ํšจ์œจ์ ์ธ ๋ณด์•ˆ ์†”๋ฃจ์…˜ ํ™œ์šฉ๋ฒ•, ์ตœ์ ํ™”๋œ ๋„๊ตฌ ์‚ฌ์šฉ ๋ฐฉ๋ฒ•,
๊ทธ๋ฆฌ๊ณ  ๊ธฐ์ˆ ์ ์ธ ๋…ธํ•˜์šฐ๋ฅผ ํ†ตํ•ด PLURA๋ฅผ ํ™œ์šฉํ•œ
๋ฌธ์ œ ํ•ด๊ฒฐ์˜ ์ƒˆ๋กœ์šด ๊ธฐ์ค€์„ ์ œ์‹œํ•ฉ๋‹ˆ๋‹ค.

๋กœ๊น…(Logging) ์„ ์œ„ํ•ด SSD ์‚ฌ์šฉํ•˜๊ธฐ

๋กœ๊น…(Logging) ์„ ์œ„ํ•ด SSD ์‚ฌ์šฉํ•˜๊ธฐ

๋™์‹œ ์ ‘์†์ด ์ฆ๊ฐ€ํ•˜๋ฉด ์„ฑ๋Šฅ์— ์˜ํ–ฅ์„ ๋ฏธ์น˜๋Š” ์š”์†Œ๊ฐ€ ๋งŽ์Šต๋‹ˆ๋‹ค. ๊ทธ ์ค‘์—์„œ๋„ ์›น ์‹œ์Šคํ…œ์˜ ๊ฒฝ์šฐ, ์•ก์„ธ์Šค๊ฐ€ ๋Š˜์–ด๋‚˜๋ฉด ๋กœ๊น…(logging) ๋˜ํ•œ ์ฆ๊ฐ€ํ•ฉ๋‹ˆ๋‹ค. โ€˜/var/logโ€™๊ฐ€ HDD๋ณด๋‹ค SSD์ผ ๊ฒฝ์šฐ ์‹œ์Šคํ…œ์˜ ์•ˆ์ •์ ์ธ ์šด์˜์— ๋„์›€์ด ๋ฉ๋‹ˆ๋‹ค. ์‚ฌ์šฉ ์ค‘์ธ ๋””์Šคํฌ๊ฐ€ SSD...

๋” ์ฝ๊ธฐ
์œˆ๋„์šฐ ํ”„๋ก์‹œ ์„ค์ •

์œˆ๋„์šฐ ํ”„๋ก์‹œ ์„ค์ •

Windows์—์„œ ํ”„๋ก์‹œ๋ฅผ ์„ค์ •ํ•˜๋Š” ๋ฐฉ๋ฒ•์„ ์•ˆ๋‚ดํ•ฉ๋‹ˆ๋‹ค.

๋” ์ฝ๊ธฐ
MAC ์ฃผ์†Œ ํ™•์ธํ•˜๊ธฐ

MAC ์ฃผ์†Œ ํ™•์ธํ•˜๊ธฐ

PC ์„œ๋ฒ„์˜ ๊ณ ์œ  ์ •๋ณด๋ฅผ ํ™•์ธํ•˜๊ณ  ํ™œ์šฉํ•˜๊ธฐ ์œ„ํ•ด MAC ์ฃผ์†Œ๋ฅผ ํ™•์ธํ•˜๋Š” ๋ฐฉ๋ฒ•์„ ์•ˆ๋‚ดํ•ฉ๋‹ˆ๋‹ค. ๋ช…๋ น ๊ด€๋ฆฌ์ž ์‹คํ–‰ ๋จผ์ €, ๋ช…๋ น ๊ด€๋ฆฌ์ž(cmd)๋ฅผ ์‹คํ–‰ํ•ฉ๋‹ˆ๋‹ค. ipconfig /all ๋ช…๋ น์–ด ์‹คํ–‰ ๋ช…๋ น ๊ด€๋ฆฌ์ž์—์„œ ๋‹ค์Œ ๋ช…๋ น์–ด๋ฅผ ์‹คํ–‰ํ•ฉ๋‹ˆ๋‹ค: ipconfig /all MAC...

