ä¼å¡éå®ãµã¼ãã¹ã§ã æé¡ãã©ã³ã10ææ«ã¾ã§ç¡æ ãç³ã込㿠ä¼å¡ã®æ¹ã¯ãã¡ã ãã°ã¤ã³ æ¥çµã¯ãã¹ãã㯠TOPãã¼ã¸
 ä¼å¡éå®ãµã¼ãã¹ã§ã æé¡ãã©ã³ã10ææ«ã¾ã§ç¡æ ãç³ã込㿠ä¼å¡ã®æ¹ã¯ãã¡ã ãã°ã¤ã³ æ¥çµã¯ãã¹ãã㯠TOPãã¼ã¸
XSSã«CSRFã«SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã«ãã£ã¬ã¯ããªãã©ãã¼ãµã«â¦â¦Webã¢ããªã±ã¼ã·ã§ã³ã®ããã°ã©ããç¥ã£ã¦ããã¹ãèå¼±æ§ã¯ãã£ã±ãããã¾ããããã§æ¬é£è¼ã§ã¯ããã®ãããªã¡ã¸ã£ã¼ãªãã®â以å¤âãæãä¸ãã¦ããã¾ã ï¼ç·¨éé¨ï¼ JSONPã ã£ã¦ãã»ãã¥ãªãã£ãæ°ã«ãã¦ã»ãã çããããã«ã¡ã¯ãã¯ãããããããã§ããä»åã¯ãJSONPã使ç¨ããå ´åã®ã»ãã¥ãªãã£ã«ã¤ãã¦è§£èª¬ãã¾ãããã JSONPã¨ã¯ãJSON with Paddingã®å称ã示ãã¦ããã¨ãããJSONå½¢å¼ã®ãã¼ã¿ã«ã³ã¼ã«ããã¯é¢æ°ã®å¼ã³åºãã®ããã®ã³ã¼ããä»å ãããã¨ã§ãã¯ãã¹ãã¡ã¤ã³ã§ãã¼ã¿ã®åã渡ããå®ç¾ããããã®ãã¼ã¿å½¢å¼ã§ããJavaScriptããã¯ãã¹ãã¡ã¤ã³ã§ã®ãã¼ã¿ãç°¡åã«æ±ãããã¨ãªã©ãçç±ã«ãå¤æ°ã®Webã¢ããªã±ã¼ã·ã§ã³ã§APIã®ä¸é¨ã¨ãã¦JSONPå½¢å¼ã§ãã¼ã¿ã®æä¾ãè¡ããã¦ãã¾ãã å ·ä½çãªä¾ãè¦
åé¤ãã¦ã´ãç®±ãããæ¶ãã¦ãã¾ã£ããã¡ã¤ã«ã復å ã§ããããªã¼ã½ããããã®ãDiskDiggerãã§ããUSBã¡ã¢ãªãå種ãã©ãã·ã¥ã¡ã¢ãªï¼USBã¡ã¢ãªã»ã³ã³ãã¯ããã©ãã·ã¥ã»ã¡ã¢ãªã¼ã¹ãã£ãã¯ãªã©ãªã©ï¼ããã¼ããã£ã¹ã¯ãªã©ãWindowsããèªèã§ãããã®ã§ããã°å¤§æµã®ãã®ã«å¯¾å¿ãã¦ããã誤ã£ã¦ãã©ã¼ããããã¦ãã¾ã£ãå ´åããã©ã¼ãããããã¹ãã¦ãã©ã¤ãåãå²ãå½ã¦ãããªããªã£ãå ´åãããã«ã¯ãããã»ã¯ã¿ãåå ã§èªããªããªã£ãå ´åã§ã復å å¯è½ã§ãã 復å ã®ä»çµã¿ã¨ãã¦ã¯ãWindowsã®ãã¡ã¤ã«ã·ã¹ãã ãã©ã¤ãããã¤ãã¹ãããã¼ããã£ã¹ã¯ãç´æ¥ã¹ãã£ã³ããã¨ãããã®ã対å¿ãã¦ãããã©ã¼ãããã¯FAT12ï¼ããããã¼ãã£ã¹ã¯ï¼ã»FAT16ï¼å¤ãã¡ã¢ãªã¼ã«ã¼ããªã©ï¼ã»FAT32ï¼æ°ããã¡ã¢ãªã¼ã«ã¼ããå¤ãHDDï¼ã»NTFSï¼æ°ããHDDï¼ã»exFATã¨ãªã£ã¦ããããããæ¬ä½åä½ã§åä½ããããã¤
