Hackerã®5æå·ã®å€§ããªããŒãã¯Raspberry Piã§ããã ãã©ãºããªãŒãã®äœæè
ã§ããEben Uptonãšè©±ãããŠããããžã§ã¯ãã®æåã®å¹Žã®çµæãšã次ã®å¹Žã«å°ããªã³ã³ãã¥ãŒã¿ãŒãåŸ
ã¡æãã§ãããã®ãèŠã€ããŸããã ãŸããã©ãºããªãŒã«åºã¥ãã2ã€ã®æŠå¿µã«ã€ããŠèª¬æããŸããïŒç®ç«ããªãããã¯ããŒã¯ã¯ããã®ãµã€ãºã®ããã«ããããã¯ãŒã¯ããããŒã¿ããã€ã§ãåéã§ããïŒSMSãä»ããŠã³ãã³ããåä¿¡ããEvernoteã§ãã°ãããããããïŒãšãGoogleãã©ã€ããšçµ±åããããããªç£èŠã·ã¹ãã ã§ãã ãããã®æŠå¿µã®1ã€ã泚ç®ãããŸãã
Dropboxã®ã¢ã€ãã¢ã¯ç°¡åã§ãããããã¥ã¢ã³ã³ãã¥ãŒã¿ãŒã«ããããªãŒãš3Gã¢ãã ãè£
åãããšã調æ»äžã®ãããã¯ãŒã¯ã«éãã«æ¥ç¶ããåéããããŒã¿ã転éããã¹ãã€ããã¯ã¹ãå
¥æã§ããŸãã ãã®æŠå¿µã¯ãRaspberry Piã«å®å
šã«å®è£
ãããŠããŸããä»åŸã®èŠéãïŒãšãã«ã®ãŒæ¶è²»éãå€ããããDropboxã¯èªç€Ÿãããã¯ãŒã¯ã§ã®äœæ¥ã«é©ããŠããŸãã èŠç¥ãã¬äººã«ãšã£ãŠã圌ã¯åã«ååãªããããªãŒãæã£ãŠããŸããããæŠå¿µã¯ãŸã é
åçã«èŠããŸãã ããã¯ãã¹ãŠãPwnPiãã£ã¹ããªãã¥ãŒã·ã§ã³ã«åºã¥ããŠè¡ããŸãã ãã®äžã§ãã¢ãã ã®åäœãèšå®ããSMSã§ã³ãã³ããåä¿¡ãããã°ãEvernoteã«éä¿¡ããæ¹æ³ãåŠã³ãŸãã ç§ãèªç±ã«äœ¿ããã®ã¯ã3Gã¢ãã ã®Huawei E1550ïŒãMegaphone E1550ãïŒã§ããã
ã¢ãã ã¢ãŒãã«åãæ¿ãã
å€ãã®3Gã¢ãã ã¯ãæ¥ç¶ããããšãå¿
èŠãªãã©ã€ããŒãäºåã«ã€ã³ã¹ããŒã«ããããã«ãã£ã¹ã¯ã®ããã«èŠããã¢ãã ã¢ãŒãã«åãæ¿ããå¿
èŠããããŸãã E1550ã¢ãã ã¯ãããã®1ã€ã§ãããæåã¯ç«¯æ«ãšããŠäœ¿çšã§ããŸãã...
