EIGRP ๊ณต๊ฒฉ

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ

์ด๋Š” https://medium.com/@in9uz/cisco-nightmare-pentesting-cisco-networks-like-a-devil-f4032eb437b9 ์—์„œ ๋…ธ์ถœ๋œ ๊ณต๊ฒฉ์˜ ์š”์•ฝ์ž…๋‹ˆ๋‹ค. ์ถ”๊ฐ€ ์ •๋ณด๋ฅผ ํ™•์ธํ•˜์„ธ์š”.

๊ฐ€์งœ EIGRP ์ด์›ƒ ๊ณต๊ฒฉ

  • ๋ชฉํ‘œ: EIGRP hello ํŒจํ‚ท์œผ๋กœ ๋ผ์šฐํ„ฐ CPU๋ฅผ ๊ณผ๋ถ€ํ•˜ ์‹œ์ผœ ์„œ๋น„์Šค ๊ฑฐ๋ถ€(DoS) ๊ณต๊ฒฉ์œผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • ๋„๊ตฌ: helloflooding.py ์Šคํฌ๋ฆฝํŠธ.
  • ์‹คํ–‰: %%%bash ~$ sudo python3 helloflooding.py โ€“interface eth0 โ€“as 1 โ€“subnet 10.10.100.0/24 %%%
  • ๋งค๊ฐœ๋ณ€์ˆ˜:
  • --interface: ๋„คํŠธ์›Œํฌ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค, ์˜ˆ: eth0.
  • --as: EIGRP ์ž์œจ ์‹œ์Šคํ…œ ๋ฒˆํ˜ธ๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค, ์˜ˆ: 1.
  • --subnet: ์„œ๋ธŒ๋„ท ์œ„์น˜๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค, ์˜ˆ: 10.10.100.0/24.

EIGRP ๋ธ”๋ž™ํ™€ ๊ณต๊ฒฉ

  • ๋ชฉํ‘œ: ์ž˜๋ชป๋œ ๊ฒฝ๋กœ๋ฅผ ์ฃผ์ž…ํ•˜์—ฌ ๋„คํŠธ์›Œํฌ ํŠธ๋ž˜ํ”ฝ ํ๋ฆ„์„ ๋ฐฉํ•ดํ•˜๊ณ , ํŠธ๋ž˜ํ”ฝ์ด ์กด์žฌํ•˜์ง€ ์•Š๋Š” ๋ชฉ์ ์ง€๋กœ ํ–ฅํ•˜๊ฒŒ ํ•ฉ๋‹ˆ๋‹ค.
  • ๋„๊ตฌ: routeinject.py ์Šคํฌ๋ฆฝํŠธ.
  • ์‹คํ–‰: %%%bash ~$ sudo python3 routeinject.py โ€“interface eth0 โ€“as 1 โ€“src 10.10.100.50 โ€“dst 172.16.100.140 โ€“prefix 32 %%%
  • ๋งค๊ฐœ๋ณ€์ˆ˜:
  • --interface: ๊ณต๊ฒฉ์ž์˜ ์‹œ์Šคํ…œ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค.
  • --as: EIGRP AS ๋ฒˆํ˜ธ๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.
  • --src: ๊ณต๊ฒฉ์ž์˜ IP ์ฃผ์†Œ๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.
  • --dst: ๋Œ€์ƒ ์„œ๋ธŒ๋„ท IP๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.
  • --prefix: ๋Œ€์ƒ ์„œ๋ธŒ๋„ท IP์˜ ๋งˆ์Šคํฌ๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.

K-๊ฐ’ ๋‚จ์šฉ ๊ณต๊ฒฉ

  • ๋ชฉํ‘œ: ๋ณ€๊ฒฝ๋œ K-๊ฐ’์„ ์ฃผ์ž…ํ•˜์—ฌ EIGRP ๋„๋ฉ”์ธ ๋‚ด์—์„œ ์ง€์†์ ์ธ ์ค‘๋‹จ ๋ฐ ์žฌ์—ฐ๊ฒฐ์„ ์ƒ์„ฑํ•˜์—ฌ ์‚ฌ์‹ค์ƒ DoS ๊ณต๊ฒฉ์„ ๋ฐœ์ƒ์‹œํ‚ต๋‹ˆ๋‹ค.
  • ๋„๊ตฌ: relationshipnightmare.py ์Šคํฌ๋ฆฝํŠธ.
  • ์‹คํ–‰: %%%bash ~$ sudo python3 relationshipnightmare.py โ€“interface eth0 โ€“as 1 โ€“src 10.10.100.100 %%%
  • ๋งค๊ฐœ๋ณ€์ˆ˜:
  • --interface: ๋„คํŠธ์›Œํฌ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค.
  • --as: EIGRP AS ๋ฒˆํ˜ธ๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.
  • --src: ํ•ฉ๋ฒ•์ ์ธ ๋ผ์šฐํ„ฐ์˜ IP ์ฃผ์†Œ๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

๋ผ์šฐํŒ… ํ…Œ์ด๋ธ” ์˜ค๋ฒ„ํ”Œ๋กœ์šฐ ๊ณต๊ฒฉ

  • ๋ชฉํ‘œ: ์ˆ˜๋งŽ์€ ์ž˜๋ชป๋œ ๊ฒฝ๋กœ๋กœ ๋ผ์šฐํŒ… ํ…Œ์ด๋ธ”์„ ์ฑ„์›Œ ๋ผ์šฐํ„ฐ์˜ CPU์™€ RAM์— ๋ถ€๋‹ด์„ ์ค๋‹ˆ๋‹ค.
  • ๋„๊ตฌ: routingtableoverflow.py ์Šคํฌ๋ฆฝํŠธ.
  • ์‹คํ–‰: %%%bash sudo python3 routingtableoverflow.py โ€“interface eth0 โ€“as 1 โ€“src 10.10.100.50 %%%
  • ๋งค๊ฐœ๋ณ€์ˆ˜:
  • --interface: ๋„คํŠธ์›Œํฌ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค.
  • --as: EIGRP AS ๋ฒˆํ˜ธ๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.
  • --src: ๊ณต๊ฒฉ์ž์˜ IP ์ฃผ์†Œ๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