XSSã«CSRFã«SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã«ãã£ã¬ã¯ããªãã©ãã¼ãµã«â¦â¦Webã¢ããªã±ã¼ã·ã§ã³ã®ããã°ã©ããç¥ã£ã¦ããã¹ãèå¼±æ§ã¯ãã£ã±ãããã¾ããããã§æ¬é£è¼ã§ã¯ããã®ãããªã¡ã¸ã£ã¼ãªãã®â以å¤âãæãä¸ãã¦ããã¾ãï¼ç·¨éé¨ï¼ å°ããªè©±é¡ãé¢ç½ã çãããã¯ããã¾ãã¦ãã¯ãããããããã¨ç³ãã¾ãã ãæç§æ¸ã«è¼ããªãWebã¢ããªã±ã¼ã·ã§ã³ã»ãã¥ãªãã£ãã¨ãããã¨ã§ãWebã¢ããªã±ã¼ã·ã§ã³ã®ã»ãã¥ãªãã£ã«é¢é£ãããæ®æ®µãã¾ãè¦æããªããããªå°ããªè©±é¡ãåãä¸ãã¦ããããã¨æãã¾ãã ã»ãã¥ã¢ãªWebã¢ããªã±ã¼ã·ã§ã³ãå®ç¾ããããã«ãéçºè ã®æ¹ã ãã§ãªããWebã¢ããªã±ã¼ã·ã§ã³ã®èå¼±æ§æ¤æ»ãè¡ãæ¹ã ã«ãèªãã§ããã ãããã¨æã£ã¦ãã¾ããéç®±ã®é ãæ¥æã§ã»ããããããªå°ããªè©±é¡ã°ããã§ãããçãããããããé¡ããã¾ãã ãã¦ç¬¬1åã¯ãInternet ExplorerãHTMLã解éããéã®å¼ç¨
CSRFï¼Cross Site Request Forgeriesï¼ã¯æ°å¹´åã«ãã®å±éºæ§ãåºãèªç¥ãããæ»æææ³ã§ããWebãã¼ã¸ãè¦ãã ãã§ãæ®æ®µèªåãå©ç¨ãã¦ãããã°ã¤ã³ãå¿ è¦ãªãµã¤ãã«æå³ããªããªã¯ã¨ã¹ããéä¿¡ããããããåé¡ã§ãã CSRFã®åä½åç CSRFã¯æ»æç¨ã®æ å ±ãå«ãã Webãã¼ã¸ãEã¡ã¼ã«ãå©ç¨ãã¦æ»æãã¾ãã被害è ãæ»æç¨ã®ãã¼ã¸ã表示ããããURLãã¯ãªãã¯ããã¨ãæ»æ対象ã®Webãµã¤ãã«å©ç¨è ãæå³ãã¦ããªããªã¯ã¨ã¹ããéä¿¡ãã¾ãã å³1ãCSRFæ»æ CSRFã«ããä¸æ£ãªãªã¯ã¨ã¹ãã¯è¢«å®³è ãããªã¯ã¨ã¹ããªã®ã§ããã°ã¤ã³ãå¿ è¦ãªãµã¤ãã§ãã£ã¦ãæ¢ã«ã¦ã¼ã¶ããã°ã¤ã³æ¸ã¿ã®å ´åãæ£è¦ã®ã¦ã¼ã¶ããã®ãªã¯ã¨ã¹ãã¨ãã¦æ»æ対象ã®Webãµã¼ãã¯ãªã¯ã¨ã¹ããåãä»ãã¦ãã¾ãã¾ãã ãã°ã¤ã³ãå¿ è¦ãªãå ¬éãµã¤ãã§ãã£ã¦ããåãåãããã©ã¼ã ãã大éã®ä¸æ£ãªæ å ±ãç»é²ãããããªã©
