<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>Cago_Note</title>
    <link>https://cago-young.tistory.com/</link>
    <description>* [악의적인 사용은 절대 금지  !!] *
보안, IT 등 공부 하면서 정리 하는 블로그입니다.
스미싱 관련 문자 제보나 궁금하신 사항은 아래 카톡 이용해 주세요       
https://open.kakao.com/o/sy8rOtNf</description>
    <language>ko</language>
    <pubDate>Thu, 9 Apr 2026 13:05:21 +0900</pubDate>
    <generator>TISTORY</generator>
    <ttl>100</ttl>
    <managingEditor>카고형</managingEditor>
    <image>
      <title>Cago_Note</title>
      <url>https://tistory1.daumcdn.net/tistory/3647750/attach/1a888821082c4c5a80965172774736c6</url>
      <link>https://cago-young.tistory.com</link>
    </image>
    <item>
      <title>XWorm v5.6 간단 정리</title>
      <link>https://cago-young.tistory.com/235</link>
      <description>&lt;h2 data-end=&quot;377&quot; data-start=&quot;345&quot; data-ke-size=&quot;size26&quot;&gt;XWorm v5.6 &amp;mdash; 무엇이고 어떻게 공격하는가&lt;/h2&gt;
&lt;p data-end=&quot;625&quot; data-start=&quot;379&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #ffffff;&quot;&gt;&lt;b&gt;TL;DR&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;XWorm v5.6은 .NET 기반의 원격접근 트로이목마(RAT)로, 스크린샷&amp;middot;키로깅&amp;middot;파일 탈취&amp;middot;원격 명령 실행&amp;middot;DDoS 등 다양한 악성 행위를 수행할 수 있습니다. 주로 스크립트 드로퍼(WSF/VBS/PowerShell 등)를 통해 유포되며, 난독화&amp;middot;프로세스 주입&amp;middot;암호화 통신으로 탐지를 회피합니다. 자세한 분석 원문은 아래를 참고하세요.&lt;br /&gt;원문 분석: &lt;a href=&quot;https://cago-young.tistory.com/226&quot;&gt;https://cago-young.tistory.com/226&lt;/a&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;639&quot; data-start=&quot;632&quot; data-ke-size=&quot;size26&quot;&gt;소개&lt;/h2&gt;
&lt;p data-end=&quot;811&quot; data-start=&quot;640&quot; data-ke-size=&quot;size16&quot;&gt;XWorm은 Windows 환경에서 동작하는 .NET 기반 RAT(원격접근 트로이목마) 계열 악성코드입니다. 기능이 풍부하고 유연해 공격자가 다양한 목적(정보 탈취, 원격 제어, 네트워크 교란 등)에 맞게 활용할 수 있습니다. 최신 변종은 난독화와 암호화, 프로세스 인젝션 등 탐지 회피 기법을 사용합니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;845&quot; data-start=&quot;818&quot; data-ke-size=&quot;size26&quot;&gt;킬 체인 &amp;mdash; XWorm 공격 흐름 (단계별)&lt;/h2&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-end=&quot;1590&quot; data-start=&quot;847&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li data-end=&quot;936&quot; data-start=&quot;847&quot;&gt;&lt;b&gt;정찰 (Reconnaissance)&lt;/b&gt;&lt;br /&gt;공격자는 표적(개인 또는 조직)을 선정하고, 피싱메일&amp;middot;사회공학 기법으로 신뢰를 쌓을 방법을 준비합니다.&lt;/li&gt;
&lt;li data-end=&quot;1050&quot; data-start=&quot;938&quot;&gt;&lt;b&gt;전달 (Delivery)&lt;/b&gt;&lt;br /&gt;피싱 이메일의 첨부파일(문서, 압축파일)이나 외부 호스팅(paste.ee 등)에 올린 스크립트 링크를 통해 드로퍼(WSF/VBS/PS1 등)가 전달됩니다.&lt;/li&gt;
&lt;li data-end=&quot;1195&quot; data-start=&quot;1052&quot;&gt;&lt;b&gt;악용&amp;middot;실행 (Exploitation / Execution)&lt;/b&gt;&lt;br /&gt;사용자가 문서를 열거나 스크립트를 실행하면, 매크로나 스크립트가 동작해 드로퍼 체인이 실행됩니다. 드로퍼는 추가 페이로드(.NET DLL 또는 실행파일)를 다운로드&amp;middot;실행합니다.&lt;/li&gt;
&lt;li data-end=&quot;1331&quot; data-start=&quot;1197&quot;&gt;&lt;b&gt;설치&amp;middot;유지 (Installation / Persistence)&lt;/b&gt;&lt;br /&gt;페이로드는 시스템에 설치되어(혹은 메모리 상에서 로드되어) 레지스트리, 작업 스케줄러, 시작 폴더 등을 이용해 재부팅 후에도 동작하도록 지속성을 확보합니다.&lt;/li&gt;
&lt;li data-end=&quot;1436&quot; data-start=&quot;1333&quot;&gt;&lt;b&gt;명령&amp;middot;제어 연결 (Command &amp;amp; Control &amp;mdash; C2)&lt;/b&gt;&lt;br /&gt;감염 호스트는 암호화된 채널로 C2 서버와 통신을 수립하고, 주기적 핑과 함께 원격 명령을 수신합니다.&lt;/li&gt;
&lt;li data-end=&quot;1590&quot; data-start=&quot;1438&quot;&gt;&lt;b&gt;목적 수행 (Actions on Objectives)&lt;/b&gt;&lt;br /&gt;공격자는 화면 캡처, 키로깅, 파일 검색&amp;middot;업로드&amp;middot;다운로드, 호스트 파일 조작(DNS 변조 가능), 원격 명령 실행, DDoS 등 다양한 행위를 수행해 정보 수집&amp;middot;탈취 또는 시스템 교란을 일으킵니다.&lt;/li&gt;
&lt;/ol&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1612&quot; data-start=&quot;1597&quot; data-ke-size=&quot;size26&quot;&gt;주요 기능(간단 요약)&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1753&quot; data-start=&quot;1613&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;1634&quot; data-start=&quot;1613&quot;&gt;화면 캡처 및 실시간 원격 보기&lt;/li&gt;
&lt;li data-end=&quot;1649&quot; data-start=&quot;1635&quot;&gt;키로깅(입력 기록)&lt;/li&gt;
&lt;li data-end=&quot;1676&quot; data-start=&quot;1650&quot;&gt;파일 업로드/다운로드 및 원격 파일 실행&lt;/li&gt;
&lt;li data-end=&quot;1698&quot; data-start=&quot;1677&quot;&gt;프로세스 주입을 통한 탐지 회피&lt;/li&gt;
&lt;li data-end=&quot;1722&quot; data-start=&quot;1699&quot;&gt;네트워크 명령 실행(예: DDoS)&lt;/li&gt;
&lt;li data-end=&quot;1753&quot; data-start=&quot;1723&quot;&gt;설정&amp;middot;통신 암호화(변종에 따라 AES 등 사용)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1776&quot; data-start=&quot;1760&quot; data-ke-size=&quot;size26&quot;&gt;감염 경로에서 주의할 점&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1950&quot; data-start=&quot;1777&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;1878&quot; data-start=&quot;1777&quot;&gt;특히 .wsf, .vbs, .ps1, .docx 내 매크로, 압축파일(.zip/.rar) 내부 실행 파일 등 스크립트 기반 드로퍼를 통한 감염 사례가 많습니다.&lt;/li&gt;
&lt;li data-end=&quot;1950&quot; data-start=&quot;1879&quot;&gt;공격 체인은 여러 파일을 거치는 경우가 흔하므로 &amp;ldquo;한 파일만 열어도&amp;rdquo; 최종 페이로드가 내려올 수 있다는 점을 염두에 두세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;1986&quot; data-start=&quot;1957&quot; data-ke-size=&quot;size23&quot;&gt;사용자가 바로 적용할 수 있는 예방 수칙&lt;/h3&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-end=&quot;2404&quot; data-start=&quot;1987&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li data-end=&quot;2053&quot; data-start=&quot;1987&quot;&gt;&lt;b&gt;의심스러운 메일&amp;middot;첨부파일은 열지 않기&lt;/b&gt; &amp;mdash; 특히 출처 불분명한 문서, 압축파일, 실행 권유 메시지 주의.&lt;/li&gt;
&lt;li data-end=&quot;2116&quot; data-start=&quot;2054&quot;&gt;&lt;b&gt;매크로&amp;middot;스크립트 기본 비활성화&lt;/b&gt; &amp;mdash; 문서가 매크로 실행을 요구하면 발신자 확인 후에도 실행 금지.&lt;/li&gt;
&lt;li data-end=&quot;2171&quot; data-start=&quot;2117&quot;&gt;&lt;b&gt;윈도우&amp;middot;오피스&amp;middot;브라우저 등 주요 소프트웨어는 최신 상태 유지&lt;/b&gt; &amp;mdash; 보안 패치 적용.&lt;/li&gt;
&lt;li data-end=&quot;2227&quot; data-start=&quot;2172&quot;&gt;&lt;b&gt;백신/EDR 사용 및 정기 검사&lt;/b&gt; &amp;mdash; 의심 파일을 발견하면 격리 후 전문가에게 문의.&lt;/li&gt;
&lt;li data-end=&quot;2281&quot; data-start=&quot;2228&quot;&gt;&lt;b&gt;중요 계정은 2단계 인증(OTP) 사용&lt;/b&gt; &amp;mdash; 비밀번호 유출 시 추가 방어막 제공.&lt;/li&gt;
&lt;li data-end=&quot;2337&quot; data-start=&quot;2282&quot;&gt;&lt;b&gt;비밀번호 재사용 금지&amp;middot;주기적 변경&lt;/b&gt; &amp;mdash; 한 계정 노출이 다른 계정으로 번지지 않도록.&lt;/li&gt;
&lt;li data-end=&quot;2404&quot; data-start=&quot;2338&quot;&gt;&lt;b&gt;스크립트(.ps1/.vbs/.wsf 등) 파일은 함부로 실행하지 않기&lt;/b&gt; &amp;mdash; 개발자용 파일도 출처 확인 필요.&lt;/li&gt;
&lt;/ol&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;2419&quot; data-start=&quot;2411&quot; data-ke-size=&quot;size23&quot;&gt;마무리&lt;/h3&gt;
&lt;p data-end=&quot;2562&quot; data-start=&quot;2420&quot; data-ke-size=&quot;size16&quot;&gt;XWorm은 기능이 다양하고 진화하는 악성코드입니다. 다행히도 대부분의 공격은 &lt;b&gt;피싱&amp;middot;의심 파일 실행&lt;/b&gt; 같은 사람의 실수를 노리므로, 작은 주의(메일 주의, 매크로 비활성화, 업데이트, 백신, 2단계 인증)만으로도 피해 위험을 크게 줄일 수 있습니다.&lt;/p&gt;
&lt;p data-end=&quot;2638&quot; data-start=&quot;2564&quot; data-ke-size=&quot;size16&quot;&gt;원문 전문 분석(기술적 세부사항)은 아래를 참고하세요.&lt;br /&gt;원문 분석: &lt;a href=&quot;https://cago-young.tistory.com/226&quot;&gt;https://cago-young.tistory.com/226&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759310692781&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석]XWorm v5.6: .NET 기반 트로이 목마(RAT)&quot; data-og-description=&quot;[분석]XWorm v5.6: .NET 기반 트로이 목마(RAT)Xworm은 그 어떤 악성 프로그램과도 비교할 수 없을 만큼 강력하고 교묘한 **원격 접근 트로이 목마(RAT)**입니다. Windows 운영 체제를 타겟으로 하는 이 악성 &quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/226&quot; data-og-url=&quot;https://cago-young.tistory.com/226&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/XvU2v/hyZKu7gaOt/y0enehnuXBCkAokrGtGL50/img.png?width=441&amp;amp;height=145&amp;amp;face=0_0_441_145,https://scrap.kakaocdn.net/dn/bzfeG4/hyZJQREezy/dokMyPUNyye9KCsq0kDdok/img.png?width=441&amp;amp;height=145&amp;amp;face=0_0_441_145,https://scrap.kakaocdn.net/dn/bOTFcg/hyZJ1yQchy/l0S1eS40MLIuShUnCGNfR0/img.png?width=1452&amp;amp;height=774&amp;amp;face=0_0_1452_774&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/226&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/226&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/XvU2v/hyZKu7gaOt/y0enehnuXBCkAokrGtGL50/img.png?width=441&amp;amp;height=145&amp;amp;face=0_0_441_145,https://scrap.kakaocdn.net/dn/bzfeG4/hyZJQREezy/dokMyPUNyye9KCsq0kDdok/img.png?width=441&amp;amp;height=145&amp;amp;face=0_0_441_145,https://scrap.kakaocdn.net/dn/bOTFcg/hyZJ1yQchy/l0S1eS40MLIuShUnCGNfR0/img.png?width=1452&amp;amp;height=774&amp;amp;face=0_0_1452_774');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석]XWorm v5.6: .NET 기반 트로이 목마(RAT)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;[분석]XWorm v5.6: .NET 기반 트로이 목마(RAT)Xworm은 그 어떤 악성 프로그램과도 비교할 수 없을 만큼 강력하고 교묘한 **원격 접근 트로이 목마(RAT)**입니다. Windows 운영 체제를 타겟으로 하는 이 악성&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>Rat</category>
      <category>XWorm</category>
      <category>원격접근트로이목마</category>
      <category>정보보안</category>
      <category>피싱주의</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/235</guid>
      <comments>https://cago-young.tistory.com/235#entry235comment</comments>
      <pubDate>Fri, 10 Oct 2025 19:26:07 +0900</pubDate>
    </item>
    <item>
      <title>2025.10 기록용 장기 포트폴리오 로드맵</title>
      <link>https://cago-young.tistory.com/236</link>
      <description>&lt;h1 data-end=&quot;205&quot; data-start=&quot;165&quot;&gt;  [투자 전략 기록] 2025~2035 장기 포트폴리오 로드맵&lt;/h1&gt;
&lt;blockquote data-end=&quot;249&quot; data-start=&quot;206&quot; data-ke-style=&quot;style1&quot;&gt;
&lt;p data-end=&quot;249&quot; data-start=&quot;208&quot; data-ke-size=&quot;size16&quot;&gt;&amp;ldquo;현재 계좌 + 월 140만 원 적립 기반, 복리 9% 목표 시나리오&amp;rdquo;&lt;/p&gt;
&lt;/blockquote&gt;
&lt;hr data-end=&quot;254&quot; data-start=&quot;251&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;292&quot; data-start=&quot;256&quot; data-ke-size=&quot;size26&quot;&gt;  1️⃣ 현재 포트폴리오 상태 (2025년 10월 기준)&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;&lt;br /&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;663&quot; data-start=&quot;294&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 18.4884%;&quot;&gt;자산&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot;&gt;비중(%)&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot;&gt;성격&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;408&quot; data-start=&quot;366&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;372&quot; data-start=&quot;366&quot;&gt;TMF&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;393&quot; data-start=&quot;388&quot;&gt;5%&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;408&quot; data-start=&quot;393&quot;&gt;초장기채 3배 ETF&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;451&quot; data-start=&quot;409&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;415&quot; data-start=&quot;409&quot;&gt;TLT&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;439&quot; data-start=&quot;433&quot;&gt;15%&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;451&quot; data-start=&quot;439&quot;&gt;장기채권 ETF&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;503&quot; data-start=&quot;452&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;459&quot; data-start=&quot;452&quot;&gt;TQQQ&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;483&quot; data-start=&quot;477&quot;&gt;22%&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;503&quot; data-start=&quot;483&quot;&gt;NASDAQ 3배 성장 ETF&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;550&quot; data-start=&quot;504&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;511&quot; data-start=&quot;504&quot;&gt;SCHD&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;536&quot; data-start=&quot;530&quot;&gt;50%&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;550&quot; data-start=&quot;536&quot;&gt;고배당&amp;middot;복리 ETF&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;595&quot; data-start=&quot;551&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;558&quot; data-start=&quot;551&quot;&gt;SOXL&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;581&quot; data-start=&quot;576&quot;&gt;8%&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;595&quot; data-start=&quot;581&quot;&gt;반도체 3배 ETF&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;663&quot; data-start=&quot;596&quot;&gt;
&lt;td style=&quot;width: 18.4884%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;605&quot; data-start=&quot;596&quot;&gt;&lt;b&gt;총계&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 16.7442%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;639&quot; data-start=&quot;628&quot;&gt;&lt;b&gt;100%&lt;/b&gt;&lt;/td&gt;
&lt;td style=&quot;width: 64.6512%;&quot; data-col-size=&quot;sm&quot; data-end=&quot;663&quot; data-start=&quot;639&quot;&gt;초기 포트 가치 약 ₩2,200만 원&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-end=&quot;680&quot; data-start=&quot;665&quot; data-ke-size=&quot;size16&quot;&gt;  &lt;b&gt;현재 진단:&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;791&quot; data-start=&quot;681&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;723&quot; data-start=&quot;681&quot;&gt;&lt;b&gt;SCHD 비중이 높아 안정성은 충분하지만, 성장주 비중이 낮음&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;761&quot; data-start=&quot;724&quot;&gt;&lt;b&gt;채권(TLT&amp;middot;TMF)&lt;/b&gt; 은 금리 인하기 반등 여력 존재&lt;/li&gt;
&lt;li data-end=&quot;791&quot; data-start=&quot;762&quot;&gt;&lt;b&gt;SOXL&lt;/b&gt; 은 AI/반도체 사이클 초입기&lt;/li&gt;
&lt;/ul&gt;
&lt;hr data-end=&quot;796&quot; data-start=&quot;793&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;816&quot; data-start=&quot;798&quot; data-ke-size=&quot;size26&quot;&gt;  2️⃣ 월 적립금 계획&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;940&quot; data-start=&quot;818&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;856&quot; data-start=&quot;818&quot;&gt;&lt;b&gt;매달 투자금:&lt;/b&gt; ₩1,400,000 (&amp;asymp; $1,000)&lt;/li&gt;
&lt;li data-end=&quot;879&quot; data-start=&quot;857&quot;&gt;&lt;b&gt;연간:&lt;/b&gt; 약 $12,000&lt;/li&gt;
&lt;li data-end=&quot;909&quot; data-start=&quot;880&quot;&gt;&lt;b&gt;10년 총 적립:&lt;/b&gt; 약 $120,000&lt;/li&gt;
&lt;li data-end=&quot;940&quot; data-start=&quot;910&quot;&gt;&lt;b&gt;기존 자산 포함 총 원금:&lt;/b&gt; $135,000&lt;/li&gt;
&lt;/ul&gt;
&lt;hr data-end=&quot;945&quot; data-start=&quot;942&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;981&quot; data-start=&quot;947&quot; data-ke-size=&quot;size26&quot;&gt;  3️⃣ 월별 자산 분배 비중 (2025~26 기준)&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;구분ETF월 투자금(₩)비중설명
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;1319&quot; data-start=&quot;983&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;1319&quot; data-start=&quot;1039&quot;&gt;
&lt;tr data-end=&quot;1093&quot; data-start=&quot;1039&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1045&quot; data-start=&quot;1039&quot;&gt;성장주&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1058&quot; data-start=&quot;1045&quot;&gt;TQQQ, SOXL&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1068&quot; data-start=&quot;1058&quot;&gt;600,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1078&quot; data-start=&quot;1068&quot;&gt;&lt;b&gt;43%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1093&quot; data-start=&quot;1078&quot;&gt;성장주 핵심구간 집중&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1147&quot; data-start=&quot;1094&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1100&quot; data-start=&quot;1094&quot;&gt;배당주&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1107&quot; data-start=&quot;1100&quot;&gt;SCHD&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1117&quot; data-start=&quot;1107&quot;&gt;200,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1127&quot; data-start=&quot;1117&quot;&gt;&lt;b&gt;14%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1147&quot; data-start=&quot;1127&quot;&gt;이미 충분한 보유분, 복리유지&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1201&quot; data-start=&quot;1148&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1153&quot; data-start=&quot;1148&quot;&gt;채권&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1164&quot; data-start=&quot;1153&quot;&gt;TLT, TMF&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1174&quot; data-start=&quot;1164&quot;&gt;400,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1184&quot; data-start=&quot;1174&quot;&gt;&lt;b&gt;29%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1201&quot; data-start=&quot;1184&quot;&gt;금리 인하기 수익성 높음&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1264&quot; data-start=&quot;1202&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1213&quot; data-start=&quot;1202&quot;&gt;방어&amp;middot;인플레헤지&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1229&quot; data-start=&quot;1213&quot;&gt;XLV, XLU, GLD&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1239&quot; data-start=&quot;1229&quot;&gt;100,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1248&quot; data-start=&quot;1239&quot;&gt;&lt;b&gt;7%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1264&quot; data-start=&quot;1248&quot;&gt;향후 조정기 대비 완충&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1319&quot; data-start=&quot;1265&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1274&quot; data-start=&quot;1265&quot;&gt;현금/단기채&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1281&quot; data-start=&quot;1274&quot;&gt;SGOV&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1291&quot; data-start=&quot;1281&quot;&gt;100,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1300&quot; data-start=&quot;1291&quot;&gt;&lt;b&gt;7%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1319&quot; data-start=&quot;1300&quot;&gt;리스크 발생 시 유동성 확보&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr data-end=&quot;1324&quot; data-start=&quot;1321&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;1359&quot; data-start=&quot;1326&quot; data-ke-size=&quot;size26&quot;&gt;  4️⃣ 2025~2035 비중 변화 시나리오 요약&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;자산군구성 ETF2025202820302035전략 요약
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;1844&quot; data-start=&quot;1361&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;1844&quot; data-start=&quot;1444&quot;&gt;
&lt;tr data-end=&quot;1530&quot; data-start=&quot;1444&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1454&quot; data-start=&quot;1444&quot;&gt;&lt;b&gt;성장주&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1473&quot; data-start=&quot;1454&quot;&gt;TQQQ, SOXL, SOXX&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1481&quot; data-start=&quot;1473&quot;&gt;30% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1489&quot; data-start=&quot;1481&quot;&gt;25% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1497&quot; data-start=&quot;1489&quot;&gt;40% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1507&quot; data-start=&quot;1497&quot;&gt;&lt;b&gt;35%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1530&quot; data-start=&quot;1507&quot;&gt;과열기 일부익절 &amp;rarr; 신사이클 재진입&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1598&quot; data-start=&quot;1531&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1541&quot; data-start=&quot;1531&quot;&gt;&lt;b&gt;배당주&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1548&quot; data-start=&quot;1541&quot;&gt;SCHD&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1556&quot; data-start=&quot;1548&quot;&gt;50% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1564&quot; data-start=&quot;1556&quot;&gt;40% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1572&quot; data-start=&quot;1564&quot;&gt;30% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1582&quot; data-start=&quot;1572&quot;&gt;&lt;b&gt;30%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1598&quot; data-start=&quot;1582&quot;&gt;꾸준한 복리 성장 기반&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1680&quot; data-start=&quot;1599&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1610&quot; data-start=&quot;1599&quot;&gt;&lt;b&gt;채권자산&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1626&quot; data-start=&quot;1610&quot;&gt;TLT, TMF, BND&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1634&quot; data-start=&quot;1626&quot;&gt;15% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1642&quot; data-start=&quot;1634&quot;&gt;25% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1650&quot; data-start=&quot;1642&quot;&gt;20% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1660&quot; data-start=&quot;1650&quot;&gt;&lt;b&gt;20%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1680&quot; data-start=&quot;1660&quot;&gt;금리 사이클 방어 및 안정수익&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1763&quot; data-start=&quot;1681&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1696&quot; data-start=&quot;1681&quot;&gt;&lt;b&gt;방어주/헬스케어&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1712&quot; data-start=&quot;1696&quot;&gt;XLV, XLU, GLD&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1719&quot; data-start=&quot;1712&quot;&gt;0% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1727&quot; data-start=&quot;1719&quot;&gt;10% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1735&quot; data-start=&quot;1727&quot;&gt;10% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1745&quot; data-start=&quot;1735&quot;&gt;&lt;b&gt;10%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1763&quot; data-start=&quot;1745&quot;&gt;변동성 완화 및 방어 포트&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1844&quot; data-start=&quot;1764&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1777&quot; data-start=&quot;1764&quot;&gt;&lt;b&gt;신성장 테마&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1790&quot; data-start=&quot;1777&quot;&gt;SOXX, ICLN&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1797&quot; data-start=&quot;1790&quot;&gt;0% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1804&quot; data-start=&quot;1797&quot;&gt;0% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1811&quot; data-start=&quot;1804&quot;&gt;7% &amp;rarr;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1823&quot; data-start=&quot;1811&quot;&gt;&lt;b&gt;5~10%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1844&quot; data-start=&quot;1823&quot;&gt;AI&amp;middot;클린테크 구조적 성장 대응&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr data-end=&quot;1849&quot; data-start=&quot;1846&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;1873&quot; data-start=&quot;1851&quot; data-ke-size=&quot;size26&quot;&gt;  5️⃣ 연도별 주요 전략 요약&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;연도시장상황행동전략주요 포인트
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;2292&quot; data-start=&quot;1875&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;2292&quot; data-start=&quot;1923&quot;&gt;
&lt;tr data-end=&quot;2008&quot; data-start=&quot;1923&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1937&quot; data-start=&quot;1923&quot;&gt;&lt;b&gt;2025~26&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1955&quot; data-start=&quot;1937&quot;&gt;금리 인하, 경기 회복 초입&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1990&quot; data-start=&quot;1955&quot;&gt;성장(TQQQ&amp;middot;SOXL) + 채권(TLT&amp;middot;TMF) 집중매수&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2008&quot; data-start=&quot;1990&quot;&gt;금리 인하 초기 랠리 구간&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2062&quot; data-start=&quot;2009&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2020&quot; data-start=&quot;2009&quot;&gt;&lt;b&gt;2027&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2028&quot; data-start=&quot;2020&quot;&gt;과열 구간&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2050&quot; data-start=&quot;2028&quot;&gt;성장 일부익절, XLV&amp;middot;GLD 진입&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2062&quot; data-start=&quot;2050&quot;&gt;밸류 조정 대비&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2117&quot; data-start=&quot;2063&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2074&quot; data-start=&quot;2063&quot;&gt;&lt;b&gt;2028&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2089&quot; data-start=&quot;2074&quot;&gt;조정 / 인플레 재자극&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2103&quot; data-start=&quot;2089&quot;&gt;채권&amp;middot;방어 비중 확대&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2117&quot; data-start=&quot;2103&quot;&gt;TLT 재매수 구간&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2178&quot; data-start=&quot;2118&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2132&quot; data-start=&quot;2118&quot;&gt;&lt;b&gt;2029~30&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2147&quot; data-start=&quot;2132&quot;&gt;신사이클(AI&amp;middot;친환경)&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2165&quot; data-start=&quot;2147&quot;&gt;SOXX&amp;middot;ICLN 신규 진입&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2178&quot; data-start=&quot;2165&quot;&gt;2차 성장 파동기&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2235&quot; data-start=&quot;2179&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2193&quot; data-start=&quot;2179&quot;&gt;&lt;b&gt;2031~32&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2207&quot; data-start=&quot;2193&quot;&gt;중기조정 / 금리상승&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2221&quot; data-start=&quot;2207&quot;&gt;배당&amp;middot;채권 중심 방어&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2235&quot; data-start=&quot;2221&quot;&gt;고평가 구간 조정기&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2292&quot; data-start=&quot;2236&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2250&quot; data-start=&quot;2236&quot;&gt;&lt;b&gt;2033~35&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2259&quot; data-start=&quot;2250&quot;&gt;복리 안정기&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2273&quot; data-start=&quot;2259&quot;&gt;성장&amp;middot;배당 균형 유지&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2292&quot; data-start=&quot;2273&quot;&gt;장기 복리 기반 안정성 확보&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr data-end=&quot;2297&quot; data-start=&quot;2294&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;2330&quot; data-start=&quot;2299&quot; data-ke-size=&quot;size26&quot;&gt;  6️⃣ 예상 수익률 (2025~2035 기준)&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;구분추정 연복리(CAGR)누적 수익률(10년)예상 평가금 (USD)비고
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;2589&quot; data-start=&quot;2332&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;2589&quot; data-start=&quot;2410&quot;&gt;
&lt;tr data-end=&quot;2453&quot; data-start=&quot;2410&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2424&quot; data-start=&quot;2410&quot;&gt;&lt;b&gt;보수 시나리오&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2431&quot; data-start=&quot;2424&quot;&gt;7.0%&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2438&quot; data-start=&quot;2431&quot;&gt;+96%&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2450&quot; data-start=&quot;2438&quot;&gt;$265,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2453&quot; data-start=&quot;2450&quot;&gt;&amp;nbsp;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2525&quot; data-start=&quot;2454&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2474&quot; data-start=&quot;2454&quot;&gt;&lt;b&gt;기준 시나리오 (현실적)&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2485&quot; data-start=&quot;2474&quot;&gt;&lt;b&gt;8.8%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2497&quot; data-start=&quot;2485&quot;&gt;&lt;b&gt;+133%&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2513&quot; data-start=&quot;2497&quot;&gt;&lt;b&gt;$315,000&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2525&quot; data-start=&quot;2513&quot;&gt;약 ₩4억 수준&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2589&quot; data-start=&quot;2526&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2551&quot; data-start=&quot;2526&quot;&gt;&lt;b&gt;낙관 시나리오 (AI 랠리 지속)&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2557&quot; data-start=&quot;2551&quot;&gt;10%&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2565&quot; data-start=&quot;2557&quot;&gt;+160%&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2577&quot; data-start=&quot;2565&quot;&gt;$350,000&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2589&quot; data-start=&quot;2577&quot;&gt;최대치 시나리오&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-end=&quot;2627&quot; data-start=&quot;2591&quot; data-ke-size=&quot;size16&quot;&gt;  평균 목표 연복리: &lt;b&gt;8.5~9.0% (세전 기준)&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2726&quot; data-start=&quot;2628&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2666&quot; data-start=&quot;2628&quot;&gt;배당 재투자 포함 시 실질수익률 약 &lt;b&gt;9.5~10% 수준&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;2693&quot; data-start=&quot;2667&quot;&gt;연평균 변동성(리스크): 약 12~14%&lt;/li&gt;
&lt;li data-end=&quot;2726&quot; data-start=&quot;2694&quot;&gt;현금흐름 안정성: SCHD 배당수익률 3~4% 예상&lt;/li&gt;
&lt;/ul&gt;
&lt;hr data-end=&quot;2731&quot; data-start=&quot;2728&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;2752&quot; data-start=&quot;2733&quot; data-ke-size=&quot;size26&quot;&gt;  7️⃣ 핵심 포인트 요약&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;항목내용
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;3097&quot; data-start=&quot;2754&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;3097&quot; data-start=&quot;2776&quot;&gt;
&lt;tr data-end=&quot;2836&quot; data-start=&quot;2776&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2790&quot; data-start=&quot;2776&quot;&gt;  &lt;b&gt;투자목표&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;2836&quot; data-start=&quot;2790&quot;&gt;2035년까지 복리 9%, 총 평가액 $300,000 (한화 약 4억 원)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2878&quot; data-start=&quot;2837&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2851&quot; data-start=&quot;2837&quot;&gt;  &lt;b&gt;핵심전략&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;2878&quot; data-start=&quot;2851&quot;&gt;성장주 + 배당 + 채권의 3축 균형 구조&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2926&quot; data-start=&quot;2879&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2895&quot; data-start=&quot;2879&quot;&gt;  &lt;b&gt;리스크 관리&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;2926&quot; data-start=&quot;2895&quot;&gt;2027~28 / 2031년 조정기 현금비중 상향&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2972&quot; data-start=&quot;2927&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2941&quot; data-start=&quot;2927&quot;&gt;  &lt;b&gt;현금흐름&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;2972&quot; data-start=&quot;2941&quot;&gt;SCHD&amp;middot;XLV&amp;middot;XLU 배당 재투자로 복리 극대화&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;3017&quot; data-start=&quot;2973&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2990&quot; data-start=&quot;2973&quot;&gt;  &lt;b&gt;리밸런싱 주기&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;3017&quot; data-start=&quot;2990&quot;&gt;분기별 소폭 조정, 연 1회 구조 리밸런싱&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;3097&quot; data-start=&quot;3018&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;3033&quot; data-start=&quot;3018&quot;&gt;  &lt;b&gt;장기 구조&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;md&quot; data-end=&quot;3097&quot; data-start=&quot;3033&quot;&gt;2025~26 상승 &amp;rarr; 2027 과열 &amp;rarr; 2028 조정 &amp;rarr; 2029~30 신사이클 &amp;rarr; 2033~35 안정복리&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr data-end=&quot;3102&quot; data-start=&quot;3099&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;3116&quot; data-start=&quot;3104&quot; data-ke-size=&quot;size26&quot;&gt;  8️⃣ 결론&lt;/h2&gt;
&lt;blockquote data-end=&quot;3260&quot; data-start=&quot;3117&quot; data-ke-style=&quot;style1&quot;&gt;
&lt;p data-end=&quot;3260&quot; data-start=&quot;3119&quot; data-ke-size=&quot;size16&quot;&gt;&amp;ldquo;지금 포트폴리오는 이미 밸런스가 좋다.&lt;br /&gt;SCHD로 안정성을 확보했고, TQQQ&amp;middot;SOXL로 성장성을 얻으며,&lt;br /&gt;TLT&amp;middot;TMF가 금리 사이클 완충을 담당한다.&lt;br /&gt;여기에 매달 140만 원의 추가 투자는 복리효과를 폭발적으로 만든다.&amp;rdquo;&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p data-end=&quot;3373&quot; data-start=&quot;3262&quot; data-ke-size=&quot;size16&quot;&gt;✅ &lt;b&gt;목표 CAGR:&lt;/b&gt; 8.5~9.0%&lt;br /&gt;✅ &lt;b&gt;목표 평가액(2035):&lt;/b&gt; $300K 내외 (한화 약 4억 원)&lt;br /&gt;✅ &lt;b&gt;전략 핵심:&lt;/b&gt; 성장 + 배당 + 금리 방어의 3축 복리 시스템&lt;/p&gt;
&lt;hr data-end=&quot;3378&quot; data-start=&quot;3375&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;p data-end=&quot;3395&quot; data-start=&quot;3380&quot; data-ke-size=&quot;size16&quot;&gt;  &lt;b&gt;운용 계획:&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;3515&quot; data-start=&quot;3396&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;3434&quot; data-start=&quot;3396&quot;&gt;블로그에 이 전략을 &amp;ldquo;2025~2035 투자 다이어리&amp;rdquo;로 기록&lt;/li&gt;
&lt;li data-end=&quot;3477&quot; data-start=&quot;3435&quot;&gt;이후 시장 변화(금리, 경기, AI/반도체 주기)에 따라 분기별 점검&lt;/li&gt;
&lt;li data-end=&quot;3515&quot; data-start=&quot;3478&quot;&gt;2026년부터 실제 리밸런싱 기록과 수익률 차트를 병행 관리&lt;/li&gt;
&lt;/ul&gt;</description>
      <category>Distracting thoughts</category>
      <category>2035목표</category>
      <category>ETF포트폴리오</category>
      <category>미국주식</category>
      <category>복리투자</category>
      <category>장기투자전략</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/236</guid>
      <comments>https://cago-young.tistory.com/236#entry236comment</comments>
      <pubDate>Wed, 8 Oct 2025 05:34:00 +0900</pubDate>
    </item>
    <item>
      <title>RemcosRAT 6.0.0 Pro 간단 정리</title>
      <link>https://cago-young.tistory.com/234</link>
      <description>&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h1 data-end=&quot;280&quot; data-start=&quot;234&quot;&gt;RemcosRAT 6.0.0 Pro &amp;mdash; 상용 RAT의 악성화 과정&lt;/h1&gt;
&lt;p data-end=&quot;541&quot; data-start=&quot;282&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #ffffff;&quot;&gt;&lt;b&gt;TL;DR&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;RemcosRAT는 독일 Breaking Security사에서 합법적 원격 관리용으로 개발된 상용 프로그램이지만, 2016년 이후 사이버 범죄자들에게 악용되어 강력한 정보 탈취&amp;middot;원격 제어 악성코드로 자리 잡았습니다.&lt;br /&gt;CVE-2017-11882 취약점과 VBE 스크립트를 통한 감염, 지속적인 버전 업데이트, 그리고 다양한 원격 명령 기능이 특징입니다.&lt;br /&gt;  참고 원문: &lt;a href=&quot;https://cago-young.tistory.com/227&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://cago-young.tistory.com/227&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759832060118&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석] RemcosRAT 6.0.0 Pro&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/227&quot; data-og-url=&quot;https://cago-young.tistory.com/227&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/ctfR8p/hyZKdZFJIH/F2b6knNAeM3WUdJRTuheX0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/227&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/227&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/ctfR8p/hyZKdZFJIH/F2b6knNAeM3WUdJRTuheX0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석] RemcosRAT 6.0.0 Pro&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h2 data-end=&quot;567&quot; data-start=&quot;548&quot; data-ke-size=&quot;size26&quot;&gt;RemcosRAT이란?&lt;/h2&gt;
&lt;p data-end=&quot;829&quot; data-start=&quot;568&quot; data-ke-size=&quot;size16&quot;&gt;Remcos(Remote Control &amp;amp; Surveillance)는 Windows 환경에서 원격 접근 및 감시를 목적으로 만들어진 RAT(Remote Access Trojan)입니다.&lt;br /&gt;원래는 **Breaking Security(독일)**가 개발한 합법 상용 프로그램이지만, 2016년경 다크웹을 통해 불법 유포되면서 악성 행위에 사용되기 시작했습니다.&lt;br /&gt;2025년 현재까지도 매달 버전이 업데이트될 정도로 &lt;b&gt;활발히 유지&amp;middot;보수되는 상용형 악성코드&lt;/b&gt;입니다.&lt;/p&gt;
&lt;p data-end=&quot;966&quot; data-start=&quot;831&quot; data-ke-size=&quot;size16&quot;&gt;Remcos는 감염된 시스템을 완전히 제어할 수 있으며, 키로깅&amp;middot;화면 캡처&amp;middot;웹캠 녹화&amp;middot;파일 조작 등 다양한 기능을 수행합니다.&lt;br /&gt;특히 암호화된 통신(AES-128, RC4)과 프로세스 인젝션으로 &lt;b&gt;탐지 회피 성능&lt;/b&gt;이 매우 뛰어납니다.&lt;/p&gt;
&lt;hr data-end=&quot;971&quot; data-start=&quot;968&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;993&quot; data-start=&quot;973&quot; data-ke-size=&quot;size26&quot;&gt;감염 경로 및 실행 흐름&lt;/h2&gt;
&lt;p data-end=&quot;1132&quot; data-start=&quot;995&quot; data-ke-size=&quot;size16&quot;&gt;Remcos는 주로 &lt;b&gt;피싱 이메일의 악성 문서(doc)&lt;/b&gt; 또는 &lt;b&gt;압축파일(.zip, .rar)&lt;/b&gt; 형태로 전달됩니다.&lt;br /&gt;대표적으로 문서 내 수식편집기(EQNEDT32.EXE) 취약점 &lt;b&gt;CVE-2017-11882&lt;/b&gt;을 악용하여 감염됩니다.&lt;/p&gt;
&lt;h3 data-end=&quot;1146&quot; data-start=&quot;1134&quot; data-ke-size=&quot;size23&quot;&gt;  감염 절차&lt;/h3&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-end=&quot;1372&quot; data-start=&quot;1147&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li data-end=&quot;1185&quot; data-start=&quot;1147&quot;&gt;DOC 파일 실행 &amp;rarr; CVE-2017-11882 취약점 이용&lt;/li&gt;
&lt;li data-end=&quot;1217&quot; data-start=&quot;1186&quot;&gt;&lt;b&gt;WSF/VBE 스크립트 다운로드 및 실행&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;1269&quot; data-start=&quot;1218&quot;&gt;VBScript 복호화 &amp;rarr; HEX 디코딩 후 Remcos 실행파일(MZ 헤더) 드롭&lt;/li&gt;
&lt;li data-end=&quot;1306&quot; data-start=&quot;1270&quot;&gt;&lt;b&gt;레지스트리 등록 및 스케줄러 등록&lt;/b&gt; (지속성 확보)&lt;/li&gt;
&lt;li data-end=&quot;1339&quot; data-start=&quot;1307&quot;&gt;.NET 환경 탐지 &amp;rarr; 조건에 따라 페이로드 분기&lt;/li&gt;
&lt;li data-end=&quot;1372&quot; data-start=&quot;1340&quot;&gt;&lt;b&gt;Remcos 페이로드 실행 및 C2 서버 연결&lt;/b&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;p data-end=&quot;1442&quot; data-start=&quot;1374&quot; data-ke-size=&quot;size16&quot;&gt;이후 공격자는 C2(Command &amp;amp; Control) 서버를 통해 명령을 전송하고, 피해 PC를 실시간으로 제어합니다&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size26&quot; data-start=&quot;2896&quot; data-end=&quot;2908&quot;&gt;주요 기능&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot; data-start=&quot;2909&quot; data-end=&quot;3108&quot;&gt;
&lt;li data-start=&quot;2909&quot; data-end=&quot;2940&quot;&gt;&lt;b&gt;키로깅 / 클립보드 탈취 / 스크린샷 캡처&lt;/b&gt;&lt;/li&gt;
&lt;li data-start=&quot;2941&quot; data-end=&quot;2963&quot;&gt;&lt;b&gt;웹캠 및 오디오 모듈 제어&lt;/b&gt;&lt;/li&gt;
&lt;li data-start=&quot;2964&quot; data-end=&quot;2993&quot;&gt;&lt;b&gt;파일 업로드&amp;middot;다운로드 / 삭제 / 실행&lt;/b&gt;&lt;/li&gt;
&lt;li data-start=&quot;2994&quot; data-end=&quot;3027&quot;&gt;&lt;b&gt;프로세스 관리 / 서비스 조작 / 시스템 종료&lt;/b&gt;&lt;/li&gt;
&lt;li data-start=&quot;3028&quot; data-end=&quot;3055&quot;&gt;&lt;b&gt;레지스트리 조작을 통한 지속성 확보&lt;/b&gt;&lt;/li&gt;
&lt;li data-start=&quot;3056&quot; data-end=&quot;3108&quot;&gt;&lt;b&gt;C2 기반 자동 업데이트 (UpdateFromURL / UpdateFromC2)&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-start=&quot;3110&quot; data-end=&quot;3162&quot; data-ke-size=&quot;size16&quot;&gt;Remcos는 단순 감시를 넘어, 감염된 PC를 완전히 원격 제어 가능한 수준의 RAT입니다.&lt;/p&gt;
&lt;p data-end=&quot;1442&quot; data-start=&quot;1374&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1476&quot; data-start=&quot;1449&quot; data-ke-size=&quot;size26&quot;&gt;VBScript 주요 기능 분석 요약&lt;/h2&gt;
&lt;p data-end=&quot;1512&quot; data-start=&quot;1477&quot; data-ke-size=&quot;size16&quot;&gt;복호화된 VBE 스크립트는 다음과 같은 악성 행위를 수행합니다.&lt;/p&gt;
&lt;div&gt;
&lt;div&gt;기능 구분설명
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;1818&quot; data-start=&quot;1514&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;1818&quot; data-start=&quot;1550&quot;&gt;
&lt;tr data-end=&quot;1588&quot; data-start=&quot;1550&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1565&quot; data-start=&quot;1550&quot;&gt;&lt;b&gt;레지스트리 조작&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1588&quot; data-start=&quot;1565&quot;&gt;악성 설정 및 페이로드 문자열 저장&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1629&quot; data-start=&quot;1589&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1606&quot; data-start=&quot;1589&quot;&gt;&lt;b&gt;작업 스케줄러 등록&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1629&quot; data-start=&quot;1606&quot;&gt;1분 주기로 실행되는 지속성 트리거&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1676&quot; data-start=&quot;1630&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1646&quot; data-start=&quot;1630&quot;&gt;&lt;b&gt;VBS 파일 생성&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1676&quot; data-start=&quot;1646&quot;&gt;%APPDATA% 경로에 악성 스크립트 생성&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1718&quot; data-start=&quot;1677&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1697&quot; data-start=&quot;1677&quot;&gt;&lt;b&gt;.NET 프레임워크 탐지&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1718&quot; data-start=&quot;1697&quot;&gt;존재 시 페이로드 드롭 및 실행&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1770&quot; data-start=&quot;1719&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1738&quot; data-start=&quot;1719&quot;&gt;&lt;b&gt;안티바이러스 탐지 회피&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1770&quot; data-start=&quot;1738&quot;&gt;Windows 보안 센터 키 탐색을 통한 AV 탐지&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1818&quot; data-start=&quot;1771&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1792&quot; data-start=&quot;1771&quot;&gt;&lt;b&gt;PowerShell 인젝션&lt;/b&gt;&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;1818&quot; data-start=&quot;1792&quot;&gt;Base64 인코딩된 코드 로드 및 실행&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-end=&quot;1900&quot; data-start=&quot;1820&quot; data-ke-size=&quot;size16&quot;&gt;즉, 사용자의 개입 없이 완전 자동으로 감염 체인이 이어지며,&lt;br /&gt;모든 설정&amp;middot;코드가 레지스트리 기반으로 암호화 저장되어 분석을 어렵게 만듭니다.&lt;/p&gt;
&lt;p data-end=&quot;1900&quot; data-start=&quot;1820&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1942&quot; data-start=&quot;1907&quot; data-ke-size=&quot;size26&quot;&gt;Remcos 동작 구조 요약 (Kill Chain)&lt;/h2&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-end=&quot;2166&quot; data-start=&quot;1944&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li data-end=&quot;1993&quot; data-start=&quot;1944&quot;&gt;&lt;b&gt;전달&lt;/b&gt; &amp;mdash; 악성 문서/메일 첨부 &amp;rarr; CVE-2017-11882 취약점 실행&lt;/li&gt;
&lt;li data-end=&quot;2030&quot; data-start=&quot;1994&quot;&gt;&lt;b&gt;실행&lt;/b&gt; &amp;mdash; VBScript 디코딩 및 페이로드 생성&lt;/li&gt;
&lt;li data-end=&quot;2063&quot; data-start=&quot;2031&quot;&gt;&lt;b&gt;설치&lt;/b&gt; &amp;mdash; 레지스트리 및 작업 스케줄러 등록&lt;/li&gt;
&lt;li data-end=&quot;2094&quot; data-start=&quot;2064&quot;&gt;&lt;b&gt;통신&lt;/b&gt; &amp;mdash; 암호화된 C2 연결 (TCP)&lt;/li&gt;
