[ÄÄÇ»ÅÍ/ÀÎÅͳÝ]

ÀÚ¹Ù½ºÅ©¸³Æ® ³»¿ëÁ» ¼³¸í ÇØÁÖ¼¼¿ä

rank ±òºÀ 2019-01-18 (±Ý) 04:58 Á¶È¸ : 673
var module = {
  name: "Blind SQL Injection Arithmetic Evaluation Differential Checks",
  category: "Injection Modules",
  differential: true
};

function initialize(ctx) {

  var ps = ctx.getPathState();
  var numeric = isNumericParameter(ps);

  if (ps.isParametric()) {

    var uri = String(ps.getPath().getUri());
    var uripart = uri.replace(/\?.*/, "");
    var param = ps.getFuzzableParameter().name;
    var pathkey;

    if (ps.getPath().isPostTarget() == true) {
      pathkey = "vinfo-sql-inject:" + uripart + "?" + "post" + "?" + param;
    }
    else
    {
      pathkey = "vinfo-sql-inject:" + uripart + "?" + "get" + "?" + param;
    }

    var k= pathkey;


    if (ctx.alertExists(k)) {
      return;
    }

    if (numeric) {
      ctx.submitAlteredRequest(process, "-0", true, 0);
      ctx.submitAlteredRequest(process, "-0-0", true, 1);
      ctx.submitAlteredRequest(process, "-0-9", true, 2);
    } else {
      ctx.submitAlteredRequest(process, "9-8", 0);
      ctx.submitAlteredRequest(process, "8-7", 1);
      ctx.submitAlteredRequest(process, "9-1", 2);
    }
    submit(ctx, 3, "\\\'\\\"");
    submit(ctx, 4, "\'\"");
    submit(ctx, 5, "\\\\\'\\\\\"");

    if (numeric) {
      ctx.submitAlteredRequest(process, " - 0 - 0", true, 6);
      ctx.submitAlteredRequest(process, " 0 0 - -", true, 7);
    } else {
      ctx.submitAlteredRequest(process, "9 - 1", 6);
      ctx.submitAlteredRequest(process, "9 1 -", 7);
    }
  }
}

function submit(ctx, idx, val) {
  var req = ctx.getPathState().createAlteredRequest(val, true);
  var s1 = "vega" + val;
  var s2 = s1 + ",en";
  req.addHeader("User-Agent", s1);
  req.addHeader("Referer", s1);
  req.addHeader("Accept-Language", s2);
  ctx.submitRequest(req, process, idx);
}


function isNumericParameter(ps) {
  if (!ps.isParametric()) return false;
  var p = ps.getFuzzableParameter();
  if (!(p && p.value)) return false;
  var v = p.value;
  var numchars = "01234567890.+-";
  for (var i = 0; i < v.length; i++) {
    if (numchars.indexOf(v[i]) == -1) return false;
  }
  return true;

}

function process(req, res, ctx) {
  if (ctx.hasModuleFailed()) return;
  var ps = ctx.getPathState();

  if (res.fetchFail) {
    ctx.error(req, res, "During SQL injection checks");
    ctx.setModuleFailed();
    return;
  }

  ctx.addRequestResponse(req, res);
  if (ctx.incrementResponseCount() < 8) return;

  var uri = String(ps.getPath().getUri());
  var uripart = uri.replace(/\?.*/, "");
  var param = ps.getFuzzableParameter().name;
  var pathkey;

  if (ps.getPath().isPostTarget() == true) {
    pathkey = "vinfo-sql-inject:" + uripart + "?" + "post" + "?" + param;
  }
  else
  {
    pathkey = "vinfo-sql-inject:" + uripart + "?" + "get" + "?" + param;
  }

  if (ctx.isFingerprintMatch(0, 1) && !ctx.isFingerprintMatch(0, 2)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(0), ctx.getSavedResponse(0), {
      output: ctx.getSavedResponse(0).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"

