ํฌ์ŠคํŠธ

๐ŸŒš Ping Of Death

์ฐธ๊ณ  - Ping Of Death
์ฐธ๊ณ  - Ping Of Death
์ฐธ๊ณ  - Ping Of Death

Ping Of Death


๊ทœ์ • ํฌ๊ธฐ ์ด์ƒ์˜ ICMP ํŒจํ‚ท์„ ๋ณด๋‚ด Victim์˜ ์‹œ์Šคํ…œ์„ ๋งˆ๋น„์‹œํ‚ค๋Š” ๊ณต๊ฒฉ

Ping์„ ์‹คํ–‰ํ•˜๋ฉด, ICMP Echo Request ํŒจํ‚ท์„ ์›๊ฒฉ IP ์ฃผ์†Œ์— ์†ก์‹ ํ•˜๊ณ  ICMP ์‘๋‹ต์„ ๊ธฐ๋‹ค๋ฆผ
Ping์„ ์ด์šฉํ•˜์—ฌ, ICMP ํŒจํ‚ท์˜ Header๋ฅผ ์ •์ƒ ํฌ๊ธฐ๋ณด๋‹ค ํฌ๊ฒŒ ๋งŒ๋“ค์–ด ๊ณต๊ฒฉ ๋Œ€์ƒ์—๊ฒŒ ๋ณด๋‚ด๋Š” ๊ณต๊ฒฉ
I.E. Google 8.8.8.8 Server์— ํฌ๊ธฐ๋ฅผ 65500 BYTE ๋Š˜๋ฆฐ Ping ์ „์†ก

ํฌ๊ธฐ๊ฐ€ ํฐ ํŒจํ‚ท์€ ๋„คํŠธ์›Œํฌ ์ƒ์—์„œ ํ•œ ๋ฒˆ์— ๋ณด๋‚ผ ์ˆ˜ ์—†๊ธฐ์—, ๋ถ„ํ• ๋˜์–ด ๋ชฉ์ ์ง€๋กœ ์ „์†ก
I.E. (65500 / Router์˜ MTU) ๋งŒํผ์˜ ํŒจํ‚ท์œผ๋กœ ๋ถ„ํ•  Fragment

๋ถ„ํ• ๋˜์–ด์ง„ ์ˆ˜๋งŽ์€ ํŒจํ‚ท์„ ๋ฐ›์€ ๊ณต๊ฒฉ ๋Œ€์ƒ Victim์€, ๋‚˜๋ˆ ์ง„ Ping์„ ์กฐ๋ฆฝํ•˜๋Š” ๊ณผ์ •์—์„œ ์ผ๋ฐ˜์ ์ธ Ping๋ณด๋‹ค ๋ถ€ํ•˜๊ฐ€ ๋ฐœํ–‰ (๋ฒ„ํผ ํฌ๊ธฐ, IP ์Šคํƒ์„ ๋„˜์น˜๊ฒŒ ํ•˜๋Š” ๊ฒƒ)

Ping ๊ฐ„๊ฒฉ์„ ์ค„์ด๊ณ , ํŒจํ‚ท์˜ ํฌ๊ธฐ๋ฅผ ๋Š˜๋ฆฌ๊ณ , DDoS๋ฅผ ํ™œ์šฉํ•˜์—ฌ ์ˆ˜๋งŽ์€ ์ปดํ“จํ„ฐ๋ฅผ ์ด์šฉํ•ด Ping์„ ๋ณด๋‚ธ๋‹ค๋ฉด?

Ping Of Death ์‹ค์Šต

์ฐธ๊ณ  - Ping Of Death ์‹ค์Šต

ํƒ€ ํ˜ธ์ŠคํŠธ๋กœ์˜ ๊ณต๊ฒฉ์€ Jail ์ด์Šˆ
โ†’ VM์„ ์ด์šฉํ•ด ์ž์‹ ์˜ IP๋กœ ๊ณต๊ฒฉ

ํ•„์ž๋Š” Virtual Box, Kali, WireShark๋ฅผ ์ด์šฉ
โ†’ Kali Default ID/PW = kali

Operation not permitted
โ†’ sudo -s
โ†’ sudo [Commend]

Unable to locate package [PackageName]
โ†’ sudo apt update

APT, Advance Packing Tools
apt update : ์„ค์น˜ ๊ฐ€๋Šฅํ•œ ํŒจํ‚ค์ง€ โ€˜๋ฆฌ์ŠคํŠธโ€™ ์ตœ์‹ ํ™”
apt list : ํ˜„์žฌ ๋ฆฌ์ŠคํŠธ๋ฅผ ๋ถˆ๋Ÿฌ์˜ค๊ธฐ
apt list โ€“upgradable : ํ˜„์žฌ ๋ฆฌ์ŠคํŠธ ์ค‘ ์—…๊ทธ๋ ˆ์ด๋“œ ํ•„์š”ํ•œ ํŒจํ‚ค์ง€ ๋ถˆ๋Ÿฌ์˜ค๊ธฐ
apt upgrade : ์„ค์น˜ ๊ฐ€๋Šฅํ•œ ํŒจํ‚ค์ง€ ์ตœ์‹ ํ™”

VM์—์„œ 192.168.0.1 HostComputer
์›๋ž˜ 192.168.0.1 ์€ Router, VM ์€ HostComputer ๋‚ด๋ถ€์— ์žˆ์œผ๋ฏ€๋กœ

