๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ
  • Tried. Failed. Logged.
728x90

์ „์ฒด ๊ธ€720

์œˆ๋„์šฐ - ์‚ฌ์šฉ์ž ๊ณ„์ • ์ƒ์„ฑ ๋ฐ ๊ด€๋ฆฌ์ž ๊ถŒํ•œ ๋ถ€์—ฌ(net user) ์‚ฌ์šฉ์ž ๊ณ„์ • ๋ชฉ๋ก ํ™•์ธ ๋ช…๋ น์–ด net user ์‚ฌ์šฉ์ž ๊ณ„์ • ์ƒ์„ฑ ๋ช…๋ น์–ด net user ์‚ฌ์šฉ์ž์ด๋ฆ„ /add ์‚ฌ์šฉ์ž ๊ณ„์ • ๋น„๋ฐ€๋ฒˆํ˜ธ ์„ค์ •(์ž…๋ ฅ ํ”„๋กฌํ”„ํŠธ ํ‘œ์‹œ) net user ์‚ฌ์šฉ์ž์ด๋ฆ„ * ์‚ฌ์šฉ์ž ๊ณ„์ • ๋น„๋ฐ€๋ฒˆํ˜ธ ์„ค์ •(์ธ๋ผ์ธ) net user ์‚ฌ์šฉ์ž์ด๋ฆ„ ์‚ฌ์šฉ์ž๋น„๋ฐ€๋ฒˆํ˜ธ ํŠน์ • ์‚ฌ์šฉ์ž ๊ณ„์ •์— ๊ด€๋ฆฌ์ž ๊ถŒํ•œ ๋ถ€์—ฌ ๋ช…๋ น์–ด net localgroup administrators ์‚ฌ์šฉ์ž์ด๋ฆ„ /add ์‚ฌ์šฉ์ž ์‚ญ์ œ net user ์‚ฌ์šฉ์ž์ด๋ฆ„ /delete ์ถœ์ฒ˜: https://ssotori.tistory.com/96 '๋ช…๋ น ํ”„๋กฌํ”„ํŠธ'์—์„œ ์‚ฌ์šฉ์ž ๊ณ„์ •์„ ์ƒ์„ฑํ•˜๊ณ  ๊ด€๋ฆฌ์ž ๊ถŒํ•œ ์ฃผ๊ธฐ์œˆ๋„์šฐ์—์„œ ์ƒˆ๋กœ์šด ์‚ฌ์šฉ์ž ๊ณ„์ •์„ ์ƒ์„ฑํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ์—ฌ๋Ÿฌ๊ฐ€์ง€๊ฐ€ ์žˆ์Šต๋‹ˆ๋‹ค. โ–ถ ์œˆ๋„์šฐ10 ์ƒˆ๋กœ์šด ์‚ฌ์šฉ์ž ๊ณ„์ • ๋งŒ๋“ค๊ธฐ(๋กœ์ปฌ ๊ณ„์ •) ํ•˜์ง€๋งŒ net ๋ช…๋ น์–ด๋ฅผ ์ด์šฉํ•˜๋ฉด.. 2023. 4. 19.
์œˆ๋„์šฐ - ์œˆ๋„์šฐ์— Open SSH Server ์„ค์น˜ํ•˜๊ธฐ(with Chocolatey) 1. Chocolatey ํŒจํ‚ค์ง€ ์„ค์น˜ ๋„๊ตฌ ์„ค์น˜ (ํŒŒ์›Œ์‰˜ + ๊ด€๋ฆฌ์ž ๊ถŒํ•œ) Set-ExecutionPolicy Bypass -Scope Process -Force; [System.Net.ServicePointManager]::SecurityProtocol = [System.Net.ServicePointManager]::SecurityProtocol -bor 3072; iex ((New-Object System.Net.WebClient).DownloadString('https://community.chocolatey.org/install.ps1')) 2. openssh ์„ค์น˜ choco install openssh -params '"/SSHServerFeature /KeyBasedAuthenticationF.. 2023. 4. 19.
๋ฆฌ๋ฒ„์‹ฑ - ์˜จ๋ผ์ธ ์†Œ์Šค ์ฝ”๋“œ์—์„œ ์–ด์…ˆ๋ธ”๋ฆฌ ์ฝ”๋“œ๋กœ ๋ณ€ํ™˜(godbolt.org) https://godbolt.org/ Compiler Explorer godbolt.org ์ฐธ๊ณ : https://www.youtube.com/watch?v=gPsYkV7-yJk 2023. 4. 17.
