
ZeroNights 2012ã¯ãæšå¹Žãšåæ§ãYandexã®ãµããŒããšåå ãåŸãŠéå¬ãããŸãã ãã®ãããªæåãªäŒç€Ÿã«åã³ååã§ããããšãéåžžã«å¬ããæããŸãã å
æ¥ãYandexã¯ãã
ãã°ãã³ãã£ã³ã° ããšåŒã°ããWebãµãŒãã¹ããã³ã¢ãã€ã«ã¢ããªã±ãŒã·ã§ã³ã«èŠãããè匱æ§ã«ã€ããŠç 究è
ã«å ±ããããã°ã©ã ãéå§ããŸããã ããã¯ã補åã®å®å
šæ§ã«å¯ŸããŠãã®ãããªè²¬ä»»ããæ
床ãåã£ããœããšãåŸã®åéã§ã®æåã®ãœãããŠã§ã¢éçºè
ã§ããããšã«èªããæã£ãŠããŸãã ããã°ã©ã ã®æåã®çµæã¯ZeroNights 2012ã§çºè¡šããã以åã®ããã«ããã·ã¢ã®æ
å ±ã»ãã¥ãªãã£ã®äžçã§æãèå³æ·±ãé¢é£æ§ã®é«ããã®ãã¹ãŠã«éäžããŸãã
ãŸãã
ãã¢ãã¹ãã«ã®ãã¹ãã«ãããã¯ãŒã¯ã«ãããäŒè°ã®åå è
ã«10ïŒ
ã®å²åŒãæäŸãããããšããç¥ããããŸãã ããªããäœãã§ããéœåžã«é¢ä¿ãªããç§ãã¡ã¯ããªãã蚪ããã®ãåŸ
ã£ãŠããŸãïŒ
å¥ã®è¯ããã¥ãŒã¹ïŒäŒè°ã®äºç®ãããããæé©åããããšãã§ãããšããäºå®ã«ãããå人ã®ãã±ããã®ã³ã¹ãã¯çŸåš7,000ã«ãŒãã«ã§ãã RISSPAããã³DEFCONã°ã«ãŒãã®ã¡ã³ããŒã¯ã10ïŒ
ã®å²åŒãåããè³æ ŒããããŸãã
ãŸããåŠçæ°ã§ã®ç»é²æ°ã®å¶éã解é€ããŸããã 10æ1æ¥ãããåŠçãšå€§åŠé¢çã®åå è²»çšã¯1900ã«ãŒãã«ã§ããããšãæãåºããŠãã ããã åŠçããã±ãŒãžã«ã¯ããã¹ãŠã®ã¯ãŒã¯ã·ã§ãããå«ãäŒè°ãžã®åå ãè³åä»ãã³ã³ãã¹ããžã®åå ãã³ãŒããŒãã¬ã€ã¯ãå«ãŸããŸãã
æ°ããã¬ããŒã
ãªããžã§ã¯ãæåWin32 / Flamerã¢ãŒããã¯ãã£ã®é解æãšåæ§ç¯
ã¡ã€ã³ããã°ã©ã ã§ã¯ãå倧ã§æãããïŒ:)ïŒã¢ã¬ã¯ãµã³ãã«ã»ããããœããšãšãã²ããŒã»ããã£ãªããïŒãã·ã¢ïŒãäžå¿
èŠãªãããã¹ããããã«Flamerã®å
éšã«ã€ããŠè©±ããŸãã
ãã®ã¬ããŒãã§ã¯ãWin32 / Flamerã®éçºã«é¢äžããæ¿åºã®æ§é ã®æŽé²ãããµã€ããŒå
µåšã«é¢ããããŸããŸãªé°è¬è«ã«ã€ããŠã¯è§ŠããŠããŸããã ãã®ã¬ããŒãã§ã¯ãäŸãšããŠã¢ã³ããŠã€ã«ã¹æ¥çã®æŽå²ã®äžã§æãè€éãªè
åšã®1ã€ã䜿çšããŠããªããžã§ã¯ãæåã¢ãŒããã¯ãã£ãåãããã«ãŠã§ã¢ã®é解æãžã®ã¢ãããŒããæ€èšããŸãã Win32 / FlamerãäŸã«ãStuxnetãDuquãFestiãªã©ã®è€éãªè
