ãã©ã¦ã¶ã§è±æãèªãã§ãã¦ãåãããªãåèªããèªæºãä¾æãæ°ã«ãªãåèªã«ééãããã¨ãããã¨æãã¾ãã ç¯å²é¸æã¨1ã¯ãªãã¯ã®ã¿ã§è©²å½ã®åèªãæ¤ç´¢ããããã®è¨å®ãè¡ãã¾ããã Selection Searchãç¨ãã é¸æããããã¹ããæ´ã«ã¯ãªãã¯ãã¦ãèªæºãä¾æãæ¤ç´¢ã§ãã¾ãã youtu.be é¸æè¢ã«Connected PapersãPapers With Codeçããããã¨ããåããããã«ãè«æã®æ¤ç´¢ã«ã便å©ã«ä½¿ã£ã¦ããäºå®ã§ãã ç§ã®è¨å®ãã¡ã¤ã«ã¯ã¢ãããã¼ããã¦ããã®ã§ãããã£ãããåèã«ãã¦ä¸ããã gist.github.com ããæ¡ ããã¯ãã¼ã¯ã¬ãããæ´»ç¨ãã æ¤ç´¢ã®ããã®ããã¯ãã¼ã¯ã¬ãããä½ã£ã¦ããããã¼ãã¼ãã·ã§ã¼ãã«ããã§å¼ã³åºãã¾ãã ç§ãSelection Searchã®å°å ¥ä»¥åã«å©ç¨ãã¦ããæ¹æ³ã§ããããã®ããã¯ãã¼ã¯ã¬ãããå ¬éãã¦ãã¾ãã ã¢ã¤ã³ã³
Security.Tokyo #3ã®çºè¡¨è³æã§ãã ã¯ã©ã¤ã¢ã³ããµã¤ãã®ãã¹ãã©ãã¼ãµã«ã¨ãpostMessageçµç±ã®èå¼±æ§ãåãä¸ãã¾ããã
1. å§ãã« ããã«ã¡ã¯ãmorioka12 ã§ãã æ¬ç¨¿ã§ã¯ããã°ãã¦ã³ãã£ãªã©ã®èå¼±æ§èª¿æ»ã§è¡ããJavaScript ã®éç解æã¨åç解æã«ã¤ãã¦ã¾ã¨ãã¦ç´¹ä»ãã¾ãã 1. å§ãã« å 責äºé æ³å®èªè æ¤è¨¼ç°å¢ éç解æã¨åç解æ 2. éç解æ (Static Analysis) 2.1 JavaScript File ã® URL ãåéãã getJS hakrawler getallurls (gau) 2.2 ã¨ã³ããã¤ã³ããåæãã LinkFinder xnLinkFinder katana jsluice endext 2.3 ã·ã¼ã¯ã¬ããæ å ±ãæ¤åºãã SecretFinder jsluice Mantra trufflehog 2.4 æ½å¨çãªèå¼±æ§æ å ±ãæ¤åºãã Retire.js ESLint 3. åç解æ (Dynamic Analysis) DevTool
Google Form ãå©ç¨ããä¸ã§ã®æ³¨æç¹ GoogleForm ã£ã¦ããã便å©ã§ãããã GoogleWorkspace ãå©ç¨ãã¦ããä¼æ¥ããåå人ã§ãåºã便å©ã«ä½¿ããã¦ããã¨æãã¾ãã ã§ãããã¡ãã£ã¨ããè¨å®ã®çµã¿åããã§ãæå³ããformåççµæãå ¨ä¸çã«å ¬éãã¦ãã¾ãç¶æ ã«ãªã£ã¦ãã¾ãã®ã§ã注æãå¿ è¦ã§ãã å ·ä½çã«ã¯ãä¸å³ã®ããã« èªçµç¹ã¨ä¿¡é ¼ã§ããçµç¹ã®ã¦ã¼ã¶ã«éå®ãã ã OFF ã«ãã æ¦è¦ã°ã©ãã¨ããã¹ãã®åçã表示 ã ON ã«ãã ã®çµã¿åããã§ãä»ã®äººã®åççµæãåç §ã§ããç¶æ ã«ãªã£ã¦ãã¾ãã¾ãã ãã¡ãããURLãç¥ãããªãéãåç §ã¯ãããªãã®ã§ãããåçè ã¯åççµäºå¾ã«åç §ã§ãã¦ãã¾ãã®ã§ããããªãã®äººã®ç®ã«è§¦ãã¦ãã¾ãã¾ãã å人æ å ±ãåéãããã㪠form ã ã¨ããªãã¾ããç¶æ ã«ãªãã¾ãããã GAS ã§å ¬éè¨å®ã«ãªã£ã¦ãã form ãæ¤ç¥ããã
