Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
MR.RABBIT 聞いた事はあるけど、実際には見た事がないハッキングガジェット
Search
Mr.Rabbit
December 04, 2017
2
7.2k
MR.RABBIT 聞いた事はあるけど、実際には見た事がないハッキングガジェット
2017年12月2日(土) 元祖 濱せっく #1 で発表させてもらった資料です。
Mr.Rabbit
December 04, 2017
Tweet
Share
More Decks by Mr.Rabbit
See All by Mr.Rabbit
BOCCHI
01rabbit
0
3
KaliPAKU
01rabbit
0
3
Babbly
01rabbit
0
49
P.A.K.U.R.I SECCON2019 Akihabara YOROZU
01rabbit
1
98
P.A.K.U.R.I AVTOKYO HIVE
01rabbit
0
51
The Empire Strikes Back ~MR.RABBIT 帝国の逆襲~
01rabbit
0
230
地雷探しに脆弱性を使うのは間違っているだろうか Hack a Minesweeper
01rabbit
0
180
あの日学んだ攻撃の方法を僕達はまだ知らない。
01rabbit
0
180
Featured
See All Featured
The MySQL Ecosystem @ GitHub 2015
samlambert
250
12k
Dealing with People You Can't Stand - Big Design 2015
cassininazir
365
25k
How to Create Impact in a Changing Tech Landscape [PerfNow 2023]
tammyeverts
48
2.2k
Faster Mobile Websites
deanohume
305
30k
個人開発の失敗を避けるイケてる考え方 / tips for indie hackers
panda_program
95
17k
Code Reviewing Like a Champion
maltzj
520
39k
ReactJS: Keep Simple. Everything can be a component!
pedronauck
665
120k
Large-scale JavaScript Application Architecture
addyosmani
510
110k
Making Projects Easy
brettharned
116
5.9k
The Pragmatic Product Professional
lauravandoore
32
6.3k
Fontdeck: Realign not Redesign
paulrobertlloyd
82
5.3k
Exploring the Power of Turbo Streams & Action Cable | RailsConf2023
kevinliebholz
28
4.4k
Transcript
ฉ͍ͨࣄ͋Δ͚Ͳɺ࣮ࡍʹݟͨࣄ͕ͳ͍ ϋοΩϯάΨδΣοτ ݩᖛͤͬ͘ !SBJU
ࣗݾհ ͏͗͞ .33"##*5 w झຯͰηΩϡϦςΟใͷऩूɺ߈ܸݕূΛ͠ ͯΔࣗশϖςϯࢣڃΫϥοΧʔ w ॏ͍தೋපΛױ͍ͬͯΔϥϊϕѪಡՈ w
झຯےτϨͱαόήʔ ͏͞ϒϩ ɹIUUQSBJUCMPHIBUFCMPKQ 5XJUUFS ɹ!SBJU
͋͐͡Μͩ wϋοΩϯάΨδΣοτͷ wকདྷతʹʮϑΟΫγϣϯʯͰͳ ͯ͘ʮϊϯϑΟΫγϣϯʯʹͳΓ ͦ͏ͳ߈ܸγφϦΦ
ΨνͳϋοΧʔͷਓʁ✋
ࣖΛ࠹͗ɺޱΛ࠹͗ɺΛด͡Δ͔ɺ $5'ʹઐ೦ͯ͠Լ͍͞
.330#05ͬͯΔਓʁ✋
None
ΥονυοάεͬͯΔਓʁ✋
None
өըɺւ֎υϥϚɺήʔϜͰͬͯΔ αΠόʔ߈ܸͬͯຊʹͰ͖Δͷʁ
͋ΜͳศརͳϋοΩϯάΨδΣοτͬͯ ຊʹ͋Δͷʁ
͋ͬͨʂ
