Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ

๋กœ์ปฌ l00t

  • PEASS-ng: ์ด ์Šคํฌ๋ฆฝํŠธ๋Š” PE ๋ฒกํ„ฐ๋ฅผ ์ฐพ๋Š” ๊ฒƒ ์™ธ์—๋„ ํŒŒ์ผ ์‹œ์Šคํ…œ ๋‚ด์—์„œ ๋ฏผ๊ฐํ•œ ์ •๋ณด๋ฅผ ์ฐพ์Šต๋‹ˆ๋‹ค.
  • LaZagne: LaZagne ํ”„๋กœ์ ํŠธ๋Š” ๋กœ์ปฌ ์ปดํ“จํ„ฐ์— ์ €์žฅ๋œ ๋งŽ์€ ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ๊ฒ€์ƒ‰ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋˜๋Š” ์˜คํ”ˆ ์†Œ์Šค ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์ž…๋‹ˆ๋‹ค. ๊ฐ ์†Œํ”„ํŠธ์›จ์–ด๋Š” ์„œ๋กœ ๋‹ค๋ฅธ ๊ธฐ์ˆ (ํ‰๋ฌธ, API, ์‚ฌ์šฉ์ž ์ •์˜ ์•Œ๊ณ ๋ฆฌ์ฆ˜, ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ๋“ฑ)์„ ์‚ฌ์šฉํ•˜์—ฌ ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ์ €์žฅํ•ฉ๋‹ˆ๋‹ค. ์ด ๋„๊ตฌ๋Š” ๊ฐ€์žฅ ์ผ๋ฐ˜์ ์œผ๋กœ ์‚ฌ์šฉ๋˜๋Š” ์†Œํ”„ํŠธ์›จ์–ด์˜ ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ์ฐพ๊ธฐ ์œ„ํ•ด ๊ฐœ๋ฐœ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

์™ธ๋ถ€ ์„œ๋น„์Šค

  • Conf-Thief: ์ด ๋ชจ๋“ˆ์€ ์•ก์„ธ์Šค ํ† ํฐ์„ ์‚ฌ์šฉํ•˜์—ฌ Confluence์˜ API์— ์—ฐ๊ฒฐํ•˜๊ณ , PDF๋กœ ๋‚ด๋ณด๋‚ด๋ฉฐ, ๋Œ€์ƒ์ด ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋Š” Confluence ๋ฌธ์„œ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•ฉ๋‹ˆ๋‹ค.
  • GD-Thief: ๊ณต๊ฒฉ์ž๊ฐ€ ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋Š” ๋Œ€์ƒ์˜ Google Drive์—์„œ ํŒŒ์ผ์„ ์ถ”์ถœํ•˜๊ธฐ ์œ„ํ•œ Red Team ๋„๊ตฌ๋กœ, Google Drive API๋ฅผ ํ†ตํ•ด ์ˆ˜ํ–‰๋ฉ๋‹ˆ๋‹ค. ์—ฌ๊ธฐ์—๋Š” ๋ชจ๋“  ๊ณต์œ  ํŒŒ์ผ, ๊ณต์œ  ๋“œ๋ผ์ด๋ธŒ์˜ ๋ชจ๋“  ํŒŒ์ผ, ๋Œ€์ƒ์ด ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋Š” ๋„๋ฉ”์ธ ๋“œ๋ผ์ด๋ธŒ์˜ ๋ชจ๋“  ํŒŒ์ผ์ด ํฌํ•จ๋ฉ๋‹ˆ๋‹ค.
  • GDir-Thief: Google์˜ People API๋ฅผ ํ†ตํ•ด ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋Š” ๋Œ€์ƒ ์กฐ์ง์˜ Google People Directory๋ฅผ ์ถ”์ถœํ•˜๊ธฐ ์œ„ํ•œ Red Team ๋„๊ตฌ์ž…๋‹ˆ๋‹ค.
  • SlackPirate: ์ด ๋„๊ตฌ๋Š” ์•ก์„ธ์Šค ํ† ํฐ์„ ์‚ฌ์šฉํ•˜์—ฌ Slack ์ž‘์—… ๊ณต๊ฐ„์—์„œ โ€˜ํฅ๋ฏธ๋กœ์šดโ€™ ์ •๋ณด๋ฅผ ์ถ”์ถœํ•˜๊ธฐ ์œ„ํ•ด ๋„ค์ดํ‹ฐ๋ธŒ Slack API๋ฅผ ์‚ฌ์šฉํ•˜๋Š” Python์œผ๋กœ ๊ฐœ๋ฐœ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
  • Slackhound: Slackhound๋Š” Red Team๊ณผ Blue Team์ด Slack ์ž‘์—… ๊ณต๊ฐ„/์กฐ์ง์„ ์‹ ์†ํ•˜๊ฒŒ ์ •์ฐฐํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•˜๋Š” ๋ช…๋ น์ค„ ๋„๊ตฌ์ž…๋‹ˆ๋‹ค. Slackhound๋Š” ์กฐ์ง์˜ ์‚ฌ์šฉ์ž, ํŒŒ์ผ, ๋ฉ”์‹œ์ง€ ๋“ฑ์„ ์‹ ์†ํ•˜๊ฒŒ ๊ฒ€์ƒ‰ํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•˜๋ฉฐ, ๋Œ€ํ˜• ๊ฐ์ฒด๋Š” ์˜คํ”„๋ผ์ธ ๊ฒ€ํ† ๋ฅผ ์œ„ํ•ด CSV๋กœ ๊ธฐ๋ก๋ฉ๋‹ˆ๋‹ค.

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