    });

    ctx.responseChecks(0);
    ctx.responseChecks(2);
  }

  if (ctx.isFingerprintMatch(1, 6) && !ctx.isFingerprintMatch(6, 7)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(7), ctx.getSavedResponse(7), {
      output: ctx.getSavedResponse(7).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"
    });
    ctx.responseChecks(6);
    ctx.responseChecks(7);
  }

  if (!ctx.isFingerprintMatch(3, 4) && !ctx.isFingerprintMatch(3, 5)) {

    ctx.alert("vinfo-sql-inject", ctx.getSavedRequest(4), ctx.getSavedResponse(4), {
      output: ctx.getSavedResponse(4).bodyAsString,
      key: pathkey,
      resource: uripart,
      detectiontype: "Blind Arithmetic Evaluation Differential"
    });

    ctx.responseChecks(3);
    ctx.responseChecks(4);
  }
}

¿äûÀÚ°¡ ÀÚ½ÅÀÇ 500Æ÷ÀÎÆ®¸¦ °É¾ú½À´Ï´Ù. ´äº¯ÀÌ Ã¤ÅõǸé 250Æ÷ÀÎÆ®¸¦ µå¸³´Ï´Ù.
´ñ±Û 7°³ ´ñ±Û¾²±â
rankÀ¯¶ûõÇÏ 2019-01-18 (±Ý) 10:35
Ȥ½Ã ÇÁ·Î±×·¡¹Ö ¾ð¾î¿¡ ´ëÇØ ¹è¿ï ±âȸ°¡ ÀÖ¾ú´ÂÁö¿ä?
var = variable º¯¼ö°í¿ä.
function À̶ó°í ÀÖ´Â ºÎºÐÀÌ ½ÇÇà ÇÏ´Â ±â´É ´ÜÀ§µéÀÔ´Ï´Ù.
È£Ãâ¿¡ ÀÇÇؼ­ ÀÛµ¿ÇÏ°í if ¶ó´Â Á¶°ÇÀýÀ» ÃæÁ·Çϸé if ¾È¿¡ ÀÖ´Â ¸í·ÉµéÀ» ½ÇÇàÇÏÁÒ. ÀÌ·± ±âº» Áö½ÄÀÌ ÀÖÀ¸¸é ±×°Å¸¦ ¹ÙÅÁÀ¸·Î µû¶ó °¡´Â°Å¶ó ±Û·Î ¼³¸íÇϱⰡ ³ì·ÏÇÏÁö°¡ ¾Ê³×¿ä..
     
       
rank±òºÀ ±Û¾´ÀÌ 2019-01-18 (±Ý) 15:37
»ó´Ü Äڵ带 ÀÐÀ» Á¤µµÀÇ ½Ç·ÂÀÌ µÇÁö ¾Ê¾Æ¼­ µ¿ÀÛ¿ø¸®¸¦ ¾Ë°í½Í¾î¼­ Áú¹® µå·È½À´Ï´ç..
rankda1011 2019-01-18 (±Ý) 12:45
µé¾î¿À´Â ÀԷ°ªÀÌ ÇØÅ·À» À§ÇÑ Äڵ尡 ½É¾îÁ® ÀÖ´ÂÁö È®ÀÎÇÏ´Â ÄÚµåÀÔ´Ï´Ù
     
       
rank±òºÀ ±Û¾´ÀÌ 2019-01-18 (±Ý) 15:36
SQL Injection °ü·Ã °ø°Ý ÄÚµåÀÔ´Ï´Ù.
¾î¶»°Ô µ¹¾Æ°¡´ÂÁö µ¿ÀÛ¿ø¸®¸¦ ¾Ë°í ½Í¾î¼­¿ë..
          
            
rankda1011 2019-01-20 (ÀÏ) 19:25
https://github.com/subgraph/Vega/wiki/Basic-Module-Context-Object

