๐Ÿ”’์ •๋ณด๋ณด์•ˆ/์•…์„ฑ์ฝ”๋“œ & ์ทจ์•ฝ์  ๋ถ„์„

์ทจ์•ฝ์  ๋ถ„์„ - NTLM ํฌ๋ฆฌ๋ด์…œ ํŒจํ‚ท ์Šค๋‹ˆํผ (responder.py)

Janger 2025. 7. 27. 02:50
728x90

 

 

GitHub repo

https://github.com/SpiderLabs/Responder

 

GitHub - SpiderLabs/Responder: Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authe

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat...

github.com

 

 

 

์‚ฌ์šฉ ์˜ˆ์‹œ
./Responder.py -I eth0 -wrf


์ฐธ๊ณ :

 

https://janger.me/entry/%EC%B7%A8%EC%95%BD%EC%A0%90-%EB%B6%84%EC%84%9D-CVE-2023-23397

 

์ทจ์•ฝ์  ๋ถ„์„ - CVE-2023-23397

CVE-2023-23397 ์ทจ์•ฝ์  ์ •๋ณดCVE-2023-23397๋Š” Microsoft Windows ์ „์šฉ Outlook์— ์•ฝ์†์„ ์•Œ๋ ค์ฃผ๋Š” ‘๋ฏธ๋ฆฌ ์•Œ๋ฆผ’ ๊ธฐ๋Šฅ์— ์žฌ์ƒํ•  ์‚ฌ์šด๋“œ ํŒŒ์ผ์„ ๋ถˆ๋Ÿฌ์˜ค๊ธฐ ์œ„ํ•ด์„œ ๊ณต๊ฒฉ์ž์˜ SMB ์„œ๋ฒ„๋กœ ์ธ์ฆํ•˜๋Š” ๊ณผ์ •์— NTLM ์ž๊ฒฉ ์ฆ

janger.me

 

https://mrrootable.tistory.com/m/56

 

์นผ๋ฆฌ๋ฆฌ๋ˆ…์Šค์—์„œ Responder.py ํˆด์„ ์ด์šฉํ•ด ํŒจ์Šค์›Œ๋“œ ํฌ๋ž™ํ•˜๊ธฐ

์•ˆ๋…•ํ•˜์„ธ์š”, Mr. Rootable์ž…๋‹ˆ๋‹ค.์˜ค๋Š˜์€ Responder๋ผ๋Š” ํˆด์— ๋Œ€ํ•œ ์†Œ๊ฐœ์™€ ์‹ค์Šต์„ ํ•ด๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.์‚ฌ์‹ค, ํฌ์ŠคํŒ…์„ ์‰ฌ๋ฉด์„œ ๋ช‡๊ฐœ ๋น„๊ณต๊ฐœ๋กœ ์ž‘์„ฑํ•ด๋‘” ๊ฒƒ์„ ์ด์ œ์„œ์•ผ ๊ณต๊ฐœํ•˜๋Š” ๊ฒƒ์ด๊ธด ํ•ฉ๋‹ˆ๋‹ค. ใ…‹ใ…‹์•„๋ฌดํŠผ...Re

mrrootable.tistory.com

 

 

728x90