2023/11/07 æ¨æ¥ãæ®æ®µéãèªå® ã§ãªã¢ã¼ãã¯ã¼ã¯ããã¦ãããã ãã©ãéªè«ã®å¤§éçºçãåã¾ã£ããããåè¢ Tã·ã£ãã«ãºãã³ã§ç´ 足ã®ã¾ã¾éããã«ã¯ããèå¯ããªã£ã¦ããã®ã§ãããåæã®ããªã¼ã¹ãç¾½ç¹ã£ãããã¦ãã 1æéãããéããã¦ããã¨æããªã軽ãæ±ã°ãã§ããã®ã§ããªã¼ã¹ãè±ãã ããåä¸æ風æ©ã稼åãããããããã ãã©ãä»åº¦ã¯å·ããå½±é¿ã§ãè ¹ãçããªã£ããããããæãããè¶ãã³ã¼ãã¼ã飲ã¿ãããªã£ãããã¦ãã¾ãããªã¼ã¹ãç¾½ç¹ãã ããã¦ã¾ãæããªã£ã¦ãã3åãããã«ã¼ãããã®ã§ããããã«ç¥æµãåããã¦ãã®ããªã¼ã¹ããã¯èæã®ãã¼ã«ã¼ãç¾½ç¹ããã¨ã«ãããå°ãã¯æãããªãå¯ãããªãéããã¦ãããã ãã©ããã£ã±ãæéã®çµéã§ä½æ¸©ãä¸æãã¦ãã¦æ±ã°ãã çµå±ãããªæãã§æãå¯ããçæéã§ç¹°ãè¿ãã¦ãããã¡ã«ããªãã¨ãè¨ããªãæãã«ä½èª¿ãæªããªã£ã¦ãã¦ãã¾ããå¤æ¹ã«ãããªãæ©éãé »ç¹ã«ä½æ¸©ãä¸
第2ååæµ·éæ å ±ã»ãã¥ãªãã£åå¼·ä¼ã«åå ãã¦ãããä»åã®ä¼å ´ã¯æå¹ã³ã³ãã³ã·ã§ã³ã»ã³ã¿ã¼ãã§ããã ã¤ã³ã·ãã³ãã¬ã¹ãã³ã¹ã®ç¾å ´ãã ï½äºä»¶ã¯ä¼è°å®¤ã§èµ·ãã¦ããããããªããç¾å ´ã§èµ·ãã¦ãããã ã 2008å¹´12æã«ãããã®è¢«å®³ãé常ã«å¤ã å½ã¢ã³ãã¦ã£ã«ã¹ã½ãããã¤ã³ã¹ãã¼ã«ããã¨HTTPãªã¯ã¨ã¹ãã®ã¦ã¼ã¶ã¼ã¨ã¼ã¸ã§ã³ããæ¹ããããã SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã®ç®çããæ å ±çãäºããWebãã¼ã¸æ¹ããã¸å¤ãã£ã¦ãã 被害ãèªåçã«æ¡å¤§ããã æªããã¨ã¯å½ç¶ç£è¦ãé¿ãã¦è¡ã 2chãµã¼ãã¯ãã ã¨ãã«ã¯åã£ãããã¤ããã¼ã«ã¯è² ãã Tomcatã®ã¢ããªã±ã¼ã·ã§ã³ããã¼ã¸ã£ã§ã¢ããªã±ã¼ã·ã§ã³ã¢ãããã¼ãã§ãã ã¨ã©ã¼æ å ±ã表示ãããã¨ã«ãã£ã¦ããµã¼ãå é¨ã®æ§æãææ¡ã§ãã¦ãã¾ã Moodleã®èå¼±æ§ãçããããå ¬å¼ãã¼ã¸ã®ä½¿ç¨ãµã¤ãä¸è¦§ãå©ç¨ãããã®ã§ã¯ãªãã ãéã¯ä¸çªå¼±ãé¨åãåããã 人äºç°
4/11(å)ã¯ç¬¬2ååæµ·éæ å ±ã»ãã¥ãªãã£åå¼·ä¼ã§ããï¼ ã¡ã¤ã³ã®å·å£ããã®ã»ãã·ã§ã³ã¯ã1æéå ¨ããã³ã·ã§ã³ãå¤ããããè´ãã¦ããå´ãã©ãã©ãå¼ãã¤ããæ§æã§ãããã楽ããã£ãã§ããå 容ãã¤ã³ãã©å¨ãããéçºã管çè ããã»ãã¥ãªãã£ãã³ãã¾ã§é常ã«å¹ åºããã¿ã§ãå¤ç¨®å¤æ§ãªåå è çã«æºè¶³ãã¦é ãããããªã»ãã·ã§ã³ã