Page Fingerprints
ÆäÀÌÁö Áö¹®

Vega¸¦ ºñ·ÔÇÑ ¸¹Àº À¥ ÀÀ¿ë ÇÁ·Î±×·¥ º¸¾È °Ë»ç´Â ÆäÀÌÁö À¯»ç¼ºÀ» ±â¹ÝÀ¸·Î Èï¹Ì·Î¿î µ¿ÀÛÀ» ½Äº°ÇÕ´Ï´Ù. Vega´Â ºÐ¼® µÈ °¢ ÆäÀÌÁö¿¡¼­ ÆäÀÌÁö Áö¹®À» ÃßÃâÇÕ´Ï´Ù. ÆäÀÌÁö À¯»ç¼ºÀ» ÆǺ°ÇÏ´Â °ÍÀº ¼­·Î ºñ±³µÇ´Â Áö¹®ÀÔ´Ï´Ù.

¿¹¸¦ µé¾î, SQL ÀÎÁ§¼ÇÀ» Å×½ºÆ®ÇÏ°í ¿¬»êÀ» »ç¿ëÇÏ¿© ¼öÇàÇÏ´Â °æ¿ì, ÇϳªÀÇ Å×½ºÆ®´Â ´ÙÀ½°ú °°ÀÌ ÀÛµ¿ÇÕ´Ï´Ù.

SQL ÀÎÁ§¼ÇÀÌ ¹ß»ýÇÏ¸é µ¥ÀÌÅͺ£À̽º¿¡¼­ ÂüÀÎ °ÍÀ¸·Î Æò°¡µÇ´Â SQLÀÇ »ê¼ú Ç¥Çö½Ä°ú ÇÔ²² µÎ °³ÀÇ ¿äû (1, 2)À» º¸³À´Ï´Ù.
SQL ÀÎÁ§¼ÇÀÌ ¹ß»ýÇϸé true·Î Æò°¡Çؼ­´Â ¾ÈµÇ´Â Ç¥Çö½ÄÀ» »ç¿ëÇÏ¿© ÇϳªÀÇ ¿äû (3)À» º¸³À´Ï´Ù.
ÆäÀÌÁö Áö¹® 1°ú 2°¡ µ¿ÀÏÇÏÁö¸¸ 1°ú 3ÀÌ ´Ù¸¥ °æ¿ì SQL ÁÖÀÔ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÒ ¼ö ÀÖ½À´Ï´Ù.
               
                 
rankda1011 2019-01-20 (ÀÏ) 19:32
function process(req, res, ctx) <--À̺κÐÀÌ °ËÁõ Äڵ尡 ÀÖ´Â ºÎºÐÀεí ÇÏ°í
ctx.addRequestResponse(req, res); <--context object ¿¡ req¿Í res¸¦ »ðÀÔÇÑ ÈÄ¿¡
if (ctx.isFingerprintMatch(0, 1) && !ctx.isFingerprintMatch(0, 2)) <--°ËÁõ Å×½ºÆ® Äڵ尡 µé¾î°¡¹Ç·Î
process¸¦ È£ÃâÇÏ´Â ºÎºÐÀ» º¸¼Å¾ß ÇÒ µí Çϳ׿ä
                    