åšãåæããããã»ã¹ã§äœæè
ãéçºããææ³ã玹ä»ããŸãã ãã¬ãŒã³ããŒã·ã§ã³ã§ã¯ããããã®è
åšã®åæäžã«ééããªããã°ãªããªãã£ãåé¡ãšãHex-RaysããŒã«ã䜿çšããŠãããã解決ããæ¹æ³ãæ瀺ãããŸãã ã¬ããŒãã®äœæè
ã¯ãWin32 / Flamerã®éçºã«åºã¥ãããªããžã§ã¯ãæåãã©ãããã©ãŒã ã®åæ§ç¯ã«é¢ããç 究çµæãæ瀺ããã³ãŒãããã³ã¢ãŒããã¯ãã£ã®ã¬ãã«ã§Stuxnet / Duqu / Gaussãšã®èŠªåæ§ãå®èšŒããŸãã
é©çšãããã¢ã³ããã©ã¬ã³ãžãã¯ïŒã«ãŒãããããã«ãŒãã«ã®è匱æ§ããã¹ãŠãã¹ãŠ
Dmitry Oleksyukå¥åCr4shïŒãã·ã¢ïŒã¯ãé«åºŠãªã«ãŒãããããã¯ããã¯ã®ã¢ã€ãã¢ãæã¡ç Žããæšçåæ»æã§ã®ã«ãŒããããã®äœ¿çšã«ã€ããŠèŽè¡ãåçºããŸãã
çŸåšã倧éé
åžã®æªæã®ããããã°ã©ã ã§äœ¿çšãããŠããæãåºãç¥ãããŠããã«ãŒããããã ãã ãããããã¯æšçåæ»æã«ã䜿çšãããŠãããããã«ãŒãããããã¯ãããžãŒã¯2ã€ã®å€§ããªã°ã«ãŒãã«åé¡ã§ããŸãã æšçåæ»æã§äœ¿çšãããã«ãŒãããããšãã倧èŠæš¡ãªå¯Ÿå¿ã®ã«ãŒããããã®äž»ãªéãã¯ãæ¥åžžã®æäœã§ã·ã¹ãã ãå±éºã«ããããããšããäºå®ãé²æ¢ããã ãã§ãªãïŒãŠãŒã¶ãŒããã³ãŠã€ã«ã¹å¯Ÿçããã°ã©ã ããã¯èŠããªãïŒãæ倧éã®å質ãåããŠããããšã§ãé«åºŠãªè³æ Œã®ããæ³å»åŠã®å°é家ãæšçã«ããã«ãŒãããããæ€åºããããšã¯å°é£ã§ãã
ãã®ã¬ããŒãã§ã¯ã次ã®åé¡ã詳现ã«èª¿æ»ããŸãã
- 䟵害ãããã·ã¹ãã ã®èª¿æ»ã§æªæã®ããã³ãŒããæ€åºããäž»ãªã¢ãããŒãã
- æšçåæ»æã§äœ¿çšããã«ãŒãããããå®è£
ããå®çšçãªåŽé¢ã
- ring0ã®ã³ãŒããé衚瀺ã«ããŠå®è¡ããèå³æ·±ãææ³ã䜿çšããæŠå¿µçãªã«ãŒããããã®ãã¢ã³ã¹ãã¬ãŒã·ã§ã³ã
- ã¬ããŒãäžã«èæ
®ãããæŠå¿µã®æ€åºæ¹æ³ã
PSå
¬è¡ã«æ瀺ãããæ
å ±ã¯ããOSã®ã«ãŒãã«å
ã®ãŽããã€ã³ã¿ãŒã»ããããæ°ããæ¹æ³ããšãã圢åŒã®ããŸã ç¡é§ãªç 究ã§ã¯ãããŸããã è¬æŒè
ã®äž»ãªç®æšã¯ãæŽç·Žãããæªæã®ããã³ãŒãã®éçºã«å¯Ÿããçµ±åã¢ãããŒãã®äŸãšçµæã瀺ãããšã§ãã
