ã»ãã¥ãªãã£
ç®æ¬¡ ç®æ¬¡ åµå¯ï¼ã¹ãã£ã³ ã¢ã¯ã»ã¹åå¾ æ¨©éææ ¼ åèã«ããã¦ããã ãããµã¤ã (adsbygoogle = window.adsbygoogle || []).push({}); åµå¯ï¼ã¹ãã£ã³ nmapã§ã¹ãã£ã³ãã¾ãã âââ(kaliã¿kali)-[~/htb/doctor]ââ$ nmap -A 10.10.10.209 -p- Starting Nmap 7â¦
ãMiniTool Power Data Recoveryãã¨ã¯ ãMiniTool Power Data Recoveryãã¯MiniTool社ãæä¾ãããã¼ã¿å¾©å ã®ã½ããã¦ã§ã¢ã§ãã ãMiniTool Power Data Recoveryãã§ã¯HDDä¸ã®åé¤ããããã¡ã¤ã«ãããã©ã¼ãããããããã¼ãã£ã·ã§ã³ãããã¼ã¿ã復å ããâ¦
SharePointã¨ã¯ SharePointã¯Microsoftãæä¾ããä¼æ¥åãã®ãµã¼ãã¹ã§ããã¡ã¤ã«çãä¿åãæ´çãå ±æããããã®Webãµã¤ããä½æãããã¨ãã§ãããµã¼ãã¹ã§ãã Sharepointã¯Microsoftã®ä»ã®ãµã¼ãã¹ï¼TeamsãOneDriveï¼ã¨ãé¢é£ãã¦ãããTeamsã§ã¯ããã¼â¦
æ¦è¦ TryHackMeã®SteelMountainããã£ã¦ã¿ã¾ããã Task1ï½Task3ã¾ã§ã®æµãã¯ä»¥ä¸ã®åç»ã«ã¾ã¨ãã¦ãã¾ãã ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠youtu.be (adsbygoogle = window.adsbygoogle || []).push({}); Task4ã«ã¤ã㦠Task4ã¯metasploitã使ç¨ããªãããæ¹â¦
æ¦è¦ ãPass the Hashãæ»æã¯ãWindows端æ«ã«å¯¾ãããªã¢ã¼ãã¢ã¯ã»ã¹æã®èªè¨¼ã®éã«ãä¸æ£ã«åå¾ããNTLMããã·ã¥ãLMããã·ã¥ã使ç¨ãã¦ãèªè¨¼ãçªç ´ããæ»æææ³ã§ãã ãã®è¨äºã§ã¯ãæ»æç¨ã®Kaliã¨æ¨çã¨ãªãWindows端æ«ãç¨æããå®éã«KaliããSYSTEMâ¦
æ¦è¦ ãSMB2ã¨SMB3ã®ã²ã¹ãã¢ã¯ã»ã¹ã¯ãWindowsã§ã¯æ¢å®ã§ç¡å¹ã«ãªã£ã¦ãã¾ããã¨ããè¨äºã§åãä¸ãããã¦ããããAllowInsecureGuestAuthãã®è¨å®å¤ã«ããæåã«ã¤ãã¦æ¤è¨¼ããæ©ä¼ããã£ãã®ã§ã確èªããå 容ãã¾ã¨ãã¦ã¿ã¾ããã (adsbygoogle = window.â¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠æ¦è¦ Entra IDï¼Azureï¼ã¯Microsoft 365ã®èªè¨¼åºç¤ã¨ãã¦å©ç¨ããã¦ãã¾ãã ãã®è¨äºã§ã¯Entra IDã®æ©è½ããµã¤ã³ã¤ã³ãã°ã«ã¤ãã¦èª¿ã¹ããã¨ãã¾ã¨ãã¾ãã â»è£è¶³ï¼ãµã¼ãã¹å称ã®å¤æ´ news.microsoft.com (adsbygoogle = winâ¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠Google Oneã¨ã¯ Google Oneã¨ã¯ãå人åãGoogleã¢ã«ã¦ã³ãã§å©ç¨ã§ããã¡ã³ãã¼ã·ãããã©ã³ã®ãã¨ã§ãGmailãGoogleãã©ã¤ãåã³Googleãã©ãã§å ±æããä¿å容éã追å è³¼å ¥ã§ãããã®ã§ããã¾ããä¸è¨ä»¥å¤ã«ãããã¤ãã®ç¹å ¸â¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠ã©ã³ãã³ã°åå ä¸ãã¯ããã¸ã¼ Microsoft Defender for Office 365ã¨ã¯ æ§å称ãOffice 365 ATPãã¨å¼ã°ãããã®ã§ã2020å¹´9æãããMicrosoft Defender for Office 365ãã«å称å¤æ´ããããã®ã§ããMicrosoft 365 Defenderã¯â¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠æ¦è¦ èªåã®ã¹ãã¼ããã©ã³ã«ä¸å¯©ãªSMSãå±ãã¾ããã URLã«ãããeãããoãã®é¨åã太åã«ãªã£ã¦ãã¦ãä»ã¾ã§è¦ããã¨ããªãã£ãã®ã§èª¿ã¹ã¦ã¿ã¾ããã ãªãã太æåã®ããã«è¦ãããã®ã¯æ°å¦ç¨è±åã¨ãããã®ã§ãSMSã§ä½¿ç¨ãâ¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠ã¯ããã« 9æ6æ¥ã«ä»¥ä¸ã®ãããªãã¥ã¼ã¹ãããã¾ãããã¿ã¤ãã«ã«ãããBIMIãã«ã¤ãã¦èª¿ã¹ããã¨ãã¾ã¨ãã¾ããã ãYahoo! JAPANããé ä¿¡ããã¡ã¼ã«ã«ã¢ã¤ã³ã³ã表示ãããè¦æ ¼ãBIMIããå°å ¥ã about.yahoo.co.jp (adsbygooâ¦
æ¦è¦ DNSBLï¼DNS Block Listçï¼ã¨ã¯ä¸»ã«ã¹ãã é ä¿¡ã«é¢ä¿ããIPã¢ãã¬ã¹ã®ä¸è¦§ã確èªããã®ã«ä½¿ããã¦ãããã®ãªã¹ãã§ãã ã¡ã¼ã«ãåä¿¡ãããµã¼ãã¯DNSBLã«åãåãããè¡ããã¨ã§ãéä¿¡å ã®IPã¢ãã¬ã¹ããªã¹ãã«è¼ã£ã¦ãããå¦ããç¥ããã¨ãã§ãããªã¹â¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠æ¦è¦ æ¥æ¬ãµã¤ãã¼ç¯ç½ªå¯¾çã»ã³ã¿ã¼ï¼JC3ï¼ã«ããã¨ã2021å¹´ä¸åæã«ãããå½ECãµã¤ãçã®éå ±ä»¶æ°ã¯6535件ã§åå¹´åæã«æ¯ã¹ã¦1516件ï¼ç´30.2ï¼ ï¼å¢å ãã¾ãããJC3ã¯å½ECãµã¤ãå¢å ã®èæ¯ã¨ãã¦ãæ°åã³ããã¦ã¤ã«ã¹ææçã®â¦
æ¦è¦ PCã使ç¨ãã¦ããããç»é¢å³ä¸ã«ä»¥ä¸ã®ãããªã¡ãã»ã¼ã¸ã表示ãããããã«ãªãã¾ããã ã¡ãã»ã¼ã¸ã«æ¸ããã¦ããEFSã«ã¤ãã¦èª¿ã¹ããã¨ãã¾ã¨ãã¾ãã çªç¶è¡¨ç¤ºãããããã«ãªã£ãéç¥ â»ãªããèªåã®å ´åã¯ä¸è¨ã®ã¡ãã»ã¼ã¸ãåºãã®ã¯Outlookãè¨å®ãâ¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠æ¦è¦ ãQuad9ãã¯ãIBM SecurityãPCH(Packet Clearing House)ãGlobal Cyber Alliance(GCA)ãå ±åã§æä¾ãã¦ããç¡åã®DNSãµã¼ãã¹ã§ã ãã£ãã·ã³ã°ãããã«ã¦ã§ã¢ã®ææçãä¸æ£è¡çºã確èªãããWebãµã¤ãã¸ã®ã¢ã¯ã»ã¹ããâ¦