USBããã€ã¹ã®èª¬æãèŠãŠã¿ãŸãããã
ãã ãããã£ã¹ã¯ãšããŠè¡šç€ºãããŸãã
ã¢ãã ã¢ãŒãã«åãæ¿ããã«ã¯ãè¿œå ã®ããã°ã©ã ãã€ã³ã¹ããŒã«ããŠåèµ·åããå¿
èŠããããŸãïŒä»ã®ã¢ãã ã«ã¯ä»ã®èšå®ãå¿
èŠãªå ŽåããããŸãïŒã
USBããã€ã¹ã®èª¬æãããäžåºŠèŠãŠã¿ãŸãããã
ã¢ãã ã®ããã€ã¹IDãå€æŽããããã®ããŒãã䜿çšå¯èœã«ãªã£ãããšãããããŸãã
PwnPiã§ã®æšæ¶Bashminicomã䜿çšããŠã¢ãã ã«ã¢ã¯ã»ã¹ãã
ããã©ãŒãã³ã¹ããã¹ãããã«ã¯ãããã³ã ã䜿çšããŠãéåžžã®ã¢ãã ã®ããã«ãæãå·®ã䌞ã¹ããããšãã§ããŸãã
ATã³ãã³ãã䜿çšããŠãã¢ãã ã®è£œé å
ã«é¢ããæ
å ±ãèŠæ±ããŸã
ati0 Manufacturer: huawei Model: E1550 Revision: 11.608.12.10.209 IMEI: < IMEI > +GCAP: +CGSM,+DS,+ES OK
<Ctrl + A + Q>ãæŒããŠçµäºããŸãã
ãµãã¹ãšUMTSkeeper
3Gã¢ãã ãæ§æããããã«å¿
èŠãªæåã®ããã°ã©ã ã¯ã3Gæ¥ç¶ã確ç«ããããã®ã¹ã¯ãªããã§ããSakis3Gã§ãã sakis-3g.orgãããžã§ã¯ãã®ããŒã ããŒãžã¯ãã°ããã®éå©çšã§ããŸããããã¹ã¯ãªããã®ã³ããŒã¯sourceforgeã«ãããŸãã ããŠã³ããŒãããŠè§£åããå®è¡ãæå¹ã«ããŸãã
PPPãµããŒããã€ã³ã¹ããŒã«ãã
å¿
èŠãªããŒã¿ã瀺ããŠã察話ã¢ãŒãã§æ¥ç¶ã確ç«ããŠã¿ãŸãããã
æåã®ãªãã·ã§ã³ã3Gã§æ¥ç¶ããéžæãã次ã®ãªã¯ãšã¹ãã«å¿ããŠã11ã ã«ã¹ã¿ã APN ...ãã 瀺ãïŒMegafon-Moscowã®ããŒã¿ïŒïŒ
APN: internet APN_USER: megafon APN_PASS: megafon
æ¥ç¶ãæ£åžžã«ç¢ºç«ãããå Žåãã¡ãã¥ãŒãçµäºããã€ã³ã¿ãŒãããã¢ã¯ã»ã¹ã確èªããŸãã
次ã®ããã°ã©ã ãUMTSkeeperïŒzool33.uni-graz.at/petz/umtskeeperïŒã¯ãæ¥ç¶ãåæããããšãã®èªåæ¥ç¶ã«å¿
èŠã§ãã ããŠã³ããŒããã解åããŠå®è¡ãæå¹ã«ããŸãã
UMTSkeeperããã§ãã¯ããŠãUSBMODEMïŒãã³ããŒIDïŒããã€ã¹IDãlsusbã³ãã³ããå
¥åãããšãã«è¡šç€ºãããŸãïŒãšCUSTOM_APNãAPN_USERãAPN_PASSãSIM_PINïŒ3Gãããã¯ââãŒã¯ã«æ¥ç¶ããããã®ããŒã¿ïŒã®å€ã眮ãæããŸãïŒ
å¥ã®ãŠã£ã³ããŠã§ãžã£ãŒãã«ãéãããšã«ãããäœæ¥ãå¶åŸ¡ããŸãã
/etc/rc.localãç·šéããŠãèµ·åæã«éå§ããŸãã
åèµ·ååŸã«ç¢ºèªããŠãã ããã
Sakis3Gã€ã³ã¿ãŒãã§ã€ã¹ãªããŒã¹ssh