&lt;li data-end=&quot;2136&quot; data-start=&quot;2095&quot;&gt;&lt;b&gt;명령 수행&lt;/b&gt; &amp;mdash; 정보 탈취, 화면 캡처, 키로깅, 파일 조작&lt;/li&gt;
&lt;li data-end=&quot;2166&quot; data-start=&quot;2137&quot;&gt;&lt;b&gt;지속성 유지&lt;/b&gt; &amp;mdash; 재부팅 후 자동 실행&lt;/li&gt;
&lt;/ol&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h2 data-end=&quot;2200&quot; data-start=&quot;2173&quot; data-ke-size=&quot;size26&quot;&gt;주요 명령 코드 테이블&lt;/h2&gt;
&lt;div&gt;
&lt;div&gt;코드명령설명
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;2753&quot; data-start=&quot;2202&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;2753&quot; data-start=&quot;2242&quot;&gt;
&lt;tr data-end=&quot;2281&quot; data-start=&quot;2242&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2250&quot; data-start=&quot;2242&quot;&gt;0x1&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2262&quot; data-start=&quot;2250&quot;&gt;HeartBeat&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2281&quot; data-start=&quot;2262&quot;&gt;C2 서버와 연결 상태 확인&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2333&quot; data-start=&quot;2282&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2290&quot; data-start=&quot;2282&quot;&gt;0x6&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2313&quot; data-start=&quot;2290&quot;&gt;ListRunningProcesses&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2333&quot; data-start=&quot;2313&quot;&gt;실행 중인 프로세스 목록 수집&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2388&quot; data-start=&quot;2334&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2342&quot; data-start=&quot;2334&quot;&gt;0xD&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2360&quot; data-start=&quot;2342&quot;&gt;ExecuteShellCmd&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2388&quot; data-start=&quot;2360&quot;&gt;쉘 명령(cmd, PowerShell) 실행&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2436&quot; data-start=&quot;2389&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2398&quot; data-start=&quot;2389&quot;&gt;0x13&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2421&quot; data-start=&quot;2398&quot;&gt;StartOnlineKeylogger&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2436&quot; data-start=&quot;2421&quot;&gt;실시간 키 입력 전송&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2478&quot; data-start=&quot;2437&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2446&quot; data-start=&quot;2437&quot;&gt;0x1B&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2466&quot; data-start=&quot;2446&quot;&gt;StartWebcamModule&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2478&quot; data-start=&quot;2466&quot;&gt;웹캠 녹화 시작&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2524&quot; data-start=&quot;2479&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2488&quot; data-start=&quot;2479&quot;&gt;0x1F&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2505&quot; data-start=&quot;2488&quot;&gt;StealPasswords&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2524&quot; data-start=&quot;2505&quot;&gt;브라우저 저장 비밀번호 탈취&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2587&quot; data-start=&quot;2525&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2534&quot; data-start=&quot;2525&quot;&gt;0x18&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2566&quot; data-start=&quot;2534&quot;&gt;CleanBrowsersCookiesAndLogins&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2587&quot; data-start=&quot;2566&quot;&gt;브라우저 쿠키/로그인 흔적 삭제&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2632&quot; data-start=&quot;2588&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2597&quot; data-start=&quot;2588&quot;&gt;0x98&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2611&quot; data-start=&quot;2597&quot;&gt;FileManager&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2632&quot; data-start=&quot;2611&quot;&gt;파일 탐색, 업/다운로드, 삭제&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2692&quot; data-start=&quot;2633&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2642&quot; data-start=&quot;2633&quot;&gt;0xB2&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2667&quot; data-start=&quot;2642&quot;&gt;ShellExecuteOrInjectPE&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2692&quot; data-start=&quot;2667&quot;&gt;실행 파일 실행 또는 PE 코드 인젝션&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;2753&quot; data-start=&quot;2693&quot;&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2702&quot; data-start=&quot;2693&quot;&gt;0xC6&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2738&quot; data-start=&quot;2702&quot;&gt;UploadBrowsersCookiesAndPasswords&lt;/td&gt;
&lt;td data-col-size=&quot;sm&quot; data-end=&quot;2753&quot; data-start=&quot;2738&quot;&gt;쿠키&amp;middot;비밀번호 업로드&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;blockquote data-end=&quot;2889&quot; data-start=&quot;2755&quot; data-ke-style=&quot;style1&quot;&gt;
&lt;p data-end=&quot;2889&quot; data-start=&quot;2757&quot; data-ke-size=&quot;size16&quot;&gt;전체 명령 목록은 Elastic Security Labs의 &lt;a href=&quot;https://www.elastic.co/security-labs/dissecting-remcos-rat-part-one&quot; data-end=&quot;2885&quot; data-start=&quot;2790&quot;&gt;RemcosRAT Dissection 시리즈&lt;span aria-hidden=&quot;true&quot;&gt;&lt;/span&gt;&lt;/a&gt; 참고.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;&lt;/blockquote&gt;
&lt;h2 data-end=&quot;2908&quot; data-start=&quot;2896&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-size: 1.44em;&quot;&gt;결론&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;3719&quot; data-start=&quot;3516&quot; data-ke-size=&quot;size16&quot;&gt;RemcosRAT 6.0.0 Pro는 &amp;ldquo;합법적 소프트웨어의 악성화&amp;rdquo;를 대표하는 사례로,&lt;br /&gt;정상 도구가 공격자의 손에 들어가면 얼마나 강력한 스파이 도구가 될 수 있는지를 보여줍니다.&lt;br /&gt;지속적인 버전 업데이트와 다양한 명령 구조로 인해 방어가 쉽지 않지만,&lt;br /&gt;&lt;b&gt;취약점 관리&amp;middot;메일 보안&amp;middot;EDR 모니터링&lt;/b&gt;을 병행한다면 감염 위험을 상당히 낮출 수 있습니다.&lt;/p&gt;
&lt;p data-end=&quot;3764&quot; data-start=&quot;3721&quot; data-ke-size=&quot;size16&quot;&gt;  참고: &lt;a href=&quot;https://cago-young.tistory.com/227&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://cago-young.tistory.com/227&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759832222441&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석] RemcosRAT 6.0.0 Pro&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/227&quot; data-og-url=&quot;https://cago-young.tistory.com/227&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/ctfR8p/hyZKdZFJIH/F2b6knNAeM3WUdJRTuheX0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/227&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/227&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/ctfR8p/hyZKdZFJIH/F2b6knNAeM3WUdJRTuheX0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석] RemcosRAT 6.0.0 Pro&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>RemcosRAT</category>
      <category>악성 코드</category>
      <category>원격제어악성코드</category>
      <category>정보보안</category>
      <category>피싱메일주의</category>
      <category>해킹위협</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/234</guid>
      <comments>https://cago-young.tistory.com/234#entry234comment</comments>
      <pubDate>Mon, 6 Oct 2025 22:19:47 +0900</pubDate>
    </item>
    <item>
      <title>AsyncRAT v0.5.8 간단 정리</title>
      <link>https://cago-young.tistory.com/233</link>
      <description>&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;239&quot; data-start=&quot;191&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[분석] AsyncRAT v0.5.8 &amp;mdash; .NET 기반 원격접근 트로이목마(RAT)&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;466&quot; data-start=&quot;241&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #ffffff;&quot;&gt;&lt;b&gt;TL;DR&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AsyncRAT v0.5.8은 원래 합법적 원격관리용으로 공개된 오픈소스 툴이지만, 악성 변형으로 손쉽게 악용되어 키로깅&amp;middot;화면 캡처&amp;middot;자격증명 탈취&amp;middot;원격 제어 등 강력한 스파이 기능을 수행합니다. 주로 피싱&amp;middot;스크립트 드로퍼 경로로 유포되며, 파일리스 실행&amp;middot;프로세스 홀로잉&amp;middot;난독화 등으로 탐지를 회피합니다.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;참고 원문: &lt;a href=&quot;https://cago-young.tistory.com/228&quot;&gt;https://cago-young.tistory.com/228&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759831587972&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석] AsyncRAT v0.5.8 .NET 기반 트로이 목마(RAT)&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/228&quot; data-og-url=&quot;https://cago-young.tistory.com/228&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/p9yFf/hyZKbgthAq/RqljdSuiJvQKrobDOxK7s0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/228&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/228&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/p9yFf/hyZKbgthAq/RqljdSuiJvQKrobDOxK7s0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석] AsyncRAT v0.5.8 .NET 기반 트로이 목마(RAT)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;492&quot; data-start=&quot;473&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AsyncRAT이란?&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;733&quot; data-start=&quot;493&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AsyncRAT(Asynchronous Remote Access Trojan)은 2019년 GitHub(작성자: NYAN-x-CAT)에 처음 공개된 C# 기반 오픈소스 원격관리 도구입니다. 원래는 원격지원&amp;middot;관리 목적의 합법 소프트웨어였으나, 소스 공개로 인해 공격자가 코드를 수정&amp;middot;난독화하여 악성 RAT(원격접근 트로이목마)로 재배포하는 사례가 많아졌습니다. 대표적 변종으로 SantaRAT, BoratRAT 등이 보고되었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;882&quot; data-start=&quot;735&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AsyncRAT은 클라이언트(피해측)와 서버(공격자측) 구조를 갖추고 있으며, 서버 빌더를 통해 맞춤형 바이너리를 생성할 수 있습니다. 또한 Pastebin/GitHub 등 외부 호스팅을 C2로 활용하는 설정을 지원해, 유연한 명령&amp;middot;제어 인프라 구성이 가능합니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;897&quot; data-start=&quot;889&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;주요 기능&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1247&quot; data-start=&quot;898&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;937&quot; data-start=&quot;898&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;키로깅&lt;/b&gt;: 키보드 입력 기록을 통해 비밀번호&amp;middot;민감정보 탈취&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;985&quot; data-start=&quot;938&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;화면 캡처 / 원격 데스크톱&lt;/b&gt;: 화면 이미지 전송 또는 실시간 원격 제어&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1026&quot; data-start=&quot;986&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;자격증명 탈취&lt;/b&gt;: 브라우저&amp;middot;시스템에 저장된 로그인 정보 수집&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1059&quot; data-start=&quot;1027&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;웹캠 액세스&lt;/b&gt;: 카메라를 켜고 영상 캡처 가능&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1082&quot; data-start=&quot;1060&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;파일 업/다운로드 및 실행&lt;/b&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1120&quot; data-start=&quot;1083&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;클라이언트-서버 채팅&lt;/b&gt;: 공격자와 실시간 상호작용 가능&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1161&quot; data-start=&quot;1121&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;파일리스 실행&lt;/b&gt;: 메모리 상에서 동작하여 디스크 흔적 최소화&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1201&quot; data-start=&quot;1162&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;난독화/빌더&lt;/b&gt;: 코드 난독화와 빌더로 맞춤형 페이로드 생성&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1247&quot; data-start=&quot;1202&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;플러그인 확장&lt;/b&gt;: StealerLib 등 외부 DLL 연동으로 기능 확장&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;1274&quot; data-start=&quot;1254&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;탐지 회피 기법(기술적 포인트)&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1477&quot; data-start=&quot;1275&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;1338&quot; data-start=&quot;1275&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;프로세스 홀로잉(Process Hollowing)&lt;/b&gt;: 합법 프로세스에 악성 코드를 주입해 행위를 숨김&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1387&quot; data-start=&quot;1339&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;파일리스(fileless) 로딩&lt;/b&gt;: 디스크 흔적 없이 메모리에서 직접 실행&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1425&quot; data-start=&quot;1388&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;안티-분석 설정&lt;/b&gt;: 디버거&amp;middot;가상환경 감지 및 동작 제어&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1477&quot; data-start=&quot;1426&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;암호화 통신 및 설정 보호&lt;/b&gt;: C2 통신과 설정 정보를 암호화하여 분석 난이도 증가&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;1497&quot; data-start=&quot;1484&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;킬체인(공격 흐름)&lt;/span&gt;&lt;/h3&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-end=&quot;1947&quot; data-start=&quot;1498&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li data-end=&quot;1535&quot; data-start=&quot;1498&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;정찰(Recon)&lt;/b&gt;: 표적 선정&amp;middot;소셜 엔지니어링 준비&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1606&quot; data-start=&quot;1536&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;전달(Delivery)&lt;/b&gt;: 피싱 이메일 첨부, 악성 광고, 손상된 웹사이트, 익스플로잇 키트 등으로 드로퍼 전달&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1697&quot; data-start=&quot;1607&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;악용&amp;middot;실행(Exploit / Execution)&lt;/b&gt;: 매크로/WSF/VBS/PowerShell 등 스크립트가 드로퍼 체인을 실행 &amp;rarr; 페이로드 다운로드&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1806&quot; data-start=&quot;1698&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;설치&amp;middot;지속성(Installation / Persistence)&lt;/b&gt;: 로더가 페이로드(.NET DLL 또는 EXE)를 메모리나 디스크에 로드하고 레지스트리/작업 스케줄러로 지속성 확보&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1875&quot; data-start=&quot;1807&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;명령&amp;middot;제어(C2 연결)&lt;/b&gt;: 감염 호스트가 Pastebin/GitHub 또는 전용 C2와 암호화된 채널로 통신&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;1947&quot; data-start=&quot;1876&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;목적 수행(Actions on Objectives)&lt;/b&gt;: 키로깅&amp;middot;화면 캡처&amp;middot;자격증명 탈취&amp;middot;파일 전송&amp;middot;원격 명령 실행 등&lt;/span&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;1978&quot; data-start=&quot;1954&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;빌드&amp;middot;환경 요구사항(분석가/빌더 관점)&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2169&quot; data-start=&quot;1979&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2013&quot; data-start=&quot;1979&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;클라이언트: .NET Framework v4 이상 필요&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2045&quot; data-start=&quot;2014&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;서버: .NET Framework v4.6+ 권장&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2084&quot; data-start=&quot;2046&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;컴파일: Visual Studio 2019 이상에서 빌드 권장&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2129&quot; data-start=&quot;2085&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;소스 코드: GitHub에서 내려받아 수정 가능(빌더/난독화 옵션 존재)&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2169&quot; data-start=&quot;2130&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;플러그인: 외부 DLL(예: StealerLib)로 기능 추가 가능&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;2202&quot; data-start=&quot;2176&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;대응 및 예방 권고 (일반 사용자&amp;middot;관리자)&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2558&quot; data-start=&quot;2203&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2262&quot; data-start=&quot;2203&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;의심스러운 메일&amp;middot;첨부 파일 절대 실행 금지&lt;/b&gt;: 첨부문서 매크로&amp;middot;스크립트 실행 요청에 특히 주의&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2310&quot; data-start=&quot;2263&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;매크로&amp;middot;스크립트 기본 비활성화&lt;/b&gt;: 업무상 필요시에도 출처 확인 후 활성화&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2359&quot; data-start=&quot;2311&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;소프트웨어 최신화(패치 적용)&lt;/b&gt;: OS&amp;middot;오피스&amp;middot;브라우저 등 보안 패치 필수&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2419&quot; data-start=&quot;2360&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;엔드포인트 보안 솔루션(백신/EDR) 적용&lt;/b&gt;: 메모리 기반 공격&amp;middot;프로세스 주입 탐지 기능 권장&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2462&quot; data-start=&quot;2420&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;계정 보호&lt;/b&gt;: 2단계 인증(OTP) 적용, 비밀번호 재사용 금지&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2522&quot; data-start=&quot;2463&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;네트워크 모니터링&lt;/b&gt;: 이상한 외부 연결(특히 외부 호스팅 C2로의 주기적 통신) 탐지 룰 설정&lt;/span&gt;&lt;/li&gt;
&lt;li data-end=&quot;2558&quot; data-start=&quot;2523&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;정기 백업&lt;/b&gt;: 탈취&amp;middot;파괴에 대비한 별도 백업 체계 유지&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;2791&quot; data-start=&quot;2786&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;결론&lt;/span&gt;&lt;/h3&gt;
&lt;p data-end=&quot;2992&quot; data-start=&quot;2792&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AsyncRAT v0.5.8은 본래 합법적 목적의 원격관리 툴이지만, 오픈소스라는 특성 때문에 공격자에 의해 빠르게 악용되는 전형적 사례입니다. 개인&amp;middot;기업 모두 &lt;b&gt;피싱&amp;middot;스크립트 실행 차단, 최신 패치 적용, 엔드포인트 방어 체계 강화&lt;/b&gt;를 통해 실효성 있는 방어를 구축해야 합니다. 작은 실수가 원격 스파이 활동으로 이어질 수 있다는 점을 항상 유의하세요.&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;3035&quot; data-start=&quot;2994&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;참고 원문: &lt;a href=&quot;https://cago-young.tistory.com/228&quot;&gt;https://cago-young.tistory.com/228&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759831667871&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석] AsyncRAT v0.5.8 .NET 기반 트로이 목마(RAT)&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/228&quot; data-og-url=&quot;https://cago-young.tistory.com/228&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/p9yFf/hyZKbgthAq/RqljdSuiJvQKrobDOxK7s0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/228&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/228&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/p9yFf/hyZKbgthAq/RqljdSuiJvQKrobDOxK7s0/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석] AsyncRAT v0.5.8 .NET 기반 트로이 목마(RAT)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>AsyncRAT</category>
      <category>Rat</category>
      <category>사이버보안</category>
      <category>악성코드</category>
      <category>원격제어</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/233</guid>
      <comments>https://cago-young.tistory.com/233#entry233comment</comments>
      <pubDate>Thu, 2 Oct 2025 09:54:58 +0900</pubDate>
    </item>
    <item>
      <title>AgentTesla 간단 정리</title>
      <link>https://cago-young.tistory.com/232</link>
      <description>&lt;h1 data-end=&quot;91&quot; data-start=&quot;66&quot;&gt;AgentTesla 간단 정리&lt;/h1&gt;
&lt;h2 data-end=&quot;111&quot; data-start=&quot;93&quot; data-ke-size=&quot;size26&quot;&gt;1. AgentTesla란?&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;222&quot; data-start=&quot;112&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;146&quot; data-start=&quot;112&quot;&gt;&lt;b&gt;.NET 기반 인포스틸러(정보 탈취형 악성코드)&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;180&quot; data-start=&quot;147&quot;&gt;2014년부터 활동, 현재까지도 꾸준히 변종이 발견됨&lt;/li&gt;
&lt;li data-end=&quot;222&quot; data-start=&quot;181&quot;&gt;원래는 합법적 원격 관리 툴처럼 판매되었지만, 지금은 해커들이 악용&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 data-end=&quot;235&quot; data-start=&quot;224&quot; data-ke-size=&quot;size26&quot;&gt;2. 감염 경로&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;329&quot; data-start=&quot;236&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;257&quot; data-start=&quot;236&quot;&gt;주로 &lt;b&gt;피싱 이메일&lt;/b&gt;로 유포&lt;/li&gt;
&lt;li data-end=&quot;293&quot; data-start=&quot;258&quot;&gt;첨부된 Word/Excel/RTF 문서에 악성 코드 삽입&lt;/li&gt;
&lt;li data-end=&quot;329&quot; data-start=&quot;294&quot;&gt;일부는 크랙 소프트웨어, 가짜 업데이트 사이트로도 배포됨&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 data-end=&quot;342&quot; data-start=&quot;331&quot; data-ke-size=&quot;size26&quot;&gt;3. 주요 기능&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;576&quot; data-start=&quot;343&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;370&quot; data-start=&quot;343&quot;&gt;&lt;b&gt;키로깅&lt;/b&gt;: 사용자의 키보드 입력 기록&lt;/li&gt;
&lt;li data-end=&quot;408&quot; data-start=&quot;371&quot;&gt;&lt;b&gt;스크린샷/클립보드&lt;/b&gt;: 화면 캡처 및 복사한 텍스트 탈취&lt;/li&gt;
&lt;li data-end=&quot;516&quot; data-start=&quot;409&quot;&gt;&lt;b&gt;비밀번호&amp;middot;쿠키 탈취&lt;/b&gt;:
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;516&quot; data-start=&quot;431&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;466&quot; data-start=&quot;431&quot;&gt;웹 브라우저(Chrome, Edge, Firefox 등)&lt;/li&gt;
&lt;li data-end=&quot;491&quot; data-start=&quot;469&quot;&gt;이메일 클라이언트(Outlook)&lt;/li&gt;
&lt;li data-end=&quot;516&quot; data-start=&quot;494&quot;&gt;FTP 툴(FileZilla 등)&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li data-end=&quot;576&quot; data-start=&quot;517&quot;&gt;&lt;b&gt;데이터 유출 방식&lt;/b&gt;: SMTP(이메일), FTP, Telegram 등 다양한 채널을 통해 전송&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 data-end=&quot;589&quot; data-start=&quot;578&quot; data-ke-size=&quot;size26&quot;&gt;4. 최근 동향&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;712&quot; data-start=&quot;590&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;633&quot; data-start=&quot;590&quot;&gt;CVE-2017-11882 같은 &lt;b&gt;문서 취약점&lt;/b&gt;을 악용한 배포 증가&lt;/li&gt;
&lt;li data-end=&quot;667&quot; data-start=&quot;634&quot;&gt;&lt;b&gt;Telegram C2 통신&lt;/b&gt; 활용 사례가 늘어남&lt;/li&gt;
&lt;li data-end=&quot;712&quot; data-start=&quot;668&quot;&gt;여행&amp;middot;호텔 예약 피싱, 기업 이메일 침해(BEC) 공격 등에서 자주 발견&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/229&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;[분석]AgentTesla .NET 기반 트로이 목마(RAT)&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759102590752&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석]AgentTesla .NET 기반 트로이 목마(RAT)&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/229&quot; data-og-url=&quot;https://cago-young.tistory.com/229&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/gtGI1/hyZJ1ymZd7/6bjQp46AZjtgbLjkVc2jCk/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/229&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/229&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/gtGI1/hyZJ1ymZd7/6bjQp46AZjtgbLjkVc2jCk/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석]AgentTesla .NET 기반 트로이 목마(RAT)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>AgentTesla</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/232</guid>
      <comments>https://cago-young.tistory.com/232#entry232comment</comments>
      <pubDate>Mon, 29 Sep 2025 08:36:46 +0900</pubDate>
    </item>
    <item>
      <title>PureLogs Stealer</title>
      <link>https://cago-young.tistory.com/230</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;  PureLogs Stealer&lt;/h2&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;1. 소개&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;PureLogs Stealer는 최근 활동이 증가한 정보 탈취형 악성코드(정보 스틸러)로, 주로 웹 브라우저, 메신저, 암호화폐 지갑 등에서 민감한 데이터를 빼돌리는 데 사용됩니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;2. 배경 및 역사&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;2022년 중반부터 등장한 계열로, 기존 RedLine&amp;middot;Raccoon 같은 스틸러의 후속/변종으로 보는 시각이 많습니다.&lt;/li&gt;
&lt;li&gt;다크웹 포럼에서 판매되며, 공격자가 구독형(월별&amp;middot;수개월 단위)으로 쉽게 구입해 활용할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;3. 감염경로&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;피싱 이메일&lt;/b&gt; 첨부 파일&amp;middot;링크&lt;/li&gt;
&lt;li&gt;크랙&amp;middot;불법 소프트웨어 위장 설치파일&lt;/li&gt;
&lt;li&gt;악성 광고(Malvertising)&lt;/li&gt;
&lt;li&gt;Telegram&amp;middot;Discord 채널을 통한 유포&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;4. 핵심기능&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;웹 브라우저 쿠키&amp;middot;세션&amp;middot;저장된 비밀번호 탈취&lt;/li&gt;
&lt;li&gt;디스코드&amp;middot;텔레그램 토큰 탈취&lt;/li&gt;
&lt;li&gt;암호화폐 지갑 정보 수집&lt;/li&gt;
&lt;li&gt;스크린샷 캡처, 시스템 정보 수집&lt;/li&gt;
&lt;li&gt;탈취 데이터를 C2 서버로 전송&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;5. 최근 동향&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;최근 빌더 UI 개선 &amp;rarr; 비전문가도 손쉽게 패킹&amp;middot;유포 가능&lt;/li&gt;
&lt;li&gt;탐지 회피 위해 &lt;b&gt;파일리스 기법&lt;/b&gt;&amp;middot;암호화된 통신 강화&lt;/li&gt;
&lt;li&gt;클라우드 저장소(mega.nz, anonfiles 등)로 데이터 업로드&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;6. 탐지 및 완화&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;EDR&amp;middot;차세대 백신&lt;/b&gt; 업데이트 및 실행 차단 정책&lt;/li&gt;
&lt;li&gt;메일 보안 게이트웨이, 매크로 차단&lt;/li&gt;
&lt;li&gt;정품 소프트웨어 사용&amp;middot;업데이트&lt;/li&gt;
&lt;li&gt;정기적인 비밀번호 변경 및 MFA(다단계 인증) 적용&lt;/li&gt;
&lt;li&gt;네트워크&amp;middot;로그 모니터링 강화 (이상 접속, 토큰 탈취 확인)&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/231&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;[분석]PureLogsStealer .NET 기반 인포스틸러&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1758030310301&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[분석]PureLogsStealer .NET 기반 인포스틸러&quot; data-og-description=&quot;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/231&quot; data-og-url=&quot;https://cago-young.tistory.com/231&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bktoAj/hyZJh89l6V/flUogE4Z7cfUBdP16jgeK1/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/231&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/231&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bktoAj/hyZJh89l6V/flUogE4Z7cfUBdP16jgeK1/img.jpg?width=300&amp;amp;height=275&amp;amp;face=0_0_300_275');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[분석]PureLogsStealer .NET 기반 인포스틸러&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;보호되어 있는 글입니다. 내용을 보시려면 비밀번호를 입력하세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>PureLogs Stealer</category>
      <category>악성코드</category>
      <category>정보탈취악성코드</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/230</guid>
      <comments>https://cago-young.tistory.com/230#entry230comment</comments>
      <pubDate>Sat, 13 Sep 2025 19:17:33 +0900</pubDate>
    </item>
    <item>
      <title>환경부 사칭 쓰레기(음식물) 스미싱 피싱 사이트 분석(25.07.25)</title>
      <link>https://cago-young.tistory.com/225</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;환경부&amp;nbsp;사칭&amp;nbsp;쓰레기(음식물)&amp;nbsp;스미싱&amp;nbsp;피싱&amp;nbsp;사이트&amp;nbsp;분석(25.07.25)&lt;/h2&gt;
&lt;p data-ke-size=&quot;size14&quot;&gt;&lt;span style=&quot;color: #ffffff;&quot;&gt; TL;DR: 환경부 사칭 &amp;ldquo;배출장소 위반&amp;rdquo; 메시지로 유도되는 스미싱 사이트는 Android 사용자 대상 앱 설치 유도 방식이며, VirusTotal 탐지 결과를 통해 악성 앱 가능성이 높아 주의가 필요합니다. &lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;최근에 다시 관공서를 사칭한 스미싱, 피싱 사이트가 다시 기승을 부리고 있는 거 같습니다. 저번에 작성한&amp;nbsp; &lt;a style=&quot;background-color: #e6f5ff; color: #0070d1; text-align: start;&quot; href=&quot;https://cago-young.tistory.com/182&quot;&gt;정부 24(구 민원24) 사칭 , &lt;/a&gt;&lt;a style=&quot;background-color: #e6f5ff; color: #0070d1; text-align: start;&quot; href=&quot;https://cago-young.tistory.com/216&quot;&gt;경찰청 교통민원 피싱&amp;nbsp;&lt;/a&gt;내용과 유사한 형태의 스미싱을 발견했습니다. 이번에 발견한 스미싱도 비슷한 내용과 관공서 사칭을 하여 스미싱 문자를 배포하여 클릭을 유도하는 것으로 보입니다. 저번에는 키워드가 교통 관련 한 내용과 &quot;쓰레기 무단투기&quot;이었습니다.&lt;/p&gt;
&lt;figure id=&quot;og_1753388427171&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;경찰청 교통민원 스미싱 증가! 피싱 사이트 유포 (25.02.25)&quot; data-og-description=&quot;최근 들어 스미싱 공격이 다시 운전자 대상으로 확산되고 있습니다. 2022년에는 교통위반 관련, 2023~2024년에는 생활형 범법행위(쓰레기 무단투기 등) 중심으로 스미싱이 유포되었으나, 최근에는 &quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/216&quot; data-og-url=&quot;https://cago-young.tistory.com/216&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bUSwar/hyZnl5hsyJ/dn3u2kSuVrSr8E2hzraxVK/img.png?width=648&amp;amp;height=541&amp;amp;face=0_0_648_541,https://scrap.kakaocdn.net/dn/bfiDUL/hyZnhaHwYT/YCrePefZRec7I0rnlmCFe1/img.png?width=648&amp;amp;height=541&amp;amp;face=0_0_648_541,https://scrap.kakaocdn.net/dn/d3VkmV/hyZnmC47l5/IG1hMolLcT8QDqikXuA70k/img.png?width=742&amp;amp;height=836&amp;amp;face=0_0_742_836&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/216&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/216&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bUSwar/hyZnl5hsyJ/dn3u2kSuVrSr8E2hzraxVK/img.png?width=648&amp;amp;height=541&amp;amp;face=0_0_648_541,https://scrap.kakaocdn.net/dn/bfiDUL/hyZnhaHwYT/YCrePefZRec7I0rnlmCFe1/img.png?width=648&amp;amp;height=541&amp;amp;face=0_0_648_541,https://scrap.kakaocdn.net/dn/d3VkmV/hyZnmC47l5/IG1hMolLcT8QDqikXuA70k/img.png?width=742&amp;amp;height=836&amp;amp;face=0_0_742_836');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;경찰청 교통민원 스미싱 증가! 피싱 사이트 유포 (25.02.25)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;최근 들어 스미싱 공격이 다시 운전자 대상으로 확산되고 있습니다. 2022년에는 교통위반 관련, 2023~2024년에는 생활형 범법행위(쓰레기 무단투기 등) 중심으로 스미싱이 유포되었으나, 최근에는&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;figure id=&quot;og_1753385754618&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;정부24(구 민원24) 사칭 스미싱 피싱 사이트(23.11.09)&quot; data-og-description=&quot;관공서 사칭 스미싱인 정부24 피싱 사이트입니다. 정부24 관련 현재 배포되고 있는 스미싱 문구는 &amp;quot;쓰레기 무단투기로 단속되어 과태료 부과되였습니다.&amp;quot; 내용이 포함해 스미싱 문자를 배포하고 &quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/182&quot; data-og-url=&quot;https://cago-young.tistory.com/182&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bp9bQM/hyZnjGmJ4a/7BBu0Lvpb1RksPXGz4ilO1/img.png?width=535&amp;amp;height=315&amp;amp;face=0_0_535_315,https://scrap.kakaocdn.net/dn/RE6UO/hyZnhPirNy/bKaW8Y0PK7GFtZ9r4jCVZ0/img.png?width=535&amp;amp;height=315&amp;amp;face=0_0_535_315,https://scrap.kakaocdn.net/dn/bWh9GY/hyZnwMkhOS/KSlcB0UXvZYfjbkhVKTCPK/img.png?width=502&amp;amp;height=827&amp;amp;face=0_0_502_827&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/182&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/182&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bp9bQM/hyZnjGmJ4a/7BBu0Lvpb1RksPXGz4ilO1/img.png?width=535&amp;amp;height=315&amp;amp;face=0_0_535_315,https://scrap.kakaocdn.net/dn/RE6UO/hyZnhPirNy/bKaW8Y0PK7GFtZ9r4jCVZ0/img.png?width=535&amp;amp;height=315&amp;amp;face=0_0_535_315,https://scrap.kakaocdn.net/dn/bWh9GY/hyZnwMkhOS/KSlcB0UXvZYfjbkhVKTCPK/img.png?width=502&amp;amp;height=827&amp;amp;face=0_0_502_827');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;정부24(구 민원24) 사칭 스미싱 피싱 사이트(23.11.09)&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;관공서 사칭 스미싱인 정부24 피싱 사이트입니다. 정부24 관련 현재 배포되고 있는 스미싱 문구는 &quot;쓰레기 무단투기로 단속되어 과태료 부과되였습니다.&quot; 내용이 포함해 스미싱 문자를 배포하고&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;스미싱 문구&lt;/h3&gt;
&lt;pre id=&quot;code_1753386395315&quot; class=&quot;less&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;[*부과고지안내] 배출장소위(음식물혼합) URL
*쓰레기무단투기 안내서가 발급되었습니다. URL
[*벌금통보서안내*] 배출장소위반(음식물혼합) URL
[국외발신] [*벌금고지서안내] 배출장소위반(음식물혼합) URL&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cnJKhJ/btsPx3UcNO5/QKkvD8lotRuVN8YHtHLGbk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cnJKhJ/btsPx3UcNO5/QKkvD8lotRuVN8YHtHLGbk/img.png&quot; data-origin-width=&quot;343&quot; data-origin-height=&quot;158&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;42.05&quot; data-filename=&quot;blob&quot; style=&quot;width: 41.5646%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cnJKhJ/btsPx3UcNO5/QKkvD8lotRuVN8YHtHLGbk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcnJKhJ%2FbtsPx3UcNO5%2FQKkvD8lotRuVN8YHtHLGbk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;343&quot; height=&quot;158&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cwtjOh/btsPxebbJg3/vypsXlpI14HrVc6MxJgSP0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cwtjOh/btsPxebbJg3/vypsXlpI14HrVc6MxJgSP0/img.png&quot; data-origin-width=&quot;344&quot; data-origin-height=&quot;115&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;57.95&quot; data-filename=&quot;blob&quot; style=&quot;width: 57.2726%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cwtjOh/btsPxebbJg3/vypsXlpI14HrVc6MxJgSP0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcwtjOh%2FbtsPxebbJg3%2FvypsXlpI14HrVc6MxJgSP0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;344&quot; height=&quot;115&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cwVEF1/btsPyCVSRVP/z3G5Hk36O6QvmiBd3krwVK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cwVEF1/btsPyCVSRVP/z3G5Hk36O6QvmiBd3krwVK/img.png&quot; data-origin-width=&quot;275&quot; data-origin-height=&quot;44&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;66.45&quot; data-filename=&quot;blob&quot; style=&quot;width: 65.6726%; margin-right: 10px; margin-top: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cwVEF1/btsPyCVSRVP/z3G5Hk36O6QvmiBd3krwVK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcwVEF1%2FbtsPyCVSRVP%2Fz3G5Hk36O6QvmiBd3krwVK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;275&quot; height=&quot;44&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/vRA9s/btsPxfuoU2y/3Tdl3NNd1KXRUHx0SgX5w0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/vRA9s/btsPxfuoU2y/3Tdl3NNd1KXRUHx0SgX5w0/img.png&quot; data-origin-width=&quot;303&quot; data-origin-height=&quot;96&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;33.55&quot; data-filename=&quot;blob&quot; style=&quot;width: 33.1646%; margin-top: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/vRA9s/btsPxfuoU2y/3Tdl3NNd1KXRUHx0SgX5w0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FvRA9s%2FbtsPxfuoU2y%2F3Tdl3NNd1KXRUHx0SgX5w0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;303&quot; height=&quot;96&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문자는 저번과 마찬가지로 &quot;&lt;span style=&quot;color: #ef5369;&quot;&gt;쓰레기 무단투기&lt;/span&gt;&quot; 도 보이고&amp;nbsp; 그리고 &quot;&lt;span style=&quot;color: #ef5369;&quot;&gt;배출장소 위반(음식물 혼합)&lt;/span&gt;&quot; 이 보이는데요 이전과 비슷하게 생활? 쓰레기 관련 문구로 만들어진 것 을 확인할수 있고 요세는 경범죄 관련 사칭이 많다고 생각 됩니다. 그리고 내용을 보면 대부분 과태료,범칙금 부과를 사칭하여 스미싱을 보내는 형태인 것을 확인 할 수 있습니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;피싱&amp;nbsp;사이트&amp;nbsp;접속&amp;nbsp;화면&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ekIT6V/btsPw1JCiqo/QEYaB15tEpD5IMkT5eiyj0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ekIT6V/btsPw1JCiqo/QEYaB15tEpD5IMkT5eiyj0/img.png&quot; data-origin-width=&quot;399&quot; data-origin-height=&quot;681&quot; data-is-animation=&quot;false&quot; width=&quot;262&quot; height=&quot;447&quot; style=&quot;width: 27.3348%; margin-right: 10px;&quot; data-widthpercent=&quot;27.66&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ekIT6V/btsPw1JCiqo/QEYaB15tEpD5IMkT5eiyj0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FekIT6V%2FbtsPw1JCiqo%2FQEYaB15tEpD5IMkT5eiyj0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;399&quot; height=&quot;681&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oQvQs/btsPxSFsRmR/WM55EOuXSEDwwtUUzGmGEK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oQvQs/btsPxSFsRmR/WM55EOuXSEDwwtUUzGmGEK/img.png&quot; data-origin-width=&quot;564&quot; data-origin-height=&quot;368&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;72.34&quot; data-filename=&quot;blob&quot; style=&quot;width: 71.5024%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oQvQs/btsPxSFsRmR/WM55EOuXSEDwwtUUzGmGEK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoQvQs%2FbtsPxSFsRmR%2FWM55EOuXSEDwwtUUzGmGEK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;564&quot; height=&quot;368&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;피싱 사이트 접속 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 사이트를 보면 환경부를 사칭해 빨간 버튼처럼 보이는 &quot;위반내역 확인하기&quot;를 눌러야 되는 것처럼 구성 되어 있고,&amp;nbsp; HTML 살펴보면 userAgent 값을 이용해 ios 사용자는 어플을 다운로드할 수 없고, android 사용자를 타깃으로 한 것을 알아볼 수 있습니다.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;455&quot; data-origin-height=&quot;94&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cyRScG/btsPxXzIMGi/EMN4R40wkl6YTdixhaJgK1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cyRScG/btsPxXzIMGi/EMN4R40wkl6YTdixhaJgK1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cyRScG/btsPxXzIMGi/EMN4R40wkl6YTdixhaJgK1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcyRScG%2FbtsPxXzIMGi%2FEMN4R40wkl6YTdixhaJgK1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;455&quot; height=&quot;94&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;455&quot; data-origin-height=&quot;94&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #ef5369;&quot;&gt; 해당 버튼을 누르게 되면&lt;/span&gt; 최종적으로 apk 파일을 다운로드되는 형태입니다. 해당 앱은 &lt;span style=&quot;color: #ef5369;&quot;&gt;악성 앱입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;VirusTotal&amp;nbsp;탐지&amp;nbsp;결과&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Avast-Mobile :&lt;span style=&quot;color: #ef5369;&quot;&gt; Android:Evo-gen [Trj]&lt;/span&gt; &lt;br /&gt;BitDefenderFalx : &lt;span style=&quot;color: #ef5369;&quot;&gt;Android.Riskware.Agent.aCIGF&lt;/span&gt; &lt;br /&gt;DrWeb :&lt;span style=&quot;color: #ef5369;&quot;&gt; Android.BankBot.IOBot.2&lt;/span&gt; &lt;br /&gt;ESET-NOD32:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt; A Variant Of Android/Spy.Agent.EKR&lt;/span&gt; &lt;br /&gt;Fortinet : Android/Agent.EJE!tr &lt;br /&gt;Google : &lt;span style=&quot;color: #ef5369;&quot;&gt;Detected&lt;/span&gt; &lt;br /&gt;Ikarus : &lt;span style=&quot;color: #ef5369;&quot;&gt;Trojan-Spy.AndroidOS.Agent&lt;/span&gt; &lt;br /&gt;Kaspersky : &lt;span style=&quot;color: #ef5369;&quot;&gt;HEUR:Trojan-Banker.AndroidOS.IOBot.v&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출되긴 합니다... 상위 광고 페이지도 조심해야 합니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>*쓰레기무단투기 안내서가 발급되었습니다.</category>
      <category>cago</category>
      <category>[*벌금통보서안내*] 배출장소위반(음식물혼합)</category>
      <category>[*부과고지안내] 배출장소위반(음식물혼합)</category>
      <category>[국외발신] [*벌금고지서안내] 배출장소위반(음식물혼합)</category>
      <category>공공기관 사칭</category>
      <category>관공서 사칭</category>
      <category>스미싱</category>
      <category>피싱 사이트</category>
      <category>환경부 문자</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/225</guid>
      <comments>https://cago-young.tistory.com/225#entry225comment</comments>
      <pubDate>Fri, 25 Jul 2025 12:33:27 +0900</pubDate>
    </item>
    <item>
      <title>이커머스 피싱이란?</title>
      <link>https://cago-young.tistory.com/224</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;1. 이커머스 피싱이란?&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이커머스 피싱(e-commerce phishing)은 온라인 쇼핑을 이용한 사이버 범죄로, 가짜 쇼핑몰이나 사칭 이메일을 통해 사용자의 개인 정보와 결제 정보를 탈취하는 행위입니다. 한국에서는 Coupang, 11번가 같은 플랫폼의 인기가 높아지면서 이커머스 피싱이 점점 더 정교해지고 있습니다. 공격자는 AI 기술을 활용해 개인화된 피싱 이메일을 보내거나, 유명 브랜드를 사칭하여 신뢰를 얻습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;이커머스 피싱의 주요 특징&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;목표&lt;/b&gt;: 신용카드 정보, 계좌 정보, 로그인 자격 증명 등 민감한 데이터 탈취.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;영향&lt;/b&gt;: 금전적 손실, 개인 정보 유출, 신원 도용.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;2. 이커머스 피싱의 주요 수법&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이커머스 피싱은 다양한 형태로 나타나며, 다음과 같은 수법이 주로 사용됩니다:&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;수법 설명&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;가짜 쇼핑몰 운영&lt;/td&gt;
&lt;td&gt;유명 브랜드나 쇼핑몰을 사칭하여 가짜 웹사이트를 만들고 결제를 유도합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;개인 정보 및 결제 정보 탈취&lt;/td&gt;
&lt;td&gt;정상적인 쇼핑몰로 위장하여 신용카드 정보, 계좌 정보 등을 입력하도록 유도합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;배송 사기&lt;/td&gt;
&lt;td&gt;가짜 운송장 번호를 제공하거나, 배송 지연을 이유로 추가 결제를 요구합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;소셜 미디어 광고 피싱&lt;/td&gt;
&lt;td&gt;SNS 광고를 통해 가짜 쇼핑몰로 유도하여 사기를 칩니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;피싱 이메일 및 문자&lt;/td&gt;
&lt;td&gt;&quot;구매 완료&quot;, &quot;환불 진행&quot; 등의 메시지로 위장하여 피싱 사이트로 유도합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;리뷰 아르바이트 사칭&lt;/td&gt;
&lt;td&gt;고수익 아르바이트를 제안하며, 가짜 쇼핑몰에서 물건을 구매하고 리뷰를 작성하도록 유도합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;팀 미션 부업 사기&lt;/td&gt;
&lt;td&gt;여러 참가자가 팀을 이루어 리뷰 아르바이트를 진행하며 더 큰 투자를 유도합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;국가기관 사칭&lt;/td&gt;
&lt;td&gt;군인, 소방, 교도소 등 국가기관을 사칭하여 물품 구매 대리 결제 명목으로 금전을 가로챕니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이러한 수법은 사용자의 신뢰를 악용하여 금전적 피해를 초래하거나 개인 정보를 탈취하는 데 초점이 맞춰져 있습니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;3. 한국 내 실제 이커머스 피싱 사례&lt;/h2&gt;
&lt;p data-pm-slice=&quot;1 1 []&quot; data-ke-size=&quot;size16&quot;&gt;한국에서는 이커머스 피싱이 심각한 문제로 대두되고 있으며, 특히 온라인 쇼핑의 인기가 높아지면서 피해 사례가 증가하고 있습니다. 다음은 대표적인 사례입니다:&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;사례 1&lt;/b&gt;: A씨는 쿠팡 입점 쇼핑몰 담당자를 사칭하는 사기꾼에게 속아 가짜 쇼핑몰 링크를 받았습니다. 사기꾼은 신규 쇼핑몰이라 홍보 차원에서 리뷰 아르바이트를 진행한다며 A씨를 안심시켰습니다.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;사례 2&lt;/b&gt;: B씨는 해외 쇼핑몰 운영 제안을 받고 앱을 설치했으나, 쇼핑몰이 동결되었다는 이유로 복구 비용을 요구받았습니다.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;사례 3&lt;/b&gt;: C씨는 쇼핑 플랫폼 환불을 사칭한 피싱 문자를 받고 악성 앱을 설치하여 휴대폰이 해킹당하는 피해를 입었습니다.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;사례 4&lt;/b&gt;: 개그우먼 김니나는 이커머스 피싱으로 전 재산 8700만원을 잃었다고 고백했습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;4. 이커머스 피싱 예방 방법&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;사이트 신뢰성 확인&lt;/b&gt;:
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;URL이 &quot;https://&quot;로 시작하고 자물쇠 아이콘이 있는지 확인하세요.&lt;/li&gt;
&lt;li&gt;공식 도메인인지 확인하세요 (예: &quot;coupang.com&quot;이 아닌 &quot;coupang-korea.com&quot;은 의심스러움).&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;b&gt;이메일 및 문자 주의&lt;/b&gt;:
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;알 수 없는 발신자의 이메일이나 문자 메시지 링크는 클릭하지 마세요.&lt;/li&gt;
&lt;li&gt;&quot;결제 확인&quot; 또는 &quot;배송 문제&quot;와 같은 제목은 특히 조심하세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;b&gt;리뷰와 평판 확인&lt;/b&gt;:
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;구매 전 사이트의 리뷰와 평판을 확인하세요.&lt;/li&gt;
&lt;li&gt;터무니없이 낮은 가격이나 과도한 할인은 사기의 징후일 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;b&gt;결제 안전성&lt;/b&gt;:
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;가능하면 가상 계좌나 간편 결제 수단을 사용하세요.
