๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

reverse3

[Reverse Engineering] CodeEngn Basic RCE L16 WriteUp ๐Ÿ‘บ CodeEngn Basic RCE L16 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 16 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. 16.exe ์„ ์‹คํ–‰ํ•˜์—ฌ ์ž„์˜์˜ ๊ฐ’ ์ž…๋ ฅ ํ›„ "Enter" ํด๋ฆญ --> "Wrong password!" ์ด๋ผ๋Š” ๊ฒฝ๊ณ ๋ฌธ ํ™•์ธ 4. Immunity Debugger ์„ ํ†ตํ•ด 16.exe ํŒŒ์ผ ์˜คํ”ˆ 5. ์„ฑ๊ณต ๋ฌธ์ž์—ด๊ณผ ์‹คํŒจ ๋ฌธ์ž์—ด๋กœ ๋ถ„๊ธฐํ•˜๋Š” ๋ถ€๋ถ„ ๋ฐœ๊ฒฌ --> ๋ถ„๊ธฐ ๋ถ€๋ถ„๊ณผ ๊ทธ ์•„๋ž˜ BreakPoint ์„ค์ • 6. Debugging ์‹คํ–‰ ํ›„ ๋ ˆ์ง€์Šคํ„ฐ ๊ฐ’ ํ™•์ธ # EAX ๋ ˆ์ง€์Šคํ„ฐ : 000004D2 # EBP ๋ ˆ์ง€์Šคํ„ฐ : 0070FF28 7. ๋ฐœ๊ฒฌํ•œ ์‚ฌ์‹ค๋“ค์„ ๊ธฐ๋ฐ˜์œผ๋กœ Password ํƒ์ƒ‰ --> ํŒจ์Šค์›Œ๋“œ๊ฐ€ E4C60.. 2023. 11. 14.
[Reverse Engineering] CodeEngn Basic RCE L12 WriteUp ๐Ÿ’ฅ CodeEngn Basic RCE L12 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 12 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. 12.exe ํŒŒ์ผ์„ ์‹คํ–‰ํ•˜์—ฌ ์ž„์˜์˜ ๊ฐ’์„ ์ž…๋ ฅํ•œ ํ›„ "Check" ๋ฒ„ํŠผ ํด๋ฆญ --> ์•„๋ฌด ์ผ๋„ ์ผ์–ด๋‚˜์ง€ ์•Š์Œ์„ ํ™•์ธ 4. 12.exe ํŒŒ์ผ์„ Immunity Debugger ์—์„œ ์‹คํ–‰ 5. ์Šคํฌ๋กค์„ ๋‚ด๋ฆฌ๋‹ค๋ณด๋‹ˆ, ์‚ฌ์šฉ์ž๋กœ๋ถ€ํ„ฐ ์ž…๋ ฅ๋ฐ›์€ Key ๊ฐ’์„ ์ง„์งœ Key ๊ฐ’๊ณผ ๋น„๊ตํ•˜๋Š” ๋ถ€๋ถ„ ๋ฐœ๊ฒฌ ++ ์œ ์ถ” ๊ฐ€๋Šฅํ•œ ์‚ฌ์‹ค๋“ค # ์ง„์งœ Key ๊ฐ’ : 7A2896BF # ์‚ฌ์šฉ์ž๊ฐ€ ์ž…๋ ฅํ•œ Key ๊ฐ’ : EAX ๋ ˆ์ง€์Šคํ„ฐ์— ์ €์žฅ 6. ๋‹ค์‹œ 12.exe ํŒŒ์ผ์„ ๋”๋ธ”ํด๋ฆญํ•˜์—ฌ ๋ฐœ๊ฒฌํ•œ ์ง„์งœ Key ๊ฐ’ ์ž…๋ ฅ --> ๋ฌธ์ œ๊ฐ€ ์„ฑ๊ณต์ ์œผ๋กœ ํ•ด๊ฒฐ๋˜์—ˆ.. 2023. 11. 9.
[Reverse Engineering] CodeEngn Basic RCE L11 WriteUp ๐Ÿ…ฑ๏ธ CodeEngn Basic RCE L11 WriteUp 1. ๋ฌธ์ œ ํ™•์ธ ํ›„ ํŒŒ์ผ ๋‹ค์šด๋กœ๋“œ 2. 7-Zip File Manager ์„ ํ†ตํ•ด ํŒŒ์ผ ์••์ถ• ํ•ด์ œ --> 11 ํŒŒ์ผ ์† ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ ๋ฐœ๊ฒฌ 3. ๊ด€๋ จ ์ •๋ณด ์ˆ˜์ง‘์„ ์œ„ํ•ด Detect It Easy ๋ฅผ ํ†ตํ•ด ํŒŒ์ผ ์˜คํ”ˆ --> ํŒŒ์ผ์ด UPX ํ˜•์‹์œผ๋กœ ํŒจํ‚น๋˜์–ด์žˆ์Œ์„ ํ™•์ธ ++ ์•„์ง Detect It Easy ๋ฅผ ์„ค์น˜ํ•˜์ง€ ์•Š์•˜๋‹ค๋ฉด? --> https://www.majorgeeks.com/ MajorGeeks.Com - MajorGeeks www.majorgeeks.com 4. ํŒจํ‚น๋œ ์ƒํƒœ์ธ 11 ํŒŒ์ผ์— ๋Œ€ํ•˜์—ฌ ์–ธํŒจํ‚น ์ง„ํ–‰ ++ UPX ํŒจํ‚น๋œ ํŒŒ์ผ ์–ธํŒจํ‚นํ•˜๊ธฐ --> https://alim11.tistory.com/456 [UPX Un/Packer] UPX.. 2023. 11. 7.