                      
rank±òºÀ ±Û¾´ÀÌ 2019-01-22 (È­) 01:23
°¨»çÇÕ´Ï´Ù µµ¿òÀÌ ¸¹ÀÌ µÇ¾ú½À´Ï´Ù ^^

¹øÈ£ Á¦¸ñ ±Û¾´ÀÌ »óÅ Æ÷ÀÎÆ® ³¯Â¥ Á¶È¸
[°øÁö]  ¡Ø Áö½ÄiN °Ô½ÃÆÇ ÀÌ¿ë¾È³» rankeToLAND
0 03-28
[°øÁö]  ¡Ø Å䷻Ʈ»çÀÌÆ®Áú¹®,ÀúÀÛ±Ç ÀÚ·á¿äû ±ÝÁö rankeToLAND
0 08-25
[ºñ¹Ð»óÁ¡]  ´ë¿ë·® ÀÏȸ¿ë ÀüÀÚ´ã¹è ºñ¹ÐƯ°¡! (6799) ºñ¹Ð»óÁ¡
129430 [°Ç°­/ÀÇÇÐ]  ¸ñÀÌ Àá±ä´Ù, ¸»ÀÌ Àß ³ª¿ÀÁö ¾Ê´Â´Ù ¾àÀ̳ª À½½Äó¹æ ¹¹°¡ ÀÖÀ»±î¿ä ? (2) rankÀÏ»ó»ýÈ°¸ðÇè
1024 02-23 180
129429 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  °í½ÃÅÚ °øÀ¯±â ¿Í WIFI ¹®Á¦ (21) rankÈûÂù
300 02-23 894
129428 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  Æ÷Åä¼¥ À̹ÌÁöÀÇ ¼±Åÿµ¿ª ºÎºÐ¿¡ ´Ù¸¥ À̹ÌÁö ³Ö±â (1) À̹ÌÁö rankÀÏ»ó»ýÈ°¸ðÇè
486 02-22 166
129427 [¼îÇÎ]  ½Å¹ß (¿îµ¿È­) À» ã½À´Ï´Ù (8) À̹ÌÁö rankfortis
5000 02-22 199
129426 [°Ç°­/ÀÇÇÐ]  ¼Ò±Ý¹° °¡±Û, Ä¡¾à¹° °¡±Û (4) rankÀÏ»ó»ýÈ°¸ðÇè
369 02-22 196
129425 [±âŸ]  ºñÁÖ¾ó ½ºÆ©µð¿À ÀúÀå½Ã ¿À·ù°¡ ¶å´Ï´Ù (1) À̹ÌÁö rank¹Ð¸®Ä«µåȯŸ
200 02-22 202
129424 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  lg³ëÆ®ºÏ Á¶Ä« ¼±¹°·Î ¾î¶³±î¿ä? »ç¾çÁ» ºÁÁÖ¼¼¿ä (2) À̹ÌÁö rankenrilj
3000 02-21 218
129423 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ¿¢¼¿ Ç¥¿¡ ÀÖ´Â µ¥ÀÌÅÍ ÀçÁ¤·ÄÇϴ°ŠÁú¹®ÀÔ´Ï´Ù! (1) À̹ÌÁö rank¿Í¿ì24
2000 02-20 182
129422 [TV/¿µ»ó]  µ¿¿µ»ó ÃàÃâ±â Ãßõ ºÎŹ µå¸³´Ï´Ù(À¯·áµµ »ó°ü¾ø½À´Ï´Ù) (2) rankºí·¢ÁúÁÖ
5000 02-20 187
129421 [TV/¿µ»ó]  ´ÙÅ¥¿´´Âµ¥ ÁöÀûÀå¾Ö ¾ÆµéÀ» Å°¿ì´Â ¾Æºü (2) rank£Å£Ô£Ï£Ò£Ò£Å£Î£Ô
1000 02-20 236
129420 [Ãë¹Ì/»ýÈ°]  º£Æ®³² ºÏºÎ ¿©ÇàÁö Ãßõ Á» ºÎŹµå¸®°Ú½À´Ï´Ù (1) rankIFBB
500 02-19 193
129419 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  µ¶°Å¹Ì Å°º¸µå »ç·Á°í Çϴµ¥ ¸Â´Â Űĸ Á» ºÁÁÖ¼¼¿ä rankÁ¦ÀÌÇÇ¿¡ÀÌ
1000 02-19 277