๋„คํŠธ์›Œํฌ ๋ณด์•ˆ - FTP ์ ‘๊ทผ ์ œ์–ด ์„ค์ •(/etc/ftpusers) ๋ณด์•ˆ์— ์ทจ์•ฝํ•œ FTP๋Š” Bounce Attack, Anonymous FTP ๊ณต๊ฒฉ ๋“ฑ์— ์œ„ํ—˜ํ•จ์œผ๋กœ /etc/ftpusers์— root๋‚˜ daemon ๊ฐ™์€ ์ค‘์š” ๊ณ„์ •์€ FTP ์ง์ ‘ ์ ‘์†์— ์ œํ•œ์„ ํ•˜๋Š” ๊ฒƒ์ด ํ•„์š”ํ•˜๋‹ค. /etc/ftpusers # /etc/ftpusers: list of users disallowed FTP access. See ftpusers(5). root daemon bin sys sync games man lp mail news uucp nobody ์ ‘๊ทผ์„ ์ œํ•œ์‹œํ‚ฌ ์‚ฌ์šฉ์ž ์ด๋ฆ„์„ ์„ค์ • ํŒŒ์ผ์—๋‹ค ์ ์–ด์ค€๋‹ค. 2023. 4. 17.
์ •๋ณด๋ณด์•ˆ - ํฌ๋ฆฌ๋ด์…œ ์Šคํ„ฐํ•‘ ํฌ๋ฆฌ๋ด์…œ ์Šคํ„ฐํ•‘(Credential Stuffing)์€ ๊ธฐ์กด์— ๋‹ค๋ฅธ ๊ณณ์—์„œ ์œ ์ถœ๋œ ์•„์ด๋””์™€ ํŒจ์Šค์›Œ๋“œ๋ฅผ ์—ฌ๋Ÿฌ ์›น์‚ฌ์ดํŠธ๋‚˜ ์•ฑ์— ๋Œ€์ž…ํ•ด ๋กœ๊ทธ์ธ์ด ๋  ๊ฒฝ์šฐ, ๊ฐœ์ธ์ •๋ณด๋‚˜ ์ž๋ฃŒ๋ฅผ ์œ ์ถœํ•˜๋Š” ๋ฐฉ๋ฒ•์ด๋‹ค. ํฌ๋ฆฌ๋ด์…œ ์Šคํ„ฐํ•‘์ด ๋ฐœ์ƒํ•˜๋Š” ์ด์œ ๋Š” ์‚ฌ์šฉ์ž๋“ค์ด ์—ฌ๋Ÿฌ ์‚ฌ์ดํŠธ์— ๊ฐ™์€ ํฌ๋ฆฌ๋ด์…œ(ํŠนํžˆ ํŒจ์Šค์›Œ๋“œ)์„ ์‚ฌ์šฉํ•˜๊ณ  ์žˆ๊ธฐ ๋•Œ๋ฌธ์ด๋‹ค. ์—ฌ๋Ÿฌ ์„œ๋น„์Šค์™€ ์‚ฌ์ดํŠธ์— ๊ฑธ์ณ ๊ณ„์ •์„ ํ™•๋ณดํ•œ ๊ณต๊ฒฉ์ž๋Š” ๊ด‘๋ฒ”์œ„ํ•œ ์‚ฌ๊ธฐํ˜• ๋ฒ”์ฃ„๋ฅผ ์ €์ง€๋ฅผ ์ˆ˜ ์žˆ๊ฒŒ ๋œ๋‹ค. ์ด๋•Œ ํ”ผํ•ด์ž๋Š” ๊ฐœ์ธ์ด ๋  ์ˆ˜๋„ ์žˆ์ง€๋งŒ, ๊ธฐ์—…์ด ๋  ์ˆ˜๋„ ์žˆ๋‹ค. https://m.boannews.com/html/detail.html?tab_type=1&idx=114255 [์นด๋“œ๋‰ด์Šค] ๋‹น์‹ ์˜ ๊ฐœ์ธ์ •๋ณด๋Š” ์•ˆ์ „ํ•œ๊ฐ€์š”? ‘ํฌ๋ฆฌ๋ด์…œ ์Šคํ„ฐํ•‘’ํฌ๋ฆฌ๋ด์…œ ์Šคํ„ฐํ•‘(Credential Stuffing)์€ ๊ธฐ์กด์— ๋‹ค๋ฅธ ๊ณณ์—์„œ .. 2023. 4. 16.
์•„ํŒŒ์น˜ - ํด๋ผ์šฐ๋“œํ”Œ๋ ˆ์–ด IP Ranges ํ™”์ดํŠธ๋ฆฌ์ŠคํŠธ ์„ค์ • https://www.cloudflare.com/ko-kr/ips/ IP Ranges This page is intended to be the definitive source of Cloudflare’s current IP ranges. www.cloudflare.com ์œ„์— ํด๋ผ์šฐ๋“œํ”Œ๋ ˆ์–ด์˜ IP Ranges ํŽ˜์ด์ง€์— ๋“ค์–ด๊ฐ€ ํด๋ผ์šฐ๋“œํ”Œ๋ ˆ์–ด์˜ ์•„์ดํ”ผ ๋Œ€์—ญ๋งŒ ์•„ํŒŒ์น˜ ์„œ๋ฒ„์— ์ ‘์†์ด ๊ฐ€๋Šฅํ•˜๋„๋ก ์„ค์ •ํ•œ๋‹ค. ์ด๋Š” ๊ณต๊ฒฉ์ž๊ฐ€ ํด๋ผ์šฐ๋“œํ”Œ๋ ˆ์–ด๋ฅผ ๊ฑฐ์น˜์ง€ ์•Š๊ณ  ์ง์ ‘ ์‹ค์ œ ์„œ๋ฒ„ ์•„์ดํ”ผ๋ฅผ ์•Œ์•„๋‚ด์„œ DDoS ๊ณต๊ฒฉ์˜ ํ”ผํ•ด๋ ฅ์„ ์ค„์ด๊ธฐ ์œ„ํ•ด์„œ๋‹ค. .htaccess #path to your website #ipv4 Require ip 173.245.48.0/20 Require ip 103.21.244.0/22 Require ip 103... 2023. 4. 14.