æ¦è¦ Microsoft 365ã«ã¤ãã¦èª¿ã¹ããã¨ãã¾ã¨ãã¾ãã Microsoft 365ã¨ã¯ WordãExcelçã®Officeã¢ããªã±ã¼ã·ã§ã³ãTeamsçãããã±ã¼ã¸ãããã¯ã©ã¦ãåã®çµ±åã½ãªã¥ã¼ã·ã§ã³ã§ãã 代表çãªæ©è½ã¨ãã¦ä»¥ä¸ã®ãããªãã®ãããã¾ãã æ©è½å æ¦è¦ SharePointâ¦
æ¦è¦ ä¸å¯©ãªãã¡ã¤ã«ãåä¿¡ããã¨ãã«VirusTotalçã§ãã¡ã¤ã«ã®ã¹ãã£ã³ãè¡ãå ´åãããã¾ããã対象ãã¡ã¤ã«ããã®ã¾ã¾ã¢ãããã¼ããããã¨ãã§ããªãå ´åãããã¾ãã ãã®ãããªå ´åã¯ããã¡ã¤ã«ã®hashå¤ãåå¾ãã¦èª¿æ»ããæ¹æ³ãããã¾ãã ãã®è¨äºã¯â¦
æ¦è¦ å æ¥ãVT4Browsers 4.0ã«é¢ããè¨äºãè¦ãã®ã§ä½¿ã£ã¦ã¿ã¾ããã ãVT4Browsersãã¯ãVirusTotalããå ¬éãã¦ãããã©ã¦ã¶æ¡å¼µæ©è½ã§ãã©ã¦ã¶ããç°¡åã«VirusTotalã§ã®ã¹ãã£ã³ãå©ç¨ã§ããããã«ãããã®ã§ãã ãVT4Browsers 4.0ãã§ã¯APIãã¼ãç»é²ãâ¦
Stop Forum Spamã¨ã¯ Stop Forum Spamã¨ã¯ããããã«ããã¹ãã æ å ±ãåéãã対象ã®ã¨ãªãIPã¢ãã¬ã¹ãã¡ã¼ã«ã¢ãã¬ã¹çã®æ å ±ãæ¤ç´¢ããããAPIã使ç¨ãããã¨ã§èªåã®ãµã¤ãä¸ã§ã¹ãã 対çãã§ãããµã¼ãã¹ã§ãã www.stopforumspam.com ãããç»é¢ã§æ¤ç´¢â¦
æ¦è¦ Abuse-IPã§IPã¢ãã¬ã¹ã®èª¿æ»ããã¦ããã¨ã以ä¸ã®ãããªè¨è¼ãããIPãããã¾ããã Abuse-IPã§ã®èª¿æ»çµæ 調ã¹ã¦ã¿ãã¨ããã¯Rapid7ã調æ»ã®ããè¡ã£ã¦ããã¹ãã£ã³ã§ããããProject Sonarãã¨ããæ´»åã®ä¸ç°ã§ãããã¨ããããã¾ããã ãã®è¨äºã§ã¯â¦
æ¦è¦ æãµã¤ãã§ãã°ã¤ã³ãã¼ã¸ã«ã¢ã¯ã»ã¹ããæã«ãonline-metrix.netãã¨ããéä¿¡ãåºã¦ããã®ã§èª¿ã¹ã¦ã¿ã¾ããã ãã°ã¤ã³ç»é¢ã§èªã¿è¾¼ãã ã¹ã¯ãªãã (adsbygoogle = window.adsbygoogle || []).push({}); ãã®éä¿¡å ã¯ãLexisNexisãã¨ãããªã³ã©ã¤ã³ãµâ¦
æ¦è¦ OSINTï¼Open Source Intelligenceï¼ã¨ã¯ãä¸è¬ã«å ¬éããã¦ããæ å ±æºããã¢ã¯ã»ã¹å¯è½ãªãã¼ã¿ãåéãåæããè«å ±æ´»åã®ä¸ç¨®ã§ããç±³å½å½é²ç·çï¼DoDï¼ã§ã¯ããç¹å®ã®æ å ±è¦ä»¶ã«å¯¾å¦ããç®çã§ãä¸è¬ã«å ¥æå¯è½ãªæ å ±ãåéããå©ç¨ããé©åãªå¯¾è±¡è â¦