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;오류등 이유로 계좌 입급등 유도 할 가능성이 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;신용카드 정보를 입력하기 전에 사이트의 신뢰성을 확인하세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;5. 피해 신고 방법&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이커머스 피싱 피해를 입었다면 즉시 다음 기관에 신고하세요:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;KISA (Korea Internet &amp;amp; Security Agency)&lt;/b&gt; (&lt;a title=&quot;KISA&quot; href=&quot;https://www.kisa.or.kr/cyberhelper118&quot;&gt;KISA&lt;/a&gt;):
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;전화: 118 (국내)&lt;/li&gt;
&lt;li&gt;24시간 운영&lt;/li&gt;
&lt;li&gt;신고 시 필요한 증거: &lt;b&gt;피싱 사이트 UR&lt;/b&gt;L, 이메일 내용, 거래 내역, &lt;b&gt;사업자 등록증&lt;/b&gt;, 증적 자료 등등&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;신고는 2차 피해를 줄이고 범죄자를 추적하는 데 중요한 역할을 합니다.&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;6. 결론&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이커머스 피싱은 한국의 온라인 쇼핑 시장 성장과 함께 점점 더 심각한 문제로 대두되고 있습니다. 가짜 쇼핑몰, 피싱 이메일, 소셜 미디어 광고 등 다양한 수법을 통해 사용자들을 속이는 이 사기는 금전적 손실뿐만 아니라 개인 정보 유출의 위험도 동반합니다. Rogervi2018, LuxeDeLuxe 같은 사례는 이러한 위협의 현실성을 보여줍니다. 따라서 사용자들은 항상 신뢰할 수 있는 사이트에서만 거래하고, 의심스러운 링크나 메시지를 피해야 합니다. 피해를 입었다면 &lt;a title=&quot;KISA&quot; href=&quot;https://www.kisa.or.kr/cyberhelper118&quot;&gt;KISA&lt;/a&gt; 또는 경찰청에 즉시 신고하여 추가 피해를 방지하세요.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이커머스 피싱에 대한 인식을 높이고, 안전한 온라인 쇼핑 환경을 만드는 데 모두가 기여할 수 있습니다. 지속적인 경계와 교육이 중요합니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;참고 URL&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174417&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174417&lt;/a&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174000&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;&lt;br /&gt;&lt;/a&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174000&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174000&lt;/a&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174000&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;&lt;br /&gt;&lt;/a&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=7988378&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://news.kbs.co.kr/news/pc/view/view.do?ncd=7988378&lt;/a&gt;&lt;a href=&quot;https://news.kbs.co.kr/news/pc/view/view.do?ncd=8174000&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;&lt;br /&gt;&lt;/a&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://kbcapital.co.kr/aboutus/cmpgdnc/finLifeDtl.kbc?blbdSeqno=107256&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://kbcapital.co.kr/aboutus/cmpgdnc/finLifeDtl.kbc?blbdSeqno=107256&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://m.news.nate.com/view/20240904n02812&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://m.news.nate.com/view/20240904n02812&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/224</guid>
      <comments>https://cago-young.tistory.com/224#entry224comment</comments>
      <pubDate>Tue, 13 May 2025 22:27:29 +0900</pubDate>
    </item>
    <item>
      <title>2025년 선관위 웹사이트 과부하 사건과 자동화 점검의 위험성</title>
      <link>https://cago-young.tistory.com/223</link>
      <description>&lt;h2 data-end=&quot;144&quot; data-start=&quot;133&quot; data-ke-size=&quot;size26&quot;&gt;2025년&amp;nbsp;선관위&amp;nbsp;웹사이트&amp;nbsp;과부하&amp;nbsp;사건과&amp;nbsp;자동화&amp;nbsp;점검의&amp;nbsp;위험성&lt;/h2&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://news.nate.com/view/20250423n37017&quot;&gt;https://news.nate.com/view/20250423n37017&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1759052245265&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;선관위 &amp;quot;3시간 사이버공격 받아&amp;quot;&amp;hellip;경찰 수사 의뢰 : 네이트 뉴스&quot; data-og-description=&quot;한눈에 보는 오늘 : 정치 - 뉴스 : 중앙선거관리위원회가 지난 22일 선관위 홈페이지 선거통계 시스템이 약 3시간 동안 사이버 공격을 받았다고 밝혔다. 선관위는 경찰에 수사를 의뢰하고 점검 체&quot; data-og-host=&quot;news.nate.com&quot; data-og-source-url=&quot;https://news.nate.com/view/20250423n37017&quot; data-og-url=&quot;https://news.nate.com/view/20250423n37017&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/PZxb2/hyZJKw1rRV/Stubywb9vRlBwi3L0IdW60/img.jpg?width=609&amp;amp;height=406&amp;amp;face=0_0_609_406,https://scrap.kakaocdn.net/dn/p7Fqm/hyZJSBgW1D/cSqEvWUMYRcvzCp2E7k1Fk/img.jpg?width=609&amp;amp;height=406&amp;amp;face=0_0_609_406&quot;&gt;&lt;a href=&quot;https://news.nate.com/view/20250423n37017&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://news.nate.com/view/20250423n37017&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/PZxb2/hyZJKw1rRV/Stubywb9vRlBwi3L0IdW60/img.jpg?width=609&amp;amp;height=406&amp;amp;face=0_0_609_406,https://scrap.kakaocdn.net/dn/p7Fqm/hyZJSBgW1D/cSqEvWUMYRcvzCp2E7k1Fk/img.jpg?width=609&amp;amp;height=406&amp;amp;face=0_0_609_406');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;선관위 &quot;3시간 사이버공격 받아&quot;&amp;hellip;경찰 수사 의뢰 : 네이트 뉴스&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;한눈에 보는 오늘 : 정치 - 뉴스 : 중앙선거관리위원회가 지난 22일 선관위 홈페이지 선거통계 시스템이 약 3시간 동안 사이버 공격을 받았다고 밝혔다. 선관위는 경찰에 수사를 의뢰하고 점검 체&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;news.nate.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.yna.co.kr/view/AKR20250428138400001&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.yna.co.kr/view/AKR20250428138400001&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1745876548776&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;선관위 &amp;quot;과도 트래픽, 보안업체 점검 중 발생&amp;hellip;외부공격 아냐&amp;quot; | 연합뉴스&quot; data-og-description=&quot;(서울=연합뉴스) 최평천 조다운 기자 = 최근 중앙선거관리위원회 선거통계 시스템 서버에 과도한 트래픽이 감지된 일은 사이버 공격이 아니라 보안 ...&quot; data-og-host=&quot;www.yna.co.kr&quot; data-og-source-url=&quot;https://www.yna.co.kr/view/AKR20250428138400001&quot; data-og-url=&quot;https://www.yna.co.kr/view/AKR20250428138400001&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bF8jtC/hyYMRoC5rM/GIx5bsInxYbREZgVNoh2Yk/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724,https://scrap.kakaocdn.net/dn/j0Vun/hyYM3o3SfT/DLbDoZGQFINPvucZUUkax1/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724,https://scrap.kakaocdn.net/dn/ipK4y/hyYM4uKiYU/814FKZPomHoGvfnxNqhkA1/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724&quot;&gt;&lt;a href=&quot;https://www.yna.co.kr/view/AKR20250428138400001&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.yna.co.kr/view/AKR20250428138400001&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bF8jtC/hyYMRoC5rM/GIx5bsInxYbREZgVNoh2Yk/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724,https://scrap.kakaocdn.net/dn/j0Vun/hyYM3o3SfT/DLbDoZGQFINPvucZUUkax1/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724,https://scrap.kakaocdn.net/dn/ipK4y/hyYM4uKiYU/814FKZPomHoGvfnxNqhkA1/img.jpg?width=1200&amp;amp;height=724&amp;amp;face=0_0_1200_724');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;선관위 &quot;과도 트래픽, 보안업체 점검 중 발생&amp;hellip;외부공격 아냐&quot; | 연합뉴스&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;(서울=연합뉴스) 최평천 조다운 기자 = 최근 중앙선거관리위원회 선거통계 시스템 서버에 과도한 트래픽이 감지된 일은 사이버 공격이 아니라 보안 ...&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.yna.co.kr&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;144&quot; data-start=&quot;133&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;  사건 요약&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;303&quot; data-start=&quot;146&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2025년 4월 22일 오후 2시 40분부터 약 3시간 동안 선관위 선거통계 시스템 서버에 과도한 트래픽이 발생하여 접속 장애가 발생했습니다. 당시 누군가가 홈페이지에 계속 접속해 서버 과부하를 유발한 정황이 포착되어 사이버 공격으로 의심받았습니다. 이에 선관위는 서버 접근을 차단하고 경찰에 수사를 의뢰했습니다.​&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;504&quot; data-start=&quot;305&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;그러나 이후 28일 자체 점검 결과, 과부하의 원인은 보안 진단 업체의 자동화 스크립트를 이용한 점검 방식 때문으로 밝혀졌습니다. 해당 업체는 기존의 수동 점검 방식과 달리 자동화 스크립트를 사용하였으며, 이로 인해 서버에 과도한 트래픽이 발생했습니다. 선관위는 이러한 점검 방식의 변경에 대해 사전에 통보받지 못한 것으로 전해졌습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;523&quot; data-start=&quot;511&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⚠️ 취약성 분석&lt;/span&gt;&lt;/h2&gt;
&lt;h3 data-end=&quot;552&quot; data-start=&quot;525&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. &lt;b&gt;자동화 스크립트의 과도한 요청&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-end=&quot;679&quot; data-start=&quot;554&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;자동화 스크립트는 보안 점검을 효율적으로 수행할 수 있는 도구이지만, 적절한 속도 제한 없이 사용될 경우 서버에 과도한 부하를 줄 수 있습니다. 이번 사건에서는 자동화 스크립트가 서버에 지속적으로 접속하여 과부하를 유발한 것으로 확인됩니다.​&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-end=&quot;711&quot; data-start=&quot;681&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. &lt;b&gt;HTTP Flood 공격과의 유사성?&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-end=&quot;838&quot; data-start=&quot;713&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HTTP Flood 공격은 웹 서버에 정상적인 HTTP 요청을 대량으로 보내 서버 자원을 소모시키는 DDoS 공격의 한 형태입니다. 이번 사건에서 발생한 과부하 현상은 의도된 공격은 아니었지만, 결과적으로 HTTP Flood 공격과 유사한 효과를 나타내는 거 아닌가 생각 듭니다.​&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-end=&quot;863&quot; data-start=&quot;840&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. &lt;b&gt;서버의 방어 체계 미비?&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-end=&quot;990&quot; data-start=&quot;865&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;background-color: #ffffff; color: #222222; text-align: start;&quot;&gt;'정보 보호시스템 모니터링을 통해 사이버 공격을 자체 인지했다. 이후 해당 IP를 차단'으로 보아&lt;/span&gt; 외부에서 작동시킨 걸로 생각이 되고 탐지 후 차단 했다고 전해집니다. 3시간 만에&amp;nbsp; 정상 작동되었지만 향후 실제 공격 발생 시 더 큰 피해로 이어질 수 있다고 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1386&quot; data-start=&quot;1361&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; ️ 2011년 DDoS 공격과의 비교&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;1513&quot; data-start=&quot;1388&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2011년, 한국의 주요 정부 기관과 금융 기관을 대상으로 대규모 DDoS 공격이 발생하여 큰 피해를 입었습니다. 당시 공격은 수많은 좀비 PC를 이용하여 대량의 트래픽을 발생시켜 서버를 마비시켰습니다.​&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;1640&quot; data-start=&quot;1515&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이번 선관위 사이트 과부하 사건은 의도된 공격은 아니었지만, 결과적으로 유사한 형태의 서비스 중단을 초래하였습니다. 실제 공격과 같은 피해를 발생시킬 수 있음을 보여주는 사례 아닌가 생각해 보게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;1640&quot; data-start=&quot;1515&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;​&lt;a href=&quot;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1745877140446&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;2011년 재보궐선거 사이버테러 사건 - 위키백과, 우리 모두의 백과사전&quot; data-og-description=&quot;위키백과, 우리 모두의 백과사전. 2011년 재보궐선거 사이버테러 사건, 2011년 재보궐선거 디도스 사건 또는 속칭 10&amp;middot;26 부정선거 사건은 2011년 10월 26일 11시 20분 경 중앙선관위 홈페이지와 박원순 &quot; data-og-host=&quot;ko.wikipedia.org&quot; data-og-source-url=&quot;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&quot; data-og-url=&quot;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://ko.wikipedia.org/wiki/2011%EB%85%84_%EC%9E%AC%EB%B3%B4%EA%B6%90%EC%84%A0%EA%B1%B0_%EC%82%AC%EC%9D%B4%EB%B2%84%ED%85%8C%EB%9F%AC_%EC%82%AC%EA%B1%B4&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;2011년 재보궐선거 사이버테러 사건 - 위키백과, 우리 모두의 백과사전&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;위키백과, 우리 모두의 백과사전. 2011년 재보궐선거 사이버테러 사건, 2011년 재보궐선거 디도스 사건 또는 속칭 10&amp;middot;26 부정선거 사건은 2011년 10월 26일 11시 20분 경 중앙선관위 홈페이지와 박원순&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;ko.wikipedia.org&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1745877242617&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;&amp;ldquo;선관위 DDoS 공격은 공씨 단독범행&amp;rdquo; &amp;hellip;경찰 결론&quot; data-og-description=&quot;- 총 5명 범행 가담&amp;hellip;배후&amp;middot;선관위 내부자 관여&amp;middot;DB 연동 임의차단 흔적 발견 못해 [디지털데일리 이유지기자] 경찰은 지난 10.26 재보궐선거 당일 발생한 ...&quot; data-og-host=&quot;n.news.naver.com&quot; data-og-source-url=&quot;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&quot; data-og-url=&quot;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/cWPAu2/hyYIfkdgfC/Z8CHaNJQt5njToKJ7LYM51/img.jpg?width=800&amp;amp;height=420&amp;amp;face=322_205_473_356,https://scrap.kakaocdn.net/dn/cOwTXC/hyYH70NdVj/JM9Q4ySOMivXVRHoT1rpT0/img.jpg?width=800&amp;amp;height=420&amp;amp;face=322_205_473_356&quot;&gt;&lt;a href=&quot;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://n.news.naver.com/mnews/article/138/0001987395?sid=105&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/cWPAu2/hyYIfkdgfC/Z8CHaNJQt5njToKJ7LYM51/img.jpg?width=800&amp;amp;height=420&amp;amp;face=322_205_473_356,https://scrap.kakaocdn.net/dn/cOwTXC/hyYH70NdVj/JM9Q4ySOMivXVRHoT1rpT0/img.jpg?width=800&amp;amp;height=420&amp;amp;face=322_205_473_356');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;&amp;ldquo;선관위 DDoS 공격은 공씨 단독범행&amp;rdquo; &amp;hellip;경찰 결론&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;- 총 5명 범행 가담&amp;hellip;배후&amp;middot;선관위 내부자 관여&amp;middot;DB 연동 임의차단 흔적 발견 못해 [디지털데일리 이유지기자] 경찰은 지난 10.26 재보궐선거 당일 발생한 ...&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;n.news.naver.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-end=&quot;1654&quot; data-start=&quot;1647&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;✅ 결론&lt;/span&gt;&lt;/h2&gt;
&lt;p data-end=&quot;1781&quot; data-start=&quot;1656&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;보안 점검은 시스템의 취약점을 사전에 발견하고 보완하기 위한 필수적인 과정입니다. 그러나 이러한 점검이 적절한 절차와 환경에서 이루어지지 않을 경우, 오히려 서비스 중단과 같은 부작용을 초래할 수 있습니다.​&lt;/span&gt;&lt;/p&gt;
&lt;p data-end=&quot;1908&quot; data-start=&quot;1783&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이번 선관위 사이트 과부하 사건은 보안 점검의 중요성과 함께, 그 실행 방식에 대한 신중한 접근이 필요함을 일깨워주는 사례입니다. 과거의 DDoS 공격 사례를 교훈 삼아, 보다 철저한 보안 체계와 점검 절차를 마련해야 할 시점입니다.&lt;/span&gt;&lt;/p&gt;</description>
      <category>Newspaper clippings</category>
      <category>ddos취약성</category>
      <category>httpflood공격</category>
      <category>서버 트래픽 과부하</category>
      <category>선관위 서버 과부하</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/223</guid>
      <comments>https://cago-young.tistory.com/223#entry223comment</comments>
      <pubDate>Tue, 29 Apr 2025 13:02:28 +0900</pubDate>
    </item>
    <item>
      <title>SK텔레콤 유심 정보 유출 사고</title>
      <link>https://cago-young.tistory.com/222</link>
      <description>&lt;h2 data-end=&quot;111&quot; data-start=&quot;101&quot; data-ke-size=&quot;size26&quot;&gt;사건 개요&lt;/h2&gt;
&lt;p data-end=&quot;340&quot; data-start=&quot;112&quot; data-ke-size=&quot;size16&quot;&gt;2025년 4월, SK텔레콤 내부 시스템에서 악성코드 침해 사고가 발생하여 일부 가입자의 유심(USIM) 정보가 유출되었다. 4월 19일 오후 11시경 악성코드가 탐지되었으며, 즉시 삭제 및 감염 장비 격리 조치가 이루어졌다. 이번에 유출된 정보는 USIM 고유식별번호(IMSI), 전화번호(MSISDN), 인증키 등이며, 주민등록번호, 주소, 금융 정보 등 민감한 정보는 유출되지 않은 것으로 확인됐다.&lt;/p&gt;
&lt;p data-end=&quot;422&quot; data-start=&quot;342&quot; data-ke-size=&quot;size16&quot;&gt;사고는 SKT의 가입자 정보 관리 시스템(HSS) 일부가 침해되면서 발생한 것으로 추정되며, 현재까지 유출 정보의 악용 사례는 보고되지 않았다.&lt;/p&gt;
&lt;h2 data-end=&quot;442&quot; data-start=&quot;424&quot; data-ke-size=&quot;size26&quot;&gt;SK텔레콤 및 정부 대응&lt;/h2&gt;
&lt;p data-end=&quot;587&quot; data-start=&quot;443&quot; data-ke-size=&quot;size16&quot;&gt;SK텔레콤은 사고 인지 직후 악성코드를 제거하고, 해킹 의심 장비를 즉시 격리 조치했다. 고객 보호를 위해 4월 28일부터 전국 대리점에서 USIM 무상 교체를 시행했으며, 4월 19일부터 27일까지 자비로 교체한 고객에게는 비용을 환급할 계획을 밝혔다.&lt;/p&gt;
&lt;p data-end=&quot;688&quot; data-start=&quot;589&quot; data-ke-size=&quot;size16&quot;&gt;또한 비정상적인 인증 시도를 차단하는 FDS(Fraud Detection System)를 강화하고, 이동전화번호 무단 변경 방지를 위한 USIM 보호 서비스를 제공하고 있다.&lt;/p&gt;
&lt;p data-end=&quot;795&quot; data-start=&quot;690&quot; data-ke-size=&quot;size16&quot;&gt;정부도 즉각 대응에 나섰다. 과학기술정보통신부는 합동조사단을 구성해 사고 원인을 조사하고 있으며, 국가정보원, 경찰청 등 관계기관은 SKT의 대응조치를 점검하고 보안 체계 강화를 지시했다.&lt;/p&gt;
&lt;h2 data-end=&quot;827&quot; data-start=&quot;797&quot; data-ke-size=&quot;size26&quot;&gt;유심 정보 유출 이후 예상 2차 공격 시나리오&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1085&quot; data-start=&quot;829&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;950&quot; data-start=&quot;829&quot;&gt;&lt;b&gt;심스와핑(SIM Swapping)&lt;/b&gt;&lt;br /&gt;공격자가 유출된 전화번호, IMSI, 인증키를 활용해 피해자의 전화번호를 탈취. 이후 2차 인증 문자(OTP 등)를 가로채 금융 계좌 탈취, SNS 탈취 공격 가능.&lt;/li&gt;
&lt;li data-end=&quot;1024&quot; data-start=&quot;952&quot;&gt;&lt;b&gt;명의도용 및 금융사기&lt;/b&gt;&lt;br /&gt;유출된 전화번호와 고유 식별번호를 활용하여 대출 신청, 신용카드 발급 등 금융 사기 시도.&lt;/li&gt;
&lt;li data-end=&quot;1085&quot; data-start=&quot;1026&quot;&gt;&lt;b&gt;위치추적 및 통신 감청&lt;/b&gt;&lt;br /&gt;IMSI를 활용해 피해자의 실시간 위치 추적, 통신 감청 가능성.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr data-end=&quot;1090&quot; data-start=&quot;1087&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h3 data-end=&quot;1111&quot; data-start=&quot;1092&quot; data-ke-size=&quot;size23&quot;&gt;[2차 공격 흐름 요약]&lt;/h3&gt;
&lt;p data-end=&quot;1175&quot; data-start=&quot;1112&quot; data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;USIM 정보 유출 &amp;rarr; SIM 스와핑 시도 &amp;rarr; OTP/본인 인증 탈취 &amp;rarr; 금융 계좌 접근 및 개인정보 탈취&lt;/b&gt;&lt;/p&gt;
&lt;hr data-end=&quot;1180&quot; data-start=&quot;1177&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;1203&quot; data-start=&quot;1182&quot; data-ke-size=&quot;size26&quot;&gt;BPFDoor 악성코드&lt;/h2&gt;
&lt;p data-end=&quot;1358&quot; data-start=&quot;1204&quot; data-ke-size=&quot;size16&quot;&gt;이번 침해 사고에는 리눅스 서버 대상 스텔스형 백도어 악성코드인 &lt;b&gt;BPFDoor&lt;/b&gt;가 사용된 것으로 분석되었다. BPFDoor는 중동과 아시아 지역을 대상으로 한 공격에 사용된 전력이 있으며, 매우 은밀하게 네트워크 포트 필터링을 우회하여 서버를 제어하는 특징을 가진다.&lt;/p&gt;
&lt;p data-end=&quot;1528&quot; data-start=&quot;1360&quot; data-ke-size=&quot;size16&quot;&gt;SK텔레콤 사고에서도 리눅스 서버의 특정 통신 포트가 악성코드에 의해 장악된 정황이 발견되었으며, 이를 통해 지속적인 통제 및 데이터 유출이 가능했던 것으로 보인다. BPFDoor는 기존 보안 솔루션 탐지를 우회할 수 있어, 전용 리눅스 보안 솔루션이 설치되지 않은 환경에서는 매우 높은 위협이 된다.&lt;/p&gt;
&lt;hr data-end=&quot;1533&quot; data-start=&quot;1530&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;h2 data-end=&quot;1548&quot; data-start=&quot;1535&quot; data-ke-size=&quot;size26&quot;&gt;결론 및 시사점&lt;/h2&gt;
&lt;p data-end=&quot;1659&quot; data-start=&quot;1549&quot; data-ke-size=&quot;size16&quot;&gt;이번 사고는 통신 인프라의 핵심 시스템 보안에 대한 경각심을 다시 한번 일깨운 사례다. 특히 리눅스 서버에 대한 전용 보안 솔루션 부재와, 침투 이후 탐지 지연 문제가 심각한 리스크로 부각됐다.&lt;/p&gt;
&lt;p data-end=&quot;1685&quot; data-start=&quot;1661&quot; data-ke-size=&quot;size16&quot;&gt;향후 과제로는 다음과 같은 대응이 필요하다:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1868&quot; data-start=&quot;1686&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;1718&quot; data-start=&quot;1686&quot;&gt;리눅스 서버 대상 전용 백신&amp;middot;EDR 도입 및 정책 강화&lt;/li&gt;
&lt;li data-end=&quot;1747&quot; data-start=&quot;1719&quot;&gt;통신사 핵심 시스템 접근 통제 및 모니터링 강화&lt;/li&gt;
&lt;li data-end=&quot;1797&quot; data-start=&quot;1748&quot;&gt;통신망&amp;middot;USIM 관련 2차 인증 강화 (예: 인증 강화를 위한 별도 보안 토큰 도입)&lt;/li&gt;
&lt;li data-end=&quot;1835&quot; data-start=&quot;1798&quot;&gt;통신사-금융사-정부 간 침해지표(IOC) 실시간 공유 체계 구축&lt;/li&gt;
&lt;li data-end=&quot;1868&quot; data-start=&quot;1836&quot;&gt;소비자 대상 보안 교육 및 유심 보호 서비스 가입 촉진&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-end=&quot;1948&quot; data-start=&quot;1870&quot; data-ke-size=&quot;size16&quot;&gt;또한 개인 사용자 역시 유심 보호 서비스 가입, 이중 인증 활성화, 의심스러운 문자의 즉시 삭제 등 기본 보안 수칙을 철저히 준수해야 한다.&lt;/p&gt;
&lt;hr data-end=&quot;1953&quot; data-start=&quot;1950&quot; data-ke-style=&quot;style1&quot; /&gt;
&lt;p data-end=&quot;1964&quot; data-start=&quot;1955&quot; data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;요약:&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2145&quot; data-start=&quot;1965&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2033&quot; data-start=&quot;1965&quot;&gt;이번 침해는 단순 정보 유출이 아니라 통신 인프라 심층 침투를 통한 국가 기반시설 위협 가능성까지 내포한 사건이다.&lt;/li&gt;
&lt;li data-end=&quot;2090&quot; data-start=&quot;2034&quot;&gt;보안업계와 정부는 사건의 심각성을 직시하고, 전면적인 통신 인프라 보안 강화에 착수해야 한다.&lt;/li&gt;
&lt;li data-end=&quot;2145&quot; data-start=&quot;2091&quot;&gt;이용자는 &quot;내 정보는 내가 지킨다&quot;는 마음으로, 스스로 보안 수칙을 강화하는 노력이 절실하다.&lt;/li&gt;
&lt;/ul&gt;</description>
      <category>Newspaper clippings</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/222</guid>
      <comments>https://cago-young.tistory.com/222#entry222comment</comments>
      <pubDate>Mon, 28 Apr 2025 19:27:35 +0900</pubDate>
    </item>
    <item>
      <title>[분석] 안랩 고지서를 위장하여 정보를 탈취하는 악성 LNK</title>
      <link>https://cago-young.tistory.com/221</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;[분석]&amp;nbsp;안랩&amp;nbsp;고지서를&amp;nbsp;위장하여&amp;nbsp;정보를&amp;nbsp;탈취하는&amp;nbsp;악성&amp;nbsp;LNK&lt;/h2&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;div&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;악성코드 특성&lt;/b&gt;:&amp;nbsp; 키로깅, 클립보드 데이터 수집, 웹 브라우저 데이터(로그인 정보, 쿠키) 탈취 기능을 보유.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;목표&lt;/b&gt;: 한국 사용자, 특히 세금 고지서를 클릭하도록 유도하여 가상 자산 데이터, 브라우저 데이터, GPKI 및 NPKI 인증서, 이메일 파일 등을 탈취.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;유포 방식&lt;/b&gt;: 이메일 피싱, 클라우드 스토리지(구글 드라이브, 원드라이브) 링크, 매크로 포함 MS 워드/엑셀 문서.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;실행과정&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;LNK 파일이 실행되면 다음과 같은 과정으로 감염이 진행됩니다:&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;초기 실행&lt;/b&gt;: LNK 파일이 temp 폴더에 HTA 파일을 다운로드.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;ZIP 파일 포함&lt;/b&gt;: HTA 파일은 ZIP 파일을 포함하며, ZIP 안에는 다음 파일이 포함됨:&lt;/span&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1.log, 2.log (악성 파일, Base64 인코딩된 PowerShell 스크립트)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1.ps1, 1.vbs (보조 파일)&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;악성 동작&lt;/b&gt;:&lt;/span&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;1.log&lt;/b&gt;: 정보 수집 및 명령 실행. 주요 함수:&lt;/span&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;UploadFile: 파일 업로드&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Unprotect-Data: 데이터 복호화&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GetExWFile: 파일 목록 수집&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GetBrowserData: 브라우저 데이터 수집&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Init, DownloadFile, CreateFileList, RegisterTask, Send, Get-ShortcutTargetPath, RecentFiles, Work 등.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;2.log&lt;/b&gt;: 키로깅 및 클립보드 데이터 수집. 주요 함수:&lt;/span&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Keylog: 키보드 입력 기록.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;/div&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;탈취 대상 데이터&lt;/span&gt;&lt;/h3&gt;
&lt;div&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;파일 확장자&lt;/b&gt;: txt, doc, csv, doc, docx, xls, xlsx, pdf, hwp, hwpx, jpg, jpeg, png, rar, zip, alz, eml, ldb, log&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;특정 파일 이름&lt;/b&gt;: wallet, UTC&amp;ndash;, blockchain, keystore, privatekey, coin, metamask, phrase, ledger, password, myether&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;추가 데이터&lt;/b&gt;: GPKI, NPKI 인증서, 이메일 파일, 브라우저 로그인 정보, 쿠키.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;virustotal 정보&lt;/span&gt;&lt;/h3&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1108&quot; data-origin-height=&quot;411&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oV7Y2/btsNu5AaihT/ETURLQXDSm5h8IgQGxiq01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oV7Y2/btsNu5AaihT/ETURLQXDSm5h8IgQGxiq01/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oV7Y2/btsNu5AaihT/ETURLQXDSm5h8IgQGxiq01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoV7Y2%2FbtsNu5AaihT%2FETURLQXDSm5h8IgQGxiq01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1108&quot; height=&quot;411&quot; data-origin-width=&quot;1108&quot; data-origin-height=&quot;411&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;특히 세금 고지서를 클릭하도록 유도하여 가상 자산 데이터, 브라우저 데이터, GPKI 및 NPKI 인증서, 이메일 파일 등을 정보 탈취&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;특정 폴더에 hta파일 다운로드 및 실행&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;731&quot; data-origin-height=&quot;355&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cj3Ip8/btsNv917Gvi/kS5fXwQyG6UIM39S6eBfVk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cj3Ip8/btsNv917Gvi/kS5fXwQyG6UIM39S6eBfVk/img.png&quot; data-alt=&quot;LNK 파일&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cj3Ip8/btsNv917Gvi/kS5fXwQyG6UIM39S6eBfVk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcj3Ip8%2FbtsNv917Gvi%2FkS5fXwQyG6UIM39S6eBfVk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;731&quot; height=&quot;355&quot; data-origin-width=&quot;731&quot; data-origin-height=&quot;355&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;LNK 파일&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;난독화된 스크립ㅌ,.png&quot; data-origin-width=&quot;597&quot; data-origin-height=&quot;312&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/rpvbj/btsNuFvbaT2/OPN9Is7PUybklmxkHbK0O0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/rpvbj/btsNuFvbaT2/OPN9Is7PUybklmxkHbK0O0/img.png&quot; data-alt=&quot;난독화 된 스크립트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/rpvbj/btsNuFvbaT2/OPN9Is7PUybklmxkHbK0O0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Frpvbj%2FbtsNuFvbaT2%2FOPN9Is7PUybklmxkHbK0O0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;597&quot; height=&quot;312&quot; data-filename=&quot;난독화된 스크립ㅌ,.png&quot; data-origin-width=&quot;597&quot; data-origin-height=&quot;312&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;난독화 된 스크립트&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VBScript 'Msgbox'를 이용하여 문자열 추출하여 확인할 수 있다.&lt;/span&gt;&lt;/p&gt;
&lt;pre id=&quot;code_1745360598319&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;Msgbox ss&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;난독화된 스크립ㅌ2,.png&quot; data-origin-width=&quot;918&quot; data-origin-height=&quot;132&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bnPksI/btsNu4gTs66/6x3FjKg71EVUWxBgjvHIyK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bnPksI/btsNu4gTs66/6x3FjKg71EVUWxBgjvHIyK/img.png&quot; data-alt=&quot;해제된 난독화코드&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bnPksI/btsNu4gTs66/6x3FjKg71EVUWxBgjvHIyK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbnPksI%2FbtsNu4gTs66%2F6x3FjKg71EVUWxBgjvHIyK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;918&quot; height=&quot;132&quot; data-filename=&quot;난독화된 스크립ㅌ2,.png&quot; data-origin-width=&quot;918&quot; data-origin-height=&quot;132&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;해제된 난독화코드&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해제된 스크립트를 보면 특정 문자열을 읽고 특정 폴더에 PDF 파일과 zip파일을 드롭하고 실행하는 것을 확인할 수 있다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;첫 번째 'JVBERi0xLj' 문자열을 읽고 해당 부분에서 '고지정보서'라는 미끼 문서를 보여준다.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;pdf.png&quot; data-origin-width=&quot;809&quot; data-origin-height=&quot;161&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/p2Pi1/btsNu5z9GMf/yPbTG0JYeswGstXhKQG2CK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/p2Pi1/btsNu5z9GMf/yPbTG0JYeswGstXhKQG2CK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/p2Pi1/btsNu5z9GMf/yPbTG0JYeswGstXhKQG2CK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fp2Pi1%2FbtsNu5z9GMf%2FyPbTG0JYeswGstXhKQG2CK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;809&quot; height=&quot;161&quot; data-filename=&quot;pdf.png&quot; data-origin-width=&quot;809&quot; data-origin-height=&quot;161&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;난독화된 스크립3.png&quot; data-origin-width=&quot;1021&quot; data-origin-height=&quot;684&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mNytM/btsNvckypFs/Ly82sNPZlv3KAZzaErH621/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mNytM/btsNvckypFs/Ly82sNPZlv3KAZzaErH621/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mNytM/btsNvckypFs/Ly82sNPZlv3KAZzaErH621/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmNytM%2FbtsNvckypFs%2FLy82sNPZlv3KAZzaErH621%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1021&quot; height=&quot;684&quot; data-filename=&quot;난독화된 스크립3.png&quot; data-origin-width=&quot;1021&quot; data-origin-height=&quot;684&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;

&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;두번쨰도&amp;nbsp; 'UEsDBBQAA' 문자열을 비교하고 특정 폴더에 저장 후 zip파일을 풀고 안에 있는 파일을 실행 한다.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;zip.png&quot; data-origin-width=&quot;510&quot; data-origin-height=&quot;180&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bI4XBn/btsNu1LrZMw/MV6GPHwVnLawaU8qBympU0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bI4XBn/btsNu1LrZMw/MV6GPHwVnLawaU8qBympU0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bI4XBn/btsNu1LrZMw/MV6GPHwVnLawaU8qBympU0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbI4XBn%2FbtsNu1LrZMw%2FMV6GPHwVnLawaU8qBympU0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;510&quot; height=&quot;180&quot; data-filename=&quot;zip.png&quot; data-origin-width=&quot;510&quot; data-origin-height=&quot;180&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;zip 생성.png&quot; data-origin-width=&quot;793&quot; data-origin-height=&quot;125&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bfcA7b/btsNuC6fVYl/EK90NKuCUEH2tPDgjE8X01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bfcA7b/btsNuC6fVYl/EK90NKuCUEH2tPDgjE8X01/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bfcA7b/btsNuC6fVYl/EK90NKuCUEH2tPDgjE8X01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbfcA7b%2FbtsNuC6fVYl%2FEK90NKuCUEH2tPDgjE8X01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;793&quot; height=&quot;125&quot; data-filename=&quot;zip 생성.png&quot; data-origin-width=&quot;793&quot; data-origin-height=&quot;125&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignRight&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;zip 생성2.png&quot; data-origin-width=&quot;802&quot; data-origin-height=&quot;299&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/RAuBb/btsNvVweKGJ/wMMwDE60dakSUSfEku9T21/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/RAuBb/btsNvVweKGJ/wMMwDE60dakSUSfEku9T21/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/RAuBb/btsNvVweKGJ/wMMwDE60dakSUSfEku9T21/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRAuBb%2FbtsNvVweKGJ%2FwMMwDE60dakSUSfEku9T21%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;802&quot; height=&quot;299&quot; data-filename=&quot;zip 생성2.png&quot; data-origin-width=&quot;802&quot; data-origin-height=&quot;299&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;1.ps1 파일에 인자 값으로 1.log(base64 인코딩)를 받아서 실행 디코드 하게되면 powershell코드가 보인다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;행위1.png&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;188&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bjc6qG/btsNuFPoPIS/WWf8f6YV3hcA0vIk7gNVBK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bjc6qG/btsNuFPoPIS/WWf8f6YV3hcA0vIk7gNVBK/img.png&quot; data-alt=&quot;[1.ps1] 파일 실행 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bjc6qG/btsNuFPoPIS/WWf8f6YV3hcA0vIk7gNVBK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbjc6qG%2FbtsNuFPoPIS%2FWWf8f6YV3hcA0vIk7gNVBK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;805&quot; height=&quot;188&quot; data-filename=&quot;행위1.png&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;188&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.ps1] 파일 실행 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;행위2.png&quot; data-origin-width=&quot;729&quot; data-origin-height=&quot;280&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bYfrp9/btsNvFG9E8t/AphwnJq3ESEp4R0jdnRykk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bYfrp9/btsNvFG9E8t/AphwnJq3ESEp4R0jdnRykk/img.png&quot; data-alt=&quot;[1.log] base64 인코딩 된 문자열&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bYfrp9/btsNvFG9E8t/AphwnJq3ESEp4R0jdnRykk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbYfrp9%2FbtsNvFG9E8t%2FAphwnJq3ESEp4R0jdnRykk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;729&quot; height=&quot;280&quot; data-filename=&quot;행위2.png&quot; data-origin-width=&quot;729&quot; data-origin-height=&quot;280&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] base64 인코딩 된 문자열&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;파일 함수 및 기능 정리&lt;/span&gt;&lt;/h3&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 6.97674%;&quot; rowspan=&quot;12&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;1.log&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;UploadFile&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;공격자 서버로 파일 전송&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Unprotect-Data&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;암호화된 브라우저 정보를 DPAPI를 이용해 복호화 및 수집&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GetExWFile&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;가상 자산 지갑 브라우저 확장 프로그램의 데이터 파일 수집&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GetBrowserData&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;브라우저(Edge, Chrome, Naver Whale, Firefox)의 로그인 데이터, 북마크, 확장 프로그램 데이터 수집&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Init&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;시스템 정보, 행정전자서명인증서(GPKI), 공동인증서(NPKI) 수집&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DownloadFile&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;파일 다운로드&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;CreateFileList&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;특정 파일의 경로 수집&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[대상 확장자]: txt, doc, csv, docx, xls, xlsx, pdf, hwp, hwpx, jpg, jpeg, png, rar, zip, alz, eml, ldb, log&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[대상 파일명]: wallet, UTC&amp;ndash;, blockchain, keystore, privatekey, coin, metamask, phrase, ledger, password, myether&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RegisterTask&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Run 키 등록을 통한 지속성 유지&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Send&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;수집된 데이터를 압축 후 UploadFile 함수를 통해 업로드&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Get-ShortcutTargetPath&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;바로가기(LNK) 파일의 대상 경로 획득&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RecentFiles&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;최근 열람한 문서 및 파일 경로 수집 (Recent 폴더의 LNK 파일 활용)&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Work&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;주기적으로 공격자 서버와 통신하며 추가 명령 수행 (명령어 실행, 파일 업로드/다운로드)&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;width: 6.97674%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;2.log&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 21.9767%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Keylog&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;width: 70.9302%;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;키로깅 및 클립보드 데이터 수집&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;특정 환경 탐지&lt;/b&gt; 하는 부분은 문자열을 &lt;b&gt;비교&lt;/b&gt;하고 특정 문자열이 매칭되면 &lt;b&gt;종료&lt;/b&gt;하기 때문에 &lt;b&gt;임의값&lt;/b&gt;을 추가하여 우회하였음&lt;/span&gt;&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;특정 환경 탐지시 종료.png&quot; data-origin-width=&quot;980&quot; data-origin-height=&quot;155&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cmWdns/btsNvHZiYSU/wLfJinKGL9z3K01xUgmovk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cmWdns/btsNvHZiYSU/wLfJinKGL9z3K01xUgmovk/img.png&quot; data-alt=&quot;[1.log] 특정 환경 탐지시 종료&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cmWdns/btsNvHZiYSU/wLfJinKGL9z3K01xUgmovk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcmWdns%2FbtsNvHZiYSU%2FwLfJinKGL9z3K01xUgmovk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;980&quot; height=&quot;155&quot; data-filename=&quot;특정 환경 탐지시 종료.png&quot; data-origin-width=&quot;980&quot; data-origin-height=&quot;155&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] 특정 환경 탐지시 종료&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;Run 키 등록을 통한 지속성 유지.png&quot; data-origin-width=&quot;1025&quot; data-origin-height=&quot;159&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/CAEbQ/btsNvAsAjIV/XgHYJx3o5KuqKWNU6xh2qk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/CAEbQ/btsNvAsAjIV/XgHYJx3o5KuqKWNU6xh2qk/img.png&quot; data-alt=&quot;[1.log] Run 키 등록을 통한 지속성 유지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/CAEbQ/btsNvAsAjIV/XgHYJx3o5KuqKWNU6xh2qk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FCAEbQ%2FbtsNvAsAjIV%2FXgHYJx3o5KuqKWNU6xh2qk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1025&quot; height=&quot;159&quot; data-filename=&quot;Run 키 등록을 통한 지속성 유지.png&quot; data-origin-width=&quot;1025&quot; data-origin-height=&quot;159&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] Run 키 등록을 통한 지속성 유지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주기적으로 공격자 서버와 통신하며 추가 명령 수행 (명령어 실행, 파일 업로드다운로드.png&quot; data-origin-width=&quot;917&quot; data-origin-height=&quot;598&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3yKit/btsNuZmzPnp/gAo5KFDaLJJoPPIPPAmCnk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3yKit/btsNuZmzPnp/gAo5KFDaLJJoPPIPPAmCnk/img.png&quot; data-alt=&quot;[1.log] 주기적으로 공격자 서버와 통신하며 추가 명령 수행 (명령어 실행, 파일 업로드다운로드)&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3yKit/btsNuZmzPnp/gAo5KFDaLJJoPPIPPAmCnk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3yKit%2FbtsNuZmzPnp%2FgAo5KFDaLJJoPPIPPAmCnk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;917&quot; height=&quot;598&quot; data-filename=&quot;주기적으로 공격자 서버와 통신하며 추가 명령 수행 (명령어 실행, 파일 업로드다운로드.png&quot; data-origin-width=&quot;917&quot; data-origin-height=&quot;598&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] 주기적으로 공격자 서버와 통신하며 추가 명령 수행 (명령어 실행, 파일 업로드다운로드)&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;시스템 정보, 행정전자서명인증서(GPKI), 공동인증서(NPKI) 수집.png&quot; data-origin-width=&quot;1018&quot; data-origin-height=&quot;655&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Qx0BH/btsNu4HZLxG/v65PO54VWtlMnNsLUyYW81/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Qx0BH/btsNu4HZLxG/v65PO54VWtlMnNsLUyYW81/img.png&quot; data-alt=&quot;[1.log] 시스템 정보, 행정전자서명인증서(GPKI), 공동인증서(NPKI) 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Qx0BH/btsNu4HZLxG/v65PO54VWtlMnNsLUyYW81/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQx0BH%2FbtsNu4HZLxG%2Fv65PO54VWtlMnNsLUyYW81%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1018&quot; height=&quot;655&quot; data-filename=&quot;시스템 정보, 행정전자서명인증서(GPKI), 공동인증서(NPKI) 수집.png&quot; data-origin-width=&quot;1018&quot; data-origin-height=&quot;655&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] 시스템 정보, 행정전자서명인증서(GPKI), 공동인증서(NPKI) 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;다수의 가상 자산 지갑(Wallet) 브라우저 확장 프로그램의 데이터 파일 수집.png&quot; data-origin-width=&quot;1006&quot; data-origin-height=&quot;695&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dvQ6z5/btsNvBRWyuI/uRPlCc6Tfn0lPX4FSjZMkk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dvQ6z5/btsNvBRWyuI/uRPlCc6Tfn0lPX4FSjZMkk/img.png&quot; data-alt=&quot;[1.log] 다수의 가상 자산 지갑(Wallet) 브라우저 확장 프로그램의 데이터 파일 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dvQ6z5/btsNvBRWyuI/uRPlCc6Tfn0lPX4FSjZMkk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdvQ6z5%2FbtsNvBRWyuI%2FuRPlCc6Tfn0lPX4FSjZMkk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1006&quot; height=&quot;695&quot; data-filename=&quot;다수의 가상 자산 지갑(Wallet) 브라우저 확장 프로그램의 데이터 파일 수집.png&quot; data-origin-width=&quot;1006&quot; data-origin-height=&quot;695&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] 다수의 가상 자산 지갑(Wallet) 브라우저 확장 프로그램의 데이터 파일 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;브라우저(Edge, Chrome, Naver Whale, Firefox)의 로그인 데이터, 북마크, 확장 프로그램 데이터 파일 수집.png&quot; data-origin-width=&quot;1008&quot; data-origin-height=&quot;716&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bbuAmv/btsNvdqgd35/BjllOxG5DkbizSJuzSPuA0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bbuAmv/btsNvdqgd35/BjllOxG5DkbizSJuzSPuA0/img.png&quot; data-alt=&quot;[1.log] 브라우저(Edge, Chrome, Naver Whale, Firefox)의 로그인 데이터, 북마크, 확장 프로그램 데이터 파일 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bbuAmv/btsNvdqgd35/BjllOxG5DkbizSJuzSPuA0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbbuAmv%2FbtsNvdqgd35%2FBjllOxG5DkbizSJuzSPuA0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1008&quot; height=&quot;716&quot; data-filename=&quot;브라우저(Edge, Chrome, Naver Whale, Firefox)의 로그인 데이터, 북마크, 확장 프로그램 데이터 파일 수집.png&quot; data-origin-width=&quot;1008&quot; data-origin-height=&quot;716&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[1.log] 브라우저(Edge, Chrome, Naver Whale, Firefox)의 로그인 데이터, 북마크, 확장 프로그램 데이터 파일 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2.log키로깅.png&quot; data-origin-width=&quot;928&quot; data-origin-height=&quot;481&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cy0yEz/btsNvVJLuS7/V1RUPP71YSQwl9jF3GmSwK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cy0yEz/btsNvVJLuS7/V1RUPP71YSQwl9jF3GmSwK/img.png&quot; data-alt=&quot;[2.log] 키로깅&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cy0yEz/btsNvVJLuS7/V1RUPP71YSQwl9jF3GmSwK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcy0yEz%2FbtsNvVJLuS7%2FV1RUPP71YSQwl9jF3GmSwK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;928&quot; height=&quot;481&quot; data-filename=&quot;2.log키로깅.png&quot; data-origin-width=&quot;928&quot; data-origin-height=&quot;481&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;[2.log] 키로깅&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정보 수집 후 특정 서버에 정보 유출&lt;/span&gt;&lt;/p&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bGcWZ8/btsNvWom1cq/lYKfJSTbDb4gELCE9H2q00/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bGcWZ8/btsNvWom1cq/lYKfJSTbDb4gELCE9H2q00/img.png&quot; style=&quot;width: 58.2981%; margin-right: 10px;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;640&quot; data-origin-height=&quot;304&quot; data-filename=&quot;공격자 서버로 파일전송2.png&quot; data-widthpercent=&quot;58.98&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bGcWZ8/btsNvWom1cq/lYKfJSTbDb4gELCE9H2q00/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbGcWZ8%2FbtsNvWom1cq%2FlYKfJSTbDb4gELCE9H2q00%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;640&quot; height=&quot;304&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bgojUs/btsNwc5zgy1/gKwugLSLrfKLZv3kiun3vK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bgojUs/btsNwc5zgy1/gKwugLSLrfKLZv3kiun3vK/img.png&quot; style=&quot;width: 40.5391%;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;934&quot; data-origin-height=&quot;638&quot; data-filename=&quot;공격자 서버로 파일전송.png&quot; data-widthpercent=&quot;41.02&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bgojUs/btsNwc5zgy1/gKwugLSLrfKLZv3kiun3vK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbgojUs%2FbtsNwc5zgy1%2FgKwugLSLrfKLZv3kiun3vK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;934&quot; height=&quot;638&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;네트워크,.png&quot; data-origin-width=&quot;1345&quot; data-origin-height=&quot;103&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/oMAHn/btsNvo61EW7/a4DFrkXxnJFqGn4RQMVEPK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/oMAHn/btsNvo61EW7/a4DFrkXxnJFqGn4RQMVEPK/img.png&quot; data-alt=&quot;네트워크&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/oMAHn/btsNvo61EW7/a4DFrkXxnJFqGn4RQMVEPK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FoMAHn%2FbtsNvo61EW7%2Fa4DFrkXxnJFqGn4RQMVEPK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1345&quot; height=&quot;103&quot; data-filename=&quot;네트워크,.png&quot; data-origin-width=&quot;1345&quot; data-origin-height=&quot;103&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;네트워크&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p data-ke-size=&quot;size16&quot;&gt;와이어 샤크에서 dns.qry.name == &quot;srvdown.ddns.net&quot;&amp;nbsp; 입력해서 찾음&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;/div&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;IOC 관련&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;https[:]//cdn[.]glitch[.]global/2eefa6a0-44ff-4979-9a9c-689be652996d/wsoj[.]hta&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;0DD2D15B3A13E7C7728997084BD6FB65&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://asec.ahnlab.com/ko/87616/&quot;&gt;https://asec.ahnlab.com/ko/87616/&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1745362209058&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;고지서를 위장하여 정보를 탈취하는 악성 LNK - ASEC&quot; data-og-description=&quot;AhnLab SEcurity intelligence Center(ASEC)에서는 최근 사용자 정보를 탈취하는 악성 LNK 파일이 국내 사용자를 대상으로 유포 중인 정황을 확인하였다. 해당 유형은 가상자산 관련 데이터, 브라우저 데이터&quot; data-og-host=&quot;asec.ahnlab.com&quot; data-og-source-url=&quot;https://asec.ahnlab.com/ko/87616/&quot; data-og-url=&quot;http://asec.ahnlab.com/ko/87616/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/kfDaz/hyYFyX4ZYX/evCp7z8YvmYNqdPBZCO4k1/img.png?width=2382&amp;amp;height=2475&amp;amp;face=0_0_2382_2475,https://scrap.kakaocdn.net/dn/oRRuU/hyYIj0fHff/FeK6MqDKTdikZLj3Mwxt6k/img.png?width=2382&amp;amp;height=2475&amp;amp;face=0_0_2382_2475,https://scrap.kakaocdn.net/dn/cahW5W/hyYFDkOq95/VfzgwPUhhbLCkx1sQ4KdP1/img.png?width=869&amp;amp;height=463&amp;amp;face=0_0_869_463&quot;&gt;&lt;a href=&quot;https://asec.ahnlab.com/ko/87616/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://asec.ahnlab.com/ko/87616/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/kfDaz/hyYFyX4ZYX/evCp7z8YvmYNqdPBZCO4k1/img.png?width=2382&amp;amp;height=2475&amp;amp;face=0_0_2382_2475,https://scrap.kakaocdn.net/dn/oRRuU/hyYIj0fHff/FeK6MqDKTdikZLj3Mwxt6k/img.png?width=2382&amp;amp;height=2475&amp;amp;face=0_0_2382_2475,https://scrap.kakaocdn.net/dn/cahW5W/hyYFDkOq95/VfzgwPUhhbLCkx1sQ4KdP1/img.png?width=869&amp;amp;height=463&amp;amp;face=0_0_869_463');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;고지서를 위장하여 정보를 탈취하는 악성 LNK - ASEC&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;AhnLab SEcurity intelligence Center(ASEC)에서는 최근 사용자 정보를 탈취하는 악성 LNK 파일이 국내 사용자를 대상으로 유포 중인 정황을 확인하였다. 해당 유형은 가상자산 관련 데이터, 브라우저 데이터&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;asec.ahnlab.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;div style=&quot;color: #333333; text-align: start;&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>분석 보고서</category>