OCR - ํ…Œ์„œ๋ž™ํŠธ ํ•œ๊ตญ์–ด(ํ•œ๊ธ€) ์ธ์‹ํ•˜๊ธฐ ์•„๋ž˜ ๊นƒํ—ˆ๋ธŒ์—์„œ ํ•œ๊ตญ์–ด ํŠธ๋ ˆ์ธ ๋ฐ์ดํ„ฐ ํŒŒ์ผ์„ ๋‹ค์šด๋กœ๋“œ ํ•˜๊ณ  Tesseract-OCR/tessdata(C:\Program Files\Tesseract-OCR\tessdata)์— ๋„ฃ์–ด์ค€๋‹ค. https://github.com/tesseract-ocr/tessdata_best/blob/main/kor.traineddata GitHub - tesseract-ocr/tessdata_best: Best (most accurate) trained LSTM models. Best (most accurate) trained LSTM models. Contribute to tesseract-ocr/tessdata_best development by creating an account on GitHub. github.com .. 2023. 4. 12.
์•„ํŒŒ์น˜ - ์„ธ์…˜ ์‹œ๊ฐ„ ๋ณ€๊ฒฝ(php.ini) /etc/php/{php-version}/apache2/php.ini session.gc_maxlifetime = 1440 ์ถœ์ฒ˜: https://www.eznbiz.co.kr/help/qna/content/26 apache php ์„ธ์…˜ ์œ ์ง€ ์‹œ๊ฐ„ ํ™˜๊ฒฝ ์„ค์ • 1. Apache ํ™˜๊ฒฝ ์„ค์ • ํŒŒ์ผ vi /usr/local/apache/conf/httpd.conf ๋ณ€๊ฒฝ์ „ Timeout 300 ๋ณ€๊ฒฝํ›„ Timeout 1200 ํด๋ผ์ด์–ธํŠธ์˜ ์š”์ฒญ์— ์˜ํ•ด ์„œ๋ฒ„์™€ ์—ฐ๊ฒฐ์ด ๋˜์—ˆ์„ ๋•Œ ํด๋ผ์ด์–ธํŠธ์™€ ์„œ๋ฒ„๊ฐ„์— ์•„๋ฌด๋Ÿฐ ๋ฉ”์‹œ์ง€๊ฐ€ ๋ฐœ์ƒํ•˜์ง€ ์•Š www.eznbiz.co.kr 2023. 4. 8.
Docker- docker-compose.yml ์ƒ์„ฑ(docker-compose) docker-compose.yml version: "3.9" services: webserver: image: search-webserver:2 container_name: webserver environment: TZ: Asia/Seoul ports: - "22:22" - "80:80" dns: - 8.8.8.8 extra_hosts: - host.docker.internal:host-gateway stdin_open: true tty: true ์ปจํ…Œ์ด๋„ˆ ์ƒ์„ฑ docker-compose up -d "exited with code 0 docker"๊ฐ€ ๋œจ๋ฉด์„œ ์ปจํ…Œ์ด๋„ˆ๊ฐ€ start๊ฐ€ ์•ˆ๋  ๊ฒฝ์šฐ stdin_open: true, tty: true๋ฅผ ์ถ”๊ฐ€ํ•ด์•ผ ํ•œ๋‹ค. ์ฐธ๊ณ : https://lifefun.tistor.. 2023. 4. 6.
Docker - ์ด๋ฏธ์ง€ ํŒŒ์ผ(.tar)๋กœ ์ €์žฅํ•ด์„œ ์ด๋ฏธ์ง€๋กœ ๋ถˆ๋Ÿฌ์˜ค๊ธฐ ์ด๋ฏธ์ง€ ํŒŒ์ผ(.tar)๋กœ ์ €์žฅ docker save -o myimage.tar myimage ์ด๋ฏธ์ง€ ํŒŒ์ผ ๋ถˆ๋Ÿฌ์˜ค๊ธฐ docker load -i myimage.tar 2023. 4. 6.
php - CSRF ๋ฐฉ์ง€ editor.php 2023. 4. 5.
์ž๋ฐ”์Šคํฌ๋ฆฝํŠธ - ํ˜„์žฌ script ํƒœ๊ทธ ์‚ญ์ œํ•˜๊ธฐ 2023. 4. 4.
728x90