋ฐœ๊ฒฌํ•œ ์ง„์งœ Key ๊ฐ’ ์ž…๋ ฅ --> ๋ฌธ์ œ๊ฐ€ ์„ฑ๊ณต์ ์œผ๋กœ ํ•ด๊ฒฐ๋˜์—ˆ.. 2023. 11. 9.
[Reverse Engineering] CodeEngn Basic RCE L11 WriteUp ๐Ÿ…ฑ๏ธ CodeEngn Basic RCE L11 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 11 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. ๊ด€๋ จ ์ •๋ณด ์ˆ˜์ง‘์„ ์œ„ํ•ด Detect It Easy ๋ฅผ ํ†ตํ•ด ํŒŒ์ผ ์˜คํ”ˆ --> ํŒŒ์ผ์ด UPX ํ˜•์‹์œผ๋กœ ํŒจํ‚น๋˜์–ด์žˆ์Œ์„ ํ™•์ธ ++ ์•„์ง Detect It Easy ๋ฅผ ์„ค์น˜ํ•˜์ง€ ์•Š์•˜๋‹ค๋ฉด? --> https://www.majorgeeks.com/ MajorGeeks.Com - MajorGeeks www.majorgeeks.com 4. ํŒจํ‚น๋œ ์ƒํƒœ์ธ 11 ํŒŒ์ผ์— ๋Œ€ํ•˜์—ฌ ์–ธํŒจํ‚น ์ง„ํ–‰ ++ UPX ํŒจํ‚น๋œ ํŒŒ์ผ ์–ธํŒจํ‚นํ•˜๊ธฐ --> https://alim11.tistory.com/456 [UPX Un/Packer] UPX.. 2023. 11. 7.
[Reverse Engineering] 2023. 09. 14_Reverse Engineering Intro and Binary & Analysis ๐Ÿท Reverse Engineering Introduction # ๋ฆฌ๋ฒ„์Šค ์—”์ง€๋‹ˆ์–ด๋ง์ด๋ž€? : ๋ฆฌ๋ฒ„์Šค ์—”์ง€๋‹ˆ์–ด๋ง(Reverse Engineering)์€ ์–ด๋–ค ์ œํ’ˆ, ์‹œ์Šคํ…œ, ์†Œํ”„ํŠธ์›จ์–ด, ๋˜๋Š” ๊ธฐ์ˆ ์˜ ๋™์ž‘ ์›๋ฆฌ๋‚˜ ์„ค๊ณ„๋ฅผ ์ดํ•ดํ•˜๊ณ  ๋ถ„์„ํ•˜๊ธฐ ์œ„ํ•ด ์—ญ์œผ๋กœ ์ž‘์—…ํ•˜๋Š” ๊ณผ์ •์„ ์˜๋ฏธํ•œ๋‹ค. ๋ฆฌ๋ฒ„์Šค ์—”์ง€๋‹ˆ์–ด๋ง(Reverse Engineering)์€ ์ผ๋ฐ˜์ ์œผ๋กœ ์ œํ’ˆ์ด๋‚˜ ์‹œ์Šคํ…œ์˜ ๋‚ด๋ถ€ ๊ตฌ์กฐ, ์ž‘๋™ ๋ฐฉ์‹, ๋˜๋Š” ์†Œํ”„ํŠธ์›จ์–ด์˜ ์ฝ”๋“œ์™€ ์•Œ๊ณ ๋ฆฌ์ฆ˜์„ ํŒŒ์•…ํ•˜๊ฑฐ๋‚˜ ์žฌ๊ตฌ์„ฑํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋œ๋‹ค. ๐Ÿท ์ปดํŒŒ์ผ๋Ÿฌ(Compiler)์™€ ์ธํ„ฐํ”„๋ฆฌํ„ฐ(Interpreter) ์ปดํŒŒ์ผ๋Ÿฌ ์ธํ„ฐํ”„๋ฆฌํ„ฐ ์‹คํ–‰ ๋ฐฉ์‹ ์ „์ฒด ํ”„๋กœ๊ทธ๋žจ์„ ํ•œ ๋ฒˆ์— ๋ฒˆ์—ญ ํ›„ ์‹คํ–‰ ํ•œ ์ค„ OR ํ•œ ๋ธ”๋ก์„ ํ•œ ๋ฒˆ์— ๋ฒˆ์—ญํ•˜๊ณ  ์‹คํ–‰ ๋ฒˆ์—ญ ์‹œ์  ๋Ÿฐํƒ€์ž„ ์ด์ „(์ปดํŒŒ์ผ ์‹œ) ๋Ÿฐํƒ€์ž„ ์ค‘(์‹คํ–‰ ์‹œ) ์†๋„ ๋น ๋ฆ„ ๋Š๋ฆผ .. 2023. 9. 14.