      <category>안랩</category>
      <category>인포스틸러</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/221</guid>
      <comments>https://cago-young.tistory.com/221#entry221comment</comments>
      <pubDate>Wed, 23 Apr 2025 07:51:33 +0900</pubDate>
    </item>
    <item>
      <title>'방첩사 계엄문건' 사칭 북한 소행 추정 피싱 공격</title>
      <link>https://cago-young.tistory.com/220</link>
      <description>&lt;h2 data-end=&quot;136&quot; data-start=&quot;97&quot; data-ke-size=&quot;size26&quot;&gt;방첩사 계엄문건 사칭&amp;hellip; 북한 소행 추정 피싱 공격&lt;/h2&gt;
&lt;p data-end=&quot;290&quot; data-start=&quot;138&quot; data-ke-size=&quot;size16&quot;&gt;최근 경찰청은 작년 말에 북한의 소행으로 추정되는 사이버 공격에 대해 긴급 보도자료를 통해 경고를 내렸습니다. 이 공격은 대한민국 방첩사 계엄문건을 사칭한 문서와 피싱 URL을 이용해 악성 행위를 유도한 사례로, 단순한 피싱을 넘어선 &lt;b&gt;사회공학 기반 공격&lt;/b&gt;이었습니다.&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;307&quot; data-start=&quot;292&quot; data-ke-size=&quot;size23&quot;&gt;  공격 방식 요약&lt;/h3&gt;
&lt;p data-end=&quot;354&quot; data-start=&quot;309&quot; data-ke-size=&quot;size16&quot;&gt;공격자는 피싱 메일 혹은 메시지를 통해 다음과 같은 방식으로 사용자를 속였습니다:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;605&quot; data-start=&quot;356&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;397&quot; data-start=&quot;356&quot;&gt;&lt;b&gt;문서 사칭&lt;/b&gt;: &amp;lsquo;방첩사 계엄문건&amp;rsquo;이라는 매우 자극적인 제목을 사용&lt;/li&gt;
&lt;li data-end=&quot;514&quot; data-start=&quot;398&quot;&gt;&lt;b&gt;URL 기반 피싱&lt;/b&gt;: &lt;a href=&quot;http://naver.com@phishingsite.com&quot;&gt;http://naver.com@phishingsite.com&lt;/a&gt; 형태와 &lt;b&gt;타이포스쿼팅&lt;/b&gt;(Typosquatting) 또는 &lt;b&gt;홈그래핑(Homograph&lt;/b&gt; Attack)을 활용&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;&lt;b&gt;정보 탈취&lt;/b&gt;: 아이디와 비밀번호(계정정)등 중요 정보 탈취&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;&lt;b&gt;북한발 소행 추정 사건의 이유&lt;/b&gt; :
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;기존 북한발 서버이용&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;사칭 메일 수신자가 통일, 안보, 국방, 외교분야 종사자인 점&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;범행 근원지 IP주소가 북한과 접경지역에 할당&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;탈북자 및 군 관련 정보 수집&lt;/li&gt;
&lt;li data-end=&quot;605&quot; data-start=&quot;561&quot;&gt;인터넷 검색기록에서 북한식 어휘가 다수 확인된 점&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot; data-start=&quot;979&quot; data-end=&quot;998&quot;&gt;  공격 개요도와 사례&lt;/h3&gt;
&lt;p data-start=&quot;1000&quot; data-end=&quot;1049&quot; data-ke-size=&quot;size16&quot;&gt;첨부된 이미지와 같이, 공격자는 단계별로 사용자를 속이는 치밀한 구조를 갖추고 있습니다&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;958&quot; data-origin-height=&quot;447&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bQIeLb/btsNmcl3wmp/vmKKQfRW6rD2Xlxi6Fjt5k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bQIeLb/btsNmcl3wmp/vmKKQfRW6rD2Xlxi6Fjt5k/img.png&quot; data-alt=&quot;▲북한발 사칭 이메일 공격 개요도 [자료: 경찰청]&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bQIeLb/btsNmcl3wmp/vmKKQfRW6rD2Xlxi6Fjt5k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbQIeLb%2FbtsNmcl3wmp%2FvmKKQfRW6rD2Xlxi6Fjt5k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;958&quot; height=&quot;447&quot; data-origin-width=&quot;958&quot; data-origin-height=&quot;447&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;▲북한발 사칭 이메일 공격 개요도 [자료: 경찰청]&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;982&quot; data-origin-height=&quot;551&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/yyvYL/btsNpFVmwUH/U70goPueCpUNkakOxfThfk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/yyvYL/btsNpFVmwUH/U70goPueCpUNkakOxfThfk/img.png&quot; data-alt=&quot;▲ 북한발 사칭 전자우편 사례 [자료: 경찰청]&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/yyvYL/btsNpFVmwUH/U70goPueCpUNkakOxfThfk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FyyvYL%2FbtsNpFVmwUH%2FU70goPueCpUNkakOxfThfk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;982&quot; height=&quot;551&quot; data-origin-width=&quot;982&quot; data-origin-height=&quot;551&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;▲ 북한발 사칭 전자우편 사례 [자료: 경찰청]&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot; data-start=&quot;612&quot; data-end=&quot;636&quot;&gt;  실제 공격의 이용된 기법&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot; data-start=&quot;703&quot; data-end=&quot;972&quot;&gt;
&lt;li data-start=&quot;703&quot; data-end=&quot;763&quot;&gt;&lt;b&gt;타이포스쿼팅&lt;/b&gt;: 사용자가 도메인을 오타 낼 가능성을 노리고 유사 도메인을 등록해 악성 사이트로 유도&lt;/li&gt;
&lt;li data-start=&quot;764&quot; data-end=&quot;835&quot;&gt;&lt;b&gt;홈그래핑(HomographAttack)&lt;/b&gt;: 도메인에 비슷한 외형의 유니코드 문자를 사용해 정상 도메인처럼 보이게 조작&lt;/li&gt;
&lt;li data-start=&quot;764&quot; data-end=&quot;835&quot;&gt;&lt;b&gt;인증(로그인) 정보를 포함한 URL:&amp;nbsp;&lt;/b&gt;로그인 ID를 이용하여 사칭하여 피싱페이지로 유도&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;637&quot; data-origin-height=&quot;165&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/thGvZ/btsNo2btW9Z/Ae0g8GGQOPsGExMZglEeXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/thGvZ/btsNo2btW9Z/Ae0g8GGQOPsGExMZglEeXk/img.png&quot; data-alt=&quot;▲사칭용 전자우편 및 피싱 사이트 주소 사례 [자료: 경찰청]&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/thGvZ/btsNo2btW9Z/Ae0g8GGQOPsGExMZglEeXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FthGvZ%2FbtsNo2btW9Z%2FAe0g8GGQOPsGExMZglEeXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;637&quot; height=&quot;165&quot; data-origin-width=&quot;637&quot; data-origin-height=&quot;165&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;▲사칭용 전자우편 및 피싱 사이트 주소 사례 [자료: 경찰청]&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;168&quot; data-start=&quot;145&quot; data-ke-size=&quot;size23&quot;&gt;  공격 기법 상세 분석 + 예시&lt;/h3&gt;
&lt;h4 data-end=&quot;207&quot; data-start=&quot;170&quot; data-ke-size=&quot;size20&quot;&gt;  1. &lt;b&gt;타이포스쿼팅 (Typosquatting)&lt;/b&gt;&lt;/h4&gt;
&lt;p data-end=&quot;275&quot; data-start=&quot;209&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;개념&lt;/b&gt;: 사용자의 오타를 노려 유사 도메인을 등록하고, 해당 사이트에 악성 콘텐츠나 피싱 페이지를 배포하는 방식.&lt;/p&gt;
&lt;p data-end=&quot;284&quot; data-start=&quot;277&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;예시&lt;/b&gt;:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;374&quot; data-start=&quot;285&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;312&quot; data-start=&quot;285&quot;&gt;정상 도메인: www.naver.com&lt;/li&gt;
&lt;li data-end=&quot;374&quot; data-start=&quot;313&quot;&gt;공격 도메인: www.nvaer.com, www.naver.co.kr.login-page.com&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-end=&quot;475&quot; data-start=&quot;376&quot; data-ke-size=&quot;size14&quot;&gt;  www.naver.co.kr.login-page.com는 겉보기엔 naver.co.kr의 서브도메인처럼 보이지만, 실제 도메인은 login-page.com입니다.&lt;/p&gt;
&lt;p data-end=&quot;495&quot; data-start=&quot;477&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;실제 피해 가능 시나리오&lt;/b&gt;:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;571&quot; data-start=&quot;496&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;530&quot; data-start=&quot;496&quot;&gt;피해자가 사칭된 링크 클릭 &amp;rarr; 가짜 로그인 페이지 등장&lt;/li&gt;
&lt;li data-end=&quot;571&quot; data-start=&quot;531&quot;&gt;사용자 ID/PW 입력 &amp;rarr; 즉시 공격자 서버로 전송 &amp;rarr; 계정 탈취&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-end=&quot;619&quot; data-start=&quot;578&quot; data-ke-size=&quot;size20&quot;&gt;  2. &lt;b&gt;홈그래프 공격 (Homograph Attack)&lt;/b&gt;&lt;/h4&gt;
&lt;p data-end=&quot;705&quot; data-start=&quot;621&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;개념&lt;/b&gt;: 도메인 이름에 유사하게 보이는 유니코드 문자를 삽입하여, 사람 눈에는 똑같이 보이지만 실제로는 다른 도메인으로 연결되도록 하는 기법.&lt;/p&gt;
&lt;p data-end=&quot;714&quot; data-start=&quot;707&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;예시&lt;/b&gt;:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;811&quot; data-start=&quot;715&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;743&quot; data-start=&quot;715&quot;&gt;정상 도메인: www.paypal.com&lt;/li&gt;
&lt;li data-end=&quot;811&quot; data-start=&quot;744&quot;&gt;공격 도메인: www.pаypal.com &amp;larr; 여기서 첫 번째 'a'는 &lt;b&gt;라틴 문자가 아니라 키릴 문자&lt;/b&gt;입니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-end=&quot;866&quot; data-start=&quot;813&quot; data-ke-size=&quot;size14&quot;&gt;  대부분의 사용자 눈에는 구분이 안 되지만, 실제 주소는 완전히 다른 공격자의 도메인입니다.&lt;/p&gt;
&lt;p data-end=&quot;881&quot; data-start=&quot;868&quot; data-ke-size=&quot;size14&quot;&gt;&lt;b&gt;실제 사용 사례&lt;/b&gt;:&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;995&quot; data-start=&quot;882&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;938&quot; data-start=&quot;882&quot;&gt;공격자는 이 기법으로 가짜 금융기관, 포털, 전자정부 사이트 등을 만들어 피싱 메시지를 통해 유포&lt;/li&gt;
&lt;li data-end=&quot;995&quot; data-start=&quot;939&quot;&gt;한국에서도 유사 방식으로. kr을.рｋ(유니코드 조합)처럼 위장한 사례가 탐지된 바 있음&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;636&quot; data-start=&quot;612&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;color: #333333; font-size: 16px; letter-spacing: 0px;&quot;&gt;참고 사이트&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;a title=&quot;경찰청 보도자료&quot; href=&quot;https://www.police.go.kr/user/bbs/BD_selectBbs.do?q_bbsCode=1002&amp;amp;q_bbscttSn=20250416073941062&amp;amp;q_tab=&amp;amp;q_searchKeyTy=&amp;amp;q_searchVal=&amp;amp;q_rowPerPage=10&amp;amp;q_currPage=1&amp;amp;q_sortName=&amp;amp;q_sortOrder=&amp;amp;&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;경찰청 보도자료&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a style=&quot;background-color: #e6f5ff; color: #0070d1; text-align: start;&quot; href=&quot;https://cago-young.tistory.com/219&quot;&gt;URL 기본 구조와 @을 활용한 피싱 기법&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>&amp;lsquo;방첩사 계엄 문건&amp;rsquo; 사칭 전자우편은 북 소행</category>
      <category>북한 해킹조직 apt</category>
      <category>사칭 메일 주의</category>
      <category>이메일 보안 점검 방법</category>
      <category>타이포스쿼팅</category>
      <category>피싱 도메인 구별법</category>
      <category>피싱 메일 사례</category>
      <category>홈그래핑</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/220</guid>
      <comments>https://cago-young.tistory.com/220#entry220comment</comments>
      <pubDate>Fri, 18 Apr 2025 01:38:30 +0900</pubDate>
    </item>
    <item>
      <title>URL 기본 구조와 @을 활용한 피싱 기법</title>
      <link>https://cago-young.tistory.com/219</link>
      <description>&lt;h2 data-end=&quot;279&quot; data-start=&quot;201&quot; data-ke-size=&quot;size26&quot;&gt;  URL&amp;nbsp;기본&amp;nbsp;구조와&amp;nbsp;@을&amp;nbsp;활용한&amp;nbsp;피싱&amp;nbsp;기법&lt;/h2&gt;
&lt;p data-end=&quot;279&quot; data-start=&quot;201&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;웹에서 자원에 접근할 때 사용하는 주소인 **URL (Uniform Resource Locator)**은 다음과 같은 구성 요소를 가집니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;304&quot; data-start=&quot;286&quot; data-ke-size=&quot;size23&quot;&gt;  URL 기본 구성 요소&lt;span data-state=&quot;closed&quot;&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;div&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;737&quot; data-start=&quot;306&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;737&quot; data-start=&quot;354&quot;&gt;
&lt;tr data-end=&quot;432&quot; data-start=&quot;354&quot;&gt;
&lt;td data-end=&quot;373&quot; data-start=&quot;354&quot;&gt;&lt;b&gt;Scheme (스키마)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;394&quot; data-start=&quot;373&quot;&gt;자원에 접근하는 방식 (프로토콜)&lt;/td&gt;
&lt;td data-end=&quot;432&quot; data-start=&quot;394&quot;&gt;http, https, ftp, mailto 등&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;495&quot; data-start=&quot;433&quot;&gt;
&lt;td data-end=&quot;450&quot; data-start=&quot;433&quot;&gt;&lt;b&gt;Host (호스트)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;474&quot; data-start=&quot;450&quot;&gt;자원이 위치한 서버의 도메인 또는 IP&lt;/td&gt;
&lt;td data-end=&quot;495&quot; data-start=&quot;474&quot;&gt;www.example.com&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;555&quot; data-start=&quot;496&quot;&gt;
&lt;td data-end=&quot;512&quot; data-start=&quot;496&quot;&gt;&lt;b&gt;Port (포트)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;536&quot; data-start=&quot;512&quot;&gt;생략 가능하며 서버의 특정 포트를 지정&lt;/td&gt;
&lt;td data-end=&quot;555&quot; data-start=&quot;536&quot;&gt;:443, :21 등&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;606&quot; data-start=&quot;556&quot;&gt;
&lt;td data-end=&quot;572&quot; data-start=&quot;556&quot;&gt;&lt;b&gt;Path (경로)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;584&quot; data-start=&quot;572&quot;&gt;자원에 대한 위치&lt;/td&gt;
&lt;td data-end=&quot;606&quot; data-start=&quot;584&quot;&gt;/files/image.jpg&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;675&quot; data-start=&quot;607&quot;&gt;
&lt;td data-end=&quot;624&quot; data-start=&quot;607&quot;&gt;&lt;b&gt;Query (쿼리)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;652&quot; data-start=&quot;624&quot;&gt;추가 파라미터 정보 (?key=value)&lt;/td&gt;
&lt;td data-end=&quot;675&quot; data-start=&quot;652&quot;&gt;?id=123&amp;amp;view=full&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;737&quot; data-start=&quot;676&quot;&gt;
&lt;td data-end=&quot;699&quot; data-start=&quot;676&quot;&gt;&lt;b&gt;Fragment (프래그먼트)&lt;/b&gt;&lt;/td&gt;
&lt;td data-end=&quot;722&quot; data-start=&quot;699&quot;&gt;문서 내 특정 위치를 지정 (#)&lt;/td&gt;
&lt;td data-end=&quot;737&quot; data-start=&quot;722&quot;&gt;#section2&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;p data-end=&quot;814&quot; data-start=&quot;739&quot; data-ke-size=&quot;size16&quot;&gt;  &lt;b&gt;예시 URL&lt;/b&gt;:&lt;br /&gt;https://www.example.com:443/path/to/page?id=123#comments&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ChatGPT Image 2025년 4월 18일 오전 01_20_22.png&quot; data-origin-width=&quot;1536&quot; data-origin-height=&quot;1024&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sYMNt/btsNp1Kons6/v59rKFm8RD4a4MwTfNnkdK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sYMNt/btsNp1Kons6/v59rKFm8RD4a4MwTfNnkdK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sYMNt/btsNp1Kons6/v59rKFm8RD4a4MwTfNnkdK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsYMNt%2FbtsNp1Kons6%2Fv59rKFm8RD4a4MwTfNnkdK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;539&quot; height=&quot;359&quot; data-filename=&quot;ChatGPT Image 2025년 4월 18일 오전 01_20_22.png&quot; data-origin-width=&quot;1536&quot; data-origin-height=&quot;1024&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;853&quot; data-start=&quot;821&quot; data-ke-size=&quot;size23&quot;&gt;  인증(로그인) 정보를 포함한 URL &amp;ndash; 그리고 피싱 위험&lt;/h3&gt;
&lt;p data-end=&quot;887&quot; data-start=&quot;855&quot; data-ke-size=&quot;size16&quot;&gt;전통적으로 FTP나 HTTP 인증에 사용되던 URL 포맷:&lt;/p&gt;
&lt;div&gt;
&lt;div&gt;&lt;span&gt;&lt;span&gt;protocol://username:&lt;/span&gt;&lt;span&gt;&lt;span&gt;password&lt;/span&gt;&lt;/span&gt;&lt;span&gt;@&lt;/span&gt;&lt;span&gt;&lt;span&gt;domain&lt;/span&gt;&lt;/span&gt;&lt;span&gt;/&lt;/span&gt;&lt;span&gt;&lt;span&gt;path&lt;/span&gt;&lt;/span&gt;&lt;span&gt; &lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;h3 data-end=&quot;949&quot; data-start=&quot;939&quot; data-ke-size=&quot;size23&quot;&gt;  예시:&lt;/h3&gt;
&lt;div&gt;
&lt;div&gt;&lt;span&gt;&lt;span&gt;ftp://user:pass@ftp.example.com/files&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;&lt;span&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;h3 data-end=&quot;1037&quot; data-start=&quot;997&quot; data-ke-size=&quot;size23&quot;&gt;⚠️ 하지만 다음과 같은 &lt;b&gt;피싱 공격&lt;/b&gt;에 악용될 수 있습니다:&lt;/h3&gt;
&lt;div&gt;
&lt;div&gt;&lt;span&gt;&lt;span&gt;https://naver.com@phishingsite.com/login &lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;1203&quot; data-start=&quot;1089&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;1127&quot; data-start=&quot;1089&quot;&gt;&lt;b&gt;실제로 접속되는 사이트는 phishingsite.com&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;1168&quot; data-start=&quot;1128&quot;&gt;&lt;b&gt;앞부분의 naver.com은 사용자 신뢰 유도를 위한 미끼&lt;/b&gt;&lt;/li&gt;
&lt;li data-end=&quot;1203&quot; data-start=&quot;1169&quot;&gt;&lt;b&gt;브라우저 주소창의 @ 이후가 진짜 도메인&lt;/b&gt;입니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-end=&quot;1274&quot; data-start=&quot;1205&quot; data-ke-size=&quot;size16&quot;&gt;  https://user:password@domain.com 구조는 &lt;b&gt;@ 기준 오른쪽이 실제 접속 도메인&lt;/b&gt;입니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;1768&quot; data-start=&quot;1751&quot; data-ke-size=&quot;size23&quot;&gt;  요약: 왜 중요한가?&lt;span data-state=&quot;closed&quot;&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;div&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-end=&quot;1959&quot; data-start=&quot;1770&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody data-end=&quot;1959&quot; data-start=&quot;1798&quot;&gt;
&lt;tr data-end=&quot;1850&quot; data-start=&quot;1798&quot;&gt;
&lt;td data-end=&quot;1812&quot; data-start=&quot;1798&quot;&gt;✔️ 피싱 피해 예방&lt;/td&gt;
&lt;td data-end=&quot;1850&quot; data-start=&quot;1812&quot;&gt;신뢰할 수 있는 도메인인지, 구조상 이상이 없는지 반드시 확인&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1904&quot; data-start=&quot;1851&quot;&gt;
&lt;td data-end=&quot;1868&quot; data-start=&quot;1851&quot;&gt;✔️ 인증 정보 유출 방지&lt;/td&gt;
&lt;td data-end=&quot;1904&quot; data-start=&quot;1868&quot;&gt;URL에 아이디&amp;middot;비밀번호를 포함하면 로그를 통해 유출 위험&lt;/td&gt;
&lt;/tr&gt;
&lt;tr data-end=&quot;1959&quot; data-start=&quot;1905&quot;&gt;
&lt;td data-end=&quot;1926&quot; data-start=&quot;1905&quot;&gt;✔️ 브라우저 정책과의 충돌 방지&lt;/td&gt;
&lt;td data-end=&quot;1959&quot; data-start=&quot;1926&quot;&gt;최신 브라우저는 이런 URL 형식을 경고하거나 차단함&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-end=&quot;1992&quot; data-start=&quot;1966&quot; data-ke-size=&quot;size23&quot;&gt; ️ 실제 피싱 공격 방식:&lt;/h3&gt;
&lt;h4 data-end=&quot;2008&quot; data-start=&quot;1994&quot; data-ke-size=&quot;size20&quot;&gt;  피싱 URL: &lt;a style=&quot;font-size: 16px; letter-spacing: 0px;&quot; title=&quot;https://naver.com                                                                                         @cago-young.tistory.com&quot; href=&quot;https://naver.com%20                                                                                        @cago-young.tistory.com&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;https://naver.com&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; @cago-young.tistory.com&lt;/a&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2168&quot; data-start=&quot;2061&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2092&quot; data-start=&quot;2061&quot;&gt;사용자에게는 공백을 이용하여 네이버 도메인인 것처럼 속임&amp;nbsp;&lt;/li&gt;
&lt;li data-end=&quot;2127&quot; data-start=&quot;2093&quot;&gt;실제 접속은 cago-young.tistory.com로 이루어짐&lt;/li&gt;
&lt;li data-end=&quot;2168&quot; data-start=&quot;2128&quot;&gt;해당 페이지는 네이버 로그인 UI를 모방한 &lt;b&gt;가짜 로그인 페이지가 될수 있음&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a style=&quot;background-color: #e6f5ff; color: #0070d1; text-align: start;&quot; href=&quot;https://cago-young.tistory.com/220&quot;&gt;'방첩사 계엄문건' 사칭 북한 소행 추정 피싱 공격&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1744908617792&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;'방첩사 계엄문건' 사칭 북한 소행 추정 피싱 공격&quot; data-og-description=&quot;방첩사 계엄문건 사칭&amp;hellip; 북한 소행 추정 피싱 공격최근 경찰청은 작년 말에 북한의 소행으로 추정되는 사이버 공격에 대해 긴급 보도자료를 통해 경고를 내렸습니다. 이 공격은 대한민국 방첩&quot; data-og-host=&quot;cago-young.tistory.com&quot; data-og-source-url=&quot;https://cago-young.tistory.com/220&quot; data-og-url=&quot;https://cago-young.tistory.com/220&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/NuR0h/hyYG8Y914P/9KvwLSQtwtLxLtwKiqZlpK/img.png?width=800&amp;amp;height=373&amp;amp;face=0_0_800_373,https://scrap.kakaocdn.net/dn/snUSv/hyYIcGjA19/KkyAbgg3Pgdsbxro7Kzcx1/img.png?width=800&amp;amp;height=373&amp;amp;face=0_0_800_373,https://scrap.kakaocdn.net/dn/bz9ujP/hyYG9Rjk8b/srdZpcSZIdE0cQLGrD3Jgk/img.png?width=982&amp;amp;height=551&amp;amp;face=0_0_982_551&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/220&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://cago-young.tistory.com/220&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/NuR0h/hyYG8Y914P/9KvwLSQtwtLxLtwKiqZlpK/img.png?width=800&amp;amp;height=373&amp;amp;face=0_0_800_373,https://scrap.kakaocdn.net/dn/snUSv/hyYIcGjA19/KkyAbgg3Pgdsbxro7Kzcx1/img.png?width=800&amp;amp;height=373&amp;amp;face=0_0_800_373,https://scrap.kakaocdn.net/dn/bz9ujP/hyYG9Rjk8b/srdZpcSZIdE0cQLGrD3Jgk/img.png?width=982&amp;amp;height=551&amp;amp;face=0_0_982_551');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;'방첩사 계엄문건' 사칭 북한 소행 추정 피싱 공격&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;방첩사 계엄문건 사칭&amp;hellip; 북한 소행 추정 피싱 공격최근 경찰청은 작년 말에 북한의 소행으로 추정되는 사이버 공격에 대해 긴급 보도자료를 통해 경고를 내렸습니다. 이 공격은 대한민국 방첩&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;cago-young.tistory.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-end=&quot;2181&quot; data-start=&quot;2170&quot; data-ke-size=&quot;size23&quot;&gt;✅ 알고 넘어가자:&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-end=&quot;2274&quot; data-start=&quot;2182&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li data-end=&quot;2219&quot; data-start=&quot;2182&quot;&gt;주소창의 도메인 @ 이후가 실제 접속 도메인임을 반드시 인지&lt;/li&gt;
&lt;li data-end=&quot;2245&quot; data-start=&quot;2220&quot;&gt;외부 링크 클릭 금지, 직접 확인해서 들어가는 습관&amp;nbsp;&lt;/li&gt;
&lt;li data-end=&quot;2274&quot; data-start=&quot;2246&quot;&gt;https 브라우저의 SSL 인증서 확인 (자물쇠 아이콘)&lt;/li&gt;
&lt;/ul&gt;</description>
      <category>Basic/정보보안</category>
      <category>#https</category>
      <category>url구조</category>
      <category>사회공학</category>
      <category>악성링크</category>
      <category>웹보안</category>
      <category>인증정보</category>
      <category>피싱주의</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/219</guid>
      <comments>https://cago-young.tistory.com/219#entry219comment</comments>
      <pubDate>Wed, 16 Apr 2025 19:50:27 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 정부24 사칭 스미싱 악성앱 분석 (25.02.25)</title>
      <link>https://cago-young.tistory.com/218</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이번에 &lt;b&gt;직접 핸드폰&lt;/b&gt;으로 문자가 와서 확인해 봤는데 이전에도 비슷한 유형에 &lt;b&gt;피싱 사이트&lt;/b&gt;를 통해 악성앱을 유포시켰습니다. 22년도에는 &lt;b&gt;교통위반&lt;/b&gt;등 운전자 관련 위주로 &lt;b&gt;스미싱&lt;/b&gt;이 배포되어 왔고 23-24년도에는 쓰레기 무단투기등 &lt;b&gt;생활형 범법행위&lt;/b&gt; 관련으로 위주로 유포 되었습니다.&amp;nbsp; 다시 돌아와서 아래 키워드를 보면 이제 &lt;b&gt;다시 교통 관련&lt;/b&gt; 스미싱이 보이기 시작한거 같습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/216&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;경찰청 교통민원 스미싱 증가! 피싱 사이트 유포 (25.02.25)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #000000;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h2&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;[국외발신]&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;{-경찰청교통민원-}&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;교통법위반(사전안내서)발부됨 확인바람:&amp;nbsp; http://URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.jpg&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;541&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bcvRJX/btsMALuIj9t/998IaNX1RA5CwyDjKqXWmK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bcvRJX/btsMALuIj9t/998IaNX1RA5CwyDjKqXWmK/img.png&quot; data-alt=&quot;스미싱 문자&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bcvRJX/btsMALuIj9t/998IaNX1RA5CwyDjKqXWmK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbcvRJX%2FbtsMALuIj9t%2F998IaNX1RA5CwyDjKqXWmK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;648&quot; height=&quot;541&quot; data-filename=&quot;edited_1.jpg&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;541&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;스미싱 문자&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;정부24 관련 현재 배포되고 있는 스미싱 문구는&amp;nbsp; &quot;교통법규위반(사전안내서)발부됨&quot; 내용이 포함되어 &lt;b&gt;스미싱 문자&lt;/b&gt;를 배포하고 있습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;정부 24(구 민원 24) &lt;b&gt;사칭&lt;/b&gt;을 하여 최근에는 쓰레기, 무단투기등 생활 범법행위 위주의 문구를 사용한 것으로 알고 있었는데&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt; 최근에 다시 운전자관련 하여 범칙금, 범법 행위 관련으로 배포되는 것으로 보아 &lt;b&gt;&quot;과태료&quot;&lt;/b&gt;, &quot;범칙금&quot;, &lt;b&gt;&quot;운전면허&quot;,&lt;/b&gt; &quot;고지서&quot;, &lt;b&gt;&quot;통지서&quot;&lt;/b&gt;, &quot;벌점&quot;,&amp;nbsp; &quot;&lt;b&gt;신호 위반&quot;&lt;/b&gt;, &quot;과속&quot;,&lt;b&gt; &quot;불법 주정차&quot;&lt;/b&gt;, &quot;불법 유턴&quot;, &quot;&lt;b&gt;보행자 보호 의무&lt;/b&gt; 위반&quot;등 이&lt;b&gt; 포함된 문구&lt;/b&gt;가 다시 배포될 것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 배포 방식&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부에서 앱 다운로드 하는 경우는 특이사항이 아닌 이상 요구 하지 않을 것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bP4ZAk/btsMyAuHobe/9l7hWDs4vox2sdzIvsiP6K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bP4ZAk/btsMyAuHobe/9l7hWDs4vox2sdzIvsiP6K/img.png&quot; data-alt=&quot;정상 앱 설치&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bP4ZAk/btsMyAuHobe/9l7hWDs4vox2sdzIvsiP6K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbP4ZAk%2FbtsMyAuHobe%2F9l7hWDs4vox2sdzIvsiP6K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1034&quot; height=&quot;383&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정상 앱 설치&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이전의 &lt;b&gt;피싱&lt;/b&gt; 사이트는 &lt;span style=&quot;color: #f89009;&quot;&gt;번호 입력 - 본인인증 - 앱 다운&lt;/span&gt; 순으로 진행됐었는데 요번에는 &lt;b&gt;번호 입력, 본인인증&lt;/b&gt;이 없이 피싱 페이지에서 &lt;b&gt;버튼을 누르면&lt;/b&gt; 다운로드되는 형태로 바뀌었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_화면 1.png&quot; data-origin-width=&quot;742&quot; data-origin-height=&quot;836&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dY12WV/btsMyswBJx7/MW7MCIrHx7At7vDvhu9eIK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dY12WV/btsMyswBJx7/MW7MCIrHx7At7vDvhu9eIK/img.png&quot; data-alt=&quot;피싱 사이트 페이지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dY12WV/btsMyswBJx7/MW7MCIrHx7At7vDvhu9eIK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdY12WV%2FbtsMyswBJx7%2FMW7MCIrHx7At7vDvhu9eIK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;742&quot; height=&quot;836&quot; data-filename=&quot;edited_화면 1.png&quot; data-origin-width=&quot;742&quot; data-origin-height=&quot;836&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;피싱 사이트 페이지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;피싱 사이트 html 분석&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_agent 확인.PNG&quot; data-origin-width=&quot;1213&quot; data-origin-height=&quot;342&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3smal/btsMyTUYfk0/13A9fjHZf5MJy6GEoeSciK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3smal/btsMyTUYfk0/13A9fjHZf5MJy6GEoeSciK/img.png&quot; data-alt=&quot;피싱 사이트 스크립트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3smal/btsMyTUYfk0/13A9fjHZf5MJy6GEoeSciK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3smal%2FbtsMyTUYfk0%2F13A9fjHZf5MJy6GEoeSciK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1213&quot; height=&quot;342&quot; data-filename=&quot;edited_agent 확인.PNG&quot; data-origin-width=&quot;1213&quot; data-origin-height=&quot;342&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;피싱 사이트 스크립트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트에서 버튼을 클릭하게 되면 userAgent 값으로 IOS 또는 mac 환경에서 접속 시 해당 파일을 받을 수 없고 다른 환경으로 접속 시 특정 url로 접속하게 되어 apk 파일을 다운로드하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 사칭 사이트인&amp;nbsp;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://www.gov.kr/&quot;&gt;정부24 홈페이지&lt;/a&gt;와는 이전처럼 비슷하지는 않아 보입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;해당&lt;/b&gt;&amp;nbsp;스미싱 문자에&amp;nbsp;&lt;b&gt;포함된 URL&lt;/b&gt;&amp;nbsp;주소로 접속하면&amp;nbsp;&lt;b&gt;정부 24&lt;/b&gt;(구 민원 24) 사칭 피싱 사이트로 접속하게 되며&amp;nbsp;&lt;b&gt;해당 페이지&lt;/b&gt;에서 &quot;&lt;b&gt;정부 24 어플 다운&lt;/b&gt;로드&quot; 버튼을 클릭하면 APK&amp;nbsp;&lt;b&gt;파일&lt;/b&gt;을 설치하게 되며, 해당 앱은&amp;nbsp;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;b&gt;악성 앱&lt;/b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;입니다.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h2 style=&quot;color: #000000;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;리소스 분석&lt;/span&gt;&lt;/h2&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name: GO24&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Version : 1.0.1&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Package Name : com.mpgd.pompbsys&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5&amp;nbsp;:&amp;nbsp;6a6051d8963ba2b27c2766bf34978774 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1&amp;nbsp;:&amp;nbsp;7b3fd1eb5346922473c860f74885c040eec332d1 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-256&amp;nbsp;:&amp;nbsp;01e6619f0a6472f9129b203726187b3d769cbc9107748988ec1a70bdd65f1385 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Vhash&amp;nbsp;:&amp;nbsp;7547c30674db4037af1bccb215bc5159&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;ESET-NOD32 : &lt;/span&gt;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/TrojanDownloader.Agent.ATQ &lt;br /&gt;&lt;span style=&quot;color: #000000;&quot;&gt;Kaspersky : &lt;/span&gt;HEUR:Trojan-Downloader.AndroidOS.Banjeon.e&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_virustotal.PNG&quot; data-origin-width=&quot;1046&quot; data-origin-height=&quot;489&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/GJDxO/btsMzNUgk7C/mhBZnOnicMeKkAqOb9PDQ0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/GJDxO/btsMzNUgk7C/mhBZnOnicMeKkAqOb9PDQ0/img.png&quot; data-alt=&quot;virustotal 탐지 내역&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/GJDxO/btsMzNUgk7C/mhBZnOnicMeKkAqOb9PDQ0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGJDxO%2FbtsMzNUgk7C%2FmhBZnOnicMeKkAqOb9PDQ0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1046&quot; height=&quot;489&quot; data-filename=&quot;edited_virustotal.PNG&quot; data-origin-width=&quot;1046&quot; data-origin-height=&quot;489&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;virustotal 탐지 내역&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities 1&amp;nbsp; , Services 0, Receivers 1, Providers 2를 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;div style=&quot;background-color: #fafafa; color: #333333;&quot; data-text-less=&quot;닫기&quot; data-text-more=&quot;더보기&quot; data-ke-type=&quot;moreLess&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;aapt dump xmlstrings [ ].apk&amp;nbsp;AndroidManifest.xml&lt;/span&gt;&lt;/p&gt;
&lt;pre id=&quot;code_1740488122537&quot; class=&quot;bash&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;&amp;lt;?xml version=&quot;1.0&quot; encoding=&quot;utf-8&quot;?&amp;gt;
&amp;lt;resources&amp;gt;
    &amp;lt;string name=&quot;abc_action_bar_up_description&quot;&amp;gt;Navigate up&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_action_mode_done&quot;&amp;gt;Done&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_capital_off&quot;&amp;gt;OFF&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_capital_on&quot;&amp;gt;ON&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_alt_shortcut_label&quot;&amp;gt;Alt+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_ctrl_shortcut_label&quot;&amp;gt;Ctrl+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_delete_shortcut_label&quot;&amp;gt;delete&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_enter_shortcut_label&quot;&amp;gt;enter&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_function_shortcut_label&quot;&amp;gt;Function+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_meta_shortcut_label&quot;&amp;gt;Meta+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_shift_shortcut_label&quot;&amp;gt;Shift+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_space_shortcut_label&quot;&amp;gt;space&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_menu_sym_shortcut_label&quot;&amp;gt;Sym+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_prepend_shortcut_label&quot;&amp;gt;Menu+&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_search_hint&quot;&amp;gt;Search&amp;hellip;&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_searchview_description_clear&quot;&amp;gt;Clear query&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_searchview_description_search&quot;&amp;gt;Search&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_searchview_description_submit&quot;&amp;gt;Submit query&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_searchview_description_voice&quot;&amp;gt;Voice search&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;abc_toolbar_collapse_description&quot;&amp;gt;Collapse&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;androidx_startup&quot;&amp;gt;androidx.startup&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;app_name&quot;&amp;gt;GO24&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;baseUrl&quot;&amp;gt;UEREZWxNUnYtMjA5LjE0MS41My44MQ==&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottom_sheet_behavior&quot;&amp;gt;com.google.android.material.bottomsheet.BottomSheetBehavior&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottomsheet_action_collapse&quot;&amp;gt;Collapse the bottom sheet&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottomsheet_action_expand&quot;&amp;gt;Expand the bottom sheet&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottomsheet_action_expand_halfway&quot;&amp;gt;Expand halfway&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottomsheet_drag_handle_clicked&quot;&amp;gt;Drag handle double-tapped&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;bottomsheet_drag_handle_content_description&quot;&amp;gt;Drag handle&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;character_counter_content_description&quot;&amp;gt;Characters entered %1$d of %2$d&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;character_counter_overflowed_content_description&quot;&amp;gt;Character limit exceeded %1$d of %2$d&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;character_counter_pattern&quot;&amp;gt;%1$d/%2$d&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;clear_text_end_icon_content_description&quot;&amp;gt;Clear text&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;decodeKey&quot;&amp;gt;PDDelMRv-&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;error_a11y_label&quot;&amp;gt;Error: invalid&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;error_icon_content_description&quot;&amp;gt;Error&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;exposed_dropdown_menu_content_description&quot;&amp;gt;Show dropdown menu&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;item_view_role_description&quot;&amp;gt;Tab&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_ref_typeface_brand_regular&quot;&amp;gt;sans-serif&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_ref_typeface_plain_medium&quot;&amp;gt;sans-serif-medium&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_ref_typeface_plain_regular&quot;&amp;gt;sans-serif&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_emphasized&quot;&amp;gt;path(M 0,0 C 0.05, 0, 0.133333, 0.06, 0.166666, 0.4 C 0.208333, 0.82, 0.25, 1, 1, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_emphasized_path_data&quot;&amp;gt;M 0,0 C 0.05, 0, 0.133333, 0.06, 0.166666, 0.4 C 0.208333, 0.82, 0.25, 1, 1, 1&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_legacy_accelerate&quot;&amp;gt;cubic-bezier(0.4, 0, 1, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_legacy_decelerate&quot;&amp;gt;cubic-bezier(0, 0, 0.2, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_linear&quot;&amp;gt;cubic-bezier(0, 0, 1, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;m3_sys_motion_easing_standard&quot;&amp;gt;cubic-bezier(0.2, 0, 0, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_clock_display_divider&quot;&amp;gt;:&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_clock_toggle_content_description&quot;&amp;gt;Select AM or PM&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_motion_easing_accelerated&quot;&amp;gt;cubic-bezier(0.4, 0.0, 1.0, 1.0)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_motion_easing_decelerated&quot;&amp;gt;cubic-bezier(0.0, 0.0, 0.2, 1.0)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_motion_easing_emphasized&quot;&amp;gt;path(M 0,0 C 0.05, 0, 0.133333, 0.06, 0.166666, 0.4 C 0.208333, 0.82, 0.25, 1, 1, 1)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_motion_easing_linear&quot;&amp;gt;cubic-bezier(0.0, 0.0, 1.0, 1.0)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_motion_easing_standard&quot;&amp;gt;cubic-bezier(0.4, 0.0, 0.2, 1.0)&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_timepicker_am&quot;&amp;gt;AM&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;material_timepicker_pm&quot;&amp;gt;PM&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_icon_path_checked&quot;&amp;gt;M14,18.2 11.4,15.6 10,17 14,21 22,13 20.6,11.6z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_icon_path_group_name&quot;&amp;gt;icon&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_icon_path_indeterminate&quot;&amp;gt;M13.4,15 11,15 11,17 13.4,17 21,17 21,15z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_icon_path_name&quot;&amp;gt;icon path&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_path_checked&quot;&amp;gt;M23,7H9C7.9,7,7,7.9,7,9v14c0,1.1,0.9,2,2,2h14c1.1,0,2-0.9,2-2V9C25,7.9,24.1,7,23,7z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_path_group_name&quot;&amp;gt;button&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_path_name&quot;&amp;gt;button path&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_button_path_unchecked&quot;&amp;gt;M23,7H9C7.9,7,7,7.9,7,9v14c0,1.1,0.9,2,2,2h14c1.1,0,2-0.9,2-2V9C25,7.9,24.1,7,23,7z M23,23H9V9h14V23z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_state_description_checked&quot;&amp;gt;Checked&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_state_description_indeterminate&quot;&amp;gt;Partially checked&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_checkbox_state_description_unchecked&quot;&amp;gt;Not checked&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_chip_close_icon_content_description&quot;&amp;gt;Remove %1$s&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_a11y_next_month&quot;&amp;gt;Change to next month&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_a11y_prev_month&quot;&amp;gt;Change to previous month&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_cancel&quot;&amp;gt;Cancel&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_confirm&quot;&amp;gt;OK&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_day_of_week_column_header&quot;&amp;gt;%1$s&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_navigate_to_current_year_description&quot;&amp;gt;Navigate to current year %1$d&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_navigate_to_year_description&quot;&amp;gt;Navigate to year %1$d&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_save&quot;&amp;gt;Save&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_toggle_to_calendar_input_mode&quot;&amp;gt;Switch to calendar input mode&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_toggle_to_day_selection&quot;&amp;gt;Tap to switch to Calendar view&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_toggle_to_text_input_mode&quot;&amp;gt;Switch to text input mode&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_picker_toggle_to_year_selection&quot;&amp;gt;Tap to switch to year view&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_group_name&quot;&amp;gt;circle_group&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_path_checked&quot;&amp;gt;M4,16 A12,12 0 0,1 16,4 H16 A12,12 0 0,1 16,28 H16 A12,12 0 0,1 4,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_path_morphing&quot;&amp;gt;M0,16 A11,11 0 0,1 11,5 H21 A11,11 0 0,1 21,27 H11 A11,11 0 0,1 0,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_path_name&quot;&amp;gt;circle&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_path_pressed&quot;&amp;gt;M2,16 A14,14 0 0,1 16,2 H16 A14,14 0 0,1 16,30 H16 A14,14 0 0,1 2,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_thumb_path_unchecked&quot;&amp;gt;M8,16 A8,8 0 0,1 16,8 H16 A8,8 0 0,1 16,24 H16 A8,8 0 0,1 8,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_track_decoration_path&quot;&amp;gt;M1,16 A15,15 0 0,1 16,1 H36 A15,15 0 0,1 36,31 H16 A15,15 0 0,1 1,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;mtrl_switch_track_path&quot;&amp;gt;M0,16 A16,16 0 0,1 16,0 H36 A16,16 0 0,1 36,32 H16 A16,16 0 0,1 0,16&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;password_toggle_content_description&quot;&amp;gt;Show password&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;path_password_eye&quot;&amp;gt;M12,4.5C7,4.5 2.73,7.61 1,12c1.73,4.39 6,7.5 11,7.5s9.27,-3.11 11,-7.5c-1.73,-4.39 -6,-7.5 -11,-7.5zM12,17c-2.76,0 -5,-2.24 -5,-5s2.24,-5 5,-5 5,2.24 5,5 -2.24,5 -5,5zM12,9c-1.66,0 -3,1.34 -3,3s1.34,3 3,3 3,-1.34 3,-3 -1.34,-3 -3,-3z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;path_password_eye_mask_strike_through&quot;&amp;gt;M2,4.27 L19.73,22 L22.27,19.46 L4.54,1.73 L4.54,1 L23,1 L23,23 L1,23 L1,4.27 Z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;path_password_eye_mask_visible&quot;&amp;gt;M2,4.27 L2,4.27 L4.54,1.73 L4.54,1.73 L4.54,1 L23,1 L23,23 L1,23 L1,4.27 Z&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;path_password_strike_through&quot;&amp;gt;M3.27,4.27 L19.74,20.74&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;side_sheet_accessibility_pane_title&quot;&amp;gt;Side Sheet&amp;lt;/string&amp;gt;