ã£ãããããªããã¨æãã¾ããåã¯ãã»ãã¥ãªãã£ã¯ãªã¹ã¯ã¨ã³ã¹ãã®è½ã¨ãæãææ¡ã§ããªãããããªããã¨ãã£ã話ãèªæã¨ãã¦ä¸çªå¿ã«æ®ãã¾ããããªã¹ã¯ããã¼ã¸ã¡ã³ãã£ã¦ããã大åã ãã©è»½ãããããããã§ãããããã ã©ã¤ããã³ã°ãã¼ã¯ã¯åå è ã®ä¸ããåéãããã¦ããã®ã§ããéã¾ããªãã£ããããã¹ã¿ãããè¡ãã¾ãããåãç¨æãã¦ãããåæµ·ééçºãªãã®ç´¹ä»ããããã¦é ãã¾ãããå®ã¯ããããå ´æã§çºè¡¨ãããã®ã¯åãã¦ã ã£ãã®ã§ããããç·å¼µãã¦ããã®ã§ãããé©åº¦ã«ç¬ããåãã¦ããã£ãã§ãã
第2ååæµ·éæ å ±ã»ãã¥ãªãã£åå¼·ä¼ï¼ã»ãã¥ããï¼åå ãããã¨ããããã¾ããï¼ï¼ï¼ï¼ å端ãããªãé¢ç½ãåå¼·ä¼ã«ãªãã¾ããè¬å¸«ã®å·å£ããæ¬å½ã«ãæ¬å½ã«ãããã¨ããããã¾ããï¼ï¼ï¼ï¼LTã®æå¾æé«ã§ããï½ï½ï½ï½ï½ï½ï½ï½ï½ï¼å¿µé¡ã®ãã¤è¦ãã¾ããï½ï¼ã¬ãã¼ãã¯å¥éæ¸ãã¾ãï½ï½ ãã¼ããããï¼ã»ãã¥ãªãã£ç³»åå¼·ä¼ ã»ãã·ã§ã³ï¼ï¼ã¤ã³ã·ãã³ãã¬ã¹ãã³ã¹ã®ç¾å ´ãã ãäºä»¶ã¯ä¼è°å®¤ã§èµ·ãã¦ããããããªããç¾å ´ã§èµ·ãã¦ãããã ããï¼ä»®ï¼ å·å£ æ´ ï¼æ ªå¼ä¼ç¤¾ã©ãã¯ï¼ ã»ãã·ã§ã³ï¼ï¼å¸æè ã«ããã©ã¤ããã³ã°ãã¼ã¯ http://secpolo.techtalk.jp/2ndworkshop åå è ã®Blogã¨ã 以ä¸ã®ã¯ã¦ãï¼å ¬å¼ã¿ã°"secpolo2nd"ï¼ã«ãã¾ã¨ãã¦ãã¾ãã ã¿ã°ãsecpolo2ndã ãæ¤ç´¢ - ã¯ã¦ãªããã¯ãã¼ã¯ ã»ãã¥ãããç²ãæ§ã§ããï¼ï¼ï¼ï¼ãããããã£ãã§ããï¼ï¼ï¼ã»ãã¨ã«ï¼
æ¬æ¥ã¯ã»ãã¥ãªãã£åå¼·ä¼ã¤ã¼ãã¨ã§æå¹ã³ã³ãã³ã·ã§ã³ã»ã³ã¿ã¼ã¸è¡ã£ã¦ãã¾ããã ãåå ãããæ¹ããç²ãæ§ã§ããã å·å£ãããç²ãæ§ã§ããã ã¾ã£ã¡ããããç²ãæ§ã§ããã åæµ·éã§ã»ãã¥ãªãã£ã£ã¦åå¼·ä¼ãéå¬ãããã®ã£ã¦å°ãªãï¼ ãªã®ãè¯ãåãããªãããåå ãã¦ãã¾ããã å·å£ããã®ã»ãã¥ãªãã£ã®ã話ã 主ã«å¤é¨ããã®æ»æããã¦ããã話ã§ããã èªåã®ä¼ç¤¾ã§ã¯å¤é¨ããã®ã¤ã³ã·ãã³ãã§ããã æ å ±ã¯éãããããã§ããã»ã»ã»ãªãããªããï¼ ãã¼ã ããã»ã»ã»DMZã«ããã¡ã¼ã«ãµã¼ãããã§ããã³ãããã ã¡ã¼ã«ã¨ãè¦ããã®ããªãï¼;´Ðï½ï¼ ä»ã«ãä¸æ¯ã»ã»ã»ãããï½ ãã¼rootã¨ããããçµäºãã»ã»ã»ã¨æãã¤ã¤ ï¼ãã¼ãªããé Σ(ï¾Ðï¾ Ï ) ï½²ï¾!!ï½±ï¾ï¾ï¾ï½½ï½·ï¾ï¼ï¼ åºæ¬çã«ç¤¾å ã·ã¹ãã ã管çãã¦ããã¨ã社å ã®ã»ãã¥ãªãã£ã«éããç½®ã㦠å¤é¨ããã®æ»æãªãã¦ããã¾ãæ°ã«ããªããâï¾ï¾ï¾ï¾ï¾ï¾ãã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}