3Gçµç±ã§PwnPiã«ãªã¢ãŒãæ¥ç¶ããã«ã¯ããªããŒã¹SSHãã³ãã«ã®çæãæ§æããŸãïŒããã«ã¯ãããªãã¯IPãåãããµãŒããŒãå¿
èŠã§ãïŒã
ãã¹ã¯ãŒããå
¥åããã«PwnPiããµãŒããŒã«èªåçã«æ¥ç¶ããããã«ãPwnPiã§ç§å¯/å
¬éããŒãçæããå
¬éããŒããµãŒããŒã«ã³ããŒããŸãã
ãµãŒããŒïŒDebianã®å ŽåïŒã§ãæ¿èªæžã¿ã®ãªã¹ãã«å
¬ééµãè¿œå ããŸãã
$ cat ~/id_rsa.pub >> ~/.ssh/authorized_keys
PwnPiã䜿çšããŠãµãŒããŒã«æ¥ç¶ããŠã¿ãŸãããã
ãã¹ã¯ãŒããèŠæ±ããã«æ¥ç¶ããå¿
èŠããããŸãã ãã¹ã¯ãŒãããŸã èŠæ±ãããããŒã䜿çšããæ¥ç¶ãåããŠæ§æãããŠããå Žåããã®ãã¡ã€ã«ïŒããã³ãã©ã«ããŒå
šäœïŒãžã®ã¢ã¯ã»ã¹æš©ãèšå®ããå¿
èŠããããŸãã
次ã«ãããŒã転éãã³ãã«ãã»ããã¢ããããŸãã PwnPiã®åŽããïŒ
ãµãŒããŒåŽã§ã¯ãããŒã1221ãæ¥ç¶ãåŸ
æ©ããŠããŸãããã€ã³ã¿ãŒãã§ãŒã¹127.0.0.1ã®ã¿ã§ãã
ãµãŒããŒåŽã§ãããŒã«ã«ããŒãã«æ¥ç¶ããŠããªããŒã¹SSHãä»ããæ¥ç¶ã確èªããŸãã
ãã¹ãŠãæ£ããå ŽåãPwnPiã·ã¹ãã ã®rootãŠãŒã¶ãŒã®ãã¹ã¯ãŒããå
¥åããåŸãPwnPiã«ã¢ã¯ã»ã¹ããå¿
èŠããããŸãã ãµãŒããŒåŽã§ããã¹ãŠã®ã€ã³ã¿ãŒãã§ã€ã¹ã®ããŒã転éãæå¹ã«ããŸãã
ããã§ãsshdã¯æ§æãã¡ã€ã«ãåèªã¿åãããå¿
èŠããããŸãã ãããæã£ãŠããPIDãèŠãŠã¿ãŸãããïŒ
ãããŠåœŒã«HUPã·ã°ãã«ãéä¿¡ããŸãã
ããã§ãPwnPiãšã®æ¥ç¶ã確ç«ããåŸãããã»ã¹ããã¹ãŠã®ã€ã³ã¿ãŒãã§ã€ã¹ã§ã®æ¥ç¶ãæåŸ
ããŠããããšãããããŸãã
èªåèµ·åçšã®ã¹ã¯ãªãããäœæããå®è¡ããæš©å©ãä»äžããŸãã
crontabã§æ¯åå®è¡ããããšã瀺ãè¡ãè¿œå ããŸãã
ããŒã¿ãEvernoteã«èªåçã«ä¿åãã
åŸæ¥ã®ã¡ãŒã«ããäžè¬çãªã¯ã©ãŠããµãŒãã¹ãGoogleãã©ã€ãããEvernoteãžã®ããŒã¿ã®èªå転éãšä¿åã«ã¯å€ãã®ãªãã·ã§ã³ããããŸãã GeeknoteãŠãŒãã£ãªãã£ïŒwww.geeknote.meïŒã䜿çšããŠEvernoteã«ããŒã¿ãéä¿¡ã§ããŸãã
Evernoteã®ãã°ã€ã³è©³çŽ°ãæå®ããŸãïŒãŠãŒã¶ãŒãå€æŽããªãå Žåã¯ãããã1åã ãè¡ãå¿
èŠããããŸãïŒã æ°ããããŒãããã¯ãäœæãããã¹ããšã³ããªãè¿œå ããŸãã
Geeknoteã¯ãããã±ãŒãžã«å«ãŸããŠããgnsyncãŠãŒãã£ãªãã£ã䜿çšããŠãæå®ããããã£ã¬ã¯ããªå