ããã«ã¡ã¯ããã«ã¡ã¯ ! ! ã¯ã¾ã¡ã2ã§ãï¼ ä»æ¥ããã¼ãã¨ä¸ç·ã«Webããã°ã©ãã³ã°ã®ã»ãã¥ãªãã£ã«ã¤ãã¦ãã¡ãã£ã´ãåå¼·ãã¦ã¿ã¾ãããï¼ä»åã¯HTTPãã©ããªããã¨ãããã¦ããã®ããç°¡åã«ãããããã¦ã¿ã¾ãããï¼
ãªãã ãããã«é·ã説æã°ããæ¤ç´¢ã«å¼ã£ããã£ãã®ã§æ¸ãã¾ããã Linuxã®ãã¼ã«ã«ç°å¢ã§Dockerã³ã³ããå ã®Xã¢ããªï¼GUIã¢ããªï¼ãå©ç¨ããã«ã¯ $ xhost localhost + ãå®è¡ããå¾ã« $ docker run --rm --net host -e "DISPLAY" container_image_name x_app_binary_path ã¨ããã°è¯ãã§ãã ãã£ã¨èªã SSHãªã©ããç¥ããããµã¼ãã¹ãã¼ãã§ä½ã対çããã«ããã¨æ°ããããªããããã®æ»æãªã¯ã¨ã¹ããæ¥ã¾ããä¸å¿ è¦ãªãã°ãå¢ããã¦ãªã½ã¼ã¹ãç¡é§ã«ããããä¸ç¨æãªã¦ã¼ã¶ã¼ãã·ã¹ãã ãããã¨æ»æã«æåããå ´åãããã¾ãã Sshguardã¯Cä½ããã¦ãããflex/bisonã®ãã¼ãµã¼ã«ã¼ã«ã足ãã°æ¡å¼µã§ãã¾ããã«ã¹ã¿ã çãã¡ã³ããã³ã¹ããã®ãé¢åã§ããå¿ è¦ãªã«ã¼ã«ã足ãã¦ãã«ãªã¯ã¨ã¹ããéã£ã¦ããã¼
Webã¢ããªã±ã¼ã·ã§ã³ã®ããå¼±æ§ããªããªããªããªããªããã¡ãã£ã¢ãªã©ã§ãçãã«åãä¸ãããã¦ããã«ããããããï¼ã§ãããç¹ã«ï¼ã»ãã·ã§ã³ç®¡çããããã¢ããªã±ã¼ã·ã§ã³ã®ããå¼±æ§ã«ã¯ï¼æ°ä»ããªããã¨ãå¤ããå ·ä½çã«ã¯ãã¯ãã¹ãµã¤ãã»ãªã¯ã¨ã¹ãã»ãã©ã¼ã¸ã§ãªãï¼CSRFï¼ï¼ãã»ãã·ã§ã³ã»ãã£ã¯ã»ã¼ã·ã§ã³ããªã©ã§ããããããã¯ã¯ãã¹ãµã¤ãã»ã¹ã¯ãªããã£ã³ã°ï¼SQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã¨ãã£ãæ¯è¼çã¡ã¸ã£ã¼ãªããå¼±æ§ã«æ¯ã¹ã¦èªç¥åº¦ãä½ãï¼å¯¾çãé²ãã§ããªãã åå ã®ä¸ã¤ã¯ï¼ã¢ããªã±ã¼ã·ã§ã³ã®éçºè ãåå ãæ£ããç解ãã¦ããªããã¨ãCSRFãã»ãã·ã§ã³ã»ãã£ã¯ã»ã¼ã·ã§ã³ã«ã¤ãã¦è¨ãã°ï¼ã»ãã·ã§ã³ç®¡çã«ä½¿ãã¯ããã¼ï¼cookieï¼ã®åä½ãç解ãã¦ããªãã¨å¯¾çãé£ãããã¨ãããæè¿ã®éçºç°å¢ã§ã¯ï¼ã»ãã·ã§ã³ç®¡çã®ä»çµã¿ãé ãºãããã¦ããããï¼å¿ ããããã®ç¥èã¯è¦æ±ãããªããããããéçºè ã¯å®¹æã«ã¯ããå¼±æ§ã«æ°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}