[2008 CodeEngn Conference 02] seaofglass - Immunity Debugger 활용과 플러그인 제작
[2014 CodeEngn Conference 11] 정든품바 - 웹성코드
39
웹성코드 정든품바 www.CodeEngn.com 2014 CodeEngn Conference 11
-
Upload
gangseok-lee -
Category
Education
-
view
380 -
download
6
Transcript of [2014 CodeEngn Conference 11] 정든품바 - 웹성코드
DebugActiveProcess
WaitForDebugEvent
ContinueDebugEvent
EXCEPTION_BREAKPOINT
EXCEPTION_DEBUG_EVENT
CREATE_PROCESS_DEBUG_EVENT
WaitForDebugEvent
ContinueDebugEvent
EXCEPTION_BREAKPOINT
EXCEPTION_DEBUG_EVENT
CREATE_PROCESS_DEBUG_EVENT Install Hook Code (INT3)
Hook Routine
DebugActiveProcess
Operating System
<html>. . .
<script ~ src=“jdpb.js”>. . .
Web Browserjdpb.js
function CodeEngn(){
alert(‘jdpb WORLD!’);}
jdpb.js
function CodeEngn(){
alert(‘ATTACKED…’);}
Hook