Skip main navigation

网络黑客的工具包:侦察

In this video Dr Nick Patterson demonstrates the back-end mechanics of how attacks like the Panama Papers hack are accomplished.
6.3
因此,首先,我们想找出此Mossack Fonseca Web服务器的IP地址是什么。因此,我们可以做到这一点的一种简单方法就是ping网站,看看我们是否可以获得IP地址。是的,立即告诉我们它很活跃。您可以在此处看到顶部的IP地址,从这里变得非常简单。基本上,我想找出哪些端口是开放的,本质上是对该特定Web服务器打开的门口,最终我想找出正在运行的服务器,以便我们可以尝试利用其中一个。因此,我们使用了称为“ nmap”的小工具。
49
您可以看到它有各种各样的不同参数。我们输入“ NMAP”,然后输入我们试图实际攻击的目标的IP地址或Web服务器名称。我认为这是从记忆中来的。好的。因此,我们可以在此特定的Web服务器上从此处看到,有一系列不同的端口和不同的服务运行。您可以在这里看到。假设FTP在此示例中,端口21。它正在操作TCP协议,并且实际上处于开放状态。因此,从这里开始,我们将尝试找到更多信息。因此,我们实际上也可以看到其他服务也在运行。他们有一个网络服务器。
93.9
您可以在这里看到。这是在端口80上运行的。他们拥有看起来像是在端口25上运行的电子邮件服务器。还有许多其他。但是,让我们专注于FTP,因为这通常可能是一个较弱的协议。如果可以的话,让我们尝试了解更多信息。我们将在NMAP中尝试一些更复杂的参数,并查看我们还能找到什么。因此,我们在NMAP SV上,本质上是服务和脚本扫描。然后,我们将为我们的脚本[输入'sc']执行此操作,然后再次输入Web服务器名称。
138.7
And I think we said port 21 for FTP. And we’ll run that server and script scan against the FTP protocol on that particular website. So what else have we gathered here? Again we’ve got confirmation that we’ve got the FTP server software. We can see here another thing is allowing anonymous FTP logins, which is not always a great thing. The main thing is we want to find from here, which is going to be beneficial for us, is that the version of the FTP software, and that it’s actually in open state, and you can connect to it.
182.2
I think we’ve gathered enough information to push forward. We know now that FTP is running and it’s open. And we know what server software they’re actually using for that FTP. So that can be a particularly good weak point to gain access. So using this information we’ve gathered, let’s figure out how we can go ahead and move forward from here. So if we check out this particular website here, it’s a very popular one for security exploits. It’s called ‘www.exploit-db.com’. So let’s do a little search. This website basically lists all the new exploits that are out, pretty much every day if there’s a new one out, it’ll list the operating system, what server is it, what software it’s actually targeted against.
233.5
Ok, let’s do a little search for what we’ve discovered about this particular target machine we want to get into. I think that should do it. So we’ll go to an advanced search platform, and we’ll punch that into the search. And we want to get in remotely, so let’s go remote. Anything else we can fill in here– Author– Let’s go with Metasploit, essentially our framework that contains a library of different exploits. We can pick out and target against specific weaknesses in the system. Let’s let that search for a minute. So it brings us back a range of different exploits we can potentially use.
277.4
让我们浏览列表,看看是否有任何关系 - 我认为我们说VSFTPD。让我们看看我们是否可以在列表中找到它。
289.7
There we go. Vsftpd version 2.3.4. We’ll just click on that. It tells us everything about that, when it was published. We can download it if we want. Tells us more about the actual code behind the exploit, how it works there. So now you’ve seen from a hacker’s perspective how to do some reconnaissance and discover vulnerabilities in a particular system. These are things that the hacker will look for in order to exploit your systems. Thanks for watching.

The best way to understand how a cyber attack occurs is to see one in action.

在这个视频里,Dr Nick Pattersondemonstrates the back-end mechanics of how attacks like the Panama Papers hack are accomplished.

模拟是在模拟环境中进行的,以模仿这种情况下可能发生的事情,并向您展示黑客如何通过寻找漏洞来进行侦察。当然,使用这些工具和技术来访问您无法控制的Web服务器是非法的,该视频将过程的一部分显示为教育工具,以帮助您更仔细地思考守护系统。

Your task

观看视频并分享有关黑客如何查找有关系统信息的观察结果。

本文来自免费的在线免费

Cyber Security for Small and Medium Enterprises: Identifying Threats and Preventing Attacks

由...制作
FutureLearn-终身学习

Our purpose is to transform access to education.

我们提供来自世界各地的大学和文化机构的各种课程。这些一次是一次交付的一步,并且可以在移动,平板电脑和台式机上访问,因此您可以适合自己的生活。

我们认为,学习应该是一种愉快的社交经验,因此我们的课程为您提供了与他人一起讨论的机会,帮助您做出新的发现并形成新的想法。
You can unlock new opportunities with unlimited access to hundreds of online short courses for a year by subscribing to our Unlimited package. Build your knowledge with top universities and organisations.

了解有关FutureLearn如何转化接受教育的更多信息