    &amp;lt;string name=&quot;url_down&quot;&amp;gt;UEREZWxNUnYtMjA5LjE0MS4zNi4yMA==&amp;lt;/string&amp;gt;
&amp;lt;/resources&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Permission&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-sheets-baot=&quot;1&quot; data-sheets-root=&quot;1&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style13&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;권한 (Permission)&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;설명 (Description)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;android.permission.INTERNET&lt;/td&gt;
&lt;td&gt;앱이 인터넷을 사용할 수 있도록 허용&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;android.permission.REQUEST_INSTALL_PACKAGES&lt;/td&gt;
&lt;td&gt;
&lt;div&gt;
&lt;div&gt;앱이 외부 패키지를 설치할 수 있도록 허용&lt;/div&gt;
&lt;/div&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;com.mpgd.pompbsys.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION&lt;/td&gt;
&lt;td&gt;
&lt;div&gt;
&lt;div&gt;내부적으로 사용되는 동적 브로드캐스트 리시버 권한&lt;/div&gt;
&lt;/div&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;앱 실행 시 피싱 화면을 보여주고 추가 APK파일을 다운로드 설치를 진행한다.&lt;br /&gt;설치된 APK 파일도 피싱 사이트로 접속하며, 권한 흭득, 각종 정보수집과 설정을 확인하고 sms 수집 및 송신 기능이 포함되어 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;govkr.apk&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;피싱 화면&lt;/li&gt;
&lt;li&gt;사용자 입력을 받아 서버로 전송&lt;/li&gt;
&lt;li&gt;특정 경로에서 govManage.apk 다운로드하여 추가 설치를 합니다.&lt;/li&gt;
&lt;li&gt;govManage.apk
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;피싱&amp;nbsp;화면을&amp;nbsp;보여줌&amp;nbsp;&lt;/li&gt;
&lt;li&gt;권한 획득&lt;/li&gt;
&lt;li&gt;배터리 최적화, 네트워크 사용권환 확인, 진동 설정 확인&lt;/li&gt;
&lt;li&gt;각종정보 수집 (번호, 통신사, 모델명)&lt;/li&gt;
&lt;li&gt;sms 수집&lt;/li&gt;
&lt;li&gt;핸들러 메시지를&amp;nbsp;&amp;nbsp;통해 특정 번호 확인 및 행위&lt;/li&gt;
&lt;li&gt;sms 송신&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 앱 실행 시 피싱 사이트를 보여주고 사용자 입력 값을 서버로 전송&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_웹 뷰.png&quot; data-origin-width=&quot;931&quot; data-origin-height=&quot;578&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cSyJGm/btsMyS9B2lw/0aVpJfx8oQcHJSdVK9Gb2K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cSyJGm/btsMyS9B2lw/0aVpJfx8oQcHJSdVK9Gb2K/img.png&quot; data-alt=&quot;실행 시 피싱 페이지 접속&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cSyJGm/btsMyS9B2lw/0aVpJfx8oQcHJSdVK9Gb2K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcSyJGm%2FbtsMyS9B2lw%2F0aVpJfx8oQcHJSdVK9Gb2K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;931&quot; height=&quot;578&quot; data-filename=&quot;edited_웹 뷰.png&quot; data-origin-width=&quot;931&quot; data-origin-height=&quot;578&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;실행 시 피싱 페이지 접속&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&amp;nbsp;피싱 사이트 화면과 유출&lt;/li&gt;
&lt;/ul&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b3g7id/btsMAt15PCH/GQfrFYaCmDSvpu7NWKKpzk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b3g7id/btsMAt15PCH/GQfrFYaCmDSvpu7NWKKpzk/img.png&quot; data-widthpercent=&quot;49.96&quot; data-filename=&quot;edited_웹뷰 피싱 화면.png&quot; data-origin-height=&quot;599&quot; data-origin-width=&quot;402&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.3475%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b3g7id/btsMAt15PCH/GQfrFYaCmDSvpu7NWKKpzk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb3g7id%2FbtsMAt15PCH%2FGQfrFYaCmDSvpu7NWKKpzk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;599&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/clajdz/btsMA4APrqR/HfDS7Uqq8vaS516y5k0owK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/clajdz/btsMA4APrqR/HfDS7Uqq8vaS516y5k0owK/img.png&quot; data-widthpercent=&quot;50.04&quot; data-filename=&quot;edited_웹뷰 피싱 화면2.png&quot; data-origin-height=&quot;598&quot; data-origin-width=&quot;402&quot; data-is-animation=&quot;false&quot; style=&quot;width: 49.43%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/clajdz/btsMA4APrqR/HfDS7Uqq8vaS516y5k0owK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fclajdz%2FbtsMA4APrqR%2FHfDS7Uqq8vaS516y5k0owK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;598&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;실행 시 보여지는 피싱 페이지&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_웹뷰 피싱 유출.png&quot; data-origin-width=&quot;1164&quot; data-origin-height=&quot;562&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/25lJa/btsMAtujOf1/v718iuCYswbfw62pIrwANk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/25lJa/btsMAtujOf1/v718iuCYswbfw62pIrwANk/img.png&quot; data-alt=&quot;입력 값 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/25lJa/btsMAtujOf1/v718iuCYswbfw62pIrwANk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F25lJa%2FbtsMAtujOf1%2Fv718iuCYswbfw62pIrwANk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1164&quot; height=&quot;562&quot; data-filename=&quot;edited_웹뷰 피싱 유출.png&quot; data-origin-width=&quot;1164&quot; data-origin-height=&quot;562&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;입력 값 유출&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;base64로 디코딩 된 문자열에서 시그니처 키를 뺴면 피싱사이트 주소를 획득 할 수 있다.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;pre id=&quot;code_1740929837259&quot; class=&quot;applescript&quot; style=&quot;background-color: #f8f8f8;&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;string name=&quot;decodeKey&quot;&amp;gt;PDDelMRv-&amp;lt;/string&amp;gt;
&amp;lt;string name=&quot;baseUrl&quot;&amp;gt;UEREZWxNUnYtMjA5LjE0MS41My44MQ==&amp;lt;/string
&amp;lt;string name=&quot;url_down&quot;&amp;gt;UEREZWxNUnYtMjA5LjE0MS4zNi4yMA==&amp;lt;/string&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. 특정 주소에서 APK 파일 설치&lt;br /&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_추가 앱다운.png&quot; data-origin-width=&quot;899&quot; data-origin-height=&quot;660&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bNV8M7/btsMBd5nhSd/3h4dJTFQMCKTgdmEzdZE50/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bNV8M7/btsMBd5nhSd/3h4dJTFQMCKTgdmEzdZE50/img.png&quot; data-alt=&quot;추가 다운로드&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bNV8M7/btsMBd5nhSd/3h4dJTFQMCKTgdmEzdZE50/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbNV8M7%2FbtsMBd5nhSd%2F3h4dJTFQMCKTgdmEzdZE50%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;899&quot; height=&quot;660&quot; data-filename=&quot;edited_추가 앱다운.png&quot; data-origin-width=&quot;899&quot; data-origin-height=&quot;660&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;추가 다운로드&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3.&amp;nbsp; govManage.apk 피싱 사이트 화면을 보여줌&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;첫 번째 앱과 같은 유출지를 가짐&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_baseURL.png&quot; data-origin-width=&quot;1088&quot; data-origin-height=&quot;263&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/drUzZ1/btsMyWc86nz/oV0Fevj61BDhKwINVcCdG0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/drUzZ1/btsMyWc86nz/oV0Fevj61BDhKwINVcCdG0/img.png&quot; data-alt=&quot;정보 유출지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/drUzZ1/btsMyWc86nz/oV0Fevj61BDhKwINVcCdG0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdrUzZ1%2FbtsMyWc86nz%2FoV0Fevj61BDhKwINVcCdG0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1088&quot; height=&quot;263&quot; data-filename=&quot;edited_baseURL.png&quot; data-origin-width=&quot;1088&quot; data-origin-height=&quot;263&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_baseURL2피싱 화면을 보여줌.png&quot; data-origin-width=&quot;793&quot; data-origin-height=&quot;221&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/EtZEd/btsMyT1RchZ/3Y3w4K85ZqD7WyotGS7X5k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/EtZEd/btsMyT1RchZ/3Y3w4K85ZqD7WyotGS7X5k/img.png&quot; data-alt=&quot;피싱 사이트 접속 주소&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/EtZEd/btsMyT1RchZ/3Y3w4K85ZqD7WyotGS7X5k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEtZEd%2FbtsMyT1RchZ%2F3Y3w4K85ZqD7WyotGS7X5k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;793&quot; height=&quot;221&quot; data-filename=&quot;edited_edited_baseURL2피싱 화면을 보여줌.png&quot; data-origin-width=&quot;793&quot; data-origin-height=&quot;221&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;피싱 사이트 접속 주소&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4.&amp;nbsp; 권한 획득&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_퍼미션 가져옴.png&quot; data-origin-width=&quot;1033&quot; data-origin-height=&quot;391&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bmkyjv/btsMyT1Rb10/09ZHue7KcMTOJnXR01jHN0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bmkyjv/btsMyT1Rb10/09ZHue7KcMTOJnXR01jHN0/img.png&quot; data-alt=&quot;사용 권환을 가져옴1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bmkyjv/btsMyT1Rb10/09ZHue7KcMTOJnXR01jHN0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbmkyjv%2FbtsMyT1Rb10%2F09ZHue7KcMTOJnXR01jHN0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1033&quot; height=&quot;391&quot; data-filename=&quot;edited_퍼미션 가져옴.png&quot; data-origin-width=&quot;1033&quot; data-origin-height=&quot;391&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;사용 권환을 가져옴1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_퍼미션 가져옴2.png&quot; data-origin-width=&quot;1402&quot; data-origin-height=&quot;336&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/k0Gzn/btsMAuGH0qR/X5JkvUYfhrzkX47aPgxuXK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/k0Gzn/btsMAuGH0qR/X5JkvUYfhrzkX47aPgxuXK/img.png&quot; data-alt=&quot;사용 권환을 가져옴2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/k0Gzn/btsMAuGH0qR/X5JkvUYfhrzkX47aPgxuXK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fk0Gzn%2FbtsMAuGH0qR%2FX5JkvUYfhrzkX47aPgxuXK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1402&quot; height=&quot;336&quot; data-filename=&quot;edited_퍼미션 가져옴2.png&quot; data-origin-width=&quot;1402&quot; data-origin-height=&quot;336&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;사용 권환을 가져옴2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;5.&amp;nbsp; 배터리 최적화, 네트워크 사용권환 확인&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_베터리 최적화.png&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;123&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dNYYip/btsMyTUYgoR/kqp80bIRwbyHNlLkU71VR1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dNYYip/btsMyTUYgoR/kqp80bIRwbyHNlLkU71VR1/img.png&quot; data-alt=&quot;베터리 최적화&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dNYYip/btsMyTUYgoR/kqp80bIRwbyHNlLkU71VR1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdNYYip%2FbtsMyTUYgoR%2Fkqp80bIRwbyHNlLkU71VR1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;814&quot; height=&quot;123&quot; data-filename=&quot;edited_edited_베터리 최적화.png&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;123&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;베터리 최적화&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_네트워크 사용권한 확인.png&quot; data-origin-width=&quot;991&quot; data-origin-height=&quot;114&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Ao6DU/btsMyFWMJrb/TgOa2k4CKVTVe6ilCs24Mk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Ao6DU/btsMyFWMJrb/TgOa2k4CKVTVe6ilCs24Mk/img.png&quot; data-alt=&quot;네트워크 사용 권한 확인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Ao6DU/btsMyFWMJrb/TgOa2k4CKVTVe6ilCs24Mk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FAo6DU%2FbtsMyFWMJrb%2FTgOa2k4CKVTVe6ilCs24Mk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;991&quot; height=&quot;114&quot; data-filename=&quot;edited_edited_네트워크 사용권한 확인.png&quot; data-origin-width=&quot;991&quot; data-origin-height=&quot;114&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;네트워크 사용 권한 확인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_진동.png&quot; data-origin-width=&quot;924&quot; data-origin-height=&quot;65&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b4OZtd/btsMA6k6mvN/TS0W0iu814KvZb9BN2OBTk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b4OZtd/btsMA6k6mvN/TS0W0iu814KvZb9BN2OBTk/img.png&quot; data-alt=&quot;전화 수신 시 진동 설정 확인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b4OZtd/btsMA6k6mvN/TS0W0iu814KvZb9BN2OBTk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb4OZtd%2FbtsMA6k6mvN%2FTS0W0iu814KvZb9BN2OBTk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;924&quot; height=&quot;65&quot; data-filename=&quot;edited_edited_진동.png&quot; data-origin-width=&quot;924&quot; data-origin-height=&quot;65&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;전화 수신 시 진동 설정 확인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;6.&amp;nbsp; 각종정보&amp;nbsp;수집&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_기기정보.png&quot; data-origin-width=&quot;976&quot; data-origin-height=&quot;572&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b2RWJp/btsMy4B2Lhd/h3AbbB8rPuMeW5dnC29f0K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b2RWJp/btsMy4B2Lhd/h3AbbB8rPuMeW5dnC29f0K/img.png&quot; data-alt=&quot;번호, 통신사 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b2RWJp/btsMy4B2Lhd/h3AbbB8rPuMeW5dnC29f0K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb2RWJp%2FbtsMy4B2Lhd%2Fh3AbbB8rPuMeW5dnC29f0K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;976&quot; height=&quot;572&quot; data-filename=&quot;edited_edited_기기정보.png&quot; data-origin-width=&quot;976&quot; data-origin-height=&quot;572&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;번호, 통신사 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_기기정보2.png&quot; data-origin-width=&quot;526&quot; data-origin-height=&quot;97&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/p05sU/btsMzrKvnBW/QYlbPSizbMQR9qOB8aOHLK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/p05sU/btsMzrKvnBW/QYlbPSizbMQR9qOB8aOHLK/img.png&quot; data-alt=&quot;기기 모델명 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/p05sU/btsMzrKvnBW/QYlbPSizbMQR9qOB8aOHLK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fp05sU%2FbtsMzrKvnBW%2FQYlbPSizbMQR9qOB8aOHLK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;526&quot; height=&quot;97&quot; data-filename=&quot;edited_edited_기기정보2.png&quot; data-origin-width=&quot;526&quot; data-origin-height=&quot;97&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;기기 모델명 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_sms 수집.png&quot; data-origin-width=&quot;844&quot; data-origin-height=&quot;509&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/beWTY7/btsMAvllQQp/BkJwhjkj1mE67KRZmlUtj0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/beWTY7/btsMAvllQQp/BkJwhjkj1mE67KRZmlUtj0/img.png&quot; data-alt=&quot;sms 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/beWTY7/btsMAvllQQp/BkJwhjkj1mE67KRZmlUtj0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbeWTY7%2FbtsMAvllQQp%2FBkJwhjkj1mE67KRZmlUtj0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;844&quot; height=&quot;509&quot; data-filename=&quot;edited_sms 수집.png&quot; data-origin-width=&quot;844&quot; data-origin-height=&quot;509&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;7.&amp;nbsp; 핸들러 메시지를&amp;nbsp; 통해 특정 번호 확인 및 행위&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_asdasd.PNG&quot; data-origin-width=&quot;851&quot; data-origin-height=&quot;380&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c3AKvm/btsMyBG3GLm/20iKNAfMpIoHADHBcgpY9K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c3AKvm/btsMyBG3GLm/20iKNAfMpIoHADHBcgpY9K/img.png&quot; data-alt=&quot;핸들러 메세지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c3AKvm/btsMyBG3GLm/20iKNAfMpIoHADHBcgpY9K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc3AKvm%2FbtsMyBG3GLm%2F20iKNAfMpIoHADHBcgpY9K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;851&quot; height=&quot;380&quot; data-filename=&quot;edited_asdasd.PNG&quot; data-origin-width=&quot;851&quot; data-origin-height=&quot;380&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;핸들러 메세지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_특정 번호 확인.png&quot; data-origin-width=&quot;1066&quot; data-origin-height=&quot;181&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/d5nO6y/btsMAtnwsOm/KmNc44ZF8UXYor4tKYrOKk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/d5nO6y/btsMAtnwsOm/KmNc44ZF8UXYor4tKYrOKk/img.png&quot; data-alt=&quot;특정 조건&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/d5nO6y/btsMAtnwsOm/KmNc44ZF8UXYor4tKYrOKk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fd5nO6y%2FbtsMAtnwsOm%2FKmNc44ZF8UXYor4tKYrOKk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1066&quot; height=&quot;181&quot; data-filename=&quot;edited_edited_특정 번호 확인.png&quot; data-origin-width=&quot;1066&quot; data-origin-height=&quot;181&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;특정 조건&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_핸들러2.png&quot; data-origin-width=&quot;1061&quot; data-origin-height=&quot;495&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/PD7Sc/btsMA8Dbp3y/hyAlp7qaG8A9ywziRfl2c1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/PD7Sc/btsMA8Dbp3y/hyAlp7qaG8A9ywziRfl2c1/img.png&quot; data-alt=&quot;특정 조건이 만족하면 send 메세지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/PD7Sc/btsMA8Dbp3y/hyAlp7qaG8A9ywziRfl2c1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPD7Sc%2FbtsMA8Dbp3y%2FhyAlp7qaG8A9ywziRfl2c1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1061&quot; height=&quot;495&quot; data-filename=&quot;edited_핸들러2.png&quot; data-origin-width=&quot;1061&quot; data-origin-height=&quot;495&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;특정 조건이 만족하면 send 메세지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_정보 유출 1.png&quot; data-origin-width=&quot;1366&quot; data-origin-height=&quot;158&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bHmN6n/btsMzPYP29e/aNxJWxV2WRppNyzQzj0o51/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bHmN6n/btsMzPYP29e/aNxJWxV2WRppNyzQzj0o51/img.png&quot; data-alt=&quot;정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bHmN6n/btsMzPYP29e/aNxJWxV2WRppNyzQzj0o51/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbHmN6n%2FbtsMzPYP29e%2FaNxJWxV2WRppNyzQzj0o51%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1366&quot; height=&quot;158&quot; data-filename=&quot;edited_edited_정보 유출 1.png&quot; data-origin-width=&quot;1366&quot; data-origin-height=&quot;158&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_핸들러1.png&quot; data-origin-width=&quot;1362&quot; data-origin-height=&quot;575&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cNCEZh/btsMAq5nFWl/kUqkH4IzBT11d98Lm0h2NK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cNCEZh/btsMAq5nFWl/kUqkH4IzBT11d98Lm0h2NK/img.png&quot; data-alt=&quot;정보 유출및 메세지 송신&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cNCEZh/btsMAq5nFWl/kUqkH4IzBT11d98Lm0h2NK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcNCEZh%2FbtsMAq5nFWl%2FkUqkH4IzBT11d98Lm0h2NK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1362&quot; height=&quot;575&quot; data-filename=&quot;edited_핸들러1.png&quot; data-origin-width=&quot;1362&quot; data-origin-height=&quot;575&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출및 메세지 송신&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;8. sms 송신 기능&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_sms 전송.png&quot; data-origin-width=&quot;1249&quot; data-origin-height=&quot;681&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cqsvJe/btsMA6SQeMM/kGAykYbK9czRirOZIDOm31/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cqsvJe/btsMA6SQeMM/kGAykYbK9czRirOZIDOm31/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cqsvJe/btsMA6SQeMM/kGAykYbK9czRirOZIDOm31/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcqsvJe%2FbtsMA6SQeMM%2FkGAykYbK9czRirOZIDOm31%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1249&quot; height=&quot;681&quot; data-filename=&quot;edited_sms 전송.png&quot; data-origin-width=&quot;1249&quot; data-origin-height=&quot;681&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;9.&amp;nbsp; 유출에 사용되는 api&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_api1.png&quot; data-origin-width=&quot;1409&quot; data-origin-height=&quot;203&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bi38hu/btsMBh0Y2Ak/JpqcRBTaZzphUfsMBMv2TK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bi38hu/btsMBh0Y2Ak/JpqcRBTaZzphUfsMBMv2TK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bi38hu/btsMBh0Y2Ak/JpqcRBTaZzphUfsMBMv2TK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbi38hu%2FbtsMBh0Y2Ak%2FJpqcRBTaZzphUfsMBMv2TK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1409&quot; height=&quot;203&quot; data-filename=&quot;edited_edited_api1.png&quot; data-origin-width=&quot;1409&quot; data-origin-height=&quot;203&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_api2.png&quot; data-origin-width=&quot;1374&quot; data-origin-height=&quot;432&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/chh8AH/btsMAMG8E4C/vB2JUG2NgU7INt8jd6xmdk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/chh8AH/btsMAMG8E4C/vB2JUG2NgU7INt8jd6xmdk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/chh8AH/btsMAMG8E4C/vB2JUG2NgU7INt8jd6xmdk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fchh8AH%2FbtsMAMG8E4C%2FvB2JUG2NgU7INt8jd6xmdk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1374&quot; height=&quot;432&quot; data-filename=&quot;edited_edited_api2.png&quot; data-origin-width=&quot;1374&quot; data-origin-height=&quot;432&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 항상 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1740488122543&quot; contenteditable=&quot;false&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-host=&quot;open.kakao.com&quot; data-og-description=&quot;cago_note 블로그 운영중!&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-type=&quot;website&quot; data-ke-align=&quot;alignCenter&quot; data-ke-type=&quot;opengraph&quot;&gt;&lt;a style=&quot;color: #000000;&quot; href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p style=&quot;color: #909090;&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중!&lt;/p&gt;
&lt;p style=&quot;color: #909090;&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago 분석</category>
      <category>{-경찰청교통민원-} 교통법위반(사전안내서)발부됨 확인바람:</category>
      <category>교통민원24 악성앱</category>
      <category>범칙금 과태료 스미싱 문자</category>
      <category>분석 보고서</category>
      <category>스미싱</category>
      <category>악성앱</category>
      <category>운전자 대상 스미싱 경고</category>
      <category>정부24 사칭 피싱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/218</guid>
      <comments>https://cago-young.tistory.com/218#entry218comment</comments>
      <pubDate>Mon, 3 Mar 2025 06:08:00 +0900</pubDate>
    </item>
    <item>
      <title>악성 파일인지 판단하는 체크리스트</title>
      <link>https://cago-young.tistory.com/217</link>
      <description>&lt;h2 data-pm-slice=&quot;1 1 []&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span&gt;최근 악성 파일 사례&lt;/span&gt;&lt;/h2&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;1. 교통법규 위반 고지서를 위장한 스미싱 공격&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;최근, &quot;과속 운전 벌점 통지서&quot;라는 메시지를 포함한 악성 링크가 포함된 문자 메시지가 사용자에게 전송되는 사례가 증가하고 있습니다. 해당 링크를 클릭하면 악성 파일이 다운로드되며, 이를 실행하면 금융 정보 탈취 등의 피해가 발생할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;2. 가짜 이력서 및 계약서를 이용한 악성코드 유포&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;기업을 대상으로 한 스피어피싱 공격이 증가하고 있습니다. 공격자는 &quot;입사지원서&quot; 또는 &quot;계약서&quot;로 위장한 문서 파일을 이메일에 첨부해 발송하며, 사용자가 이를 열람하면 매크로 실행을 통해 악성코드가 설치됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;3. 크립토 마이너 악성코드&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;최근에는 정식 소프트웨어로 위장한 크립토 마이너 악성코드가 발견되었습니다. 해당 악성 파일을 실행하면 사용자 모르게 PC 자원을 이용하여 가상화폐 채굴을 수행하며, 시스템 성능 저하 및 과부하를 유발할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&lt;span&gt;[체크리스트]&lt;/span&gt;&lt;/h2&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;1. 파일 정보 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;파일 이름 및 확장자 확인&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; &lt;/span&gt;&lt;span&gt;.pdf.exe&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;.jpg.scr&lt;/span&gt;&lt;span&gt; 같은 &lt;b&gt;확장자 위장&lt;/b&gt; 여부 확인&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 일부 악성 파일은 정상적인 파일로 보이기 위해 확장자를 속이는 기술을 사용합니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;HxD로 파일 시그니처를 확인&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;파일 크기 검사&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 정상적인 프로그램에 비해 지나치게 크거나 작은지 확인&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 일부 악성코드는 최소한의 크기로 제작되어 빠르게 실행되거나, 반대로 불필요한 데이터를 포함하여 분석을 회피할 수도 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;CFF Explor, 문서파일의 경우 &lt;span style=&quot;color: #000000; text-align: left;&quot;&gt;OLEdump등 이용 이상여부 확인&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;디지털 서명 확인&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 신뢰할 수 있는 발급자의 서명이 있는지 (&lt;/span&gt;&lt;span&gt;sigcheck&lt;/span&gt;&lt;span&gt; 활용)&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 정상적인 소프트웨어는 보통 개발사에서 디지털 서명을 포함하여 무결성을 보장하지만, 악성코드는 서명이 없거나 위조된 경우가 많습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;파일 위치 확인&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; &lt;/span&gt;&lt;span&gt;Temp&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;AppData&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;System32&lt;/span&gt;&lt;span&gt; 등에 위치하는지 검사&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성코드는 보통 시스템 폴더에 숨어 자동 실행되도록 설정됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;타임스탬프 조작 여부&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 생성&amp;middot;수정 시간이 비정상적으로 변경되었는지 확인&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성코드는 분석을 회피하기 위해 파일 생성 시간을 조작하는 경우가 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;2. 정적 분석 (Static Analysis)&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;파일 해시 값 조회 (MD5, SHA256)&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; VirusTotal, Hybrid-Analysis 등에서 검사&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 이미 알려진 악성 파일과 동일한 해시 값을 가진다면 악성코드일 가능성이 높습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;패킹 여부 검사 (PEiD, Detect It Easy 활용)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성코드는 분석을 피하기 위해 UPX, Themida, VMProtect 같은 패커를 사용하여 파일을 압축합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;Imports 및 API 호출 확인&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 악성 API (&lt;/span&gt;&lt;span&gt;CreateRemoteThread&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;VirtualAllocEx&lt;/span&gt;&lt;span&gt;) 사용 여부&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성 파일은 보통 메모리 할당, 원격 코드 실행, 프로세스 Injection 등을 수행하는 API를 호출합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;문자열 검사 (&lt;/b&gt;&lt;/span&gt;&lt;span&gt;&lt;b&gt;strings&lt;/b&gt;&lt;/span&gt;&lt;span&gt;&lt;b&gt;, &lt;/b&gt;&lt;/span&gt;&lt;span&gt;&lt;b&gt;Floss&lt;/b&gt;&lt;/span&gt;&lt;span&gt;&lt;b&gt; 활용)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 파일 내부 문자열에서 &lt;/span&gt;&lt;span&gt;cmd.exe&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;Powershell&lt;/span&gt;&lt;span&gt;, &lt;/span&gt;&lt;span&gt;http://&lt;/span&gt;&lt;span&gt; 등이 포함되어 있다면 의심스러운 네트워크 연결이나 명령 실행 가능성이 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;Embedded Resource 확인&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 숨겨진 바이너리, PE 파일, PowerShell 스크립트 포함 여부&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 일부 악성코드는 내부에 추가 악성 모듈을 포함하고 실행 시 자동으로 복호화 및 실행됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;3. 동적 분석 (Dynamic Analysis)&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;프로세스 모니터링 (ProcMon, Process Explorer)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 정상적인 프로그램과 다르게 악성코드는 실행 후 새로운 프로세스를 생성하거나, 기존 프로세스를 변조할 가능성이 높습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;네트워크 통신 확인 (Wireshark, Fiddler)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성 파일이 C2 (Command &amp;amp; Control) 서버와 통신하는지 확인하여 데이터 탈취, 원격 명령 수신 여부 분석이 가능합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;파일/레지스트리 변경 여부 (RegShot, Autoruns)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 악성코드는 지속성을 유지하기 위해 시스템 레지스트리를 수정하거나 특정 파일을 생성하는 경우가 많습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;메모리 내 행위 분석 (Process Hacker, Volatility)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 일부 악성 파일은 실행 시 메모리에만 존재하며, 디스크에 흔적을 남기지 않으므로 메모리 분석이 중요합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✔ &lt;/span&gt;&lt;span&gt;&lt;b&gt;권한 상승 여부 (Windows Event Logs 확인)&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;  &lt;/span&gt;&lt;span&gt;&lt;b&gt;이유&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: UAC 우회 및 관리자 권한 요청을 시도하는지 확인하여 시스템 권한 장악 여부 분석이 가능합니다.&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;4. 최종 판단 기준&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;✅ 멀웨어 패턴과 일치하는가?&lt;/span&gt;&lt;br /&gt;&lt;span&gt;✅ 비정상적인 행위를 수행하는가?&lt;/span&gt;&lt;br /&gt;&lt;span&gt;✅ 네트워크 통신이 이상한가?&lt;/span&gt;&lt;br /&gt;&lt;span&gt;✅ 정상적인 소프트웨어와 차이점이 있는가?&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span&gt;결론: 왜 악성 파일 분석이 중요한가?&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;1️⃣ &lt;/span&gt;&lt;span&gt;&lt;b&gt;개인정보 유출 방지&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 악성코드가 계정 정보, 신용카드 정보를 탈취할 수 있음&lt;/span&gt;&lt;br /&gt;&lt;span&gt;2️⃣ &lt;/span&gt;&lt;span&gt;&lt;b&gt;랜섬웨어 감염 예방&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 실행 후 파일을 암호화하고 금전을 요구하는 경우가 많음&lt;/span&gt;&lt;br /&gt;&lt;span&gt;3️⃣ &lt;/span&gt;&lt;span&gt;&lt;b&gt;백도어 및 원격 제어 차단&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; 공격자가 원격으로 PC를 조작할 가능성이 있음&lt;/span&gt;&lt;br /&gt;&lt;span&gt;4️⃣ &lt;/span&gt;&lt;span&gt;&lt;b&gt;기업 및 기관 보안 유지&lt;/b&gt;&lt;/span&gt;&lt;span&gt; &amp;ndash; APT 공격(지능형 지속 위협) 방어를 위해 필요&lt;/span&gt;&lt;br /&gt;&lt;span&gt;5️⃣ &lt;/span&gt;&lt;span&gt;&lt;b&gt;정상 프로그램과 악성코드를 구별하여 피해 최소화&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span&gt;분석 도구 추천&lt;/span&gt;&lt;/h2&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;의심스러운 파일이 있을 경우, 다음과 같은 분석 도구를 활용하면 효과적으로 악성 여부를 판단할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-spread=&quot;false&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;VirusTotal&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 여러 백신 엔진을 사용해 파일 및 URL을 검사할 수 있습니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;Any.Run&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 동적 분석이 가능한 온라인 샌드박스로, 악성 코드의 실행 흐름을 확인할 수 있습니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;Hybrid Analysis&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 정적 및 동적 분석 기능을 제공하여 파일의 악성 여부를 종합적으로 판단할 수 있습니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;PE Studio&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 실행 파일의 기본적인 정적 정보를 분석하는 도구입니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;Wireshark&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 네트워크 트래픽을 분석하여 악성 코드의 통신 여부를 확인할 수 있습니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;Process Monitor (ProcMon)&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 실시간으로 파일, 레지스트리, 프로세스 활동을 추적할 수 있는 도구입니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;&lt;b&gt;Autoruns&lt;/b&gt;&lt;/span&gt;&lt;span&gt;: 자동 실행되는 프로세스를 분석하여 악성 코드 여부를 확인할 수 있습니다.&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/217</guid>
      <comments>https://cago-young.tistory.com/217#entry217comment</comments>
      <pubDate>Sat, 1 Mar 2025 12:41:29 +0900</pubDate>
    </item>
    <item>
      <title>경찰청 교통민원 스미싱 증가! 피싱 사이트 유포 (25.02.25)</title>
      <link>https://cago-young.tistory.com/216</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;최근 들어 스미싱 공격이 다시 운전자 대상으로 확산되고 있습니다. 2022년에는 교통위반 관련, 2023~2024년에는 생활형 범법행위(쓰레기 무단투기 등) 중심으로 스미싱이 유포되었으나, 최근에는 다시 교통위반 범칙금 및 과태료 관련 피싱이 증가하는 추세입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;특히, 정부24&amp;middot;교통민원24(이파인) 등의 공식 기관을 사칭한 스미싱 문자가 기승을 부리고 있으며, 피싱 사이트를 통해 악성 앱이 유포되고 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2023~2024년: 생활 범법행위(무단투기, 환경 관련) 위주&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2024년 최신: 교통위반, 벌점, 범칙금, 과태료 등 운전자 대상 공격 재확산&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://cago-young.tistory.com/182&quot;&gt;정부24(구 민원24) 사칭 스미싱 피싱 사이트(23.11.09)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://cago-young.tistory.com/170&quot;&gt;경찰청교통민원24 사칭 스미싱 피싱 사이트 (23.09.11)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://cago-young.tistory.com/125&quot;&gt;교통민원24(이파인) 사칭 피싱 사이트(22.11.06)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이전 문구 키워드&lt;/span&gt;&lt;/h3&gt;
&lt;pre id=&quot;code_1740492014126&quot; class=&quot;less&quot; style=&quot;background-color: #f8f8f8; color: #383a42; text-align: start;&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;[민원24]쓰레기 무단투기로 단속되어 과태료 부과되였습니다. 과태료확인: URL

[Web발신] [교통민원24] 끼어들기 금지 위반 : 처벌 결과 전송 완료

[web발신]
[교 통24(이파인)]교 통위반
벌점처분고지서 발송완료 hxxp://URL

[web발신][182교통(이파인)]과속운전자동차범칙벌점통지서 hxxp://URL
 
[Web발신]운전 중 전조등 미점등 벌점 고지서 발송완료 http://URL

[교통24(이파인)]차량이 중심선을 위반하다.처벌 결과 발송 완료 http://URL

[Web발신]차량위반운전처벌통지서 http://URL
 
[Web발신] 신호등 위반 운행 처벌통지서 http://URL&lt;/code&gt;&lt;/pre&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;[국외발신]&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;{-경찰청교통민원-}&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;교통법위반(사전안내서)발부됨 확인바람:&amp;nbsp; http://URL&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.jpg&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;541&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/OLdPR/btsMv3iF0bj/QEICr9HtuVfBVghwL7LqL1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/OLdPR/btsMv3iF0bj/QEICr9HtuVfBVghwL7LqL1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/OLdPR/btsMv3iF0bj/QEICr9HtuVfBVghwL7LqL1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FOLdPR%2FbtsMv3iF0bj%2FQEICr9HtuVfBVghwL7LqL1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;648&quot; height=&quot;541&quot; data-filename=&quot;edited_1.jpg&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;541&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;정부24 관련 현재 배포되고 있는 스미싱 문구는&amp;nbsp;&amp;nbsp;&lt;span style=&quot;color: #f89009;&quot;&gt;&quot;교통법규위반(사전안내서)발부됨&quot;&lt;/span&gt;&amp;nbsp;내용이 포함되어&amp;nbsp;&lt;b&gt;스미싱 문자&lt;/b&gt;를 배포하고 있습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;정부 24(구 민원 24)&amp;nbsp;&lt;b&gt;사칭&lt;/b&gt;을 하여 최근에는 쓰레기, 무단투기등 생활 범법행위 위주의 문구를 사용 한것으로 알고 있었는데&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;최근에 다시 운전자관련 하여 범칙금, 범법 행위 관련으로 배포 되는것으로 보아&amp;nbsp;&lt;b&gt;&quot;과태료&quot;&lt;/b&gt;, &quot;범칙금&quot;,&amp;nbsp;&lt;b&gt;&quot;운전 면허&quot;&lt;/b&gt;, &quot;고지서&quot;,&amp;nbsp;&lt;b&gt;&quot;통지서&quot;&lt;/b&gt;, &quot;벌점&quot;,&amp;nbsp; &quot;&lt;b&gt;신호 위반&quot;&lt;/b&gt;, &quot;과속&quot;,&lt;b&gt;&amp;nbsp;&quot;불법 주정차&quot;&lt;/b&gt;, &quot;불법 유턴&quot;, &quot;&lt;b&gt;보행자 보호 의무&lt;/b&gt;&amp;nbsp;위반&quot;등 이&lt;b&gt;&amp;nbsp;포함된 문구&lt;/b&gt;가 다시 배포 될것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;피싱 사이트 접속 시 해당 페이지는 &quot;&lt;span style=&quot;color: #f89009;&quot;&gt;피싱 사이트 버튼 클릭&amp;nbsp; - &lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;악성앱 설치&lt;/span&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&quot; 순으로 진행되고, 피싱 사이트에서는 정상 사이트처럼 사용자를 속여 개인정보 수집을 진행하고 마지막에는 악성앱 설치를 유도하기 때문에 주의하셔야 합니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 배포 방식&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부에서 앱 다운로드 하는 경우는 특이사항이 아닌 이상 요구 하지 않을 것으로 생각됩니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부24&amp;middot;이파인 등 공공기관 사칭 문자에 속지 않도록 하고, 출처 불명의 앱 설치를 절대 피하세요.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bIOz30/btsMvctTjNe/DiNm9gQIwSp3Jy9HfwYShk/tfile.dat&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bIOz30/btsMvctTjNe/DiNm9gQIwSp3Jy9HfwYShk/tfile.dat&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bIOz30/btsMvctTjNe/DiNm9gQIwSp3Jy9HfwYShk/tfile.dat&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbIOz30%2FbtsMvctTjNe%2FDiNm9gQIwSp3Jy9HfwYShk%2Ftfile.dat&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1034&quot; height=&quot;383&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이전의&amp;nbsp;&lt;b&gt;피싱&lt;/b&gt;&amp;nbsp;사이트는&amp;nbsp;&lt;span style=&quot;color: #f89009;&quot;&gt;번호 입력 - 본인인증 - 앱 다운&lt;/span&gt;&amp;nbsp;순으로 진행됬었는데 요번에는&amp;nbsp;&lt;b&gt;번호 입력, 본인인증&lt;/b&gt;이 없이 피싱 페이지에서&amp;nbsp;&lt;b&gt;버튼을 누르면&lt;/b&gt;&amp;nbsp;다운로드 되는 형태로 바뀌었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_화면 1.png&quot; data-origin-width=&quot;742&quot; data-origin-height=&quot;836&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/vW1wz/btsMx9okNHR/oGkBwqjQDniK2om4dcRyk1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/vW1wz/btsMx9okNHR/oGkBwqjQDniK2om4dcRyk1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/vW1wz/btsMx9okNHR/oGkBwqjQDniK2om4dcRyk1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FvW1wz%2FbtsMx9okNHR%2FoGkBwqjQDniK2om4dcRyk1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;742&quot; height=&quot;836&quot; data-filename=&quot;edited_화면 1.png&quot; data-origin-width=&quot;742&quot; data-origin-height=&quot;836&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 사칭 사이트인&amp;nbsp;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://www.gov.kr/&quot;&gt;정부24 홈페이지&lt;/a&gt;와는 이전 처럼 비슷 하지는 않아 보입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;해당&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&amp;nbsp;스미싱 문자에&amp;nbsp;&lt;/span&gt;&lt;b&gt;포함된 URL&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&amp;nbsp;주소로 접속하면&amp;nbsp;&lt;/span&gt;&lt;b&gt;정부 24&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;(구 민원24) 사칭 피싱 사이트로 접속하게 되며&amp;nbsp;&lt;/span&gt;&lt;b&gt;해당 페이지&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;에서 &quot;&lt;/span&gt;&lt;b&gt;정부24 어플 다운&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;로드&quot; 버튼을 클릭하면 APK&amp;nbsp;&lt;/span&gt;&lt;b&gt;파일&lt;/b&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;을 설치하게 되며, 해당 앱은&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;b&gt;악성 앱&lt;/b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;입니다.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_2.jpg&quot; data-origin-width=&quot;692&quot; data-origin-height=&quot;139&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bSWnS5/btsMvyi7JLK/3lOWNnw2ZQkQUPJ16JS8T1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bSWnS5/btsMvyi7JLK/3lOWNnw2ZQkQUPJ16JS8T1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bSWnS5/btsMvyi7JLK/3lOWNnw2ZQkQUPJ16JS8T1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbSWnS5%2FbtsMvyi7JLK%2F3lOWNnw2ZQkQUPJ16JS8T1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;692&quot; height=&quot;139&quot; data-filename=&quot;edited_2.jpg&quot; data-origin-width=&quot;692&quot; data-origin-height=&quot;139&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1740492064580&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-description=&quot;cago_note 블로그 운영중! https://cago-young.tistory.com&quot; data-og-host=&quot;open.kakao.com&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bRaT9t/hyYjyRBvHV/tnDrldmwhppGU5rn6gGJG0/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bRaT9t/hyYjyRBvHV/tnDrldmwhppGU5rn6gGJG0/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중! https://cago-young.tistory.com&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>{-경찰청교통민원-} 교통법위반(사전안내서)발부됨 확인바람:</category>
      <category>교통민원24 악성앱</category>
      <category>교통위반 스미싱</category>
      <category>범칙금 과태료 스미싱 문자</category>
      <category>운전자 대상 스미싱 경고</category>
      <category>정부24 사칭 피싱</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/216</guid>
      <comments>https://cago-young.tistory.com/216#entry216comment</comments>
      <pubDate>Tue, 25 Feb 2025 23:16:27 +0900</pubDate>
    </item>
    <item>
      <title>Python 실행 파일로 변환하기</title>
      <link>https://cago-young.tistory.com/215</link>
      <description>&lt;h4 data-ke-size=&quot;size20&quot;&gt;1. &lt;b&gt;소개&lt;/b&gt;&lt;b&gt;&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;PyInstaller란 무엇인가?&lt;/li&gt;
&lt;li&gt;Python을 실행 파일로 변환하는 방법&lt;/li&gt;
&lt;li&gt;Python 스크립트를 실행 파일(EXE)로 만드는 이유.&lt;/li&gt;
&lt;li&gt;주요 사용 사례 (독립 실행 가능한 프로그램 배포, Python 설치 없이 실행 등).&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;2. &lt;b&gt;설치 방법&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;PyInstaller 설치 명령어:&lt;/li&gt;
&lt;/ul&gt;
&lt;pre id=&quot;code_1737575501070&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;pip install pyinstaller&lt;/code&gt;&lt;/pre&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;3. &lt;b&gt;기본 사용법&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;단일 파일 EXE 생성&lt;/li&gt;
&lt;li&gt;실행 결과 및 디렉토리 구조 설명 (예: dist/, build/ 등).&lt;/li&gt;
&lt;/ul&gt;
&lt;pre id=&quot;code_1737575601222&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;pyinstaller --onefile your_script.py&lt;/code&gt;&lt;/pre&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;4. &lt;b&gt;유용한 옵션&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;콘솔 창 제거&lt;/b&gt;:
&lt;div&gt;
&lt;div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;pre id=&quot;code_1737575655688&quot; class=&quot;brainfuck&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;pyinstaller --onefile --noconsole your_script.py&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;/div&gt;
&lt;/li&gt;
&lt;li&gt;&lt;b&gt;아이콘 지정&lt;/b&gt;:
&lt;div&gt;
&lt;div&gt;
&lt;pre id=&quot;code_1737575669829&quot; class=&quot;brainfuck&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;pyinstaller --onefile --icon=app_icon.ico your_script.py&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&lt;/div&gt;
&lt;/div&gt;
&lt;/li&gt;
&lt;li&gt;&lt;b&gt;추가 데이터 포함&lt;/b&gt;:
&lt;div&gt;
&lt;div&gt;
&lt;pre id=&quot;code_1737575699552&quot; class=&quot;dockerfile&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;pyinstaller --onefile --add-data &quot;data_file.txt;.&quot; your_script.py&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;5. &lt;b&gt;고급 사용법&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;다중 파일 프로그램의 리소스 포함.&lt;/li&gt;
&lt;li&gt;UPX를 사용한 EXE 크기 최적화.&lt;/li&gt;
&lt;li&gt;크로스 플랫폼 지원(예: Windows에서 Linux 실행 파일 생성).&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;6. &lt;b&gt;문제 해결&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;공통 에러 및 해결 방법.