ã®ããã¹ããã¡ã€ã«ã®èªååæããµããŒãããŠããŸãã åæããã«ã¯ã次ã®ããŒã䜿çšããŠå®è¡ããå¿
èŠããããŸãïŒãã£ã¬ã¯ããªã¯åæãããŠããŸã
/ã«ãŒãïŒïŒ
SMS管ç
æ®å¿µãªããã3Gã®åäœã¯å®å®ããŠããŸããã ãã®ãããè¿œå ãšããŠãGammuããã±ãŒãžã䜿çšããŠã³ãã³ãã®è»¢éïŒåèµ·åãªã©ïŒãšSMSéç¥ãå®è£
ã§ããŸãã
ã¡ãã¥ãŒã§ããŒã/ dev / ttyUSB1ãèšå®ããŸãïŒ/ dev / ttyUSB0ã¯3Gçšã«æ§æãããŸããïŒã ããã€ã¹ã®èª¬æãèŠæ±ããŸãã
ç£èŠã¢ãŒããæå¹ã«ããŠããã¹ãã¡ãã»ãŒãžã®éä¿¡ãè©Šè¡ã§ããŸãã
ãã·ã¢èªïŒPwnPiã®Unicodeãã±ãŒã«ã¯ããã©ã«ãã§ã¯èšå®ãããŠããŸããïŒã®å Žåã-unicodeã¹ã€ããã䜿çšã§ããŸãã
Gammuãªãã·ã§ã³SMSãåä¿¡
SMSãåä¿¡ããã«ã¯ãã€ã³ã¹ããŒã«ããå¿
èŠããããŸã
ãããŠãæ§æã§3Gã¢ãã ã®åãããŒããæå®ããŸãã
ãµãŒãã¹ãšããŠå®è¡ãããã°ã確èªããŸãã
åä¿¡ã¡ãã»ãŒãžã¯æ¬¡ã®ãã©ã«ããŒã«ä¿åãããŸãã
å
éšã«ã¯åä¿¡ããSMSããã¹ããå«ãŸããŸãã SMSããã³ãã³ããå®è¡ããã¹ã¯ãªãããäœæããŸãã 以äžã®äŸã§ã¯ãããã¹ããuptimeããåä¿¡ãããšãuptimeã³ãã³ãã®çµæãšãšãã«ã¡ãã»ãŒãžãéä¿¡è
ã«éä¿¡ãããŸãã
$ nano smscheck
ãã¹ãã¡ãã»ãŒãžã¯æ¢ã«/ var / spool / gammu / inboxãã©ã«ããŒã«ããã¯ããªã®ã§ããã®ã¹ã¯ãªãããå®è¡ããæ£ããã¡ãã»ãŒãžãéä¿¡ãããããšã確èªããŠãã ããã 次ã®ãšã³ããªã䜿çšããŠã1åã®é »åºŠã§crontabã«è¿œå ããŸãã
ã·ã¹ãã ãåèµ·åããæ§æã®æäœæ§ã確èªããŸãã
ãã©ãã¯ãŒããã©ããŒããŠãã人
ææ°ã®ãã€ã¯ãã³ã³ãããŒã©ã§ã¯ãå€ãã®ããŒã«ã䜿çšããŠãã¡ã³ããã³ã¹ããªãŒã¢ãŒãã§çµã¿èŸŒã¿ããã€ã¹ã®ä¿¡é Œæ§ãé«ããããšãã§ããŸãã ãã®ããã«èšèšãããã¡ã«ããºã ã®1ã€ã¯ãããã€ã¹ãããªãŒãºããå Žåã«ããã€ã¹ãåèµ·åã§ããããã«ããããŒããŠã§ã¢ãŠã©ããããã°ã¿ã€ããŒã§ãã ããã©ãŒãã³ã¹ãç£èŠããå¿
èŠãããããã°ã©ã ã¯ããã®ã¿ã€ããŒãå®æçã«ãªã»ããããå¿
èŠããããŸãã 圌女ãããããããå Žåãã¿ã€ããŒã¯ãããå€ãè¶
ãããªã»ããä¿¡å·ãããã»ããµã«éä¿¡ãããŸãã Linuxã§ã¯ããŠã©ããããã°ãµããŒããœãããŠã§ã¢ã¯2ã€ã®éšåã§æ§æãããŠããŸãããŠã©ããããã°ã¿ã€ããŒãã©ã€ããŒãšãã·ã¹ãã å
šäœã®ç¶æ
ãç£èŠãããŠã©ããããã°ããŒã¢ã³ã§ãã