Mac OS Xãã«ãŠã§ã¢ã®æŠèŠ
ãã°ããã®éãAppleã¯èªç€Ÿè£œåã«ãŠã€ã«ã¹ãååšããªãããš
ãèªæ
¢ããããšã
ãããŸãã ãIvanSorokinïŒãã·ã¢ïŒã®å©ããåããŠãããã«ã€ããŠè©³ããç¥ãããšãã§ããŸãã
Dr.Webã®åé¡ã«ãããšãMac OS Xãªãã¬ãŒãã£ã³ã°ã·ã¹ãã ã«ã¯çŽ20çš®é¡ã®ãã«ãŠã§ã¢ãååšããŸãããã¬ããŒãã«ã¯äž»èŠãªä»£è¡šè
ã®æ¯èŒåæã瀺ãããŠããŸãã åæã«ãæªæã®ããããã°ã©ã ã®ç®çããåè
åšãã¡ããªãŒã®ç¹åŸŽçãªæ©èœãŸã§ãããŸããŸãªåŽé¢ãæ¯èŒåºæºãšèŠãªãããŸãã
æ³¥æ£ããçãæ¹æ³ïŒIonCube VMãç Žå£ãããšã¯ã¹ããã€ããã«ããå
ã«æ»ã
ã¹ããŒã«ãŒïŒã¢ãã¡ãã»ã¶ããŒïŒç±³åœïŒã
äžé£ã®ãšã¯ã¹ããã€ãã¯ãèªåãã©ã€ããã€æ»æãå®è¡ããŠãŠã€ã«ã¹ãããã«æ¡æ£ãããããã«é垞䜿çšãããäžé£ã®æªæã®ããããã°ã©ã ã§ãã ãã®ãããªãããã¯ãéåžå Žã§ïŒäž»ã«ãã·ã¢ã®ãµã€ããŒç¯çœªè
ããïŒæ°çŸããæ°åãã«ä»¥äžã®äŸ¡æ Œã§è³Œå
¥ã§ããŸãã æè¿ãç¹å®ã®ãµãŒããŒã«ãããšã¯ã¹ããã€ãããã¯ãã¬ã³ã¿ã«ããããšãäžè¬çã«ãªããŸããã ãã®ããã«ãå€ãã®ç°ãªãèè
ãå«ãå€ãã®ãã¬ãŒã€ãŒã§ç«¶äºåžå Žã圢æãããŸããã æ°å¹Žåã«MPackãç»å ŽããŸãã-æåã®ãã®ãããªããŒã«ã®1ã€ã§ãã ããã«åœŒã¯ICE-PackãFire-Packããã®ä»å€ãã®äººã«ç¶ããŸããã ããç¥ãããææ°ã®ãšã¯ã¹ããã€ãããã¯ã«ã¯ãEleonoreãYES Exploit Packãããã³Crimepackãå«ãŸããŸãã
ãšã¯ã¹ããã€ãããããä¿è·ããããã«ããµã€ããŒç¯çœªè
ã¯ãœãªã¥ãŒã·ã§ã³ã䜿çšããŠãœãŒã¹ã³ãŒãããã€ãã³ãŒãïŒä»®æ³åããã³é£èªåïŒã«å€æããŸãã 次ã«ããšã³ã³ãŒããããŠããŒããŒã«æž¡ãããããŒããŒãPHPããŒãžãä»ããŠé
åžããŸãã 販売ããããšã¯ã¹ããã€ããããã¯ãã³ããŒãšé
åžãçŠæ¢ããå³æ Œãªã©ã€ã»ã³ã¹ããªã·ãŒã«ãã£ãŠä¿è·ãããŠããŸãã
ç§ã®è¬æŒã§ã¯ããšã¯ã¹ããã€ãããããä¿è·ããããã«ãionCubeã®ã³ããŒé²æ¢ã·ã¹ãã ãã©ã®ããã«äœ¿çšããããã«ã€ããŠã話ããŸãã ãŸãããã®ä¿è·ã解é€ããŠãšã¯ã¹ããã€ãã®ãœãŒã¹ã³ãŒãã埩å
