Planet of NCCUCS
dosbox windows resolution Buy Microsoft Windows Server 2008 Web Edition SP2 configure internet connection on windows xp consumer ratings on vinyl windows Buy Microsoft Windows 7 Professional buy dhcp windows 2000 server apple usb keyboard windows drivers Buy Microsoft Office Visio Professional 2007 buy windows xp registration number buy windows applications Buy Microsoft Windows XP Professional SP3 disable autoplay cd windows 2000 asms windows xp home Buy McAfee Total Protection 2009 autocad lt autodesk contemporary windows Buy Cyberlink PowerDVD 8 Ultra check windows genuine effects for windows movie maker Buy Corel VideoStudio Pro X2 audio codec windows cannot end programs in windows xp Buy CorelDraw Graphics Suite X4 borland delphi 5 and windows vista cannot open windows updates Buy Autodesk AutoCAD 2009 checkpoint ngx r65 windows 2003 download terminal services client windows 2000 Buy Autodesk AutoCAD 2010 download windows xp file debug windows application Buy Autodesk 3Ds Max Design 2009 convert dbx outlook express windows mail automatically reboot windows xp Buy Ahead Nero 9 ashampoo defrag windows xp serious error cannot install printer driver windows 2000 Buy Microsoft Office 2003 Professional apple toolbar for windows delay write failed windows xp Buy Microsoft Office 2007 Enterprise cleanup windows startup

[漁人節?] 幫別人改 twbbs.org 網址- twbbs.org 管理介面的安全問題

作者:TaopaiC on 四月 29, 2008 Posted in RSS | | 觀看文章來源

應該只有愚人節才會看到bbs站互調, 但是今天 wretch.twbbs.org (應該是無名bbs用的網址) 變成 ptt 的 ip 了
ptt or 無名?

我並沒有刻意研究hack/crack相關技術, 可是這個洞實在太明顯了, 誰都看的到吧…

兩個小時前已經寄信給 twbbs.org 的管理者希望他們能修正, 我原本打算等到漏洞補起來再來寫blog, 但現在看到 wretch.twbbs.org 的 ip 被改掉 (當然不是我動的, 其他網路高手搶先一步..), 應該可以寫了吧…

至於方法, 當然只能等漏洞修正以後再貼了… *update: 官方已修正, 所以方法請看這篇part 2
影響層面, 轉址問題還小, 大家還記得 Group.nctu.edu.tw 的轉信服務的話, 如果有站台偽裝成別站的話, 就能收到該站的轉信… 其中或許包含隱版. 例如廣大的 ptt2 的個人看板..


以下是ip查詢資料

pctao@pctao-desktop:~$ dig -t NS twbbs.org

; <<>> DiG 9.4.2 <<>> -t NS twbbs.org
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 57972
;; flags: qr rd ra; QUERY: 1, ANSWER: 4, AUTHORITY: 0, ADDITIONAL: 4

;; QUESTION SECTION:
;twbbs.org. IN NS

;; ANSWER SECTION:
twbbs.org. 52195 IN NS dns02.twbbs.org.
twbbs.org. 52195 IN NS dns01.twbbs.org.
twbbs.org. 52195 IN NS dns04.twbbs.org.
twbbs.org. 52195 IN NS dns03.twbbs.org.

;; ADDITIONAL SECTION:
dns02.twbbs.org. 54943 IN A 67.228.195.210
dns01.twbbs.org. 45787 IN A 203.67.71.132
dns04.twbbs.org. 54943 IN A 61.30.235.34
dns03.twbbs.org. 47287 IN A 64.34.197.175

;; Query time: 45 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: Tue Apr 29 21:48:34 2008
;; MSG SIZE rcvd: 171

pctao@pctao-desktop:~$ nslookup wretch.twbbs.org dns01.twbbs.org
Server: dns01.twbbs.org
Address: 203.67.71.132#53

Name: wretch.twbbs.org
Address: 140.112.172.11

pctao@pctao-desktop:~$ nslookup ptt.twbbs.org dns01.twbbs.org
Server: dns01.twbbs.org
Address: 203.67.71.132#53

Name: ptt.twbbs.org
Address: 140.112.172.11

:, , , , ,

讀過本文的讀者, 也對以下文章有興趣

No comments for this entry yet...

Comments are closed.

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!

最新文章

照片

R0012028R0012036R0013553R0013551R0013550R0013549R0013560R0013558R0013569R0013561R0013570R0013571R0013580R0013581R0013556R0013567R0013563R0013572R0011783R0012312