,BMJ-JOVY/FU)VOUFS /FYVT 1XO1 3BTQCFSSZ1J;FSP8
άάΓͳ͕Β࡞ͬͯΈͨʂ
ϚδͰX
ͦͦίϨԿʁ
,BMJ-JOVY/FU)VOUFS ,BMJ-JOVY/FU)VOUFSɺ/FYVTσόΠε༻ͷΦʔϓϯιʔεͷ"OESPJE ༻৵ೖςετϓϥοτϑΥʔϜͰ͢ɻ/FU)VOUFSɺ,BMJ-JOVYͷ৵ೖς ετπʔϧҎ֎ʹɺ)*%ΩʔϘʔυ߈ܸɺ#BE64#߈ܸɺ&WJM"1 ."/"߈ܸͳͲ͍͔ͭ͘ͷίϯϙʔωϯτ͕Ճ͞Ε͍ͯΔɻ
1XO13BTQCFSSZ1J;FSP8 1XO1ɺՁ֨ͷ3BTQCFSSZ1J;FSP·ͨ3BTQCFSSZ1J;FSP8Λϕʔε ʹͨ͠ɺߴʹΧελϚΠζՄೳͳ64#߈ܸϓϥοτϑΥʔϜͰ͢ɻ 1XO1ͷػೳ w )*%ӅΕνϟωϧ'SPOU%PPS#BDL%PPSc)*%σόΠεܦ༝Ͱ8JOEPXTλʔήοτͷϦϞʔτγΣϧΞΫηεΛऔಘ w 8JOEPXT-PDL1JDLFScऑ͍ύεϫʔυͷεΫϦʔϯϩοΫΛղআ͢ΔʢશࣗಈԽʣ w 8J'Jϗοτεϙοτc44)ΞΫηεʢ1J;FSP8ͷΈʣɺӅ͞Εͨ&44*%Λαϙʔτ
ͳͲ
σϞϯετϨʔγϣϯ
,BMJ-JOVY/FU)VOUFS )*%ΩʔϘʔυ߈ܸ 8JOEPXT 7.8BSF'VTJPO /FU)VOUFS /FYVT %VDL)VOUFS)*%
1XO1 8JOEPXT-PDL1JDLFS 8JOEPXT 6TFS7JDUJN 1BTTXPSE 1XO1 )*%ΩʔϘʔυͷػೳΛར༻ͯ͠ϋογϡΛͱͬͯΫϥοΫ͢Δ
1XO1 )*%ӅΕνϟωϧ#BDL%PPS 8JOEPXT 1XO1
ҙ֎ͱөըͬΆ͍͜ͱ Ͱ͖ͪΌͬͨX
͘ͳ͍ʁ
কདྷతʹʮϑΟΫγϣϯʯͰͳͯ͘ ʮϊϯϑΟΫγϣϯʯʹͳΓͦ͏ͳ߈ܸγφϦΦ ඪతܕ߈ܸʹ͓͚Δ߈ܸऀͷߦಈΛੳͨ͠ߟ͑ํͱ͞ΕΔ ʮαΠόʔΩϧνΣʔϯʯͷதʹ/FU)VOUFSɺ1XO1ͷ ༷ͳΨδΣοτΛऔΓೖΕͨʮϑΟΫγϣϯʯͰແ͘ͳΓ ͦ͏ͳ߈ܸγφϦΦΛߟ͑ͯΈͨɻ
αΠόʔΩϧνΣʔϯͱ ߈ܸͷஈ֊ ֓ཁ ఁ 3FDPOOBJTTBODF ΦʔϓϯιʔεͳͲ͔ΒඪతͷใΛऩू͢Δ ثԽ 8FBQPOJ[BUJPO
߈ܸίʔυϚϧΣΞͷ࡞ ૹ %FMJWFSZ ͳΓ͢·͠ϝʔϧʢϚϧΣΞʣΛૹ ϚϧΣΞઃஔαΠτͷ༠ಋ ߈ܸ &YQMPJUBUJPO ߈ܸίʔυϚϧΣΞΛ࣮ߦͤ͞Δ Πϯετʔϧ *OTUBMMBUJPO ඪత͕ϚϧΣΞʹײછ ԕִૢ࡞ $ ϚϧΣΞͱ$αʔόΛ௨৴ͤ͞ԕִૢ࡞͢Δ ৵ೖ֦େɾత࣮ߦ "DUJPOTPO0CKFDUJWFT ϚϧΣΞͷײછ֦େ ใͷࡡऔ
ʮϊϯϑΟΫγϣϯʯʹͳΓͦ͏ͳ߈ܸγφϦΦ ʢରɿΠϯλʔωοτʹଓՄೳͳެతػؔʣ ᶃެ͔ࣔΒܯඋձࣾͷग़ೖΓۀऀΛׂΓग़͠৵ೖʢఁʣ ᶄ$ଓ͢Δ1PXFS4IFMMεΫϦϓτΛ༻ҙʢثԽʣ ᶅਓ͕1$͔ΒΕͨ伱ʹ/FU)VOUFSΛଓʢૹʣ ᶆ)*%ΩʔϘʔυ߈ܸʢ߈ܸʣ ᶇ1$ʹϚϧΣΞΛײછͤ͞ΔʢΠϯετʔϧʣ ᶈϚϧΣΞΛ$αʔόͱ௨৴ʢ$ʣ ᶉσʔλϕʔεͷഁյPSใࡡऔʢతୡʣ ᶃᶄ
ᶅ ᶆ ᶇ ᶈ ᶉ ˞ΨδΣοτΛར༻͢Δ͜ͱͰ"7ιϑτʹݕ͞ΕΔϦεΫΛԼ͛ͯϚϧΣΞΛײછͤ͞ΒΕΔ
ʮϊϯϑΟΫγϣϯʯʹͳΓͦ͏ͳ߈ܸγφϦΦ ʢରɿΠϯλʔωοτ͔Βִ͞Ε͍ͯΔެతػؔʣ ᶃެ͔ࣔΒܯඋձࣾͷग़ೖΓۀऀΛׂΓग़͠৵ೖʢఁʣ ᶄ1XO1ͷઃఆΛ)*%ӅΕνϟωϧ#BDL%PPSʹ͢ΔʢثԽʣ ᶅਓ͕1$͔ΒΕͨ伱ʹ1XO1Λଓʢૹʣ ᶆ)*%ӅΕνϟωϧ#BDL%PPSͰଓʢ߈ܸʣ ᶇ1XO1Λ߈ܸऀͷ1$ͱ௨৴ʢ$ʣ ᶈσʔλϕʔεͷഁյPSใࡡऔʢతୡʣ ᶃᶄ ᶅ
ᶆ ᶇ ᶈ ˞Πϯλʔωοτ͔Βִ͢ΔҝͷΤΞΪϟοϓΛ1XO1Λར༻͢ΔࣄͰ֎෦ͱଓͤ͞Δ
өըυϥϚͷ ݟա͗Ͱ͠ΐ͏͔ʁ
͜ΕϑΟΫγϣϯ͚ͩͷ Ͱ͠ΐ͏͔ʁ
ਥೋපͷໝͱࢥͬͨํস͍ͬͯͬͯͩ͘͞X ͠ɺࢲͱಉ༷͡ʹڴҖͱͳΓ͏Δͱײͨ͡ํ͕͍Βͬ ͠Ό͍·ͨ͠ΒҰॹʹରԠࡦΛߟ͑ͯΈ·ͤΜ͔ʁ ͓ΘΓ