ããæ¹æ³ãããã³ãšã¯ã¹ããã€ãã»ããã®ç¹å®ã®ã©ã€ã»ã³ã¹ã«é¢é£ä»ããããŠããIPã¢ãã¬ã¹ãèŠã€ããæ¹æ³ã瀺ããŸãã
èšç»ïŒ
- ã³ããŒé²æ¢ã«ã€ããŠïŒä»®æ³ãã·ã³ã¢ãŒããã¯ãã£ïŒ
- VMå
éš
- VMãªãã·ã§ã³
- å
éšã®VMã®å
容ïŒãã³ãŒããšé£èªå解é€ïŒ
- ã©ã€ã»ã³ã¹æå·åã¢ã«ãŽãªãºã ã®ãããã³ã°
- VMããããŒããã©ã€ã»ã³ã¹æ
å ±ãååŸãã
- çµè«
æãé«åºŠãªã³ããŒé²æ¢ã·ã¹ãã ã¯ä»®æ³åæè¡ã«åºã¥ããŠãããå®éã®ä¿è·ã®å®çšçãªé£èªå解é€ã«é¢ããå
¬éæ
å ±ã¯ã»ãšãã©ãªãããããã®ã¬ããŒãã«æ³šæãæãããšã匷ããå§ãããŸãã
ææ°ã®æ¯æãæè¡ã®ã»ãã¥ãªãã£ïŒEMVãNFCãªã©ïŒ
ããã§ã¯ãNikita AbdullinïŒãã·ã¢ïŒã«ãã£ãŠå®è¡ãããçŸä»£ã®æ±ºæžæè¡ã®ã»ãã¥ãªãã£ã«é¢ããæãããçå®ãèãããšãã§ããŸã-ãã§ãŒã³å
šäœã®ä»äºãç 究ãã人ãéã¯ãéããäŒèšãŸã§ããããã¬ãã«ã§ã¯ã©ã€ã¢ã³ãã§ãã
財åžããã±ããã«ãããã€ãã¯ãªæ¯æãæ段ã®ä¿¡é Œæ§ãšã»ãã¥ãªãã£ã«ã€ããŠèããããšã¯ãããŸããïŒ ãã®ããšãç¥ãæãæ¥ãŸãã-ãã®ã¬ããŒãã§ã¯ããå®äžçãã®ææ°ã®é»å決æžæè¡ã®ã»ãã¥ãªãã£é¢ã«ã€ããŠèª¬æããŸããEMVæšæºã®ãã€ã¯ãããã»ããµãã³ã¯ã«ãŒããšãNFCïŒNear Field CommunicationïŒããµããŒãããããã€ã¹ã«åºã¥ã決æžãœãªã¥ãŒã·ã§ã³ã ãããã®æè¡ã®åäœåçã«ã€ããŠèª¬æããæ¢ç¥ã®æ»æãã¯ãã«ãšæ°ããæ»æãã¯ãã«ãããã³å¯Ÿçãäºæž¬ãåæã®äž¡æ¹ãæ€èšããŸãã
ãã¡ãŒã¹ããã©ãã¯
ãã¡ãŒã¹ããã©ãã¯ã«ãããè¥ãISãã¡ã³ã¯15å以å
ã«ç 究ã®ãã¬ãŒã³ããŒã·ã§ã³ãè¡ãããšãã§ããŸãã
Kirill SamosadnyïŒãã·ã¢ïŒã¯ãFlashãããŒãããã¯ãŒã¯ã®å¯èœæ§ãå©çšããŠå€§èŠæš¡ãªCSRFæ»æãå®è£
ããããšã«ã€ããŠèª¬æããŸãã
Fedor YarochkinïŒå°æ¹ŸïŒãVladimir KropotovïŒãã·ã¢ïŒãVitaly ChetvertakovïŒãã·ã¢ïŒã¯ã2012幎ã®å€§èŠæš¡ãªãã«ãŠã§ã¢é
åžãã£ã³ããŒã³ã®æŠèŠã説æããŸãã 䟵害ããããµãŒããŒäžã®å±éºãªã³ã³ãã³ãã®ååšã®èªåæ€åºããã€ãã¹ããæè¡ã«éç¹ã眮ãããŸãã
ç¶ããèªãïŒ