ãŠã©ããããã°ãã©ã€ããŒ
ãã©ã€ããŒã¢ãžã¥ãŒã«ã®ããŠã³ããŒãïŒ
ã¹ã¿ãŒãã¢ããã¢ãžã¥ãŒã«ã®ãªã¹ããžã®è¿œå ïŒ
ããã€ã¹ãéããããšããŠã©ããããã°ã¿ã€ããŒãéå§ããŸãã æåãéä¿¡ãããšãªã»ãããããŸãã Vèšå·ã¯ã¿ã€ããŒãç¡å¹ã«ããŸãã 次ã®ããã«ããã©ãŒãã³ã¹ã確èªã§ããŸãã
çŸåšãããŒããŒãããã®è¡ã®å
¥åã®ã¿ãåèµ·åããåé¢ãããŠããŸãïŒcatã³ãã³ãã¯å
¥åãããããã¹ãã1è¡ãã€è»¢éããŸãïŒã æåVãå
¥åããŠãããã«ãŠã³ãããŠã³ãåæ¢ããŸãã
ãŠã©ããããã°ããŒã¢ã³
watchdogããã±ãŒãžã¯2ã€ã®ããŒã¢ã³ã§æ§æãããŠããŸãïŒç°¡ç¥åãããwd_keepaliveãšãããå€ãã®æ©èœãæäŸããã¡ã€ã³ã®watchdogã§ãã ããã䜿çšãããšãã·ã¹ãã ã®è² è·ã ãã§ãªãã䜿çšå¯èœãªã¡ã¢ãªã®éãåã
ã®ãã¡ã€ã«ãžã®ã¢ã¯ã»ã¹ãpingã³ãã³ãã䜿çšããããŒãã®å¯çšæ§ãªã©ã®ãã©ã¡ãŒã¿ãŒãå¶åŸ¡ã§ããŸãã
/etc/watchdog.confã§èšå®ããã«ã¯ãããã€ãã®è¡ã®ã³ã¡ã³ããå€ãå¿
èŠããããŸãã
æåã¹ã¿ãŒã
確èªãã
ãŠã©ããããã°æ§æãæ©èœããŠãããã©ããã確èªããæãç°¡åãªæ¹æ³ã¯ãã³ãã³ãã©ã€ã³ã§ããããfork bombãå
¥åããããšã§ãã
: (){ :|:& };:
ã·ã¹ãã ã¯ããã«å¿çãåæ¢ãããã¹ãŠãæ£ããæ§æãããŠããã°ãæ°ç§åŸã«åèµ·åããŸãã
èªåŸçãªé£ã¹ç©
æ¥ç¶ãããã¢ã¯ãã£ããªWi-FiïŒD-Link DWA-140 B2ïŒããã³3GïŒHuawei E1550ïŒã¢ããã¿ãŒãæèŒããRaspberry Piã¯ãçŽ700-800 mAãæ¶è²»ããŸãã çŸåšå©çšå¯èœãªååã«ã³ã³ãã¯ããªå€éšãªããŠã é»æ± ã®å®¹éã¯æ倧20ã¢ã³ãã¢æã§ãããæ倧24æéã®é»æ± 寿åœãæäŸã§ããŸãã RPiãåãªãå€æ©èœããã€ã¹ãšèãããšãéåžžã«åªããŠããŸãã ãã ããé·æéã®é衚瀺ã®ã€ã³ã¹ããŒã«ã«ã¯ãUSBããŒããŸãã¯ã³ã³ã»ã³ããªã©ã®å€éšé»æºãå¿
èŠã§ãã
ãŸãšã
軜èã«èŠãããããRaspberry Piã¯å±éºãªããŒã«ã«ãªãå¯èœæ§ããããŸãããæ¶è²»é»åã倧ããããããªãã©ã€ã³ã§ã®äœæ¥ãå¶éãããŸãã ãã ãããããŸã§ã§æãæ©èœçãªé¡äŒŒç©ã§ããPWNIE Expressã®åçšäŸµå
¥ãã¹ãããŒã«ã¯ããŸã£ããç°ãªãäŸ¡æ Œã«ããŽãªãŒã«ãããŸãã
2013幎5æ5æ¥ä»ã®Hackerèªã«æåã«æ²èŒãããŸãããäœæè
ïŒAlexander Lykoshinã alykoshin @ gmail.com ã ligne.ruISSUU.comã«å
¬éããããã«ãŒã賌èªãã