129418 [À½¾Ç]  ³î¸é ¹¹ÇÏ´Ï 221ȸ È°½ò¶§ ÀÌÀÌ°æ´ÔÀÌ ºÎ¸¥ ³ë·¡? (1) rank¹ä»ó°ú¿Ü°èÀÎ
300 02-19 409
129417 [ÀüÀÚ±â±â]  ÇÚµåÆù ±â°è´Â 5G Àδë 4G¿ä±ÝÁ¦ À¯½É ³Ö¾î¼­ »ç¿ë°¡´É Çմϱî? (4) rankAntidises
200 02-18 303
129416 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ¸ð´ÏÅÍ ÁÖ»çÀ²¿¡ °üÇÑ Áú¹® (3) rank±³¹Ì³×ÀÌÅÍ
3000 02-18 231
129415 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÀÌÅä °Ô½Ã¹° - ¼³¹®Á¶»ç - ¾î¶»°Ô Çϴ°ǰ¡¿ä ???? (2) À̹ÌÁö rankÀÏ»ó»ýÈ°¸ðÇè
369 02-18 166
129414 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À¯Æ©ºê ±¸µ¶ ä³ÎÀÌ È® ÁÙ¾îµé¾ú´Âµ¥¿ä ; (3) rank¼ÒÁÖ¶û´ß¶ËÁý
1000 02-18 280
129413 [±âŸ]  ³óÇùÀ̳ª ÀºÇà¿¡¼­ ¹«ÅëÀåÀÔ±ÝÇÒ¶§ ½ÅºÐÁõº¸¿©´Þ¶ó°íµµ Çϳª¿©? (2) rank·ç³ª¾¾1004
1000 02-17 298
129412 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  À© 7¿¡¼­ ¿ÜÀåÇϵå 16Å׶ó ÀνĿ©ºÎ (1) rank¼Õ³ªÀº¢½
1000 02-17 198
129411 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÀÌÅä¿¡ À¯Æ©ºê ¿µ»ó Àç»ý ¿¬°áÀº ¾î¶»°Ô ÇÏ´Â °Ç°¡¿ä ??? (5) rankÀÏ»ó»ýÈ°¸ðÇè
369 02-16 178
129410 [±âŸ]  ÀÇ·ù »óÇ¥º¸½Ã°í ¾î´À ¸ðµ¨ÀÎÁö ¾Ë¾ÆºÁÁֽǺпä (2) À̹ÌÁö rankoversoul
300 02-16 291
129409 [Ãë¹Ì/»ýÈ°]  ÇÁ¶óÀÌÆÒ Ãßõ ºÎŹµå¸³´Ï´Ù. (3) rank¼±µé¹Ù¶÷
200 02-16 269
129408 [Ãë¹Ì/»ýÈ°]  ÇÁ¸²¾øÀÌ ´Ù¹æÄ¿ÇÇ ? ¸ÔÀ»¸¸ÇÏ°Ô Å¸±â (6) rankÀÏ»ó»ýÈ°¸ðÇè
369 02-15 229
129407 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÀÎÅÍ³Ý ´À¸² (3) rank¾ÆÀÌÄí¸¶
222 02-15 217
129406 [±âŸ]  ¾ÆÆÄÆ® Àç°è¾à½Ã 1³â°è¾à¿¡ ´ëÇØ µµ¿ò ÁÖ½Ç ¼ö ÀִºР°è½Ç±î¿ä? rank¹Ù¹ã¹Ù
3000 02-14 255
129405 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  pc È­¸éÀ» ¹«¼±À¸·Î Ƽºñ¿¡ ³ª¿À°Ô ÇÏ°í ½Í½À´Ï´Ù. (11) rank´ÙÀ̵¹ÇÉ
200 02-14 373
129404 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  µà¾ó¸ð´ÏÅÍ Áú¹®ÀÔ´Ï´Ù.. ! (2) À̹ÌÁö rank¼ÒÁÖ¶û´ß¶ËÁý