2012.zeronights.ru/fasttrackã¯ãŒã¯ã·ã§ãã
ä¹±æ°ã 2ã€åã
ãã·ã¢ã®å°é家ãArseny ReutovãTimur YunusovãDmitry NagibinïŒãã·ã¢ïŒã«ããã¯ãŒã¯ã·ã§ããã¯ãPHPã®ä¹±æ°ãžã§ãã¬ãŒã¿ãŒãžã®æ»æå°çšã§ãã
BlackHat 2012ã§çºè¡šãããGeorge ArgyrosãšAggelos Kiayiasã®ç 究ã®åæã«ãããPHPã§äœ¿çšãããæ¬äŒŒä¹±æ°ãžã§ãã¬ãŒã¿ãŒã¯éåžžã«ãç䌌ãã§ããããšãæããã«ãªããŸããã ãã®çµæãã»ãã·ã§ã³ãžã§ãã¬ãŒã¿ãŒããã³PHPã®ä»ã®ã»ãã¥ãªãã£èŠçŽ ã«å¯Ÿããæ»æãå®è£
ããããã®ããŒã«ã»ãããäœæãããŸããã ãŸããããŸããŸãªäžè¬çãªWebã¢ããªã±ãŒã·ã§ã³ã®ææ°ããŒãžã§ã³ã§ãã®ã¿ã€ãã®æ»æãå®è¡ããããã®ãšã¯ã¹ããã€ããçšæãããŸããã
ã¯ãŒã¯ã·ã§ããã®ç¹åŸŽïŒ
- PHPã®ããŸããŸãªããŒãžã§ã³ã§ã»ãã·ã§ã³ãäœæããæ¬äŒŒä¹±æ°ãžã§ãã¬ãŒã¿ãŒãåæå/䜿çšããã¡ã«ããºã ã®çè«èšç®ã
- ã©ã³ãã ãã¹ã¯ãŒããªã»ããããŒã¯ã³ãšã©ã³ãã ãªæ°ãããã¹ã¯ãŒãã®æšæž¬æ»æã®å®çšçãªå®è£
ãããã³ä¹±æ°ãžã§ãã¬ãŒã¿ãŒã«å¯Ÿããæ»æãå®è¡ããPHPSESSID Seed BruteforceãŠãŒãã£ãªãã£ã
- Webã¢ããªã±ãŒã·ã§ã³UMI.CMSãOpenCartãData Life Engineã®ææ°ããŒãžã§ã³ã®è匱æ§ã
- éçºè
ããã®ãããªåé¡ãåé¿ããããã®æšå¥šäºé
ã
é«åºŠãªãšã¯ã¹ããã€ãéçºïŒx32ïŒã ãã©ãŠã¶ç
ç§ãã¡ã®ã¬ã€ã-Alexei SintsovïŒMoonïŒã䜿çšããŠãWindows 7ã§ã®ãšã¯ã¹ããã€ãã®äžçãžã®é
åçãªå®çšçãªãšã¯ã¹ã«ãŒã·ã§ã³ãèŠã€ããããšãã§ããŸãã ããã5æéã§ãWindows 7ãç¹ã«IE9ãã©ãŠã¶ãŒã®æŠéãšã¯ã¹ããã€ãã®éçºã«ã€ããŠããAããããZããŸã§ç解ã§ããŸãã
ãã©ãŠã¶ã¯ã€ã³ã¿ãŒãããã®äžçãžã®çªã§ãããããããŸããŸãªäžå©ãªèŠçŽ ãçªããç§ãã¡ã®å®¶ã«çŽæ¥ç»ãããšã¯é©ãããšã§ã¯ãããŸããã ãã®ã³ãŒã¹ã¯ããããã¡ãªãŒããŒãããŒã解æŸåŸã®ã¡ã¢ãªäœ¿çšéãªã©ããã©ãŠã¶ïŒãŸãã¯ãã®ãã©ã°ã€ã³ïŒã®è匱æ§ãæªçšããŠããããã®èŠçŽ ã家ã«äŸµå
¥ããæ¹æ³ãç解ããããšã«èå³ããã人ã察象ãšããŠããŸãã ããã«ã䟵å