๋” ์ฝ๊ธฐ
curl ํ”„๋ก์‹œ ์˜ต์…˜ ์„ค์ •

curl ํ”„๋ก์‹œ ์˜ต์…˜ ์„ค์ •

curl ๋ช…๋ น์–ด๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ํ”„๋ก์‹œ ๊ฒฝ์œ  ๋ฐฉ๋ฒ•์„ ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค.

๋” ์ฝ๊ธฐ
Bastion Host ์šด์˜

Bastion Host ์šด์˜

Bastion Host๋ž€? Bastion Host๋Š” Public ๋„คํŠธ์›Œํฌ์—์„œ Private ๋„คํŠธ์›Œํฌ์— ๋Œ€ํ•œ ์•ก์„ธ์Šค๋ฅผ ์ œ๊ณตํ•˜๊ธฐ ์œ„ํ•œ ๋ชฉ์ ์„ ๊ฐ€์ง„ ์„œ๋ฒ„์ž…๋‹ˆ๋‹ค. ์ผ๋ฐ˜์ ์œผ๋กœ Amazon VPC (Virtual Private Cloud)์˜ Public Subnet...

๋” ์ฝ๊ธฐ
MITRE ATT&CK ์ดํ•ด

MITRE ATT&CK ์ดํ•ด

๋งˆ์ดํ„ฐ(MITRE)๋Š” ์ทจ์•ฝ์  ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค์ธ CVE(Common Vulnerabilities and Exposures)๋ฅผ ๊ฐ๋…ํ•˜๋Š” ๋น„์˜๋ฆฌ ๋‹จ์ฒด๋กœ ์–ดํƒ(ATT&CK, Adversarial Tactics, Techniques ๋ฐ Common Knowledge)์ด๋ผ๋Š” ์‚ฌ์ด๋ฒ„ ...

๋” ์ฝ๊ธฐ
Windows Remote Logging

Windows Remote Logging

Active Directory ํ™˜๊ฒฝ์—์„œ **Windows Event Collector(WEC)**๋ฅผ ๊ตฌ์„ฑํ•˜๋ฉด ์›๊ฒฉ ์ด๋ฒคํŠธ ๋กœ๊ทธ๋ฅผ ์ค‘์•™์—์„œ ์ˆ˜์ง‘ํ•˜๊ณ  ๊ด€๋ฆฌํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ด ๊ธฐ๋Šฅ์€ ์ค‘์•™ ์ง‘์ค‘์‹ ๋กœ๊ทธ ๊ด€๋ฆฌ ๋ฐ ๋ชจ๋‹ˆํ„ฐ๋ง์„ ๊ฐ€๋Šฅํ•˜๊ฒŒ ํ•˜๋ฉฐ, ์กฐ์ง์˜ ๋ณด์•ˆ ๋ฐ ์šด์˜ ํšจ์œจ์„ฑ์„ ํ–ฅ์ƒ์‹œ...

๋” ์ฝ๊ธฐ
์˜คํ”ˆ์†Œ์Šค ์›น ๋ฐฉํ™”๋ฒฝ WebKnight

์˜คํ”ˆ์†Œ์Šค ์›น ๋ฐฉํ™”๋ฒฝ WebKnight

WebKnight๋Š” AQTRONIX์‚ฌ์—์„œ ๊ฐœ๋ฐœํ•œ IIS ์›น์„œ๋ฒ„์— ์„ค์น˜ํ•  ์ˆ˜ ์žˆ๋Š” ๊ณต๊ฐœ์šฉ ์›น ๋ฐฉํ™”๋ฒฝ์ž…๋‹ˆ๋‹ค. WebKnight๋Š” ISAPI ํ•„ํ„ฐ ํ˜•ํƒœ๋กœ ๋™์ž‘ํ•˜๋ฉฐ, IIS ์„œ๋ฒ„ ์•ž๋‹จ์— ์œ„์น˜ํ•˜์—ฌ ์›น์„œ๋ฒ„๋กœ ์ „๋‹ฌ๋˜๊ธฐ ์ด์ „์— IIS ์›น์„œ๋ฒ„๋กœ ๋“ค์–ด์˜จ ๋ชจ๋“  ์›น ์š”์ฒญ์— ๋Œ€ํ•ด ์›น์„œ๋ฒ„ ๊ด€๋ฆฌ...

๋” ์ฝ๊ธฐ