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;ModuleNotFoundError 문제 해결.&lt;/li&gt;
&lt;li&gt;EXE 실행 시 누락된 DLL 문제&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;7. &lt;b&gt;마무리&lt;/b&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;PyInstaller의 장점과 한계점.&lt;/li&gt;
&lt;li&gt;기타 대안 도구(예: py2exe, cx_Freeze).&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/Python</category>
      <category>pyinstaller</category>
      <category>python을 실행 파일로 변환하기</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/215</guid>
      <comments>https://cago-young.tistory.com/215#entry215comment</comments>
      <pubDate>Thu, 23 Jan 2025 04:56:01 +0900</pubDate>
    </item>
    <item>
      <title>핸드폰(모바일)에서 크롬 개발자 모드 사용법</title>
      <link>https://cago-young.tistory.com/214</link>
      <description>&lt;div class=&quot;ts-toc-wrapper&quot; data-ts-toc=&quot;close&quot;&gt;
&lt;div class=&quot;ts-toc-header&quot;&gt;
&lt;h2 id=&quot;핸드폰모바일에서-크롬-개발자-모드-사용법&quot; style=&quot;color: #000000;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;핸드폰(모바일)에서&amp;nbsp;크롬&amp;nbsp;개발자&amp;nbsp;모드&amp;nbsp;사용법&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;TL;DR: 모바일 기기 Chrome 웹&amp;middot;앱(WebView) 디버깅을 PC 크롬 chrome://inspect로 연결하고, 인식 문제 해결 방법까지 정리했습니다.&lt;/p&gt;
&lt;/div&gt;
&lt;nav&gt;&lt;br /&gt;
&lt;ul class=&quot;ts-toc-list level-0&quot; style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li class=&quot;ts-toc-item&quot;&gt;&lt;a href=&quot;#모바일에서-크롬-chrome-개발자-모드-사용법&quot;&gt;모바일에서 크롬( Chrome ) 개발자 모드 사용법&lt;/a&gt;&lt;/li&gt;
&lt;li class=&quot;ts-toc-item&quot;&gt;&lt;a href=&quot;#1-chromeinspect&quot;&gt;1. chrome://inspect&lt;/a&gt;&lt;/li&gt;
&lt;li class=&quot;ts-toc-item&quot;&gt;&lt;a href=&quot;#2-chromeinspect-사용법&quot;&gt;2. chrome://inspect 사용법&lt;/a&gt;&lt;/li&gt;
&lt;li class=&quot;ts-toc-item&quot;&gt;&lt;a href=&quot;#3-주요-기능-설명&quot;&gt;3. 주요 기능 설명&lt;/a&gt;&lt;/li&gt;
&lt;li class=&quot;ts-toc-item&quot;&gt;&lt;a href=&quot;#팁-트러블슈팅&quot;&gt;&amp;nbsp;팁 &amp;amp; 트러블슈팅&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/nav&gt;&lt;/div&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 id=&quot;모바일에서-크롬-chrome-개발자-모드-사용법&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모바일에서 크롬( Chrome ) 개발자 모드 사용법&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모바일기기(핸드폰)에서 Chrome 브라우저나 앱 내 WebView 디버깅이 필요할 때나 크롬 개발자모드가 필요한 경우 사용할 수 있는 도구가 바로 Chrome의 chrome://inspect입니다. 이 포스팅에서는 chrome://inspect의 주요 기능과 사용법에 대해 설명합니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h2 id=&quot;1-chromeinspect&quot; data-ke-size=&quot;size26&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. chrome://inspect&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;chrome://inspect는 Chrome 브라우저에 내장된 디버깅 도구로, 모바일 디바이스에서 실행 중인 웹페이지나 앱의 WebView를 PC에서 디버깅할 수 있도록 지원합니다. 주로 다음과 같은 용도로 사용됩니다:&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모바일 웹 디버깅: 모바일 Chrome에서 실행 중인 웹페이지를 디버깅.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WebView 디버깅: Android 애플리케이션 내부에서 실행되는 WebView 콘텐츠 디버깅.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;원격 디버깅: 같은 네트워크 상의 다른 PC나 디바이스의 Chrome 탭 디버깅.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 id=&quot;2-chromeinspect-사용법&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. chrome://inspect 사용법&lt;/span&gt;&lt;/h2&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;PC 측 Chrome 브라우저 준비&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색창에 chrome://inspect 입력&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;626&quot; data-origin-height=&quot;347&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bCdgbK/btsLNa9tXUY/kcTqJS4eZ71gzhrMIeO8Nk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bCdgbK/btsLNa9tXUY/kcTqJS4eZ71gzhrMIeO8Nk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bCdgbK/btsLNa9tXUY/kcTqJS4eZ71gzhrMIeO8Nk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbCdgbK%2FbtsLNa9tXUY%2FkcTqJS4eZ71gzhrMIeO8Nk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;626&quot; height=&quot;347&quot; data-origin-width=&quot;626&quot; data-origin-height=&quot;347&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모바일 측&amp;nbsp; 준비&lt;/span&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모바일 디바이스에서 &lt;b&gt;설정-시스템-태블릿정보-빌드번호&lt;/b&gt; 연타를 해서 Android 디바이스에서 &lt;span style=&quot;color: #f89009;&quot;&gt;&lt;b&gt;개발자 옵션을 활성화&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;시스템- 개발자 옵션- &lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;USB 디버깅을 허용&lt;/span&gt;&lt;/b&gt;합니다.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/lQzTP/btsLM6F8ESx/e415kpqukKyZ0DtMa3hPDk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/lQzTP/btsLM6F8ESx/e415kpqukKyZ0DtMa3hPDk/img.png&quot; data-origin-width=&quot;372&quot; data-origin-height=&quot;258&quot; data-is-animation=&quot;false&quot; style=&quot;width: 50.3954%; margin-right: 10px;&quot; data-widthpercent=&quot;50.99&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/lQzTP/btsLM6F8ESx/e415kpqukKyZ0DtMa3hPDk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FlQzTP%2FbtsLM6F8ESx%2Fe415kpqukKyZ0DtMa3hPDk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;372&quot; height=&quot;258&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cqtCve/btsLMcgeXkK/6U8jlJkcLKsv5S1P1odNn1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cqtCve/btsLMcgeXkK/6U8jlJkcLKsv5S1P1odNn1/img.png&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;285&quot; data-is-animation=&quot;false&quot; style=&quot;width: 48.4418%;&quot; data-widthpercent=&quot;49.01&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cqtCve/btsLMcgeXkK/6U8jlJkcLKsv5S1P1odNn1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcqtCve%2FbtsLMcgeXkK%2F6U8jlJkcLKsv5S1P1odNn1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;285&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&quot;Devices&quot; 섹션에 연결된 디바이스가 표시되며, 디버깅 가능한 페이지 목록이 나타납니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;디바이스가 표시되면&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt; 모바일에서 웹 접속&lt;/span&gt;&lt;/b&gt;을 하면 버튼이 나옵니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;614&quot; data-origin-height=&quot;291&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ddXRvH/btsLM0TEJMW/xpAONN74U2RwWRfKIBI75K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ddXRvH/btsLM0TEJMW/xpAONN74U2RwWRfKIBI75K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ddXRvH/btsLM0TEJMW/xpAONN74U2RwWRfKIBI75K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FddXRvH%2FbtsLM0TEJMW%2FxpAONN74U2RwWRfKIBI75K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;614&quot; height=&quot;291&quot; data-origin-width=&quot;614&quot; data-origin-height=&quot;291&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;.모바일에서 웹 접속을 하게 되면 아래처럼 inspect 버튼이 나오는걸 확인 가능햅니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;950&quot; data-origin-height=&quot;392&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b00abf/btsLMKjf8Wd/ixT3wXbf2lTeO7uHT8Vcwk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b00abf/btsLMKjf8Wd/ixT3wXbf2lTeO7uHT8Vcwk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b00abf/btsLMKjf8Wd/ixT3wXbf2lTeO7uHT8Vcwk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb00abf%2FbtsLMKjf8Wd%2FixT3wXbf2lTeO7uHT8Vcwk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;950&quot; height=&quot;392&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;950&quot; data-origin-height=&quot;392&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;디버깅할 페이지 옆의 &quot;Inspect&quot; 버튼을 클릭하면 &lt;b&gt;크롬 개발자 도구&lt;/b&gt;가 열리고, 모바일 &lt;b&gt;웹 페이지를 디버깅&lt;/b&gt;을 시작할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1306&quot; data-origin-height=&quot;594&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Fd11i/btsLMbhiLtW/eZrpSdXSoBeJINeFwQew00/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Fd11i/btsLMbhiLtW/eZrpSdXSoBeJINeFwQew00/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Fd11i/btsLMbhiLtW/eZrpSdXSoBeJINeFwQew00/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FFd11i%2FbtsLMbhiLtW%2FeZrpSdXSoBeJINeFwQew00%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1306&quot; height=&quot;594&quot; data-origin-width=&quot;1306&quot; data-origin-height=&quot;594&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h3 id=&quot;&quot; data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 id=&quot;3-주요-기능-설명&quot; data-ke-size=&quot;size23&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. 주요 기능 설명&lt;/span&gt;&lt;/h3&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1) 모바일 디바이스 디버깅&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;chrome://inspect의 가장 대표적인 기능으로, 모바일 디바이스에서 실행 중인 웹페이지의 DOM, 스타일, 네트워크 요청, 콘솔 로그 등을 실시간으로 확인하고 수정할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DOM 구조 확인 및 수정: 모바일 페이지의 DOM 구조를 PC에서 확인하고 실시간으로 수정할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 요청 모니터링: 모바일에서 발생하는 네트워크 요청과 응답을 PC에서 쉽게 추적할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2) WebView 디버깅&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android 애플리케이션 내부에서 실행되는 WebView 콘텐츠도 디버깅할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요구 사항: 앱이 WebView 디버깅을 지원하려면 다음과 같이 setWebContentsDebuggingEnabled(true) 메서드를 호출해야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;pre id=&quot;code_1736803226750&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;if (Build.VERSION.SDK_INT &amp;gt;= Build.VERSION_CODES.KITKAT) {
    WebView.setWebContentsDebuggingEnabled(true);
}&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WebView 디버깅이 가능해지면, PC의 Chrome에서 해당 WebView 콘텐츠를 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3) 원격 Chrome 탭 디버깅&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;같은 네트워크에 연결된 다른 PC나 디바이스에서 실행 중인 Chrome 탭을 디버깅할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요구 사항: 원격 디바이스에서 Chrome을 실행한 후, 디버깅 옵션을 활성화해야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;디버깅할 탭을 선택하면 PC에서 해당 탭의 내용을 실시간으로 디버깅할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 id=&quot;팁-트러블슈팅&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;팁 &amp;amp; 트러블슈팅&lt;/span&gt;&lt;/h3&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1) 디바이스가 인식되지 않을 때&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;USB 디버깅 활성화 여부 확인: Android 디바이스의 &quot;개발자 옵션&quot;에서 &quot;USB 디버깅&quot;이 활성화되어 있는지 확인합니다.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;드라이버 설치: Windows PC의 경우 Android USB 드라이버가 제대로 설치되어 있는지 확인합니다.&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2) 디바이스가 연결되었으나 페이지가 표시되지 않을 때&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Chrome 버전 확인: PC와 모바일 디바이스 모두 최신 버전의 Chrome을 사용하고 있는지 확인합니다.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;USB 케이블 교체: 일부 USB 케이블은 데이터 전송을 지원하지 않으므로, 반드시 데이터 전송이 가능한 케이블을 사용해야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3) 네트워크 연결 문제&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;원격 디버깅 시 같은 네트워크에 연결되어 있어야 합니다.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;방화벽&amp;nbsp;설정이&amp;nbsp;원격&amp;nbsp;연결을&amp;nbsp;차단하고&amp;nbsp;있지는&amp;nbsp;않은지&amp;nbsp;확인합니다. &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;</description>
      <category>play/box</category>
      <category>chrome://inspect</category>
      <category>모바일 chrome 개발자 모드</category>
      <category>모바일 개발자 모드 보는법</category>
      <category>모바일 웹 디버깅</category>
      <category>모바일 크롬 개발자 모드 키는법</category>
      <category>크롬 개발자 도구</category>
      <category>핸드폰</category>
      <category>핸드폰 개발자 모드</category>
      <category>휴대전화 웹 디버깅</category>
      <category>휴대폰</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/214</guid>
      <comments>https://cago-young.tistory.com/214#entry214comment</comments>
      <pubDate>Tue, 14 Jan 2025 06:37:02 +0900</pubDate>
    </item>
    <item>
      <title>베트남 거점 모바일 스미싱 조직 검거,  피해 사건 전말</title>
      <link>https://cago-young.tistory.com/213</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;지난 20일 최근 경찰청이 베트남에서 활동하는 대규모 모바일 스미싱 조직을 베트남 공안과 협력해 검거하고, 핵심 조직원들을 국내로 송환한 사건이 발생했습니다. 피해 규모는 100억 원에 달하며, 이는 국내에서 역대 최대 피해를 낳은 모바일 스미싱 사건으로 기록되었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/AsqlJ/btsJGuKT51j/oYq8RWrjOtLt71DuYx7N01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/AsqlJ/btsJGuKT51j/oYq8RWrjOtLt71DuYx7N01/img.png&quot; data-is-animation=&quot;false&quot; data-filename=&quot;피싱 화면.png&quot; data-origin-height=&quot;771&quot; data-origin-width=&quot;395&quot; style=&quot;width: 31.9541%; margin-right: 10px;&quot; data-widthpercent=&quot;32.71&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/AsqlJ/btsJGuKT51j/oYq8RWrjOtLt71DuYx7N01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FAsqlJ%2FbtsJGuKT51j%2FoYq8RWrjOtLt71DuYx7N01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;771&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bUCZqm/btsJHAQVJK2/I5RFjpsmnlWhux4RFS7iYK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bUCZqm/btsJHAQVJK2/I5RFjpsmnlWhux4RFS7iYK/img.png&quot; data-is-animation=&quot;false&quot; data-filename=&quot;1 (1).png&quot; data-origin-height=&quot;765&quot; data-origin-width=&quot;389&quot; style=&quot;width: 31.7155%; margin-right: 10px;&quot; data-widthpercent=&quot;32.47&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bUCZqm/btsJHAQVJK2/I5RFjpsmnlWhux4RFS7iYK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbUCZqm%2FbtsJHAQVJK2%2FI5RFjpsmnlWhux4RFS7iYK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;389&quot; height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dO5jyX/btsJIOHd0Mb/8N5Q77Nnz1HAWmPG96eKNK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dO5jyX/btsJIOHd0Mb/8N5Q77Nnz1HAWmPG96eKNK/img.png&quot; data-origin-width=&quot;392&quot; data-origin-height=&quot;719&quot; data-is-animation=&quot;false&quot; style=&quot;width: 34.0048%;&quot; data-widthpercent=&quot;34.82&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dO5jyX/btsJIOHd0Mb/8N5Q77Nnz1HAWmPG96eKNK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdO5jyX%2FbtsJIOHd0Mb%2F8N5Q77Nnz1HAWmPG96eKNK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;392&quot; height=&quot;719&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;부고장, 청첩장 사칭 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사건 개요&lt;/span&gt;&lt;/h2&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;수사 시작&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; 2023년 7월, &lt;b&gt;경북경찰청&lt;/b&gt; 사이버범죄수사대가 청첩장 사기 피해 신고를 접수한 후 본격 수사 착수.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;범죄 수법:&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;청첩장, 부고장, 택배 문자를 통해 피싱 사이트에 접속 하게하여 악성 프로그램을 설치하고, 피해자의 금융정보를 탈취. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;지난 23년 해당 조직이 사용 했을 것으로 추정되는 피싱 사이트, 악성 앱&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/165&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;지인(부고장) 사칭 피싱 사이트 (23.08.19)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/166&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;[악성 앱] 모바일 부고장 사칭 악성앱 분석 (23.08.20)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://cago-young.tistory.com/195&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;재혼 관련 청첩장 사칭 피싱 사이트(23.01.28)&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피해 규모&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;총&amp;nbsp;230명의&amp;nbsp;피해자와&amp;nbsp;100억&amp;nbsp;원의&amp;nbsp;피해액.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;조직 검거 과정&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;경찰청은 수사 팀은 송금받은 &lt;b&gt;가상계좌&lt;/b&gt;, &lt;b&gt;법인 계좌&lt;/b&gt;의 거래내용 &lt;b&gt;분석을 통해&lt;/b&gt; 조직원 베트남 2명을 검거, 1명을 구속하고 그 이후에 집중적인 수사와 &lt;b&gt;베트남 공안과 긴밀한 협조&lt;/b&gt;를 통해 조직원 7명을 &lt;b&gt;검거&lt;/b&gt;했고, 총책을 포함해 6명을 국내로 송환. 경찰의 집요한 계좌 분석으로 약 30만 건의 거래 내역을 추적, 조직원을 특정하여 잡은것으로 보입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;결론 및 전망&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;이번 사건&lt;/b&gt;은 국제 공조와 사이버 범죄 수사의 모범 사례로, 앞으로도 악성 범죄 조직에 대해 강력한 대응이 필요하다는 점을 시사합니다. 해당 조직이 잡혔다고 하지만 해당&lt;b&gt; 조직 외에&lt;/b&gt; 추가로 부고장, 청첩장등을 이용해서 &lt;b&gt;범죄를&lt;/b&gt; 저지를 수 있기 때문에 항상 &lt;b&gt;스미싱 문자 공격에 주의&lt;/b&gt;를 해야 될 것 같습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&quot;&gt;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&lt;/a&gt; &lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1726921969071&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;베트남 거점 100억대 모바일 스미싱 범죄조직...경찰에 무더기 검거&quot; data-og-description=&quot;베트남 거점 100억대 모바일 스미싱 범죄조직...경찰에 무더기 검거 총책 등 7명 검거해 6명 송환 부고&amp;middot;택배 문자 등 피해액 역대 최대&quot; data-og-host=&quot;www.chosun.com&quot; data-og-source-url=&quot;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&quot; data-og-url=&quot;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/5N5CZ/hyW212GZrh/KF0h0KHPKyYIT9vIfEkP6k/img.jpg?width=945&amp;amp;height=496&amp;amp;face=0_0_945_496&quot;&gt;&lt;a href=&quot;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.chosun.com/national/national_general/2024/09/20/YXVHGYBBA5EFLOSLGOACPUTAWM/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/5N5CZ/hyW212GZrh/KF0h0KHPKyYIT9vIfEkP6k/img.jpg?width=945&amp;amp;height=496&amp;amp;face=0_0_945_496');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;베트남 거점 100억대 모바일 스미싱 범죄조직...경찰에 무더기 검거&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;베트남 거점 100억대 모바일 스미싱 범죄조직...경찰에 무더기 검거 총책 등 7명 검거해 6명 송환 부고&amp;middot;택배 문자 등 피해액 역대 최대&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.chosun.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1726922261639&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;&amp;ldquo;모친 별세&amp;rdquo; 날아온 부고장&amp;hellip; 한달 560억 털어간 이 수법&quot; data-og-description=&quot;모친 별세 날아온 부고장 한달 560억 털어간 이 수법&quot; data-og-host=&quot;www.chosun.com&quot; data-og-source-url=&quot;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&quot; data-og-url=&quot;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/b4Rj56/hyW2V2uHhi/OZ4GtZMH1nS8JKxQRQvPQ0/img.jpg?width=1168&amp;amp;height=613&amp;amp;face=0_0_1168_613&quot;&gt;&lt;a href=&quot;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.chosun.com/national/national_general/2024/01/30/BMKYYEF7UFFSBNYDMR3YU5GCUY/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/b4Rj56/hyW2V2uHhi/OZ4GtZMH1nS8JKxQRQvPQ0/img.jpg?width=1168&amp;amp;height=613&amp;amp;face=0_0_1168_613');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;&amp;ldquo;모친 별세&amp;rdquo; 날아온 부고장&amp;hellip; 한달 560억 털어간 이 수법&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;모친 별세 날아온 부고장 한달 560억 털어간 이 수법&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.chosun.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=132959&amp;amp;page=1&amp;amp;kind=1&quot;&gt;https://www.boannews.com/media/view.asp?idx=132959&amp;amp;page=1&amp;amp;kind=1&lt;/a&gt; &lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1726921970549&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;경찰청, 베트남 거점 최대 스미싱 범죄조직 총책 및 핵심 인물 7명 검거&quot; data-og-description=&quot;경찰청(청장 조지호)은 베트남에서 사무실을 차려 국내 조직원들과 함께 모바일 스미싱 범행을 해온 해외 조직원 7명을 베트남 공안과의 공조수사를 통해 검거하고, 총책 등 3명을 9월 14일에 인&quot; data-og-host=&quot;www.boannews.com&quot; data-og-source-url=&quot;https://www.boannews.com/media/view.asp?idx=132959&amp;amp;page=1&amp;amp;kind=1&quot; data-og-url=&quot;http://www.boannews.com/media/view.asp?idx=132959&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/hwOaY/hyW221zmHE/yNdgkv5gn2D6peNDXEdhQ0/img.jpg?width=295&amp;amp;height=190&amp;amp;face=0_0_295_190&quot;&gt;&lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=132959&amp;amp;page=1&amp;amp;kind=1&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.boannews.com/media/view.asp?idx=132959&amp;amp;page=1&amp;amp;kind=1&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/hwOaY/hyW221zmHE/yNdgkv5gn2D6peNDXEdhQ0/img.jpg?width=295&amp;amp;height=190&amp;amp;face=0_0_295_190');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;경찰청, 베트남 거점 최대 스미싱 범죄조직 총책 및 핵심 인물 7명 검거&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;경찰청(청장 조지호)은 베트남에서 사무실을 차려 국내 조직원들과 함께 모바일 스미싱 범행을 해온 해외 조직원 7명을 베트남 공안과의 공조수사를 통해 검거하고, 총책 등 3명을 9월 14일에 인&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.boannews.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Newspaper clippings</category>
      <category>경북경찰청수사</category>
      <category>모바일스미싱</category>
      <category>베트남스미싱조직</category>
      <category>부고장</category>
      <category>사기조직검거</category>
      <category>사이버범죄</category>
      <category>스미싱</category>
      <category>인터폴국제공조</category>
      <category>청첩장</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/213</guid>
      <comments>https://cago-young.tistory.com/213#entry213comment</comments>
      <pubDate>Sat, 21 Sep 2024 21:43:30 +0900</pubDate>
    </item>
    <item>
      <title>[피싱] 계정 탈취를 노리는 텔레그램 피싱 사이트 주의</title>
      <link>https://cago-young.tistory.com/212</link>
      <description>&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;div id=&quot;plasmo-shadow-container&quot;&gt;
&lt;div id=&quot;plasmo-inline&quot;&gt;
&lt;div data-render-message-id=&quot;0458b7ce-f329-40b9-a3b0-be9af81e046d&quot;&gt;
&lt;div style=&quot;color: #000000;&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;최근 계정정보 탈취 목적으로 스미싱 공격을 많이 보이는거 같습니다. 저도 문자를 최근에 받았었습니다. 텔레그램 사칭으로 한 피싱 페이지였는데요. 찾아보니 한국인터넷진흥원(kisa)에서도 주의가 필요한지 &quot;&lt;a href=&quot;https://www.boho.or.kr/kr/bbs/view.do?searchCnd=&amp;amp;bbsId=B0000133&amp;amp;searchWrd=&amp;amp;menuNo=205020&amp;amp;pageIndex=1&amp;amp;categoryCode=&amp;amp;nttId=71555&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;SNS 소셜커머스등 계정 탈취를 노리는 스미싱 주의 권고&lt;/a&gt;&quot;란 제목으로 보안 공지가 올라왔습니다. 해당 내용은 정부 공고와 해당 내용에 나오는 텔레그렘(telegram) 피싱 관련해서 글을 작성 해 봤습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;주요 내용 &amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;텔레그램(telegram), 애플(apple), 소셜커머스 사이트 등 플랫폼의 계정 자격 증명을 도용하려는 스미싱 시도가 증가하고 있다고 경고했습니다. 공격자는 SMS 메시지에 피싱 링크를 보내 사용자가 민감한 정보를 입력하도록 속입니다. 이러한 도난당한 자격 증명은 무단 구매나 암호화폐 도난과 같은 금융 사기에 악용됩니다. 사용자는 의심스러운 메시지와 URL에 주의하고, 스미싱 시도를 신고하고, 강력한 비밀번호와 이중 인증으로 계정을 보호해야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;아래는 주의해야 하는 계정 탈취 관련 스미싱&lt;/span&gt;&lt;/p&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;960&quot; data-origin-height=&quot;865&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/IKlTe/btsJGNJZZWQ/n3gvM6wE6SPnM0AEYyRrjK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/IKlTe/btsJGNJZZWQ/n3gvM6wE6SPnM0AEYyRrjK/img.png&quot; data-alt=&quot;한국인터넷진흥원 자료&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/IKlTe/btsJGNJZZWQ/n3gvM6wE6SPnM0AEYyRrjK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FIKlTe%2FbtsJGNJZZWQ%2Fn3gvM6wE6SPnM0AEYyRrjK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;960&quot; height=&quot;865&quot; data-origin-width=&quot;960&quot; data-origin-height=&quot;865&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;한국인터넷진흥원 자료&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;h3 data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;대응 방안&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스마트폰 내 문자 수신화면에서 &quot;스팸으로 신고&quot;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;보이스피싱통합신고대응센터 내 '스미싱 문자메세지 차단 신고하기' 112&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;보호나라(카카오톡 채널) 내 '스미싱' 확인서비스를 이용하여 신고&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start; font-family: 'Noto Serif KR';&quot;&gt;정부에서 2차 피해를 막기 위해 ISP 차단등을 하기 때문에 귀찮더라도 신고해 주시면 2차 피해를 최소한 막을 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;KakaoTalk_20240921_193446215.jpg&quot; data-origin-width=&quot;602&quot; data-origin-height=&quot;281&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dniyCj/btsJG4LsBpx/KOyJnTvsd3BEaUhJs2UcM0/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dniyCj/btsJG4LsBpx/KOyJnTvsd3BEaUhJs2UcM0/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dniyCj/btsJG4LsBpx/KOyJnTvsd3BEaUhJs2UcM0/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdniyCj%2FbtsJG4LsBpx%2FKOyJnTvsd3BEaUhJs2UcM0%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;602&quot; height=&quot;281&quot; data-filename=&quot;KakaoTalk_20240921_193446215.jpg&quot; data-origin-width=&quot;602&quot; data-origin-height=&quot;281&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[국외발신] [Telegram] 사용자 인증을 완료해주세요 미인증시 계정이 만료됩니다. hxxps&quot;//URL&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이상하다고 느끼는 점&lt;/span&gt;&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 문자의 링크를 보면 먼저 정상 주소와 다른 것을 확인할 수 있습니다. 정상주소는&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;b&gt;telegram.org입니다.&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;텔레그램 단축 URL(t.me)을 왜 사용 안 했지?&amp;nbsp;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;서브 도메인에 telegram이고 메인 도메인은 ins-kr&amp;nbsp; &amp;nbsp;&amp;gt;&amp;gt; 도메인 국가 확인해 보니 CN으로 확인됨&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 URL에 접속하게 되면 로그인하는 방법이나 로그인 창을 보여주고 계정정보를 입력하도록 유도한다. 뿐만 아니라 2차 인증(sns 인증)까지 입력을 유도하여 탈취하는 것으로 확인되었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/deqLcV/btsJG5jjtuF/kTdLqFxIK4navqKri7ZC50/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/deqLcV/btsJG5jjtuF/kTdLqFxIK4navqKri7ZC50/img.png&quot; data-origin-width=&quot;587&quot; data-origin-height=&quot;696&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;52.57&quot; data-filename=&quot;blob&quot; style=&quot;width: 51.9634%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/deqLcV/btsJG5jjtuF/kTdLqFxIK4navqKri7ZC50/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdeqLcV%2FbtsJG5jjtuF%2FkTdLqFxIK4navqKri7ZC50%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;587&quot; height=&quot;696&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/la4Zy/btsJGGRQmgO/SjZRoc0lbPWAW98ayCqsik/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/la4Zy/btsJGGRQmgO/SjZRoc0lbPWAW98ayCqsik/img.png&quot; data-origin-width=&quot;582&quot; data-origin-height=&quot;765&quot; data-is-animation=&quot;false&quot; style=&quot;width: 46.8738%;&quot; data-widthpercent=&quot;47.43&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/la4Zy/btsJGGRQmgO/SjZRoc0lbPWAW98ayCqsik/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fla4Zy%2FbtsJGGRQmgO%2FSjZRoc0lbPWAW98ayCqsik%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;582&quot; height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bcVi8p/btsJGAc6nQN/sIkzcXCbITUff2TFothRT1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bcVi8p/btsJGAc6nQN/sIkzcXCbITUff2TFothRT1/img.png&quot; data-origin-width=&quot;479&quot; data-origin-height=&quot;498&quot; data-is-animation=&quot;false&quot; style=&quot;width: 50.8486%; margin-right: 10px; margin-top: 10px;&quot; data-widthpercent=&quot;51.45&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bcVi8p/btsJGAc6nQN/sIkzcXCbITUff2TFothRT1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbcVi8p%2FbtsJGAc6nQN%2FsIkzcXCbITUff2TFothRT1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;479&quot; height=&quot;498&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bMt52z/btsJHyZSt1l/wp5gshW8mjMxB0CrBMw8lK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bMt52z/btsJHyZSt1l/wp5gshW8mjMxB0CrBMw8lK/img.png&quot; data-origin-width=&quot;492&quot; data-origin-height=&quot;542&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;48.55&quot; style=&quot;width: 47.9886%; margin-top: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bMt52z/btsJHyZSt1l/wp5gshW8mjMxB0CrBMw8lK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbMt52z%2FbtsJHyZSt1l%2Fwp5gshW8mjMxB0CrBMw8lK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;492&quot; height=&quot;542&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;550&quot; data-origin-height=&quot;120&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bkQokc/btsJG3eLrzo/GioBKV0P05PA5T2e9ykTqK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bkQokc/btsJG3eLrzo/GioBKV0P05PA5T2e9ykTqK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bkQokc/btsJG3eLrzo/GioBKV0P05PA5T2e9ykTqK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbkQokc%2FbtsJG3eLrzo%2FGioBKV0P05PA5T2e9ykTqK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;550&quot; height=&quot;120&quot; data-origin-width=&quot;550&quot; data-origin-height=&quot;120&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;텔레그램 &lt;b&gt;스미싱 문자의 링크&lt;/b&gt;를 접속하게 되면 &lt;b&gt;로그인 페이지&lt;/b&gt;가 보이고 사용자 계정정보와 sns 로그인 코드를 탈취한다. &lt;b&gt;2차 인증(세션등)&lt;/b&gt;까지 탈취하여 공격자의 서버로 전송되어 &lt;b&gt;계정 탈취&lt;/b&gt;가 진행되기 때문에 &lt;b&gt;각별한 주의가 필요해&lt;/b&gt; 보입니다. 실제로 탈취되면 다른국가 기기에서 로그인되는것을 확인 할 수 있었습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;IOC&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1726919560552&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;telegram[.]ins-kr[.]com
admin[.]leymocci[.]com&lt;/code&gt;&lt;/pre&gt;</description>
      <category>Basic/정보보안</category>
      <category>2차인증탈취</category>
      <category>kisa보안경고</category>
      <category>Telegram</category>
      <category>[국외발신] [telegram] 사용자 인증을 완료해주세요 미인증시 계정이 만료됩니다.</category>
      <category>계정탈취</category>
      <category>스미싱</category>
      <category>텔레그램 문자</category>
      <category>텔레그램사칭</category>
      <category>피싱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/212</guid>
      <comments>https://cago-young.tistory.com/212#entry212comment</comments>
      <pubDate>Sat, 21 Sep 2024 20:52:59 +0900</pubDate>
    </item>
    <item>
      <title>[몸캠피싱] 레드톡  피싱 사이트 주의 (24.09.19)</title>
      <link>https://cago-young.tistory.com/211</link>
      <description>&lt;p style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;해당 피싱사이트는 &quot;레드톡&quot;이라는 이름으로 피싱 사이트를 만들어 피해자에게 버튼클릭 유도 하여 앱 설치를 진행 하는 피싱 사이트이다. 채팅, 비밀 사진첩, 공유 저장소, 등의 사칭은&amp;nbsp; 대부분 몸캠피싱에서 많이 사용 하는 형태이다.&lt;/p&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;몸캠피싱&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;몸캠피싱 피해과정은 SNS로 친구요청이나 데이팅 앱 등 친밀감을 쌓고 음란채팅으로 유도하여 피해자의 신체사진 및 영상 등을 확보하고&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ef5369;&quot;&gt;채팅 중에 음성이 안 들린다&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;또는&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ef5369;&quot;&gt;비밀성을 강조하며 악성 앱(음성 채팅, 갤러리, 클라우드, 보안) 설치&lt;/span&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;유도를 해서 모바일에 저장된 주소록(연락처) 정보를 빼거나 SNS를 통해 피해자의 지인에게 연락 가능한 정보를 수집한다. 수집한 정보를 이용하여 유포한다며 협박을 해서 금전을 요구하는 형태이다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피해과정&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;채팅 앱 및 SNS -&amp;gt; 친밀감 형성 -&amp;gt; 피해자 욕구 충족(기프티콘, 금전, 성욕 등) -&amp;gt; 영상 및 사진 요구 -&amp;gt; 지인 연락처 확보(악성 앱 설치) -&amp;gt; 협박 및 금전요구&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 악성 앱설치 페이지가 바로 보이는게 되는데 이는 이전에 다른 페이지가 있을 것으로 생각 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://cago-young.tistory.com/206&quot;&gt;[악성 앱] 원클라우드 악성앱 분석 (24.06.19)&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;와 유사한 형태로 배포 되고 있습니다.&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;userAgent 정보를 확인해 특정 OS와 브라우저로 접속하게끔 페이지를 구성한것으로 확인됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/LPekF/btsJEPG4FU8/kNA5JB7qDOOdaJzkO3klZK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/LPekF/btsJEPG4FU8/kNA5JB7qDOOdaJzkO3klZK/img.png&quot; data-widthpercent=&quot;34.47&quot; data-is-animation=&quot;false&quot; data-origin-height=&quot;783&quot; data-origin-width=&quot;508&quot; data-filename=&quot;blob&quot; style=&quot;width: 33.6704%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/LPekF/btsJEPG4FU8/kNA5JB7qDOOdaJzkO3klZK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FLPekF%2FbtsJEPG4FU8%2FkNA5JB7qDOOdaJzkO3klZK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;508&quot; height=&quot;783&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/brMdFC/btsJDZpUeMs/Afk92vCHovo0caCtK8GteK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/brMdFC/btsJDZpUeMs/Afk92vCHovo0caCtK8GteK/img.png&quot; data-widthpercent=&quot;33.97&quot; data-is-animation=&quot;false&quot; data-origin-height=&quot;746&quot; data-origin-width=&quot;477&quot; data-filename=&quot;blob&quot; style=&quot;width: 33.1837%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/brMdFC/btsJDZpUeMs/Afk92vCHovo0caCtK8GteK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbrMdFC%2FbtsJDZpUeMs%2FAfk92vCHovo0caCtK8GteK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;477&quot; height=&quot;746&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/q71UW/btsJEipgtkT/sWiajhmryfovwKaSMkyHhk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/q71UW/btsJEipgtkT/sWiajhmryfovwKaSMkyHhk/img.png&quot; data-widthpercent=&quot;31.56&quot; data-is-animation=&quot;false&quot; data-origin-height=&quot;783&quot; data-origin-width=&quot;465&quot; data-filename=&quot;blob&quot; style=&quot;width: 30.8203%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/q71UW/btsJEipgtkT/sWiajhmryfovwKaSMkyHhk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fq71UW%2FbtsJEipgtkT%2FsWiajhmryfovwKaSMkyHhk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;465&quot; height=&quot;783&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;agent 정보를 safari 와 Ios를 사용하면 설치 버튼이 보여지고, 최종적 IOS 앱 파일을 다운 받을 수 있습니다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/r2dPg/btsJDsTQLBj/SLk18mkiKxQZ8k3giTH850/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/r2dPg/btsJDsTQLBj/SLk18mkiKxQZ8k3giTH850/img.png&quot; data-widthpercent=&quot;46.16&quot; data-is-animation=&quot;false&quot; data-origin-height=&quot;172&quot; data-origin-width=&quot;447&quot; data-filename=&quot;blob&quot; style=&quot;width: 45.619%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/r2dPg/btsJDsTQLBj/SLk18mkiKxQZ8k3giTH850/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fr2dPg%2FbtsJDsTQLBj%2FSLk18mkiKxQZ8k3giTH850%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;447&quot; height=&quot;172&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/F5wtc/btsJFvnEr7A/hTLAUA96XzpebKRretHvC1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/F5wtc/btsJFvnEr7A/hTLAUA96XzpebKRretHvC1/img.png&quot; data-widthpercent=&quot;53.84&quot; data-is-animation=&quot;false&quot; data-origin-height=&quot;189&quot; data-origin-width=&quot;573&quot; data-filename=&quot;blob&quot; style=&quot;width: 53.2182%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/F5wtc/btsJFvnEr7A/hTLAUA96XzpebKRretHvC1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FF5wtc%2FbtsJFvnEr7A%2FhTLAUA96XzpebKRretHvC1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;573&quot; height=&quot;189&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;758&quot; data-origin-height=&quot;116&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ddMgmX/btsJEQsrEQD/HzhUsQAcTwcdbtesy9wgG1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ddMgmX/btsJEQsrEQD/HzhUsQAcTwcdbtesy9wgG1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ddMgmX/btsJEQsrEQD/HzhUsQAcTwcdbtesy9wgG1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FddMgmX%2FbtsJEQsrEQD%2FHzhUsQAcTwcdbtesy9wgG1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;758&quot; height=&quot;116&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;758&quot; data-origin-height=&quot;116&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;376&quot; data-origin-height=&quot;423&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dbrSTk/btsJDGK6FI6/i1xeh2b9HiluFZiaKRzkI0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dbrSTk/btsJDGK6FI6/i1xeh2b9HiluFZiaKRzkI0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dbrSTk/btsJDGK6FI6/i1xeh2b9HiluFZiaKRzkI0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdbrSTk%2FbtsJDGK6FI6%2Fi1xeh2b9HiluFZiaKRzkI0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;376&quot; height=&quot;423&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;376&quot; data-origin-height=&quot;423&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;536&quot; data-origin-height=&quot;171&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/N8jDp/btsJDReCzTE/xG4HHzdA6MP0QZKVlr5CKK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/N8jDp/btsJDReCzTE/xG4HHzdA6MP0QZKVlr5CKK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/N8jDp/btsJDReCzTE/xG4HHzdA6MP0QZKVlr5CKK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FN8jDp%2FbtsJDReCzTE%2FxG4HHzdA6MP0QZKVlr5CKK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;536&quot; height=&quot;171&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;536&quot; data-origin-height=&quot;171&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;프로토콜을 보면 웹사이트를 이용하여&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://support.apple.com/ko-kr/guide/deployment/depce7cefc4d/web&quot;&gt;Apple 플랫폼에서 기업내부 전용앱 배포&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;하는 방식으로 악성앱을 설치하게 됩니다. 또한 기기에서 신뢰할 수 있는 인증서를 필요하기 때문에 인증서도 다운받을 수있습니다. 해당 방식은 앱 스토어에서 검증 하지 않기 때문에 상당히 위험 합니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;애플 플랫폼에서&amp;nbsp; 배포 방식&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: circle;&quot; data-ke-list-type=&quot;circle&quot;&gt;
&lt;li&gt;.ipa 파일 배포: 악성 앱은 .ipa 포맷으로 되어 있으며, XML 매니페스트 파일과 함께 HTTPS 기반 웹 사이트에서 다운로드됩니다.&lt;/li&gt;
&lt;li&gt;매니페스트 파일: 해당 파일은 악성 앱 설치를 트리거하며, 사용자가 웹 페이지에서 앱을 다운로드할 수 있도록 안내합니다.&lt;/li&gt;
&lt;li&gt;인증서 요구: 기기에서 신뢰할 수 있는 인증서로 서명된 앱만 설치가 가능하며, Apple의 OCSP 서버에서 인증서의 유효성을 검증합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;335&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/WrS8x/btsJDYR5hoB/P3Zjb27KANaXHSjvOeAUBK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/WrS8x/btsJDYR5hoB/P3Zjb27KANaXHSjvOeAUBK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/WrS8x/btsJDYR5hoB/P3Zjb27KANaXHSjvOeAUBK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FWrS8x%2FbtsJDYR5hoB%2FP3Zjb27KANaXHSjvOeAUBK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1034&quot; height=&quot;335&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;335&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;다운 받은 매니페스트 파일인 .plist 파일을 보면 다운 받는 주소를 확인 가능합니다. 해당 주소로 들어가면 ipa 앱파일을 다운 받게 됩니다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;603&quot; data-origin-height=&quot;117&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bRMaAk/btsJD7IbGje/VlqXZsF7921x8umvBmAcQk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bRMaAk/btsJD7IbGje/VlqXZsF7921x8umvBmAcQk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bRMaAk/btsJD7IbGje/VlqXZsF7921x8umvBmAcQk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbRMaAk%2FbtsJD7IbGje%2FVlqXZsF7921x8umvBmAcQk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;603&quot; height=&quot;117&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;603&quot; data-origin-height=&quot;117&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;아이폰도 안드로이드처럼 피해를 방지하기 위해서는, 의심스러운 링크나 앱 설치 유도를 받았을 때 신뢰할 수 있는 출처가 아닌 경우 절대 설치하지 않도록 주의해야 합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>기업배포앱악용</category>
      <category>레드톡피싱</category>
      <category>몸캠피싱</category>
      <category>아이폰 스미싱 문자</category>
      <category>악성앱배포</category>
      <category>피싱사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/211</guid>
      <comments>https://cago-young.tistory.com/211#entry211comment</comments>
      <pubDate>Thu, 19 Sep 2024 13:12:50 +0900</pubDate>
    </item>
    <item>
      <title>[피싱] 스타벅스 채용 사기 주의 (24.07.05)</title>
      <link>https://cago-young.tistory.com/209</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;스타벅스를 사칭한 홈페이지, 문자 메시지, 이메일, 카카오톡 채팅 등을 통해 개인 정보를 탈취하거나 금전적 피해를 입히는 사례가 빈번히 발생하고 있습니다. 이에 따라, 본 포스트에서는 이러한 사기 유형 대해 알아보겠습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;스타벅스 커피 코리아는 의심스러운 메시지나 웹사이트에 주의할 것을 당부드립니다. 자세한 정보는 아래에 있는 스타벅스 커피 코리아 공지사항에서 확인할 수 있습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://www.starbucks.co.kr/whats_new/noticeView.do?seq=5520&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.starbucks.co.kr/whats_new/noticeView.do?seq=5520&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1720179311863&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;스타벅스 커피 코리아&quot; data-og-description=&quot;스타벅스 커피 코리아&quot; data-og-host=&quot;www.starbucks.co.kr&quot; data-og-source-url=&quot;https://www.starbucks.co.kr/whats_new/noticeView.do?seq=5520&quot; data-og-url=&quot;https://www.starbucks.co.kr/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/5Jk68/hyWvUaNrMY/0GIWcl6C3JuXOdjwO2Zmwk/img.png?width=800&amp;amp;height=800&amp;amp;face=351_208_442_308&quot;&gt;&lt;a href=&quot;https://www.starbucks.co.kr/whats_new/noticeView.do?seq=5520&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.starbucks.co.kr/whats_new/noticeView.do?seq=5520&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/5Jk68/hyWvUaNrMY/0GIWcl6C3JuXOdjwO2Zmwk/img.png?width=800&amp;amp;height=800&amp;amp;face=351_208_442_308');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;스타벅스 커피 코리아&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;스타벅스 커피 코리아&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.starbucks.co.kr&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;스타벅스 사칭 채용 사기의 유형&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;1) 피싱 페이지&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼들은 실제 스타벅스 홈페이지와 유사하게 만든 가짜 사이트를 통해 구직자들을 속입니다. 이 사이트에서 개인정보를 입력하게 하여 이를 탈취하는 방식입니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/wms8g/btsIoK9ke7K/YUjnQk7sIGfKk6AHdvfIa1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/wms8g/btsIoK9ke7K/YUjnQk7sIGfKk6AHdvfIa1/img.png&quot; data-origin-width=&quot;400&quot; data-origin-height=&quot;500&quot; data-is-animation=&quot;false&quot; style=&quot;width: 32.5581%; margin-right: 10px;&quot; data-widthpercent=&quot;33.33&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/wms8g/btsIoK9ke7K/YUjnQk7sIGfKk6AHdvfIa1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fwms8g%2FbtsIoK9ke7K%2FYUjnQk7sIGfKk6AHdvfIa1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;400&quot; height=&quot;500&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bt2uo5/btsIpi5BsUj/nBkhO2ck6USO10Upt0wgAk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bt2uo5/btsIpi5BsUj/nBkhO2ck6USO10Upt0wgAk/img.png&quot; data-origin-width=&quot;400&quot; data-origin-height=&quot;500&quot; data-is-animation=&quot;false&quot; style=&quot;width: 32.5581%; margin-right: 10px;&quot; data-widthpercent=&quot;33.33&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bt2uo5/btsIpi5BsUj/nBkhO2ck6USO10Upt0wgAk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbt2uo5%2FbtsIpi5BsUj%2FnBkhO2ck6USO10Upt0wgAk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;400&quot; height=&quot;500&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bIhAWA/btsIpuSeOzi/eSYFr9t9K7zTQA9O3oY1GK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bIhAWA/btsIpuSeOzi/eSYFr9t9K7zTQA9O3oY1GK/img.png&quot; data-origin-width=&quot;400&quot; data-origin-height=&quot;500&quot; data-is-animation=&quot;false&quot; style=&quot;width: 32.5581%;&quot; data-widthpercent=&quot;33.34&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bIhAWA/btsIpuSeOzi/eSYFr9t9K7zTQA9O3oY1GK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbIhAWA%2FbtsIpuSeOzi%2FeSYFr9t9K7zTQA9O3oY1GK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;400&quot; height=&quot;500&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;2) 문자(스미싱) 메시지&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;스타벅스를 사칭한 문자 메시지를 보내 특정 링크를 클릭하도록 유도합니다. 이 링크를 클릭하면 가짜 채용 사이트로 연결되거나 악성 코드가 설치될 수 있습니다.