Router์— Ping์„ ๋ณด๋‚ด๋“ฏ, VM์—์„œ HostComputer๋กœ Ping Of Death ๊ณต๊ฒฉ์„

๊ต์ˆ˜๋‹˜๊ป˜์„œ ์•Œ๋ ค์ฃผ์‹  ๋ช…๋ น์–ด๋Š”
hping3 โ€“icmp โ€“rand-source 192.168.0.18 -d 6000 -S -flood
hping3 โ€“rand-source 192.168.0.18 -p 21 -S -flood

โ€“rand-source : ๊ณต๊ฒฉ์ž IP ์ฃผ์†Œ๋ฅผ ๋žœ๋คํ•˜๊ฒŒ ์ƒ์„ฑ
-d 1 : ์ „์†ก ํŒจํ‚ท ํฌ๊ธฐ๋ฅผ 1์œผ๋กœ ์„ค์ •
-S : ์ง€์†์ ์œผ๋กœ ์ „์†ก
-flood : ๋น ๋ฅธ ์†๋„๋กœ ์ „์†ก

Ping Of Death ๋Œ€์‘ ๋ฐฉ์•ˆ


  1. ์ผ๋ฐ˜์ ์ธ ICMP ํŒจํ‚ท์€ ๋ถ„ํ• ํ•˜์ง€ ์•Š์œผ๋ฏ€๋กœ, ํŒจํ‚ท ์ค‘ ๋ถ„ํ• ์ด ์ผ์–ด๋‚œ ํŒจํ‚ท์„ ๊ณต๊ฒฉ์œผ๋กœ ์˜์‹ฌ/ํƒ์ง€
  2. ICMP ํŒจํ‚ท ์ž์ฒด๋ฅผ, ์„œ๋ฒ„ ์•ž๋‹จ ํ˜น์€ ์„œ๋ฒ„์— ICMP ํŒจํ‚ท์„ ๋ธ”๋กœํ‚น ํ•ด์ฃผ๋Š” ์„ค์ •
  3. ๊ฐ™์€ IP์—์„œ ์ผ์ • ์‹œ๊ฐ„ ๋‚ด์— ICMP ํŒจํ‚ท์ด ์—ฌ๋Ÿฌ ๊ฐœ ์ „์†ก๋  ๊ฒฝ์šฐ ์ฐจ๋‹จ
  4. ์ผ์ • ํฌ๊ธฐ ์ด์ƒ์˜ Ping ํŒจํ‚ท์ด ์ „์†ก๋˜๋ฉด ์ฐจ๋‹จ

ํ•™๊ต ๊ณผ์ œ ์–‘์‹


  1. ์–ด๋– ํ•œ ๊ณต๊ฒฉ์ด ์ง„ํ–‰๋˜์—ˆ๋Š”๊ฐ€?
    • ๊ณต๊ฒฉ ๋Œ€์ƒ์—๊ฒŒ ๊ฒฐ๊ณผ์ ์œผ๋กœ ์ˆ˜๋งŽ์€ ํŒจํ‚ท์„ ๋ณด๋‚ด ์‹œ์Šคํ…œ์— ๋ถ€ํ•˜๋ฅผ ์ผ์œผํ‚ค๋Š” ๊ณต๊ฒฉ
  2. ์‚ฌ์šฉ๋œ ๊ณต๊ฒฉ ๋ช…๋ น์–ด๋Š” ์–ด๋–ค ๊ฒƒ์ธ๊ฐ€?
    • hping3 โ€“icmp โ€“rand-source 192.168.0.18 -d 6000 -S -flood
    • hping3 โ€“icmp 192.168.0.18 -d 2500
    • ๋“ฑ โ€ฆ
  3. ๊ณต๊ฒฉ์˜ ํŒ๋‹จ ๊ทผ๊ฑฐ/ํƒ์ง€ ๋ฐฉ๋ฒ•์€ ๋ฌด์—‡์ธ๊ฐ€?
    • Data ์˜์—ญ์ด ์ „๋ถ€ 58 (X)๋กœ ์ฑ„์›Œ์ง„ ํŒจํ‚ท ๋‹ค์ˆ˜๊ฐ€ ์ˆ˜์‹ ๋จ
  4. ๊ณต๊ฒฉ์ž์˜ IP/MAC ์ฃผ์†Œ๋ฅผ ํŒ๋‹จํ•  ์ˆ˜ ์žˆ๋Š”๊ฐ€? With ๊ทผ๊ฑฐ
    • โ€“rand-source๋ฅผ ํ†ตํ•ด IP๋ฅผ ๋ฌด์ž‘์œ„๋กœ ๊ฐ€๋ฆฌ๊ณ  ๋ณด๋‚ด๊ธฐ ๋•Œ๋ฌธ์—, ๊ณต๊ฒฉ์ž์˜ IP/MAC ์ฃผ์†Œ๋Š” ํŒ๋‹จํ•˜๊ธฐ ์–ด๋ ค์šธ ๊ฒƒ์ด๋‹ค
  5. ๊ณต๊ฒฉ์— ๋Œ€ํ•œ ๋Œ€์‘๋ฐฉ๋ฒ•์€ ๋ฌด์—‡์ธ๊ฐ€?
์ด ๊ธฐ์‚ฌ๋Š” ์ €์ž‘๊ถŒ์ž์˜ CC BY 4.0 ๋ผ์ด์„ผ์Šค๋ฅผ ๋”ฐ๋ฆ…๋‹ˆ๋‹ค.