ä»åã¯ã以ä¸ã®ã¢ãã¡ã¼ã·ã§ã³ã®ããã«ãGoogle ã¹ãã¬ããã·ã¼ãã«æ å ±ãå ¥åããã¨ãChatGPTã®åçãèªåçã«åå¾ãã¦ãããé¢æ°ã®ä½ãæ¹ããç´¹ä»ãã¾ãã ãµã³ãã«ã®ã¹ãã¬ããã·ã¼ããå ¬éãã¾ãã®ã§ã以ä¸ã®ãªã³ã¯ããããã£ããè¦ã¦ã¿ã¦ãã ããã ChatGPTé¢æ°ãµã³ãã« Google ã¹ãã¬ããã·ã¼ãã«æ å ±ãå ¥åããã¨ãChatGPTã®åçãèªåçã«åå¾ãã¦ãããé¢æ°ã®æ´»ç¨äºä¾ã§ãã
2022å¹´æ«ã«ç»å ´ãä¸èºãã¯ããã¸ã¼æ¥çã®è©±é¡ãå¸å·»ããAIãã£ããããããChatGPTã èªç¶ãªæç« ã§æ å ±ãæä¾ãããã®ãChatGPTãã«å¯¾ãã¦ããã¸ãã¹ãããã°ãããã°ã©ãã³ã°ããªã©ãæ§ã ãªå ´ã§ã®æ´»ç¨ãæå¾ ããã¦ãã¾ãã OpenAIãéçºããµã¼ãã¹ãæä¾ãã¦ããã®ãChatGPTãã®ãã¼ã¹ã¨ãªã£ã¦ããæè¡ããåããOpenAIãéçºãããèªç¶è¨èªå¦çAIãGPT-3ãã§ãã è¨å¤§ãªããã¹ããã¼ã¿ã使ã£ãæ©æ¢°å¦ç¿ã«ãã£ã¦ãçã¿åºããããGPT-3ãã®æç« ã¯ã人éãæ¸ããç©ã¨å¤å¥ã§ããªãç¨ ããã¦ãæ©æ¢°å¦ç¿ã®è¨ç·´ã«ãã£ã¦å¾ãç¥èãå ã«ãã¦ã質åã«å¯¾ãå³åº§ã«çããè¿ãã¦ãããã®ã§ãç¥ãããäºãæã度ã«ãä¸ã âã°ã°ãâå¿ è¦ãç¡ãã ããã§ä¸èããGPT-3ãã¨Googleã¹ãã¬ããã·ã¼ããçµã¿åãããããä½æ¥å¹çãåä¸ã§ããããããªããã æ¬è¨äºã§ã¯ãèªç¶è¨èªå¦çAIãGPT-3ããGo
å¼ç¨å ã®è¨äºã«ããããã«ãChatGPTã§ã¯ãªãã¨ã®äºã§ãããAlexaã¨ã®åãçããéã£ã¦ããã®ã§ããã®ã¾ã¾æ²è¼ãã¾ããAlexaã®ã³ã¼ãããå¤é¨APIã¸ã®æ¥ç¶ã®åèã«ãªããã¨æãã¾ãã ãå½åå ¬éããã¿ã¤ãã«ã«èª¤ããããã¾ãããæ¬ããã°ã¯ChatGPTã§ã¯ãªã2022å¹´åé ã«ãã¬ã¼ãã³ã°ãçµããGPT-3.5ã·ãªã¼ãºã®ã¢ãã«ãAPIã¨ãã¦å®è¡ãããã®ã«ãªãã¾ããChatGPTã®APIãAPIã§å®è¡ã§ããããã«ãªã次第ããã°ãæ´æ°ãããã¨æãã¾ããâ»ChatGPTã¯GPT-3.5ã·ãªã¼ãºã®ã¢ãã«ããã¼ã¹ã«å¾®èª¿æ´ãå ãããã®ã https://dev.classmethod.jp/articles/chatgpt-line-chat-bot/ å®æ¼ Alexaã¨ChatGPTããããã«é¬¼æ» ã®åã人æ°ã®çç±ãèãã¾ããã1/2 #Alexa #ChatGPT Alexaã¨ChatGPTããã
setTimeout ã¯ãæå®ãããæé以éã«æå®ãããã³ã¼ããå®è¡ãã JavaScript ã® API ã§ãããã©ã¦ã¶ã§ã Node.js ã§ãåºã使ããã¦ããã®ã§ãããå®è£ ã¯ã¾ã¡ã¾ã¡ã§ãè²ã ã¨ç¹æ®ãªæ¡ä»¶ãå¤ããæåãå®ç§ã«ç解ãã¦ãã人ã¯å°ãªãã¨æãã¾ãããã®è¨äºã§ã¯ããã㪠setTimeout ãå¯è½ãªéãæ·±å ããã¦ã¿ããã¨æãã¾ãã å ã«æ¸ãã¦ããã¾ããããã®ããããããã§ç´°ãã話ã°ãã並ã³ã¾ããçªç¶ç§ãããã ç´ç²ã« setTimeout ã«ã¤ãã¦èª¿ã¹ãããªã£ãã®ã§ããã®çµæãã¾ã¨ããã ãã®ãã®ã§ããæ®éã«éçºãã¦ãã人ã«ã¯å¿ è¦ã®ãªãæ å ±ãå¤ããªãã§ãããããã®è¨äºã¯åºç¤ãã setTimeout ãå¦ã¼ããã¨ããæ¹ã«ã¯å ¨ç¶åããªãã¨æãã¾ãã ã¾ããJavaScript ã®ã¤ãã³ãã«ã¼ãã«ã¤ãã¦ããç¨åº¦ç解ãã¦ãããã¨ãåæã¨ãã¾ãããã®è©³ããç解ã«ã¯ã@PADAone ãã