1000 02-14 299
129403 [°Ç°­/ÀÇÇÐ]  ¹ß¸¶»çÁö±â¸¦ Çϳª »ç·Á´Âµ¥. (1) rank³­´Ù¿ä¿ä¹ÌÇö¼­
500 02-13 325
129402 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÇÁ¸®¹Ì¾î ÇÁ·Î Áú¹®ÀÔ´Ï´Ù (2) À̹ÌÁö rank¼ÒÁÖ¶û´ß¶ËÁý
2000 02-13 466
129401 [Ãë¹Ì/»ýÈ°]  À¥Å÷ Á¦¸ñ ã½À´Ï´Ù... (2) ranktestgame
500 02-13 586
129400 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  hdd °¡°Ý´ë Áú¹® (4) rank¸¶¹ýÀÇÁß°£¼Õ°¡¶ô
400 02-12 425
129399 [°æÁ¦/ÀçÅ×Å©]  Çö´ëÄ«µå Àß ¾Æ½Ã´ÂºÐ²², Çö¾ÆÇà ¹× Ä«µå Ãßõ Çϳª¸¸ ºÎŹµå·Áº¾´Ï´Ù. rank¼ö¸·ÀÌ
500 02-11 440
129398 [Ãë¹Ì/»ýÈ°]  ¤· ½ÄÃÊ´Â ¾î¶² ¿ë±â¿¡ ´ã¾Æµµ ±¦Âú³ª¿ä ??? (5) rankÀÏ»ó»ýÈ°¸ðÇè
369 02-11 669
129397 [±âŸ]  À¥Å÷ Çϳª ã¾ÆÁÖ¼¼¿ä (2) rank¼ö¸®¾Æ
500 02-11 418
129396 [±âŸ]  µµ½ÃÀç»ý ¸éÁ¢¿¡ ¾µ È°µ¿°èȹÀ» Â¥¾ßµÇ´Âµ¥ ¾îÂî (1) rank°«À¯¸®
1857 02-10 661
129395 [Ãë¹Ì/»ýÈ°]  Áö¹æ¿¡ »ì¾Æº¼±î »ý°¢ÁßÀÔ´Ï´Ù. (4) rankº£ÁöŸ¸Æ½º
1000 02-10 454
129394 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ÆÄÀÏ º¯°æ ÀÌ ¾ÈµÇ¿ä (5) rankº£ÀÌ·±
200 02-10 650
129393 [ÄÄÇ»ÅÍ/ÀÎÅͳÝ]  ¿¢¼¿ °ª¿¡ µû¸¥ ±ÛÀÚ»ö ¹è°æ»ö º¯°æ (3) rank°Ü¿ïÀǹٴÙ
500 02-09 744
129392 [Ãë¹Ì/»ýÈ°]  °úÅ·á, ¼¼±Ý µîµî ÆíÇϱ⠺¸°í Á¤¸®ÇÏ´Â »çÀÌÆ® ???? rankÀÏ»ó»ýÈ°¸ðÇè
586 02-09 412
129391 [ÀüÀÚ±â±â]  °¶·°½Ã ¹®ÀÚ°¡ ÀÌ»óÇÑ ÇüÅ·Πµé¾î¿À´Âµ¥ ±âÁ¸ ¹æ½ÄÀ¸·Î µ¹¸± ¼ö ¾øÀ»±î¿ä? À̹ÌÁö rank¼ö¸·ÀÌ
300 02-08 532

Áú¹®°ú´äº¯ ¿ù°£ ÃÖ´ÙäÅà ¿ì¼ö´äº¯È¸¿ø

  • rank¿©Àڿ;ÆÀ̴³öÁà äÅô亯¼ö (8)
  • rank±×±îÀ̲¨¹¹¶ó°í äÅô亯¼ö (7)
  • rankÀáÀûÁß Ã¤Åô亯¼ö (3)
  • rankdasari äÅô亯¼ö (2)
  • rank´É±ÛÀÌ3 äÅô亯¼ö (2)
  • rank±éÀº°í³ú äÅô亯¼ö (1)
  • rankÄ«ÆäÀΠäÅô亯¼ö (1)
  • rankµ¶Á¸ äÅô亯¼ö (1)
  • rankÀå±â¹é äÅô亯¼ö (1)
    óÀ½  1  2  3  4  5  6  7  8  9  10  ´ÙÀ½

    °øÀ¯Çϱâ

    ÀÌÅä·£µå ·Î°í

    °èÁ¤ ã±â ȸ¿ø°¡ÀÔ
    ¼Ò¼È·Î±×ÀÎ