Recent posts

Cross-site Tracing (XST)

ํ•ด๋‹น ์ทจ์•ฝ์ ์€ ๋ฌด์—‡์ธ๊ฐ€? XSS ๊ณต๊ฒฉ์˜ ์ข…๋ฅ˜์ค‘ ํ•˜๋‚˜๋กœ์„œ, XSS ๊ณต๊ฒฉ์„ ๋ฐฉ์–ดํ•˜๊ฑฐ ์œ„ํ•ด ๋งŒ๋“ค์–ด์ง„ ์ฟ ํ‚ค ์†์„ฑ ์ค‘ ํ•˜๋‚˜์ธ HTTPOnly ์†์„ฑ์„ ์šฐํšŒํ•  ์ˆ˜ ์žˆ๋Š” ๊ธฐ๋ฒ•์ด๋‹ค. HTTPOnly?? HTTPOnly๋Š” XSS ๊ณต๊ฒฉ์„ ๋ฐฉ์ง€ํ•˜๊ธฐ ์œ„ํ•ด ์ฟ ํ‚ค ๊ฐ’์ด JavaScript๋ฅผ ํ†ต...

(bWAPP)Denial-of-Service (Large Chunk Size)

์ทจ์•ฝ์  ์„ค๋ช… DoS๋Š” ์„œ๋น„์Šค ๊ฑฐ๋ถ€ ๊ณต๊ฒฉ์œผ๋กœ, ๋Œ€์ƒ ์‹œ์Šคํ…œ์— ๋Œ€ํ•œ ๊ฐ€์šฉ์„ฑ์„ ๋ฌด๋„ˆ๋œจ๋ฆฌ๋Š” ๊ณต๊ฒฉ์ด๋‹ค. ๋Œ€ํ‘œ์ ์œผ๋กœ ๋Œ€์—ญํญ ๊ณต๊ฒฉ, ๋ฆฌ์†Œ์Šค ๊ณ ๊ฐˆ, ํ”„๋กœํ† ์ฝœ ๊ณต๊ฒฉ, ๊ณต๊ฒฉ์ž ์ž์› ๊ณ ๊ฐˆ๋“ฑ์ด ์กด์žฌํ•œ๋‹ค. 8080/8443 ํฌํŠธ๋กœ Nginx ์›น ์„œ๋ฒ„๊ฐ€ ๋™์ž‘์ค‘์ด๋ฉฐ, ํ•ด๋‹น ์›น ์„œ๋ฒ„๋Š” chun...

(bWAPP)Cross-Site Tracing (XST)

์ทจ์•ฝ์  ์„ค๋ช… XSS ๊ณต๊ฒฉ์— ๋Œ€ํ•œ ๋Œ€์‘ ๋ฐฉ์•ˆ์œผ๋กœ HTTPOnly ์ฟ ํ‚ค๊ฐ€ ์กด์žฌํ•œ๋‹ค. ์ด๋Š” ํ•ด๋‹น ์‚ฌ์ดํŠธ๊ฐ€ ์ƒ์„ฑํ•œ ์ฟ ํ‚ค๊ฐ€ javascript๋กœ ์ฝํžˆ์ง€ ์•Š๋„๋ก ํ•ด์ฃผ๋Š” ์—ญํ• ์„ ํ•œ๋‹ค. ์ด๋Š” XSS๋กœ ์ธํ•œ ์„ธ์…˜ ํƒˆ์ทจ๋ฅผ ๋ฐฉ์ง€ํ•œ๋‹ค. ํด๋ผ์ด์–ธํŠธ์ธก์—์„œ Request์‹œ ์‚ฌ์šฉ๋˜๋Š” ๋ฉ”์„œ๋“œ ...

(bWAPP)Cross-Origin Resource Sharing (AJAX)

์ทจ์•ฝ์  ์„ค๋ช… ํ•ด๋‹น ์‹œ๋‚˜๋ฆฌ์˜ค์—์„œ๋Š” SOP ์ •์ฑ…์„ ์™„ํ™”ํ•˜๊ธฐ ์œ„ํ•ด ์‚ฌ์šฉ๋˜๋Š” CORS ์ ์šฉ์ด ์ž˜ ๋˜์–ด์žˆ๋Š”์ง€ ํ™•์ธํ•˜๋Š” ์‹œ๋‚˜๋ฆฌ์˜ค์ด๋‹ค. SOP๋ž€ ์„œ๋กœ ๋‹ค๋ฅธ ์ถœ์ฒ˜ ์ฆ‰ ๋‹ค๋ฅธ ๋„๋ฉ”์ธ์—์„œ์˜ ๊ณต๊ฒฉ์„ ๋ฐฉ์ง€ํ•˜๊ธฐ ์œ„ํ•œ ์›น ๋ธŒ๋ผ์šฐ์ € ๋ณด์•ˆ ๋ฉ”์ปค๋‹ˆ์ฆ˜์ด๋ฉฐ, ๋‹ค๋ฅธ ๋„๋ฉ”์ธ์˜ ๊ฒฝ์šฐ ์ ‘๊ทผ์„ ํ—ˆ์šฉํ•˜์ง€ ์•Š๋Š”๋‹ค. ์ด ๋•Œ ...

(bWAPP)Arbitrary File Access (Samba)

์ทจ์•ฝ์  ์„ค๋ช… samba๋Š” ๋ฆฌ๋ˆ…์Šค ํ˜น์€ ์œˆ๋„์šฐ ์‹œ์Šคํ…œ์—์„œ ํŒŒ์ผ ๋ฐ ํ”„๋ฆฐํ„ฐ ๊ณต์œ ๋ฅผ ์œ„ํ•œ ํ”„๋กœ๊ทธ๋žจ์ด๋‹ค. ์ด ๋•Œ samba ์„œ๋น„์Šค์— ๋Œ€ํ•œ ์ž˜๋ชป๋œ ๋ณด์•ˆ์„ค์ •์œผ๋กœ ์„œ๋ฒ„์— ์กด์žฌํ•˜๋Š” ํŒŒ์—˜ ๋Œ€ํ•œ ์ ‘๊ทผ์ด ๊ฐ€๋Šฅํ•˜๋‹ค๊ณ  ํ•œ๋‹ค. samba ์„œ๋น„์Šค๊ฐ€ ๋™์ž‘์ค‘์ธ ๊ฑฐ ๊ฐ™์œผ๋ฉฐ, ์ž„์˜์˜ ํŒŒ์ผ์— ๋Œ€ํ•œ ์ฝ...