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;예시 )&lt;br /&gt;&lt;br /&gt;(주) 스타벅스&lt;br /&gt;알바모집&amp;nbsp;일18만&amp;nbsp;지급&amp;nbsp;*신청접수*&amp;nbsp;재택근무&amp;nbsp;홈페이지접수:&amp;nbsp;URL&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;656&quot; data-origin-height=&quot;448&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b0Zi7J/btsIsAKQkin/oUk2ADsTGJvBGs7ThoG6L0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b0Zi7J/btsIsAKQkin/oUk2ADsTGJvBGs7ThoG6L0/img.png&quot; data-alt=&quot;자료 출처 : https://x.com/lollinseGong&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b0Zi7J/btsIsAKQkin/oUk2ADsTGJvBGs7ThoG6L0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb0Zi7J%2FbtsIsAKQkin%2FoUk2ADsTGJvBGs7ThoG6L0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;470&quot; height=&quot;321&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;656&quot; data-origin-height=&quot;448&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;자료 출처 : https://x.com/lollinseGong&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;3) 이메일&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;공식적인 이메일 주소와 유사한 이메일을 통해 채용 정보를 전달하고, 첨부 파일이나 링크를 클릭하도록 유도합니다. 이 과정에서 피싱 사이트로 연결되거나 악성 코드가 포함된 파일이 다운로드될 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;4) 카카오톡 채팅&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;카카오톡에서 스타벅스 로고와 이름을 도용한 계정을 통해 채용 정보를 제공하고, 채용 담당자인척 하며 링크를 클릭하게 하여 가짜 사이트로 유도하거나 추가적인 사기 행위를 할 수 있습니다.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;사기 수법 특징&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;1) 과도한 혜택 제공&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;고액 연봉, 짧은 근무 시간 등 과도한 혜택을 제시하며 구직자들을 유혹합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;2) 빠른 입사 절차&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;일반적인 채용 절차보다 매우 빠른 입사 절차를 제안하여 의심할 시간을 줄입니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;3) 개인 정보 요구&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;입사지원서를 핑계로 주민등록번호, 계좌번호 등 민감한 개인 정보를 요구합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;4) 선지급 요청&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼은 구직자에게 지원서 처리, 신원 조사 수행 또는 여행 경비 준비에 대한 수수료를 지불하도록 요청할 수 있습니다. 이를 통해 아무것도 모르는 피해자들로부터 돈을 훔칩니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;5) 가짜 교육 또는 인증 프로그램&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼은 구직자에게 비용을 지불해야 하는 교육 또는 인증 프로그램에 참여할 기회를 제공할 수 있습니다. 그러나 이러한 프로그램은 존재하지 않거나 품질이 낮고 단지 돈을 추출할 목적으로 만들어진 경우가 많습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;6) 수표 현금화 계획&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼은 구직자에게 위조 수표를 보내 수표를 입금한 후 자금의 일부를 사기꾼에게 다시 이체하도록 요청할 수 있습니다. 은행이 수표가 위조된 것을 발견했을 때 피해자는 대개 이미 사기꾼에게 돈을 보낸 상태입니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;7) 송금 요청&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼은 처리 수수료, 비자 신청, 장비 구매 등 다양한 이유로 구직자에게 송금이나 암호화폐 송금을 요청할 수 있습니다. 일단 돈을 보내면 일반적으로 회수가 불가능합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;8) 악성 파일 첨부&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;사기꾼은 암호화폐 직업에 대한 지원자의 관심을 이용하여 채용 이메일에 악성 파일을 첨부할 수 있습니다. 이러한 첨부 파일이 열리면 피해자가 모르는 사이에 악성 코드가 피해자의 컴퓨터에 다운로드되고 암호화폐가 도난당할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;예방법&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;1) 공식 채널 확인&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;스타벅스의 공식 홈페이지나 채용 공고 사이트를 통해서만 채용 정보를 확인하세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;2) URL 확인&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;의심스러운 링크를 클릭하기 전에 URL을 주의 깊게 확인하세요. 공식 URL과 다른 부분이 있다면 피싱 사이트일 가능성이 높습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;3) 개인정보 요구 주의&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;채용 절차에서 과도한 개인 정보를 요구하는 경우 의심해 보세요. 일반적인 채용 과정에서는 민감한 정보를 먼저 요구하지 않습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;4) 의심스러운 메시지 무시&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;의심스러운 문자 메시지나 이메일, 카카오톡 채팅은 무시하고 삭제하세요. 링크를 클릭하지 않도록 주의하세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;4. 대응 방법&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;1) 의심스러운 메시지 신고&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;의심스러운 메시지를 받았을 경우, 해당 내용을 캡처하여 스타벅스 고객센터나 관계 당국에 신고하세요.
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;한국인터넷진흥원 대국민서비스(118 사이버도우미):&lt;/b&gt; 국번 없이 118&lt;/li&gt;
&lt;li&gt;&lt;b&gt;홈페이지:&lt;/b&gt; &lt;a href=&quot;https://www.kisa.or.kr/cyberhelper118&quot;&gt;한국인터넷진흥원 118&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;2) 보안 프로그램 사용 및 업데이트&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;최신 보안 프로그램을 설치하고 정기적으로 업데이트하여 악성 코드로부터 보호하세요.&lt;/li&gt;
&lt;li&gt;주기적으로 업데이트하기&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;3) 정기적인 비밀번호 변경&lt;/b&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;중요한 계정의 비밀번호를 정기적으로 변경하고, 동일한 비밀번호를 여러 사이트에 사용하지 마세요.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;채용 사칭 사기는 점점 정교해지고 있습니다. 여러분은 항상 신중하게 정보를 확인하고, 사기 수법에 속지 않도록 주의하시면 좋겠습니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트를 접속하게 되면 이름, 전화번호, 나이를 받아서 카카오톡을 통해서 채용 빌미로 지원자에 추가적인 인적사항을 받아 개인정보, 계좌번호&amp;middot;송금 등을 요구하여 사기 치는 등의 추가적인 행위가 이루어질 것으로 예상됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/wBvtK/btsIo1ptEls/FkK2fZac5o1Hx3Hcv5gkD0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/wBvtK/btsIo1ptEls/FkK2fZac5o1Hx3Hcv5gkD0/img.png&quot; data-origin-width=&quot;400&quot; data-origin-height=&quot;639&quot; data-is-animation=&quot;false&quot; style=&quot;width: 45.2143%; margin-right: 10px;&quot; data-widthpercent=&quot;45.75&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/wBvtK/btsIo1ptEls/FkK2fZac5o1Hx3Hcv5gkD0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FwBvtK%2FbtsIo1ptEls%2FFkK2fZac5o1Hx3Hcv5gkD0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;400&quot; height=&quot;639&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cHnX00/btsIoQVRxkR/NZRgFf1IJkrPH0mgA8y3K1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cHnX00/btsIoQVRxkR/NZRgFf1IJkrPH0mgA8y3K1/img.png&quot; data-origin-width=&quot;366&quot; data-origin-height=&quot;493&quot; data-is-animation=&quot;false&quot; style=&quot;width: 53.6229%;&quot; data-widthpercent=&quot;54.25&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cHnX00/btsIoQVRxkR/NZRgFf1IJkrPH0mgA8y3K1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcHnX00%2FbtsIoQVRxkR%2FNZRgFf1IJkrPH0mgA8y3K1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;366&quot; height=&quot;493&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;개인정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1011&quot; data-origin-height=&quot;305&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bDnTqY/btsIrco2xVH/Z6zrlzutPhj6IrDsB10nck/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bDnTqY/btsIrco2xVH/Z6zrlzutPhj6IrDsB10nck/img.png&quot; data-alt=&quot;개인정보 유출2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bDnTqY/btsIrco2xVH/Z6zrlzutPhj6IrDsB10nck/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbDnTqY%2FbtsIrco2xVH%2FZ6zrlzutPhj6IrDsB10nck%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1011&quot; height=&quot;305&quot; data-origin-width=&quot;1011&quot; data-origin-height=&quot;305&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;개인정보 유출2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;피싱으로 본 이유: 스타벅스코리아에 있는 실제 입사 지원 &lt;a title=&quot;바리스타 FAST TRACK 공개 채용 &quot; href=&quot;https://www.starbucks.co.kr/whats_new/newsView.do?cate=&amp;amp;seq=5455&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;바리스타 FAST TRACK 공개 채용&lt;/a&gt;은 &lt;span style=&quot;color: #ef5369;&quot;&gt;신세계 백화점 홈페이지&lt;/span&gt;에서 지원하는데 반해 해당 사이트는 직접적으로 당당자가 연락을 취하는 방식부터가 이미 잘못되었고, 채용 관련 홈페이지를 실제 스타벅스에서 관리하거나 어떤 대행사에 맡겨 진행될 텐데&amp;nbsp; 해당 피싱 도메인 관련 정보로는 유사성을 찾을 수 없었다.&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>(주) 스타벅스알바모집&amp;nbsp;일18만&amp;nbsp;지급&amp;nbsp;*신청접수*&amp;nbsp;재택근무&amp;nbsp;홈페이지접수</category>
      <category>cago</category>
      <category>보안</category>
      <category>스미싱</category>
      <category>스타벅스 채용 문자</category>
      <category>피싱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/209</guid>
      <comments>https://cago-young.tistory.com/209#entry209comment</comments>
      <pubDate>Fri, 5 Jul 2024 21:16:34 +0900</pubDate>
    </item>
    <item>
      <title>크리덴셜 스터핑(Credential Stuffing) 공격</title>
      <link>https://cago-young.tistory.com/208</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;크리덴셜 스터핑(Credential Stuffing)&amp;nbsp;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;개요&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;크리덴셜 스터핑(Credential Stuffing)은 해커가 유출된 사용자명-비밀번호 조합을 사용하여 여러 웹사이트에 로그인 시도를 자동화하는 공격입니다. 이는 사용자들이 여러 플랫폼에서 동일한 비밀번호를 사용하는 습관을 악용합니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;공격 방법&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;데이터 수집&lt;/b&gt;: 유출된 사용자 정보는 보통 대규모 데이터 유출 사고를 통해 얻습니다. 이러한 정보에는 사용자명, 비밀번호, 이메일 주소 등이 포함됩니다. 해당 개인정보를 해커는 다크 웹에서 이러한 데이터를 구매하거나 무료로 배포된 정보를 수집합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;피싱 공격&lt;/b&gt;: 사용자를 속여 민감한 정보를 입력하게 만드는 공격.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;악성 소프트웨어&lt;/b&gt;: 키로거, 트로이 목마 등을 통해 정보를 수집.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;소셜 엔지니어링&lt;/b&gt;: 신뢰를 구축하여 정보를 빼내는 방법.&lt;/li&gt;
&lt;li&gt;&lt;b&gt;취약한 웹사이트&lt;/b&gt;:보안이 취약한 사이트를 해킹하여 정보 탈취.&lt;b&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;자동화 도구&lt;/b&gt;: Sentry MBA와 같은 도구를 사용하여 로그인 시도를 자동화합니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;성공률&lt;/b&gt;: 작은 성공률로도 많은 계정을 탈취할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;피해 영향&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;금전적 손실&lt;/b&gt;: 크리덴셜 스터핑 공격은 종종 금융 계정을 표적으로 하여 불법적인 금융 거래를 발생시킵니다. 이는 개인의 재산 피해뿐만 아니라 기업의 금융 손실로 이어질 수 있습니다. 예를 들어, 공격자는 피해자의 은행 계좌에 접근하여 돈을 이체하거나 온라인 쇼핑 계정을 통해 물건을 구매할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;평판 손상&lt;/b&gt;: 기업이 크리덴셜 스터핑 공격을 당하면 고객의 신뢰도가 크게 저하됩니다. 고객의 계정이 침해되어 민감한 정보가 유출되면 고객은 해당 기업을 신뢰하지 않게 되며, 이는 장기적으로 기업의 브랜드 이미지에 심각한 손상을 줄 수 있습니다. 예를 들어, 대형 소매업체가 공격을 받아 고객 정보가 유출되면 고객은 해당 소매업체를 이용하지 않게 될 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;법적 문제&lt;/b&gt;: 개인정보 보호법 등 다양한 규제를 준수하지 못할 경우 법적 문제에 직면할 수 있습니다. 유럽 연합의 GDPR과 같은 법률은 데이터 침해가 발생할 경우 기업에 큰 벌금을 부과할 수 있습니다. 예를 들어, GDPR 규정을 위반하여 고객의 개인정보가 유출된 기업은 막대한 금전적 벌금과 함께 법적 소송에 직면할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;피해 사례&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;Equifax 데이터 유출 (2017)&lt;/b&gt;: 해커들이 1억 4,700만 명 이상의 미국인의 개인 정보를 탈취. 사회보장번호, 출생일, 주소 등이 유출되어 크리덴셜 스터핑 공격에 사용됨. 결과적으로 수백만 달러의 법적 비용과 고객 신뢰도 손실이 발생.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;리버티 리저브 (2013)&lt;/b&gt;: 해커들이 대규모 금융 플랫폼의 사용자 계정 정보를 탈취하여 불법 금융 거래와 돈세탁에 사용. 이로 인해 회사가 폐쇄되고 관련자가 체포됨.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;소니 픽처스 엔터테인먼트 (2014)&lt;/b&gt;: 해커들이 직원 계정 정보와 기밀 데이터를 탈취하여 영화 미개봉본을 유출하고 내부 이메일을 공개, 막대한 평판 손실을 초래함. 법적 문제와 수백만 달러의 비용이 발생.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;방어 전략&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;다중 인증(MFA)&lt;/b&gt;: 추가적인 보안 레이어로 계정을 보호합니다. MFA는 사용자가 로그인할 때 추가적인 인증 단계를 거치도록 하여 비밀번호가 유출되더라도 계정을 보호할 수 있습니다. 예를 들어, 사용자가 로그인 시 SMS로 전송된 일회용 코드를 입력하도록 요구할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;비밀번호 관리&lt;/b&gt;: 강력하고 고유한 비밀번호 사용을 권장합니다. 사용자는 각기 다른 계정에 대해 서로 다른 비밀번호를 사용해야 하며, 비밀번호는 복잡하고 추측하기 어렵게 만들어야 합니다. 예를 들어, 최소 12자 이상의 대문자, 소문자, 숫자, 특수문자가 조합된 비밀번호를 사용하는 것이 좋습니다. 추가적으로, 2단계 인증을 활성화하여 보안을 강화할 수 있습니다.&lt;/li&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;2단계 인증 하는법&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/ul&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;삼성 계정&lt;/b&gt;: 휴대폰 설정 &amp;gt; 계정 &amp;gt; 삼성 계정 &amp;gt; 비밀번호 및 보안 &amp;gt; 2단계 인증 메뉴 활성화&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Apple ID&lt;/b&gt;: 휴대폰 설정 &amp;gt; 사용자 이름 &amp;gt; 암호 및 보안 &amp;gt; 이중 인증 켜기 &amp;gt; 계속&lt;/li&gt;
&lt;li&gt;&lt;b&gt;네이버 계정&lt;/b&gt;: 로그인 &amp;gt; 내정보 &amp;gt; 보안설정 &amp;gt; 비밀번호 (2단계 인증) &amp;gt; 설정&lt;/li&gt;
&lt;li&gt;&lt;b&gt;다음카카오 계정&lt;/b&gt;: 로그인 &amp;gt; 내정보 &amp;gt; 2단계 인증 &amp;gt; 설정&lt;/li&gt;
&lt;li&gt;&lt;b&gt;구글 계정&lt;/b&gt;: 로그인 &amp;gt; Google 계정 관리 &amp;gt; 보안 &amp;gt; 2단계 인증 &amp;gt; 설정&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;b&gt;모니터링&lt;/b&gt;: 비정상 로그인 활동을 실시간으로 감시하고 대응합니다. 자동화된 도구를 사용하여 로그인 시도의 패턴을 분석하고, 비정상적인 로그인 시도가 감지되면 즉시 경고를 발송하거나 추가 인증 단계를 요구할 수 있습니다. 예를 들어, 동일한 IP 주소에서 짧은 시간 내에 여러 계정으로 로그인 시도가 발생하면 해당 IP를 차단하는 조치를 취할 수 있습니다.&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;탐지 방법&lt;/h3&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;1. 로그인 시도 모니터링: 짧은 시간 내에 동일한 IP 주소 또는 여러 IP 주소에서 다수의 로그인 시도가 발생하는지 모니터링합니다. 이러한 활동은 크리덴셜 스터핑의 전형적인 징후입니다.&lt;/div&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;2. 비정상적인 로그인 패턴 분석: 사용자 계정의 평소 로그인 패턴과 비교하여 비정상적인 활동을 탐지합니다. 예를 들어, 일반적으로 특정 지역에서만 로그인하는 사용자가 갑자기 다른 국가에서 로그인 시도가 발생하는 경우.&lt;/div&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;3. 계정 잠금 정책 적용: 일정 횟수 이상의 실패한 로그인 시도가 발생하면 계정을 잠금 처리하여 추가적인 공격을 방지합니다.&lt;/div&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;4. 캡차 도입: 자동화된 로그인 시도를 차단하기 위해 로그인 페이지에 캡차를 도입합니다.&lt;/div&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;5. 실시간 경고 시스템: 비정상적인 로그인 활동이 감지되면 실시간으로 경고를 발송하여 즉각적인 대응이 가능하도록 합니다.&lt;/div&gt;
&lt;div style=&quot;border: 1px solid black; padding: 10px; margin: 10px 0;&quot;&gt;6. IP 평판 분석: 알려진 악성 IP 주소 또는 의심스러운 IP 주소로부터의 접근을 차단하거나 제한합니다&lt;/div&gt;</description>
      <category>Basic/정보보안</category>
      <category>계정정보</category>
      <category>보안</category>
      <category>스터핑 공격</category>
      <category>크리덴셜</category>
      <category>크리덴셜 스터핑 탐지 방법</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/208</guid>
      <comments>https://cago-young.tistory.com/208#entry208comment</comments>
      <pubDate>Sun, 30 Jun 2024 00:34:42 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 원클라우드  악성앱 분석 (24.06.19)</title>
      <link>https://cago-young.tistory.com/206</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;몸캠 피싱 관련 정리를 하고 싶어서 정보를 찾다가 &lt;a href=&quot;https://xn--v52b5ax89b4zexb805dotlba81c.com/free&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;몸캠피싱 피해자 모임이라는&lt;/a&gt; 사이트에서 cloud1one이라는 도메인을 가지는 피싱 사이트를 발견했습니다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;몸캠피싱&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;몸캠피싱 피해과정은 SNS로 친구요청이나 데이팅 앱 등 친밀감을 쌓고 음란채팅으로 유도하여 피해자의 신체사진 및 영상 등을 확보하고 &lt;span style=&quot;color: #ef5369;&quot;&gt;채팅 중에 음성이 안 들린다&lt;/span&gt; 또는 &lt;span style=&quot;color: #ef5369;&quot;&gt;비밀성을 강조하며 악성 앱(음성 채팅, 갤러리, 클라우드, 보안) 설치&lt;/span&gt; 유도를 해서 모바일에 저장된 주소록(연락처) 정보를 빼거나 SNS를 통해 피해자의 지인에게 연락 가능한 정보를 수집한다. 수집한 정보를 이용하여 유포한다며 협박을 해서 금전을 요구하는 형태이다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피해과정&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;채팅 앱 및 SNS -&amp;gt; 친밀감 형성 -&amp;gt; 피해자 욕구 충족(기프티콘, 금전, 성욕 등) -&amp;gt; 영상 및 사진 요구 -&amp;gt; 지인 연락처 확보(악성 앱 설치) -&amp;gt; 협박 및 금전요구&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;681&quot; data-origin-height=&quot;314&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dlNt1A/btsIdH45Oe3/kE29drxmT81sichYsbLQhk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dlNt1A/btsIdH45Oe3/kE29drxmT81sichYsbLQhk/img.png&quot; data-alt=&quot;몸캠피싱 피해자 모임 게시물&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dlNt1A/btsIdH45Oe3/kE29drxmT81sichYsbLQhk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdlNt1A%2FbtsIdH45Oe3%2FkE29drxmT81sichYsbLQhk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;681&quot; height=&quot;314&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;681&quot; data-origin-height=&quot;314&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;몸캠피싱 피해자 모임 게시물&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;소개팅 어플에서 만난 사람이 타 sns로 이동 요구를 한 후에 링크를 보내 악성 앱 다운 유도를 하는 상황으로 보입니다. 해당 내용으로는 주소를 정확히 알 수없기 때문에 구글 검색 도구를 이용하여 찾아봤습니다. 확인결과 유효해 보이는 1개의 사이트를 찾을 수 있었습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;764&quot; data-origin-height=&quot;287&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bqXwBY/btsId1veUxg/QAeCWTLsNmmVq7oir01myk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bqXwBY/btsId1veUxg/QAeCWTLsNmmVq7oir01myk/img.png&quot; data-alt=&quot;구글 검색 결과&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bqXwBY/btsId1veUxg/QAeCWTLsNmmVq7oir01myk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbqXwBY%2FbtsId1veUxg%2FQAeCWTLsNmmVq7oir01myk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;764&quot; height=&quot;287&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;764&quot; data-origin-height=&quot;287&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;구글 검색 결과&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 디버그 방지와&amp;nbsp; [app store] , [google play] 버튼을 눌렀을 때 특정 버전 이상의 값을 가져야 다음 페이지(악성앱 설치 페이지)로 이동할 수 있는 것으로 확인되었습니다. userAgent 정보를 확인해 버전이 안 나올 경우 모바일 환경으로 유도하기 위해 qr코드가 보이는 페이지를 보여 줍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bw4rdI/btsIef07jdp/1FbD3RQENgbnRIGkzfTih0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bw4rdI/btsIef07jdp/1FbD3RQENgbnRIGkzfTih0/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;466&quot; data-origin-height=&quot;746&quot; data-filename=&quot;edited_1.JPG&quot; data-widthpercent=&quot;51.55&quot; style=&quot;width: 50.9482%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bw4rdI/btsIef07jdp/1FbD3RQENgbnRIGkzfTih0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbw4rdI%2FbtsIef07jdp%2F1FbD3RQENgbnRIGkzfTih0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;466&quot; height=&quot;746&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ccnO6h/btsIee2bjmZ/E0DM866KC3kHId2jpSWo90/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ccnO6h/btsIee2bjmZ/E0DM866KC3kHId2jpSWo90/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;448&quot; data-origin-height=&quot;763&quot; data-filename=&quot;edited_2.JPG&quot; data-widthpercent=&quot;48.45&quot; style=&quot;width: 47.889%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ccnO6h/btsIee2bjmZ/E0DM866KC3kHId2jpSWo90/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FccnO6h%2FbtsIee2bjmZ%2FE0DM866KC3kHId2jpSWo90%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;448&quot; height=&quot;763&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;피싱 사이트 접속 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;986&quot; data-origin-height=&quot;721&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dsZKM2/btsId88VFdu/k0bzt8Gg6S6J9D3eiUToP1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dsZKM2/btsId88VFdu/k0bzt8Gg6S6J9D3eiUToP1/img.png&quot; data-alt=&quot;모바일 환경 유도 페이지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dsZKM2/btsId88VFdu/k0bzt8Gg6S6J9D3eiUToP1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdsZKM2%2FbtsId88VFdu%2Fk0bzt8Gg6S6J9D3eiUToP1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;986&quot; height=&quot;721&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;986&quot; data-origin-height=&quot;721&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;모바일 환경 유도 페이지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1120&quot; data-origin-height=&quot;147&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zZqEO/btsIdHjKLHS/2hGPPwnNu7P9w5k34QhcK1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zZqEO/btsIdHjKLHS/2hGPPwnNu7P9w5k34QhcK1/img.png&quot; data-alt=&quot;버전확인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zZqEO/btsIdHjKLHS/2hGPPwnNu7P9w5k34QhcK1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FzZqEO%2FbtsIdHjKLHS%2F2hGPPwnNu7P9w5k34QhcK1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1120&quot; height=&quot;147&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1120&quot; data-origin-height=&quot;147&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;버전확인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1136&quot; data-origin-height=&quot;120&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/czD0Kp/btsIczNLimH/GQ1WOEISvF9nuSC6y6OxJk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/czD0Kp/btsIczNLimH/GQ1WOEISvF9nuSC6y6OxJk/img.png&quot; data-alt=&quot;ios 버전 확인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/czD0Kp/btsIczNLimH/GQ1WOEISvF9nuSC6y6OxJk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FczD0Kp%2FbtsIczNLimH%2FGQ1WOEISvF9nuSC6y6OxJk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1136&quot; height=&quot;120&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1136&quot; data-origin-height=&quot;120&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;ios 버전 확인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1677&quot; data-origin-height=&quot;135&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ARJbl/btsIeEM2YJC/YazyKRikQMPrJ5RJkCFVkk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ARJbl/btsIeEM2YJC/YazyKRikQMPrJ5RJkCFVkk/img.png&quot; data-alt=&quot;android 버전 확인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ARJbl/btsIeEM2YJC/YazyKRikQMPrJ5RJkCFVkk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FARJbl%2FbtsIeEM2YJC%2FYazyKRikQMPrJ5RJkCFVkk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1677&quot; height=&quot;135&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1677&quot; data-origin-height=&quot;135&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;android 버전 확인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;악성 앱 리소스 분석&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;리소스 확인 시 Activities 8&amp;nbsp; , Services 3, Receivers 0, Providers 4의 컴포넌트를 사용하고, 권한은 10개을 사용함 각 권한은 인터넷, 연락처, 휴대폰정보, 미디어파일, 문자를 유출할 수 있는 권한이 존재하는 것을 확인할 수 있다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name: 원클라우드&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Version Code: 6&lt;br /&gt;Version Name: 1.6.1&lt;br /&gt;Package Name : com.example.mydemo&lt;br /&gt;&lt;br /&gt;MD5:&amp;nbsp;0ccee71c733015b8830d56c4ccfbe355 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1:&amp;nbsp;8c8da672abd1ff52dfed393275174a2a57f831eb &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-256:&amp;nbsp;1d4c2f1d1fdf2ea108a6239283021a4a5d7a99c30d61ba497c91530b84aa3966&lt;/span&gt;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 백신 탐지 결과&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;19개의 백신에서 악성으로 탐지된다.&lt;/span&gt;&lt;/p&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; width=&quot;587&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style8&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;44&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Security Solution&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;탐지정보&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AhnLab-V3&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Trojan/Android.Infostealer.1227129&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Antiy-AVL&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Trojan/Generic.ASMalwAD.EA2&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avast-Mobile&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android[Trj]&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira (no cloud)&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ANDROID/AVE.Evo.brwkd&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BitDefenderFalx&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android.Riskware.TestKey.rA&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Cynet&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Malicious (score: 99)&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android.Siggen.Susp.11505&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;A Variant Of Android/Spy.Agent.DIL&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android/Agent.DIL!tr.spy&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Detected&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Trojan-Spy.AndroidOS.Agent&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;K7GW&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Spyware ( 005b614c1 )&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HEUR.AndroidOS.FakeApp.by&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Microsoft&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Spyware/Multiverze&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Sophos&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Xgen PUA (PUA)&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Symantec Mobile Insight&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;AdLibrary&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Trustlook&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android.PUA.DebugKey&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WithSecure&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Malware.ANDROID/AVE.Evo.brwkd&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;234&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm by Check Point&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;353&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HEUR.AndroidOS.FakeApp.by&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1719150884376&quot; class=&quot;java&quot; data-ke-language=&quot;java&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;?xml version=&quot;1.0&quot; encoding=&quot;utf-8&quot;?&amp;gt;
&amp;lt;manifest xmlns:android=&quot;http://schemas.android.com/apk/res/android&quot; android:versionCode=&quot;6&quot; android:versionName=&quot;1.6.1&quot; android:compileSdkVersion=&quot;32&quot; android:compileSdkVersionCodename=&quot;12&quot; package=&quot;com.example.mydemo&quot; platformBuildVersionCode=&quot;32&quot; platformBuildVersionName=&quot;12&quot;&amp;gt;
    &amp;lt;uses-sdk android:minSdkVersion=&quot;21&quot; android:targetSdkVersion=&quot;32&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.INTERNET&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_CONTACTS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_STATE&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_NUMBERS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_EXTERNAL_STORAGE&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_MEDIA_IMAGES&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_MEDIA_AUDIO&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_MEDIA_VIDEO&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_SMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.ACCESS_NETWORK_STATE&quot;/&amp;gt;
    &amp;lt;application android:theme=&quot;@style/Theme.Mydemo&quot; android:label=&quot;@string/app_name&quot; android:icon=&quot;@mipmap/applogosho&quot; android:name=&quot;com.example.mydemo.BaseApp&quot; android:allowBackup=&quot;true&quot; android:supportsRtl=&quot;true&quot; android:fullBackupContent=&quot;@xml/backup_rules&quot; android:networkSecurityConfig=&quot;@xml/network_security_config&quot; android:appComponentFactory=&quot;androidx.core.app.CoreComponentFactory&quot;&amp;gt;
        &amp;lt;activity android:name=&quot;com.example.mydemo.LoginActivity&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter&amp;gt;
                &amp;lt;action android:name=&quot;android.intent.action.MAIN&quot;/&amp;gt;
                &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/activity&amp;gt;
        &amp;lt;activity android:name=&quot;com.example.mydemo.MainActivity&quot;/&amp;gt;
        &amp;lt;activity android:name=&quot;com.example.mydemo.ContactActivity&quot;/&amp;gt;
        &amp;lt;activity android:name=&quot;com.example.mydemo.AlbumActivity&quot;/&amp;gt;
        &amp;lt;activity android:name=&quot;com.example.mydemo.UploadActivity&quot;/&amp;gt;
        &amp;lt;service android:name=&quot;com.example.mydemo.servise.UploadService&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter android:priority=&quot;1000&quot;&amp;gt;
                &amp;lt;action android:name=&quot;com.example.mydemo.UploadService&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/service&amp;gt;
        &amp;lt;provider android:name=&quot;com.luck.picture.lib.basic.PictureFileProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.example.mydemo.luckProvider&quot; android:grantUriPermissions=&quot;true&quot;&amp;gt;
            &amp;lt;meta-data android:name=&quot;android.support.FILE_PROVIDER_PATHS&quot; android:resource=&quot;@xml/ps_file_paths&quot;/&amp;gt;
        &amp;lt;/provider&amp;gt;
        &amp;lt;service android:name=&quot;com.luck.picture.lib.service.ForegroundService&quot; android:enabled=&quot;true&quot; android:foregroundServiceType=&quot;location&quot;/&amp;gt;
        &amp;lt;activity android:theme=&quot;@style/Base.Theme.NoActionBar&quot; android:name=&quot;com.luck.picture.lib.basic.PictureSelectorSupporterActivity&quot; android:configChanges=&quot;screenSize|orientation|keyboardHidden&quot;/&amp;gt;
        &amp;lt;activity android:theme=&quot;@style/Picture.Theme.Translucent&quot; android:name=&quot;com.luck.picture.lib.basic.PictureSelectorTransparentActivity&quot; android:configChanges=&quot;screenSize|orientation|keyboardHidden&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;huawei_module_scankit_local&quot; android:value=&quot;1030100&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;huawei_module_scankit_sdk_version&quot; android:value=&quot;scan:1.1.3.301&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.client.service.name:scan&quot; android:value=&quot;scan:1.1.3.301&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.min_api_level:scan:huawei_module_scankit&quot; android:value=&quot;1&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.min_api_level:scan:hmscore&quot; android:value=&quot;1&quot;/&amp;gt;
        &amp;lt;activity android:name=&quot;com.huawei.hms.hmsscankit.ScanKitActivity&quot; android:screenOrientation=&quot;portrait&quot;/&amp;gt;
        &amp;lt;provider android:name=&quot;androidx.startup.InitializationProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.example.mydemo.androidx-startup&quot;&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.emoji2.text.EmojiCompatInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.lifecycle.ProcessLifecycleInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
        &amp;lt;/provider&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.client.service.name:ml-computer-camera-inner&quot; android:value=&quot;ml-computer-camera-inner:1.0.3.340&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.client.service.name:ml-computer-ha-inner&quot; android:value=&quot;ml-computer-ha-inner:1.0.3.340&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.client.service.name:dynamic-api&quot; android:value=&quot;dynamic-api:1.0.13.303&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.min_api_level:dynamic-api:huawei_module_dynamicloader&quot; android:value=&quot;2&quot;/&amp;gt;
        &amp;lt;provider android:name=&quot;com.huawei.agconnect.core.provider.AGConnectInitializeProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.example.mydemo.AGCInitializeProvider&quot;/&amp;gt;
        &amp;lt;service android:name=&quot;com.huawei.agconnect.core.ServiceDiscovery&quot; android:exported=&quot;false&quot;/&amp;gt;
        &amp;lt;meta-data android:name=&quot;com.huawei.hms.client.service.name:ml-computer-vision-base&quot; android:value=&quot;ml-computer-vision-base:1.0.0.301&quot;/&amp;gt;
        &amp;lt;provider android:name=&quot;com.huawei.hms.mlsdk.common.Provider.MLInitializerProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.example.mydemo.MLInitializerProvider&quot;/&amp;gt;
    &amp;lt;/application&amp;gt;
&amp;lt;/manifest&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Permission&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; width=&quot;750&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style13&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;22&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;권한&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;설명&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;위험성&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.INTERNET&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;애플리케이션이 인터넷에 액세스할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;낮음 - 인터넷 연결 자체는 위험하지 않지만, 다른 민감한 데이터와 결합될 경우 데이터 유출의 가능성이 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_CONTACTS&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 연락처 데이터를 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;높음 - 개인적인 연락처 정보가 외부로 유출될 수 있으며, 피싱 및 스팸에 악용될 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_PHONE_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화 상태(전화번호, 네트워크 정보 등)를 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;중간 - 사용자의 전화번호와 네트워크 상태 정보가 유출될 수 있으며, 프라이버시 침해가 발생할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_PHONE_NUMBERS&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 전화번호를 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;중간 - 사용자의 전화번호가 외부로 유출될 수 있으며, 이를 통해 사용자를 식별하거나 스팸에 사용될 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_EXTERNAL_STORAGE&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;외부 저장소에 저장된 파일을 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;높음 - 사용자의 사진, 문서 등 개인 파일이 유출될 수 있으며, 중요한 데이터가 노출될 위험이 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;44&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_MEDIA_IMAGES&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 이미지 파일에 액세스할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;중간 - 개인 사진이나 스크린샷 등의 이미지 파일이 유출될 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;44&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_MEDIA_AUDIO&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 오디오 파일에 액세스할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;중간 - 사용자의 음성 녹음 파일이나 음악 파일 등이 유출될 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;44&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_MEDIA_VIDEO&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 비디오 파일에 액세스할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;중간 - 개인 비디오 파일이 유출될 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 SMS 메시지를 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;높음 - 개인적인 메시지 내용이 유출될 수 있으며, 이를 통해 피싱, 스팸, 사기 등이 발생할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td width=&quot;208&quot; height=&quot;66&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.ACCESS_NETWORK_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;232&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 연결 상태(예: Wi-Fi, 모바일 네트워크)를 읽을 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;td width=&quot;310&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;낮음 - 네트워크 상태 정보 자체는 큰 위험이 없지만, 다른 데이터와 결합될 경우 위험이 증가할 수 있습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities 8&amp;nbsp; , Services 3, Receivers 0, Providers 4와 15개의 권한을 사용하는 것을 알 수 있습니다. &lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;처음 앱 실행 시 인증 코드를 입력하는 화면이 보인다. 몸캠피싱 공격자가 주는 인증번호를 받아 입력하면 C&amp;amp;C 서버와 통신하여 검증 절차를 거치고 성공하게 되면 다음 행위로 넘어가는것으로 확인되며, 인증에 성공 하게 되면 권한설정 요구하고 권한 체크가 되면 정보 유출을 시작한다. 유출 정보는 sms, 주소록, 갤러리 정보와 기기 정보가 유출된다. 피해자에게 협박하기 위해 연락처와 사진, 영상, sms 정보 등을 수집하는 것으로 보인다.&lt;/span&gt;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1.&amp;nbsp;인증&amp;nbsp;화면&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;앱 실행 시 기존에 인증한 사용자인지 sharedPreferences 특정 값을 확인하여 검증 false 경우 인증 화면이 보여준다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_앱실행 화면.JPG&quot; data-origin-width=&quot;421&quot; data-origin-height=&quot;626&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mkEIr/btsIeFSIzTl/vK8SLDfBmYuVFYasS72hkK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mkEIr/btsIeFSIzTl/vK8SLDfBmYuVFYasS72hkK/img.png&quot; data-alt=&quot;앱 실행 화면&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mkEIr/btsIeFSIzTl/vK8SLDfBmYuVFYasS72hkK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmkEIr%2FbtsIeFSIzTl%2FvK8SLDfBmYuVFYasS72hkK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;421&quot; height=&quot;626&quot; data-filename=&quot;edited_앱실행 화면.JPG&quot; data-origin-width=&quot;421&quot; data-origin-height=&quot;626&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;앱 실행 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/qLYcM/btsIdUQCBKI/khbbKx1k8e7U7eRVcwf0xK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/qLYcM/btsIdUQCBKI/khbbKx1k8e7U7eRVcwf0xK/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;703&quot; data-origin-height=&quot;215&quot; data-filename=&quot;edited_앱실행1.JPG&quot; data-widthpercent=&quot;58.22&quot; style=&quot;width: 57.5423%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/qLYcM/btsIdUQCBKI/khbbKx1k8e7U7eRVcwf0xK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FqLYcM%2FbtsIdUQCBKI%2FkhbbKx1k8e7U7eRVcwf0xK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;703&quot; height=&quot;215&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/yeZ1o/btsIdUQCBHa/Q9DfW4j8XK2eCYxhUPytB0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/yeZ1o/btsIdUQCBHa/Q9DfW4j8XK2eCYxhUPytB0/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;711&quot; data-origin-height=&quot;303&quot; data-filename=&quot;edited_앱실행 sharedPreferences에 실행 했는지 확인.JPG&quot; data-widthpercent=&quot;41.78&quot; style=&quot;width: 41.295%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/yeZ1o/btsIdUQCBHa/Q9DfW4j8XK2eCYxhUPytB0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FyeZ1o%2FbtsIdUQCBHa%2FQ9DfW4j8XK2eCYxhUPytB0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;711&quot; height=&quot;303&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;앱 실행시 기존에 인증한 사용자인지 체크&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2.