DMARCã®æ¦è¦ DMARCï¼Domain-based Message Authentication, Reporting & Conformanceï¼ã¨ã¯ã2012å¹´1æ30æ¥ã«ãé»åã¡ã¼ã«é¢ä¿ã®ä¼æ¥ãçµç¹ã«ãã£ã¦è¨ç«ããããSPFï¼Sender Policy Frameworkï¼ã¨DKIMï¼DomainKeys identified mailï¼ãå©ç¨ãã¦ã¡ã¼ã«éä¿¡å â¦
ã©ã³ãã³ã°åå ä¸ã»ãã¥ãªã㣠æ¦è¦ ããã¸ã¿ã¼ã¢ã³ã±ã¼ããã¯å½é¸è©æ¬ºã®ä¸ã¤ã§ãããã¸ã¿ã¼ã¢ã³ã±ã¼ããããå¹´éãã¸ã¿ã¼ã¢ã³ã±ã¼ãããè±èªåã§ã¯ãAnnual Visitor SurveyãããBrowser Opinion surveyãã¨å¼ã°ãã¦ãããã®ã§ãããµã¤ãã«ã¢ã¯ã»ã¹ããã¨çªâ¦
æ¦è¦ Hack The Boxã®Archetypeããããªããå¦ãã ãã¨ãã¾ã¨ãã¾ããStarting Pointã§ã¯æ»ç¥ã®ä»æ¹ãæ¸ããã¦ãã¾ãããç§ã¯æ¸ããã¦ããã³ãã³ãã®æå³ãç解ã§ããªãã£ãã®ã§ãè²ã ã¨èª¿ã¹ãªããé²ãã¾ããã // nmapã«ãããã¼ãã¹ãã£ã³ 解説ã«ã¯ä»¥ä¸ã®ã³â¦
æ¦è¦ IPAãããã©ã¦ã¶ã®éç¥è¨±å¯ããä¸æ£ãªãµã¤ãã«èªå°ããæ»ææå£ã®æ³¨æåèµ·ãåºã¦ãã¾ãã www.ipa.go.jp // æ»æã®æµã ãã®æ»æã¯ä»¥ä¸ã®æµãã§è¡ããã¾ãã ã¦ã§ããµã¤ããé²è¦§ä¸ã«CAPCHAèªè¨¼çãè£ ã£ã¦ããã©ã¦ã¶ã®éç¥ã許å¯ãæ±ãããã CAPCHAèªè¨¼â¦
æ¦è¦ Twitterä¸ã§Azureã«é¢ãã以ä¸ã®ãã¤ã¼ããæè¦ãã¾ããã 2021å¹´4æ9æ¥ãããAzureã§ã¯CNAMEãå ã«æ¶ããªãã¨ããã£ãããã¸ã§ãã³ã°ï¼ãµã¼ãã¼ãåé¤ï¼ã§ããªããªããã¨ã https://t.co/MBJc3DCnEd â Yasuhiro Morishita (@OrangeMorishita) 2021å¹´4â¦
æ¦è¦ ä¸å¯©ãªéä¿¡ãæ¤ç¥ãããéã«ãéä¿¡å ï¼IPã¢ãã¬ã¹ãFQDNï¼ãå±éºãã©ãããå¤å®ããããã®å¤æææã®ä¸ã¤ã¨ãã¦ãéä¿¡å ã®è©å¤ï¼ã¬ãã¥ãã¼ã·ã§ã³ï¼ã調ã¹ããã¨ãã§ãããµã¤ããããã¾ãã ãã®è¨äºã§ã¯ç¡æã§å©ç¨å¯è½ãªãµã¤ãã«ã¤ãã¦ã¾ã¨ãã¾ãã //â¦
æ¦è¦ ããµã¤ãã¼ã¬ã¹ãã¥ã¼é(J-CRAT)æè¡ã¬ãã¼ã2017 ã¤ã³ã·ãã³ãçºçæã®åå調æ»ã®æå¼ãï½WindowsOSæ¨æºãã¼ã«ã§ææãè¦ã¤ããï½ãã§å¦ãã ãã¨ãã¾ã¨ãã¾ãã www.ipa.go.jp // J-CRATã¨ã¯ IPAã¯æ¨çåãµã¤ãã¼æ»æã®è¢«å®³æ¡å¤§é²æ¢ã®ããã2014å¹´7æ1â¦
2021å¹´3æã«æ°ã«ãªã£ããã¥ã¼ã¹ãã¾ã¨ãã¾ãã // è¨äºã®æç¨¿æ¥ æ¦è¦ 2021/03/01 ãã¤ãã転è·ã21ä¸äººã®Webå±¥æ´æ¸ã«ä¸æ£ã¢ã¯ã»ã¹ï½ã»ãã¥ãªãã£éä¿¡ 2021/03/01 è°ä¼å ¬è´ä¼ã§SolarWinds製åãæªç¨ãããããã³ã°ã«ã¤ãã¦è°è«--ãã¤ã¯ãã½ããå¹¹é¨ã 2021/03â¦