¥ãé²æ¢ããå¿
èŠã®ããããŸããŸãªé²åŸ¡ã¡ã«ããºã ãã©ã®ããã«æ©èœãããã詳现ã«èª¿ã¹ãŸãã OSããã³DEP / ASLR / SafeSEH / GSãªã©ã®ãœãããŠã§ã¢é²åŸ¡ã¡ã«ããºã ã«å¯Ÿããå
žåçãªæ»æãç 究ããHeapSprayãã¯ããã¯ãæ€èšãããã¹ãŠã®ä¿è·ããã€ãã¹ããŠä»»æã®ã³ãŒããå®è¡ããŸãïŒ ã¯ãŒã¯ã·ã§ããäžã«ãã¹ãŠã®æ»æãšãšã¯ã¹ããã€ããåå è
ã«ãã£ãŠåçŸããããããåå è
ã¯ãã®ãããªæ»æã®è
åšãšå®éã®å¯èœæ§ãåå¥ã«è©äŸ¡ã§ããŸãã
ããã°ã©ã ã«å«ãŸãããã®ïŒ
- å
žåçãªãã©ãŠã¶ãŒã®åé¡ïŒäŸãšããŠIEãšãã®ãã©ã°ã€ã³ã䜿çšïŒ
- BoFãšã¯äœã§ããïŒ
- ãã©ã°ã€ã³ã®è匱æ§ã®æªçšã¯ããã©ãŠã¶èªäœã®è匱æ§ã®æªçšãšã©ã®ããã«ç°ãªããŸããïŒ
- æäœæ©èœïŒãµãŒããŒãœãããŠã§ã¢ãä»ã®ãã©ãŠã¶ãŒãšã®éãïŒ
- IE9ã®HeapSpray
- é²è¡ãã€ãã¹
- ããã©DEPïŒIE6-7ïŒ
- æ°žç¶çãªDEP + ASLRããã€ãã¹ããŸãïŒASLRãµããŒãã®ãªãã¢ãžã¥ãŒã«ãããå ŽåïŒ
- ROPïŒStackPivotïŒ
- GS + DEP + ASLR
- safeSeh + GS + DEP + ASLR
- ASLRããã€ãã¹ããŸãïŒãã¹ãŠã®ã¢ãžã¥ãŒã«ãASLRããµããŒãããŠããå Žåã§ãïŒïŒ
- UaFãšã¯äœã§ããïŒ
- UaFã®åæ¢ãšã¯äœã§ããïŒ
- Firefox / Opera / Safari / Chromeãšã®éã
ãã¹ãŠã®äž»èŠãªæ®µéã§ãcalc.exeãåä¿¡ãããŸããã€ãŸããåå è
ã¯é²åŸ¡æ¹æ³ãè¿åãããšã¯ã¹ããã€ããåéããŸãããã®ãããå¿
èŠãªè©³çŽ°ãšæ»æã®æ¬è³ªã詳现ã«åæãããŸãã
åå è
ã¯ä»¥äžãåãåããŸãïŒ
- IEãã©ãŠã¶ã®è匱æ§ãæªçšããåå
- ã¹ã¿ãã¯ã®ãããã¡ãªãŒããŒãããŒ
- 解æŸåŸã®ã¡ã¢ãªäœ¿çšé
- ãã©ãŠã¶ã®æŠéæ¢æ»ã¹ãã«
- MS Windows 7ã®é«åºŠãªé²åŸ¡ã¡ã«ããºã ã®åäœåçãç解ãã
- DEP /æ°žä¹
DEP
- ASLR
- ã¹ã¿ãã¯ã«ããªã¢
- safeSEH
- ãã®ãããªä¿è·ããã€ãã¹ããæ¹æ³
- Immunity Debuggerãšmona.pyãã©ã°ã€ã³ã®ã¹ãã«
RFIDïŒã¹ãªãŒãã®ãžã§ãŒã«ãŒ
Kirill Salamatin aka DelïŒãã·ã¢ïŒãšAndrey TsumanovïŒãã·ã¢ïŒã¯4æéã®ã¯ãŒã¯ã·ã§ãããéå¬ãã蚪åè