æ¦è¦ æ¬è¨äºã¯ãã¡ã¿ç¤¾(æ§ FaceBook) ãéçºãã OSS ã§ããã¡ã¢ãªãªã¼ã¯æ¤ç¥ãã¼ã«ã§ãã [memlab] ããã£ãã試ãã¦ã¿ãè¨é²ã«ãªãã¾ãã å ¬å¼ããã¥ã¡ã³ã以ä¸ã®ä»å 価å¤ã¯ãã¾ãããã¾ãããããã£ããã¨é°å²æ°ãæ´ãã§ããã£ã¦ä½¿ç¨ãæ¤è¨ãã¦é ããã°å¹¸ãã§ãã memlabã«ã¤ã㦠memlab ã¯ã Puppeteer API ãç¨ããã·ããªãªãä½æãããã¨ã§ããã®ã·ããªãªå®è¡ã«ãã£ã¦çºçããã¡ã¢ãªãªã¼ã¯ã®æ¤åºåã³ãã¼ãé åã®åæãè£å©ãã¦ããããã¼ã«ã§ãã æ¬è¨äºã¯å®éã«åããã¨ããã«éããç½®ãã®ã§ããã¼ã«ã®èæ¯ãªã©ã®è©³ç´°ã¯ä»¥ä¸è¨äºãåç §ãã ããã ãã£ããè¨ãã¨ã memlab ã§ã¯ä»¥ä¸ã®ãã¨ãè¡ãªãã¾ãã Puppeteer ãã¼ã¹ã§ã®å®£è¨çãªã·ããªãªã®ä½æ ãã¼ãé åã¨ã¡ã¢ãªãªã¼ã¯ã®å¯è¦å ã·ããªãªå ã§ã®ãã¼ãã®ã¹ãããã·ã§ããã®èªååå¾ ã¹ãããã·ã§ããã®è§£æã¨
ï¼ IT ä¼è°å®¤ Indexãªã³ã¯ Windows Server Insider Insider.NET System Insider XML & SOA Linux Square Master of IP Network Java Solution Security & Trust Database Expert RFIDï¼IC ãªããã¯ã©ã¤ã¢ã³ã & 帳票 Server ï¼ Storage Coding Edge ï¼ ITã¯ã©ã Cafe VBæ¥åã¢ããªã±ã¼ã·ã§ã³éçºç 究 ï¼ IT SpecialPR
ã¯ããã« ç°å¢ ä»åããããã㨠ã¦ã£ã³ãã¦ã«ãã¼ã¿ã渡ãäºã¤ã®æ¹æ³ 1. ãã¼ã«ã«ã¹ãã¬ã¼ã¸ãç¨ããæ¹æ³ 2. window.postMessage()ãç¨ããæ¹æ³ ã¦ã£ã³ãã¦ã«ãã¼ã¿ã渡ãå®è£ ãã¼ã«ã«ã¹ãã¬ã¼ã¸ãæ¡ç¨ããå ´å 親ã¦ã£ã³ãã¦ã®å®è£ åã¦ã£ã³ãã¦ã®å®è£ window.postMessage()ãæ¡ç¨ããå ´å 親ã¦ã£ã³ãã¦ã®å®è£ åã¦ã£ã³ãã¦ã®å®è£ åèãµã¤ã ã¯ããã« window.open()ã§éããã¦ã£ã³ãã¦ã«è¦ªã¦ã£ã³ãã¦ãããã¼ã¿ã渡ãå¦çãä»äºã§æ¸ããæã«è²ã ã¨è¦å´ããã®ã§ãåå¿é²ã¨ãã¦ãã©ã¤ãã¼ãã§ãä¼¼ããããªå®è£ ããã¦ã¿ã¾ããã ç°å¢ SPAãã¬ã¼ã ã¯ã¼ã¯ã®Angular/TypeScriptã使ç¨ãã¦ãã¾ãã Angular: 8.2.14 Node: 12.13.1 TypeScript: 3.5.3 ä»åããããã㨠1.ããã¦ã£ã³ãã¦ããwindow.
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}