ã«éæ¥è§Šã«ãŒããæäœãããã®ãããªæäœãã身ãå®ãæ¹æ³ãæããŸãã ã¹ããã¡ãŒãžã£ã±ãããªã©ãå®éã«æããŠãã¹ãã§ããŸãïŒ

ããã°ã©ã ã«å«ãŸãããã®ïŒ
- éæ¥è§Šã«ãŒãã®äžç
- çŸåšããã³å°æ¥ã®äœ¿çšåé
- ã¢ãŒããå°éããŸãããã 187ãšã¢ãŒãã åæ³159
- èšèšãäžååãªã·ã¹ãã ã®äŸïŒã¹ããŒããã³ãŠã©ãŒã¿ãŒããŒã¯ã嚯楜æœèšã茞éã·ã¹ãã ïŒ
- ã·ã¹ãã éçºè
ãç¯ãééã
- æå°ã®ã¯ããŒã³ã«ãŒãä¿è·
- ã¯ããŒã³ããACSãä¿è·ããããã®å®çšçãªãã³ã
- é¢ããå Žæã§ã®ããŒã¿ã®äžæ£ãªäžæ£èªã¿åãã®æ段
- ã¹ã¿ã³ãã¢ãã³ã¯ããŒã³EM-Marine-ã·ã§ãŒã€ã³ã¯ãŒã¯
- ã¡ãŒãã«ã®è·é¢ã§èªãããã®ã¢ã³ããEM-ããªã³-åçã衚瀺
- åŸæ¥ã®ACR122UãªãŒããŒ-å¿
èŠã«å¿ããŠç°¡åã«ãã¹ã¯
- ã¹ããã¡ãŒãžã£ã±ããã¯ããã°ã©ã ã®ãã€ã©ã€ãã§ããå®éã«è§ŠããŠèŠããŸããã
- äžæ£ãªã«ãŒããªãŒããŒä¿è·
- åžå Žã®ãœãªã¥ãŒã·ã§ã³ã¯äœã§ããïŒ
- çäœèªèšŒãã¹ããŒãã®ä¿è·ã«ããŒ-å±ç€ºäž
- éæ¥è§Šã«ãŒãçšã®ã·ãŒã«ããã«ããŒ-å°çãããã©ããã衚瀺ããŸã
- éæ¥è§Šã«ãŒãçšã®ããã¡ã©ããŒã±ãŒãžãã¯èªåã§è¡ã-åäœããããšã確èªãã
- ã«ãŒãæäœ125kHz
- ã¡ããã©ãããåã
- æžãã ã
- 1ã€ã®ããã€ã¹ã«è€æ°ã®ã«ãŒã
- EM-Marineã䜿çšããäž»ãªåé¡
- Mifareã¯ã©ã·ãã¯ã«ãŒãæäœ
- å°çšãšãã¥ã¬ãŒã¿ãŒããã€ã¹
- ãã¥ã¢ã«ã¹ããŒãã«ãŒãJCOP31ã æ»æè
ãã©ã®ããã«å©ããããšãã§ããŸããïŒ
- ãªãŒããŒãšãã¥ã¬ãŒã·ã§ã³
- NFCã䜿çšããã³ãã¥ãã±ãŒã¿ãŒ
- æäœçšã®ãœãããŠã§ã¢ãšãââãŒããŠã§ã¢
- Mifare Classic Card Hacking Toolkit
- Mifare Classicã«ãŒãããããŒãååŸãã-ãã¢
- ããã¡ãŒã¬ãŒã
- ã¡ãŒã«ãŒã®æžãæãå¯èœã«ãŒã
- 圌ãã¯äœã§ãã
- é²é³ãœãããŠã§ã¢ã®æŠèŠ
- çµæã®ãã¢ã³ã¹ãã¬ãŒã·ã§ã³
- ACSã¬ãã«ã§ã®ã¯ããŒã³ã®ã¢ã¯ã»ã¹å¶åŸ¡ã·ã¹ãã
11æ19æ¥ãš20æ¥ã«Infospaceã§ãåŸ
ã¡ããŠããŸãïŒ