&amp;nbsp;인증&amp;nbsp;코드&amp;nbsp;검증&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;초대 코드를 입력하여 C&amp;amp;C 서버와 통신해 인증 코드 검증 성공시 업로드 화면으로 이동&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_화면 클릭 이벤트.JPG&quot; data-origin-width=&quot;721&quot; data-origin-height=&quot;334&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/rq2Lu/btsIdPhymCh/AK2AV2gP2Rk0MWBDSBL0Q1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/rq2Lu/btsIdPhymCh/AK2AV2gP2Rk0MWBDSBL0Q1/img.png&quot; data-alt=&quot;인증 코드 검증&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/rq2Lu/btsIdPhymCh/AK2AV2gP2Rk0MWBDSBL0Q1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Frq2Lu%2FbtsIdPhymCh%2FAK2AV2gP2Rk0MWBDSBL0Q1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;721&quot; height=&quot;334&quot; data-filename=&quot;edited_화면 클릭 이벤트.JPG&quot; data-origin-width=&quot;721&quot; data-origin-height=&quot;334&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;인증 코드 검증&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_화면 클릭 이벤트1(로그인).JPG&quot; data-origin-width=&quot;1142&quot; data-origin-height=&quot;398&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/6BHvV/btsIdQ1NEZF/qknCYx6ZqAiNexOFic4kXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/6BHvV/btsIdQ1NEZF/qknCYx6ZqAiNexOFic4kXk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/6BHvV/btsIdQ1NEZF/qknCYx6ZqAiNexOFic4kXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F6BHvV%2FbtsIdQ1NEZF%2FqknCYx6ZqAiNexOFic4kXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1142&quot; height=&quot;398&quot; data-filename=&quot;edited_화면 클릭 이벤트1(로그인).JPG&quot; data-origin-width=&quot;1142&quot; data-origin-height=&quot;398&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_blob&quot; data-origin-width=&quot;571&quot; data-origin-height=&quot;115&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cKd0o3/btsIdS6moMt/COpANZP47Bx1K41eqF1FW1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cKd0o3/btsIdS6moMt/COpANZP47Bx1K41eqF1FW1/img.png&quot; data-alt=&quot;인증 성공 저장&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cKd0o3/btsIdS6moMt/COpANZP47Bx1K41eqF1FW1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcKd0o3%2FbtsIdS6moMt%2FCOpANZP47Bx1K41eqF1FW1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;571&quot; height=&quot;115&quot; data-filename=&quot;edited_edited_blob&quot; data-origin-width=&quot;571&quot; data-origin-height=&quot;115&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;인증 성공 저장&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;768&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/P6NzK/btsIeGRDbH0/j72gGoAFcTEwktDzeXf6j0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/P6NzK/btsIeGRDbH0/j72gGoAFcTEwktDzeXf6j0/img.png&quot; data-alt=&quot;업로드 화면&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/P6NzK/btsIeGRDbH0/j72gGoAFcTEwktDzeXf6j0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FP6NzK%2FbtsIeGRDbH0%2Fj72gGoAFcTEwktDzeXf6j0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;470&quot; height=&quot;768&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;768&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;업로드 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3.&amp;nbsp;앱권한&amp;nbsp;요구&amp;nbsp;및&amp;nbsp;정보&amp;nbsp;유출&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;권한 체크가 확인되면 SMS, 주소록, 앨범, 기기정보를 유출한다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJaHC1/btsIeCaGLpJ/Ve5oo7VLX1y7kksUed01h0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJaHC1/btsIeCaGLpJ/Ve5oo7VLX1y7kksUed01h0/img.png&quot; data-origin-width=&quot;354&quot; data-origin-height=&quot;111&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;49.93&quot; data-filename=&quot;blob&quot; style=&quot;width: 49.3489%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJaHC1/btsIeCaGLpJ/Ve5oo7VLX1y7kksUed01h0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJaHC1%2FbtsIeCaGLpJ%2FVe5oo7VLX1y7kksUed01h0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;354&quot; height=&quot;111&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/pkqR5/btsIdNRDL14/xd0Ia3i5kr4vqZ6EZM9vq1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/pkqR5/btsIdNRDL14/xd0Ia3i5kr4vqZ6EZM9vq1/img.png&quot; data-origin-width=&quot;355&quot; data-origin-height=&quot;111&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;50.07&quot; data-filename=&quot;blob&quot; style=&quot;width: 49.4883%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/pkqR5/btsIdNRDL14/xd0Ia3i5kr4vqZ6EZM9vq1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FpkqR5%2FbtsIdNRDL14%2Fxd0Ia3i5kr4vqZ6EZM9vq1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;355&quot; height=&quot;111&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dbOWLp/btsIeAxaDv5/SUYz7k9wBeJ2f675QEP4UK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dbOWLp/btsIeAxaDv5/SUYz7k9wBeJ2f675QEP4UK/img.png&quot; data-origin-width=&quot;346&quot; data-origin-height=&quot;114&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;50.07&quot; data-filename=&quot;blob&quot; style=&quot;width: 49.4882%; margin-right: 10px; margin-top: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dbOWLp/btsIeAxaDv5/SUYz7k9wBeJ2f675QEP4UK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdbOWLp%2FbtsIeAxaDv5%2FSUYz7k9wBeJ2f675QEP4UK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;346&quot; height=&quot;114&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HB0p9/btsIcTEXG0Z/EQjiaR8XQkcEq7czGS3Uh1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HB0p9/btsIcTEXG0Z/EQjiaR8XQkcEq7czGS3Uh1/img.png&quot; data-origin-width=&quot;342&quot; data-origin-height=&quot;113&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;49.93&quot; data-filename=&quot;blob&quot; style=&quot;width: 49.349%; margin-top: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HB0p9/btsIcTEXG0Z/EQjiaR8XQkcEq7czGS3Uh1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHB0p9%2FbtsIcTEXG0Z%2FEQjiaR8XQkcEq7czGS3Uh1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;342&quot; height=&quot;113&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;권한 요구&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_퍼미션 체크가 되면 정보유출.JPG&quot; data-origin-width=&quot;935&quot; data-origin-height=&quot;590&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/KbBb0/btsIeEGhKO3/IHBtDHl5QGkFzKdnvcHuYk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/KbBb0/btsIeEGhKO3/IHBtDHl5QGkFzKdnvcHuYk/img.png&quot; data-alt=&quot;권한체크시 정보유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/KbBb0/btsIeEGhKO3/IHBtDHl5QGkFzKdnvcHuYk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FKbBb0%2FbtsIeEGhKO3%2FIHBtDHl5QGkFzKdnvcHuYk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;935&quot; height=&quot;590&quot; data-filename=&quot;edited_퍼미션 체크가 되면 정보유출.JPG&quot; data-origin-width=&quot;935&quot; data-origin-height=&quot;590&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;권한체크시 정보유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_sms 정보 유출1.JPG&quot; data-origin-width=&quot;1174&quot; data-origin-height=&quot;595&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cgAEQG/btsIeR6uI26/D4pGmkEbKPKK0uziuvSieK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cgAEQG/btsIeR6uI26/D4pGmkEbKPKK0uziuvSieK/img.png&quot; data-alt=&quot;sms 정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cgAEQG/btsIeR6uI26/D4pGmkEbKPKK0uziuvSieK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcgAEQG%2FbtsIeR6uI26%2FD4pGmkEbKPKK0uziuvSieK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1174&quot; height=&quot;595&quot; data-filename=&quot;edited_sms 정보 유출1.JPG&quot; data-origin-width=&quot;1174&quot; data-origin-height=&quot;595&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_주소록정보유출1.JPG&quot; data-origin-width=&quot;1180&quot; data-origin-height=&quot;570&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b2N2GL/btsIegZZXOF/Xd3h3jJ3FzqrApHR9movE0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b2N2GL/btsIegZZXOF/Xd3h3jJ3FzqrApHR9movE0/img.png&quot; data-alt=&quot;주소록 정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b2N2GL/btsIegZZXOF/Xd3h3jJ3FzqrApHR9movE0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb2N2GL%2FbtsIegZZXOF%2FXd3h3jJ3FzqrApHR9movE0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1180&quot; height=&quot;570&quot; data-filename=&quot;edited_주소록정보유출1.JPG&quot; data-origin-width=&quot;1180&quot; data-origin-height=&quot;570&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;주소록 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_갤러리 정보 유출1.JPG&quot; data-origin-width=&quot;893&quot; data-origin-height=&quot;496&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/80mhn/btsIeHweRtD/Ocky0cEaE6CNHhP8JkWhZ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/80mhn/btsIeHweRtD/Ocky0cEaE6CNHhP8JkWhZ1/img.png&quot; data-alt=&quot;갤러리 정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/80mhn/btsIeHweRtD/Ocky0cEaE6CNHhP8JkWhZ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F80mhn%2FbtsIeHweRtD%2FOcky0cEaE6CNHhP8JkWhZ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;893&quot; height=&quot;496&quot; data-filename=&quot;edited_갤러리 정보 유출1.JPG&quot; data-origin-width=&quot;893&quot; data-origin-height=&quot;496&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;갤러리 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_통신사정보ㅓ.JPG&quot; data-origin-width=&quot;637&quot; data-origin-height=&quot;64&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/INGzj/btsIcW2Mhqp/TjVliW5jn5toPYcZcVTfbk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/INGzj/btsIcW2Mhqp/TjVliW5jn5toPYcZcVTfbk/img.png&quot; data-alt=&quot;통신사 정보 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/INGzj/btsIcW2Mhqp/TjVliW5jn5toPYcZcVTfbk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FINGzj%2FbtsIcW2Mhqp%2FTjVliW5jn5toPYcZcVTfbk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;637&quot; height=&quot;64&quot; data-filename=&quot;edited_통신사정보ㅓ.JPG&quot; data-origin-width=&quot;637&quot; data-origin-height=&quot;64&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;통신사 정보 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_휴대전화 번호.JPG&quot; data-origin-width=&quot;652&quot; data-origin-height=&quot;139&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/w4WX2/btsId1hHoxA/F5kUko0Hykrv5vf2eNr1t1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/w4WX2/btsId1hHoxA/F5kUko0Hykrv5vf2eNr1t1/img.png&quot; data-alt=&quot;기기 번호 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/w4WX2/btsId1hHoxA/F5kUko0Hykrv5vf2eNr1t1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fw4WX2%2FbtsId1hHoxA%2FF5kUko0Hykrv5vf2eNr1t1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;652&quot; height=&quot;139&quot; data-filename=&quot;edited_휴대전화 번호.JPG&quot; data-origin-width=&quot;652&quot; data-origin-height=&quot;139&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;기기 번호 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4.&amp;nbsp;정보&amp;nbsp;유출&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;하드코딩된&amp;nbsp; C&amp;amp;C 서버 주소로 수집된 정보 유출&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_baseURL 정보 유출지.JPG&quot; data-origin-width=&quot;517&quot; data-origin-height=&quot;52&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/l8wpZ/btsId4S4Wxe/XdYX0fFrAhaP4WCPAgTJi0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/l8wpZ/btsId4S4Wxe/XdYX0fFrAhaP4WCPAgTJi0/img.png&quot; data-alt=&quot;하드코딩된 정보 유출지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/l8wpZ/btsId4S4Wxe/XdYX0fFrAhaP4WCPAgTJi0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fl8wpZ%2FbtsId4S4Wxe%2FXdYX0fFrAhaP4WCPAgTJi0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;517&quot; height=&quot;52&quot; data-filename=&quot;edited_baseURL 정보 유출지.JPG&quot; data-origin-width=&quot;517&quot; data-origin-height=&quot;52&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;하드코딩된 정보 유출지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_정보유출 형ㅌ.JPG&quot; data-origin-width=&quot;1003&quot; data-origin-height=&quot;644&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/EU2Jm/btsIdiqWOqC/QPeemb3LeuKrADqhEN4vUk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/EU2Jm/btsIdiqWOqC/QPeemb3LeuKrADqhEN4vUk/img.png&quot; data-alt=&quot;정보 유출 형태&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/EU2Jm/btsIdiqWOqC/QPeemb3LeuKrADqhEN4vUk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEU2Jm%2FbtsIdiqWOqC%2FQPeemb3LeuKrADqhEN4vUk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1003&quot; height=&quot;644&quot; data-filename=&quot;edited_정보유출 형ㅌ.JPG&quot; data-origin-width=&quot;1003&quot; data-origin-height=&quot;644&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출 형태&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;955&quot; data-origin-height=&quot;352&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bm4bbx/btsIekBjenm/K8b3APwDM2jOWqmbWxt63K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bm4bbx/btsIekBjenm/K8b3APwDM2jOWqmbWxt63K/img.png&quot; data-alt=&quot;정보 유출 SMS&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bm4bbx/btsIekBjenm/K8b3APwDM2jOWqmbWxt63K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbm4bbx%2FbtsIekBjenm%2FK8b3APwDM2jOWqmbWxt63K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;955&quot; height=&quot;352&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;955&quot; data-origin-height=&quot;352&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출 SMS&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1359&quot; data-origin-height=&quot;680&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b6OmaS/btsIeAjCahL/Yfbp6NkRV92zQWYb0Fyfk1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b6OmaS/btsIeAjCahL/Yfbp6NkRV92zQWYb0Fyfk1/img.png&quot; data-alt=&quot;정보 유출 주소록&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b6OmaS/btsIeAjCahL/Yfbp6NkRV92zQWYb0Fyfk1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb6OmaS%2FbtsIeAjCahL%2FYfbp6NkRV92zQWYb0Fyfk1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1359&quot; height=&quot;680&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;1359&quot; data-origin-height=&quot;680&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 유출 주소록&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;IOC&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1719150354968&quot; class=&quot;java&quot; data-ke-language=&quot;java&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;피싱 페이지 : https://www[.]cloud1one[.]com/
경유 페이지 :https://pgpfs[.]pfilbmje[.]com/api/c/x5qgtwsy
악성앱 다운 페이지 : https://pgsns[.]hedkzeio[.]com/x5qgtwsy
유포지 : https://zz[.]ppa58d[.]cyou/resource/1719015307618481526.apk?sign=9b9a6220b2706a9e005714a065d9b8f5&amp;amp;t=1719140231
정보 유출지 :  http://104[.]233[.]167[.]116/prod-api/

MD5: 0ccee71c733015b8830d56c4ccfbe355
SHA-1: 8c8da672abd1ff52dfed393275174a2a57f831eb
SHA-256: 1d4c2f1d1fdf2ea108a6239283021a4a5d7a99c30d61ba497c91530b84aa3966&lt;/code&gt;&lt;/pre&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago</category>
      <category>라인 잠금앨범</category>
      <category>몸캠피싱</category>
      <category>분석 보고서</category>
      <category>비밀 사진</category>
      <category>비밀 통화</category>
      <category>스미싱</category>
      <category>스캠</category>
      <category>악성앱</category>
      <category>클라우드원</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/206</guid>
      <comments>https://cago-young.tistory.com/206#entry206comment</comments>
      <pubDate>Thu, 27 Jun 2024 00:20:22 +0900</pubDate>
    </item>
    <item>
      <title>대량 문자 발송 사업자 규제를 위한 제도 '자격인증제'</title>
      <link>https://cago-young.tistory.com/205</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;불법스팸, 스미싱등 대량 문자 서비스를 막기 위해 이번에 KISA에서 '자격인증제'등을 도입하는 것 같다. 6월부터 '자격 인증제'를 실시하게 된다고 한다. 또한 다른 제도를 통해 스팸, 스미싱등 억제를 하겠다는 거 같다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;국내 발신 같은 경우는 정부와 기업등 협의를 해서 차단이나, 규제등의 조치로 억제할 수 있을 것으로 생각된다. 해외에서 발신한 경우는 아직까진 각 부처별 협의와 국제 공조가 필하다고 한다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;참고 기사 : &lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=130219&quot;&gt;https://www.boannews.com/media/view.asp?idx=130219&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1717369890970&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;민폐 스미싱 그만! 대량문자 발송 사업자 규제 위한 &amp;lsquo;자격인증제&amp;rsquo;  6월부터 시행&quot; data-og-description=&quot;최근 본지가 보도한 개인정보위원회를 사칭한 스미싱 문자부터 행정안전부, 국세청 등 공공기관, 택배, 부고 등 각종 스팸문자가 난무하고 있다. 이러한 극성스러운 스팸 및 스미싱 문자에 정부&quot; data-og-host=&quot;www.boannews.com&quot; data-og-source-url=&quot;https://www.boannews.com/media/view.asp?idx=130219&quot; data-og-url=&quot;http://www.boannews.com/media/view.asp?idx=130219&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/AM6ge/hyWgZP9CuU/BTvuOPW5gPkxKGbdvg1vdk/img.jpg?width=1000&amp;amp;height=457&amp;amp;face=0_0_1000_457&quot;&gt;&lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=130219&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.boannews.com/media/view.asp?idx=130219&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/AM6ge/hyWgZP9CuU/BTvuOPW5gPkxKGbdvg1vdk/img.jpg?width=1000&amp;amp;height=457&amp;amp;face=0_0_1000_457');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;민폐 스미싱 그만! 대량문자 발송 사업자 규제 위한 &amp;lsquo;자격인증제&amp;rsquo; 6월부터 시행&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;최근 본지가 보도한 개인정보위원회를 사칭한 스미싱 문자부터 행정안전부, 국세청 등 공공기관, 택배, 부고 등 각종 스팸문자가 난무하고 있다. 이러한 극성스러운 스팸 및 스미싱 문자에 정부&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.boannews.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;주요 내용&lt;/h4&gt;
&lt;ol style=&quot;list-style-type: decimal;&quot; data-ke-list-type=&quot;decimal&quot;&gt;
&lt;li&gt;대량문자 발송서비스 사업자 '자격인증제'&lt;/li&gt;
&lt;li&gt;발송 억제를 위한 발신 번호 블랙리스트 기반 문자스팸 재발송 제한&lt;/li&gt;
&lt;li&gt;산성전자 휴대폰의&amp;nbsp; 'on-divece' 악성문자 필터링 서비스 (2024년 하반기부터 시행 예정)&lt;/li&gt;
&lt;/ol&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;자격인증제&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문자 중개사가 일정 요건을 갖춘 재판매 사업자에게 대량문자 전송자격을 부여하는 업계 자율규제 제도&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&quot;인증제는 KCUP(방송통신 이용자 보호 협회) 이 운영하며 문자재판매사 1,175개사 등을 대상으로 자격인증 심사, 현장점검 등을 통해 인증 제도를 운영함으로써 스팸 발송에 대한 규제를 강화할 것&quot; 또한 모니터링을 통해 자격정지등 규제를 한다고 한다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;블랙리스트 기반 문자스팸 재발송 제한&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&amp;ldquo;다수,&amp;nbsp;중복&amp;middot;신고된&amp;nbsp;문자&amp;nbsp;스팸의&amp;nbsp;발신번호를&amp;nbsp;문자중개사에&amp;nbsp;공유하고,&amp;nbsp;문자중개사는&amp;nbsp;블랙리스트에&amp;nbsp;등록된&amp;nbsp;번호로부터&amp;nbsp;발송되는&amp;nbsp;모든&amp;nbsp;문자를&amp;nbsp;차단해야&amp;nbsp;한다&amp;rdquo;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&amp;ldquo;시스템&amp;nbsp;테스트&amp;nbsp;및&amp;nbsp;시범&amp;nbsp;운영결과,&amp;nbsp;블랙리스트는&amp;nbsp;3개월간&amp;nbsp;문자&amp;nbsp;발송을&amp;nbsp;제한&amp;middot;정지하도록&amp;nbsp;운영하고&amp;nbsp;있으며,&amp;nbsp;누적&amp;nbsp;74,000여 개&amp;nbsp;번호를&amp;nbsp;블랙리스트로&amp;nbsp;등록함으로써&amp;nbsp;총&amp;nbsp;414만 건&amp;nbsp;문자스팸&amp;nbsp;발송을&amp;nbsp;억제(2023년&amp;nbsp;8월~2024년&amp;nbsp;4월&amp;nbsp;시범운영)했다&amp;rdquo;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;color: #333333; text-align: left;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;'on-divece' 악성문자 필터링 서비스&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;스팸신고&amp;nbsp;분석&amp;nbsp;데이터를&amp;nbsp;기반으로,&amp;nbsp;삼성전자&amp;nbsp;휴대폰에서&amp;nbsp;악성문자를&amp;nbsp;한&amp;nbsp;번&amp;nbsp;더&amp;nbsp;필터링할&amp;nbsp;수&amp;nbsp;있는&amp;nbsp;기능을&amp;nbsp;추가한&amp;nbsp;것이다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;마무리&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;인증제를 통한 규제와 블랙리스트 기반 제한으로 지금까지 쫌 수월하게? 보낼 수 있었던 것에 비해 어려워지지 않을까 생각이 든다. 스미싱 공격 방식 또한 기존 형태에서 많이 바뀌지 않을까? 이번 내용은 대량 문자를 규제 함으로써 무분별하게 스팸, 스미싱 문자가 오던 게 많이 줄지 않을까 한다. 단순히 문자에서 악성앱 다운, 피싱 사이트로 바로 이동하는 방식으로는 탐지되어 더 이상 보내는 게 어려워질 테니 보이스 피싱이나, 로맨스 스캠, 몸캠 피싱처럼 개인화 공격에 초점이 맞춰지지 않을까 생각 든다.&lt;br /&gt;&lt;br /&gt;그래도 문자와 비슷한 형태로 공격한다고 하면??? 문자를 통한 것보다 기존에도 있었던 SNS나 가짜 쇼핑몰, 스마트스토어 등을 이용한 공격으로 바뀌지 않을까?&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;아래 기사를 봐도 최근까지 최저가로 유인해 피싱 사이트로 유도하여 개인정보 유출 및 결제 사기를 했었다고 한다.&amp;nbsp;&lt;br /&gt;&lt;a href=&quot;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&amp;nbsp;&lt;/a&gt;&amp;nbsp;&lt;/p&gt;
&lt;figure id=&quot;og_1717369897858&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;최저가로 유인해 피싱 사이트로 유도하는 사기 성행 - 퍼블릭뉴스&quot; data-og-description=&quot;온라인 쇼핑몰에서 최저가로 소비자를 유인한 뒤 피싱사이트로 유도하는 범행이 잇따라 발생하고 있다. 지난 1일 MBC뉴스에 따르면 피해자 A씨는 네이버 스마트스토어에서 상대적으로 저렴한 제&quot; data-og-host=&quot;www.psnews.co.kr&quot; data-og-source-url=&quot;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&quot; data-og-url=&quot;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bjkCLU/hyWg0uM8Aw/hOjCB9gpa4acWgxdiWN3wK/img.jpg?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/bxCLZd/hyWhac6SEx/ZvNGGKrcuuB17NqKK5J2gk/img.jpg?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400&quot;&gt;&lt;a href=&quot;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.psnews.co.kr/news/articleView.html?idxno=2051316&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bjkCLU/hyWg0uM8Aw/hOjCB9gpa4acWgxdiWN3wK/img.jpg?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400,https://scrap.kakaocdn.net/dn/bxCLZd/hyWhac6SEx/ZvNGGKrcuuB17NqKK5J2gk/img.jpg?width=600&amp;amp;height=400&amp;amp;face=0_0_600_400');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;최저가로 유인해 피싱 사이트로 유도하는 사기 성행 - 퍼블릭뉴스&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;온라인 쇼핑몰에서 최저가로 소비자를 유인한 뒤 피싱사이트로 유도하는 범행이 잇따라 발생하고 있다. 지난 1일 MBC뉴스에 따르면 피해자 A씨는 네이버 스마트스토어에서 상대적으로 저렴한 제&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.psnews.co.kr&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;스마트 스토어를 통해 쉽게 가짜 사이트를 등록하고 이용자에게 쉽게 연락이 가능하다고 하면 이를 이용한 개인화 공격 형태로 바뀌지 않을까라는 생각이 든다. 최근에는 사람들이 스미싱 문자에 대해서는 많이 알고, 방송 매체나 많이 다루지만 스마트 스토어를 이용한 결제 사기는 모르는 사람들이 생각보다 많은 거 같다. 결제 사기 시나리오 경우에도 통장에 입금을 요구하는데 그 대신 택배 오류, 관세 관련등 이유로 악성 앱을 다운로드 유도나 피싱 사이트 유도 할 수도 있다고 생각됩니다.&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Newspaper clippings</category>
      <category>대량 문자</category>
      <category>스미싱</category>
      <category>스미싱 문자</category>
      <category>스팸</category>
      <category>자격인증제</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/205</guid>
      <comments>https://cago-young.tistory.com/205#entry205comment</comments>
      <pubDate>Mon, 3 Jun 2024 07:44:47 +0900</pubDate>
    </item>
    <item>
      <title>[문서 파일] 악성 MS Office 일반적인 유형</title>
      <link>https://cago-young.tistory.com/204</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;Office 제품군의 광범위한 사용을 악용하여 맬웨어를 전달하거나 무단 작업을 실행합니다. 이러한 문서는 시스템이나 데이터를 손상시키는 데 사용하는 기술에 따라 분류될 수 있습니다. 일반적인 유형은 다음과 같습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;1. 매크로 사용 문서&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이러한 문서에는 문서를 열 때 다양한 작업을 수행할 수 있는 &lt;span style=&quot;color: #f89009;&quot;&gt;VBA(Visual Basic for Application)로 작성된 작은 프로그램인 매크로(Macro)가 포함&lt;/span&gt;되어 있습니다. 공격자는 일단 활성화되면 맬웨어를 다운로드하거나 백도어를 생성하거나 기타 악의적인 활동을 수행할 수 있는 악성 매크로를 내장합니다. 이러한 파일은 일반적으로 매크로 기능을 나타내는 .docm, .xlsm 또는 .pptm과 같은 확장자를 갖습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;2. 문서 악용(&lt;span style=&quot;background-color: #ffffff; color: #202124; text-align: left;&quot;&gt;Exploit&lt;/span&gt;&lt;span&gt;)&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;악용 문서는 Microsoft Office 제품군 내의 취약점을 이용하여 문서를 여는 것 이상의 사용자 상호 작용 없이 악성 코드를 실행합니다. 이러한 익스플로잇은 소프트웨어의 특정 결함을 표적으로 삼아 기존의 보안 조치를 우회하여 시스템을 손상시킵니다. 문서 자체는 무해해 보일 수 있지만 취약한 응용 프로그램에서 처리할 때 취약점 악용을 트리거하도록 제작되었습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;3. DDE(Dynamic Data Exchange)/DDEAUTO 문서&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;DDE(동적 데이터 교환) 문서는 &lt;span style=&quot;color: #f89009;&quot;&gt;Office 응용 프로그램이 문서 간에 실시간으로 데이터를 전송할 수 있도록 하는 DDE 프로토콜을 활용&lt;/span&gt;합니다. 공격자는 이 기능을 오용하여 악성 코드나 명령을 직접 실행하는 문서를 제작합니다. 업데이트 및 보안 패치로 인해 일반적으로 사용되지는 않았지만 DDE 공격은 과거 공격에서 중요한 위협 벡터였습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;4. OLE 개체 문서&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;OLE(Object Linking and Embedding)는 문서 및 기타 개체를 포함하고 연결할 수 있는 기술입니다. 악성 문서는 OLE를 사용하여 &lt;span style=&quot;color: #f89009;&quot;&gt;유해한 스크립트나 실행 파일&lt;/span&gt;을 포함합니다. 문서가 열리고 포함된 콘텐츠가 상호 작용하면 악성 페이로드가 실행될 수 있습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;5. 피싱 문서&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이러한 문서가 반드시 소프트웨어 취약점을 악용하거나 매크로를 사용하는 것은 아닙니다. 대신 그들은 소셜 엔지니어링을 사용하여 사용자를 속여 매크로 활성화, 로그인 자격 증명 입력, 추가 악성 파일 다운로드 및 열기 등 위험한 행동을 취하도록 합니다. 피싱 문서에는 사용자에게 보안 기능을 비활성화하거나 악성 사이트 링크를 따르도록 촉구하는 설득력 있는 메시지가 포함될 수 있습니다.&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;6. 외부 링크 문서&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이 유형에는 외부 악성 리소스에 대한 링크가 포함된 문서가 포함됩니다. 문서 자체에는 악성 코드가 직접 포함되어 있지 않을 수 있지만 사용자를 악성 코드가 있는 외부 소스로 연결합니다. 이 방법은 피싱 기술과 함께 사용되어 사용자가 악성 코드를 다운로드하거나 민감한 정보를 제공하도록 유인할 수 있습니다. &lt;br /&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;b&gt;문서 내에 있는 &quot;*.xml.rels&quot; 파일을 조사하면 참조하는 내/외부링크 확인 가능&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;징후 식별 방법 및 악성행위 판단&lt;/span&gt;&lt;/h3&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;OLEdump등을 이용하여 파일 포멧상 레이아웃 분석하여 [VB, 자바, 포스트]스크립트 파일, DDE, 매크로등 존재여부 확인&lt;/li&gt;
&lt;li&gt;파일 포멧상 비정상 스트림 또는 속성 값 존재 확인&lt;/li&gt;
&lt;li&gt;파일 내부에 있는 악성 개체(매크로, 스크립트 등)을 추출하여 악성 행위 있는지 확인&lt;/li&gt;
&lt;li&gt;DDE/DDEAUTO 명령어 확인&amp;nbsp;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;동일 스트림이 같은 사이즈로 여러개 있는지 확인&lt;/li&gt;
&lt;li&gt;스트림 안에 PE파일 시그니처 확인&lt;/li&gt;
&lt;li&gt;Bindata 스토리지에 OLE 존재 확인&lt;/li&gt;
&lt;li&gt;[.ps .eps .vba .js 등] 스크립트 확인&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;사용 Tool&lt;/p&gt;
&lt;ul style=&quot;list-style-type: circle;&quot; data-ke-list-type=&quot;circle&quot;&gt;
&lt;li&gt;OLEDUMP&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;xls 파일 포멧 :&amp;nbsp;&lt;a href=&quot;https://www.loc.gov/preservation/digital/formats/digformatspecs/Excel97-2007BinaryFileFormat%28xls%29Specification.pdf&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.loc.gov/preservation/digital/formats/digformatspecs/Excel97-2007BinaryFileFormat%28xls%29Specification.pdf&lt;/a&gt;&lt;/p&gt;</description>
      <category>Basic/기타</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/204</guid>
      <comments>https://cago-young.tistory.com/204#entry204comment</comments>
      <pubDate>Sat, 16 Mar 2024 16:52:01 +0900</pubDate>
    </item>
    <item>
      <title>MITRE ATT&amp;amp;CK 정리</title>
      <link>https://cago-young.tistory.com/196</link>
      <description>&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;a href=&quot;https://attack.mitre.org/&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://attack.mitre.org/&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1707203095407&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;MITRE ATT&amp;amp;CK&amp;reg;&quot; data-og-description=&quot;MITRE ATT&amp;amp;CK&amp;reg; is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&amp;amp;CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private se&quot; data-og-host=&quot;attack.mitre.org&quot; data-og-source-url=&quot;https://attack.mitre.org/&quot; data-og-url=&quot;https://attack.mitre.org/&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/ceeskj/hyVfXz4DEx/LlUXD91OOvqJAQY8VWgr31/img.jpg?width=512&amp;amp;height=512&amp;amp;face=0_0_512_512&quot;&gt;&lt;a href=&quot;https://attack.mitre.org/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://attack.mitre.org/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/ceeskj/hyVfXz4DEx/LlUXD91OOvqJAQY8VWgr31/img.jpg?width=512&amp;amp;height=512&amp;amp;face=0_0_512_512');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;MITRE ATT&amp;amp;CK&amp;reg;&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;MITRE ATT&amp;amp;CK&amp;reg; is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&amp;amp;CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private se&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;attack.mitre.org&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;빠르게 변화하는 악성코드를 대응하기 위해 기존 탐지 방법에서 추가로 행위 기반 탐지를 하여 공격자 행위(전략, 전술)가 중요해지는 중이다. 보안 회사에서 DWELL TIME(공격자가 내부망에 침투 후 실제 발견되는 시간)을 줄이려는 게 목표인데 차단도 중요 하지만 탐지시간을 줄여 빠르게 대응(방어) 하는 추세로 변화 중인 거 같다. 그래서 공격자의 행위나 해커그룹에 공격 방식등을 확인하고 어떻게 탐지하는지 까지 정보가 모아져 있는 마이트 어택이 뜨고 있는 이유인 거 같다.&lt;/p&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;MITRE&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;1958년에 설립된 미국의 비영리 민간 연구 기관&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;미궁의 정부 기관과 협력하여 국방,보안,헬스케어 등의 분야에서 전문적인 연구를 수행 (CVE, CWE, CAPEC, STIX, TAXII, Cybox, MAEC[악성코드], ATT&amp;amp;CK, DEFEND)&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;기존 탐지 방안에서 행위기반 탐지로 바뀌는 중 많이 사용&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;ATT&amp;amp;CK (Adversarial Tactics Techniques &amp;amp; Common Knowledge)&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;MITRE ATT&amp;amp;CK는 공격 라이프사이클의 다양한 단계에서 공격자가 사용하는 다양한 전술, 기술 및 절차(TTP)를 이해, 분류 및 설명하기 위한 포괄적인 프레임워크를 제공하고 공개된 침해사고분석 보고서, 악성코드 분석 보고서, 위협 그룹에 대한 정보를 분석하여 공격자들의 TTPs를 집대성하고 체계적으로 정리한 공개된 지식 베이스, post-exploitaion 과정에서 사용되는 위협 행위들을 일관되고 명확한 방식으로 분석 및 분류 &lt;b&gt;공개된 출처에서 얻은 정보(OSINT)&lt;/b&gt;를 통해 확인된 TTPs들만 개시되어 있고 지속적으로 업데이트를 함.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;고통 피라미드&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;426&quot; data-origin-height=&quot;274&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nvDoO/btsEnX5VvA1/kunaJX9ggqYhXTlKkn1bjk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nvDoO/btsEnX5VvA1/kunaJX9ggqYhXTlKkn1bjk/img.png&quot; data-alt=&quot;고통 피라미드 https://detect-respond.blogspot.com&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nvDoO/btsEnX5VvA1/kunaJX9ggqYhXTlKkn1bjk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnvDoO%2FbtsEnX5VvA1%2FkunaJX9ggqYhXTlKkn1bjk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;426&quot; height=&quot;274&quot; data-origin-width=&quot;426&quot; data-origin-height=&quot;274&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;고통 피라미드 https://detect-respond.blogspot.com&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;네트워크&amp;nbsp;아티팩트&amp;nbsp;:&amp;nbsp;네트워크에서&amp;nbsp;적대적인&amp;nbsp;활동으로&amp;nbsp;인해&amp;nbsp;발생하는&amp;nbsp;관찰&amp;nbsp;가능&amp;nbsp;항목입니다.&amp;nbsp;기술적으로&amp;nbsp;말하면,&amp;nbsp;적의&amp;nbsp;상호&amp;nbsp;작용의&amp;nbsp;결과로&amp;nbsp;네트워크를&amp;nbsp;통해&amp;nbsp;흐르는&amp;nbsp;모든&amp;nbsp;바이트는&amp;nbsp;아티팩트일&amp;nbsp;수&amp;nbsp;있지만&amp;nbsp;실제로&amp;nbsp;이는&amp;nbsp;합법적인&amp;nbsp;사용자의&amp;nbsp;활동과&amp;nbsp;악의적인&amp;nbsp;활동을&amp;nbsp;구별하는&amp;nbsp;경향이&amp;nbsp;있는&amp;nbsp;활동의&amp;nbsp;일부를&amp;nbsp;의미합니다.&amp;nbsp;일반적인&amp;nbsp;예로는&amp;nbsp;URI&amp;nbsp;패턴,&amp;nbsp;네트워크&amp;nbsp;프로토콜에&amp;nbsp;포함된&amp;nbsp;C2&amp;nbsp;정보,&amp;nbsp;고유한&amp;nbsp;HTTP&amp;nbsp;사용자&amp;nbsp;에이전트&amp;nbsp;또는&amp;nbsp;SMTP&amp;nbsp;메일러&amp;nbsp;값&amp;nbsp;등이&amp;nbsp;있습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;호스트&amp;nbsp;아티팩트(Host&amp;nbsp;Artifacts)&amp;nbsp;:&amp;nbsp;하나&amp;nbsp;이상의&amp;nbsp;호스트에서&amp;nbsp;적대적인&amp;nbsp;활동으로&amp;nbsp;인해&amp;nbsp;발생한&amp;nbsp;관찰&amp;nbsp;가능&amp;nbsp;항목입니다.&amp;nbsp;다시&amp;nbsp;한번,&amp;nbsp;우리는&amp;nbsp;악의적인&amp;nbsp;활동과&amp;nbsp;합법적인&amp;nbsp;활동을&amp;nbsp;구별하는&amp;nbsp;경향이&amp;nbsp;있는&amp;nbsp;사항에&amp;nbsp;중점을&amp;nbsp;둡니다.&amp;nbsp;이는&amp;nbsp;특정&amp;nbsp;맬웨어,&amp;nbsp;특정&amp;nbsp;위치에&amp;nbsp;삭제된&amp;nbsp;파일&amp;nbsp;또는&amp;nbsp;디렉터리의&amp;nbsp;특정&amp;nbsp;조각에&amp;nbsp;의해&amp;nbsp;생성되거나&amp;nbsp;특정&amp;nbsp;이름,&amp;nbsp;이름&amp;nbsp;또는&amp;nbsp;설명,&amp;nbsp;악성&amp;nbsp;서비스&amp;nbsp;또는&amp;nbsp;기타&amp;nbsp;특징적인&amp;nbsp;거의&amp;nbsp;모든&amp;nbsp;항목에&amp;nbsp;의해&amp;nbsp;생성된&amp;nbsp;것으로&amp;nbsp;알려진&amp;nbsp;레지스트리&amp;nbsp;키&amp;nbsp;또는&amp;nbsp;값일&amp;nbsp;수&amp;nbsp;있습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;도구&amp;nbsp;:&amp;nbsp;적이&amp;nbsp;임무를&amp;nbsp;완수하기&amp;nbsp;위해&amp;nbsp;사용하는&amp;nbsp;소프트웨어입니다.&amp;nbsp;대부분&amp;nbsp;이는&amp;nbsp;컴퓨터에&amp;nbsp;이미&amp;nbsp;설치되어&amp;nbsp;있는&amp;nbsp;소프트웨어나&amp;nbsp;명령이&amp;nbsp;아니라&amp;nbsp;함께&amp;nbsp;가져오는&amp;nbsp;것들입니다.&amp;nbsp;여기에는&amp;nbsp;스피어피싱을&amp;nbsp;위한&amp;nbsp;악성&amp;nbsp;문서를&amp;nbsp;생성하도록&amp;nbsp;설계된&amp;nbsp;유틸리티,&amp;nbsp;C2&amp;nbsp;또는&amp;nbsp;비밀번호&amp;nbsp;크래커를&amp;nbsp;구축하는&amp;nbsp;데&amp;nbsp;사용되는&amp;nbsp;백도어&amp;nbsp;또는&amp;nbsp;손상&amp;nbsp;후&amp;nbsp;사용하려는&amp;nbsp;기타&amp;nbsp;호스트&amp;nbsp;기반&amp;nbsp;유틸리티가&amp;nbsp;포함됩니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;전술,&amp;nbsp;기술&amp;nbsp;및&amp;nbsp;절차(TTP)&amp;nbsp;:&amp;nbsp;정찰부터&amp;nbsp;데이터&amp;nbsp;유출까지,&amp;nbsp;그리고&amp;nbsp;그&amp;nbsp;사이의&amp;nbsp;모든&amp;nbsp;단계에서&amp;nbsp;적이&amp;nbsp;임무를&amp;nbsp;완수하는&amp;nbsp;방법입니다.&amp;nbsp;&quot;스피어피싱&quot;은&amp;nbsp;네트워크에서&amp;nbsp;존재감을&amp;nbsp;확립하기&amp;nbsp;위한&amp;nbsp;일반적인&amp;nbsp;TTP입니다.&amp;nbsp;&quot;트로이&amp;nbsp;목마가&amp;nbsp;있는&amp;nbsp;PDF&amp;nbsp;파일을&amp;nbsp;사용한&amp;nbsp;스피어피싱&quot;&amp;nbsp;또는&amp;nbsp;&quot;ZIP으로&amp;nbsp;위장한&amp;nbsp;악성. SCR&amp;nbsp;파일에&amp;nbsp;대한&amp;nbsp;링크가&amp;nbsp;있는...&quot;이&amp;nbsp;보다&amp;nbsp;구체적인&amp;nbsp;버전입니다.&amp;nbsp;&quot;캐시 된&amp;nbsp;인증&amp;nbsp;자격&amp;nbsp;증명을&amp;nbsp;덤프하고&amp;nbsp;Pass-the-Hash&amp;nbsp;공격에서&amp;nbsp;재사용하는&amp;nbsp;것&quot;은&amp;nbsp;TTP입니다.&amp;nbsp;PDF를&amp;nbsp;무기화하거나&amp;nbsp;Pass-the-Hash를&amp;nbsp;구현하는&amp;nbsp;방법은&amp;nbsp;다양하므로&amp;nbsp;여기서는&amp;nbsp;특정&amp;nbsp;도구에&amp;nbsp;대해&amp;nbsp;이야기하지&amp;nbsp;않습니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;IOC와 TTPs&amp;nbsp;&lt;/h2&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;IOC (Indicator Of Compromise, 침해지표)&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;시스템이 악의적인 활동에 의해 침해되었을 가능성이 높음을 보여주는 운영체제 또는 네트워크 아티팩트&lt;/li&gt;
&lt;li&gt;IOC로 주로 사용되는 정보 : 해쉬값, 파일 이름 및 경로, C2도메인, IP어드레스, URI, 레지스트리 키, 서비스 이름/정보, 스케줄 된 태스크 정보 등&lt;/li&gt;
&lt;li&gt;특정 위협이나 공격이 발생했는지를 판단하기 위한 시그니처로 인식되고 활용되어 왔음&lt;/li&gt;
&lt;li&gt;알려진 위협의 특정 인스턴스를 탐지하는 데 효과적이지만 기존 IOC와 일치하지 않으면 찾기 힘듦&lt;/li&gt;
&lt;li&gt;일반적으로 바이러스 백신, IDS(침입 탐지 시스템), STEM(보안 정보 및 이벤트 관리) 플랫폼의 시그니처 기반 탐지에 사용됨&lt;/li&gt;
&lt;/ul&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;TTPs(Tactics, Techniques and Procedures)&lt;/h4&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;TTP는 위협 행위를 체계적으로 설명하기 위한 일종의 모델&lt;/li&gt;
&lt;li&gt;Tactics (전술)은 위협 행위의 목적을 나타냄&lt;/li&gt;
&lt;li&gt;Techniques (테크닉)은 위협 행위의 목적을 달성하기 위해 사용하는 테크닉을 의미함&lt;/li&gt;
&lt;li&gt;Procedures (프로시저)는 테크닉을 구현하기 위한 구체적인 절차와 방법을 의미함&lt;/li&gt;
&lt;li&gt;특정 IOC가 없는 경우에도 TTP를 기반으로 악성 징후를 포착해 대응할 수 있음&lt;/li&gt;
&lt;li&gt;EDR에서도 사용됨&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;차이점은 IOC는 알려진 위협과 관련된 특정 지표에 초점을 맞추는 반면, TTP 기반 탐지는 미리 정의된 지표가 없을 수 있는 위협을 포함하여 더 넓은 범위의 위협을 탐지하기 위해 공격자의 행동과 전술을 이해하는데 중점을 둔다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;캡처.PNG&quot; data-origin-width=&quot;1690&quot; data-origin-height=&quot;685&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b1VPTO/btsEuAbagD4/ekeItxQGOrRwD8ay1oGKo0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b1VPTO/btsEuAbagD4/ekeItxQGOrRwD8ay1oGKo0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b1VPTO/btsEuAbagD4/ekeItxQGOrRwD8ay1oGKo0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb1VPTO%2FbtsEuAbagD4%2FekeItxQGOrRwD8ay1oGKo0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1690&quot; height=&quot;685&quot; data-filename=&quot;캡처.PNG&quot; data-origin-width=&quot;1690&quot; data-origin-height=&quot;685&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1397&quot; data-origin-height=&quot;697&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/p3Ymv/btsEvfxC8K9/7BVl623O54Mbdqb7EsJKKK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/p3Ymv/btsEvfxC8K9/7BVl623O54Mbdqb7EsJKKK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/p3Ymv/btsEvfxC8K9/7BVl623O54Mbdqb7EsJKKK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fp3Ymv%2FbtsEvfxC8K9%2F7BVl623O54Mbdqb7EsJKKK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1397&quot; height=&quot;697&quot; data-origin-width=&quot;1397&quot; data-origin-height=&quot;697&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>MITRE</category>
      <category>마이트 어택</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/196</guid>
      <comments>https://cago-young.tistory.com/196#entry196comment</comments>
      <pubDate>Tue, 6 Feb 2024 19:15:47 +0900</pubDate>
    </item>
    <item>
      <title>재혼 관련 청첩장 사칭 피싱 사이트(23.01.28)</title>
      <link>https://cago-young.tistory.com/195</link>
      <description>&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;지인 관련 스미싱인 재혼 관련 청첩장 사칭 피싱 사이트입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문구는 지인 사칭으로 배포되고 있습니다. 지인 사칭 스미싱 문구는 결혼식, 돌잔치, 지인 행사, 부고 관련 메세지를 포함하여 보내고 있습니다. 해당 피싱 사이트는 재혼 관련 메세지를 사칭하여 스미싱 문구를 베포 합니다.&lt;br /&gt;해당 건은 기존 청첩장과 스미싱 형태나 악성앱 형태가 유사 합니다. 문구를 보면 결혼식에서 재혼 쪽으로 바뀐 것을 알 수 있습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모르는 번호로 전화가 왔을때는 항상 꼼꼼히 확인하시셔서 피해 없으시길 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_edited_KakaoTalk_20240129_071338907.jpg&quot; data-origin-width=&quot;633&quot; data-origin-height=&quot;812&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/OxaTl/btsD3GvEaOz/ysSR2VrJKFK7tg9YqJAH1K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/OxaTl/btsD3GvEaOz/ysSR2VrJKFK7tg9YqJAH1K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/OxaTl/btsD3GvEaOz/ysSR2VrJKFK7tg9YqJAH1K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FOxaTl%2FbtsD3GvEaOz%2FysSR2VrJKFK7tg9YqJAH1K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;287&quot; height=&quot;368&quot; data-filename=&quot;edited_edited_KakaoTalk_20240129_071338907.jpg&quot; data-origin-width=&quot;633&quot; data-origin-height=&quot;812&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;문구)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&quot;[Web발신] 저희 [재혼] 합니다 말도 많고 탈도 많은 저희 커플 우여곡절 끝에&lt;br /&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;함께 이겨내기로 했습니다.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모든이의 축복 속에 잘살겠습니다. &lt;br /&gt;참석하시어 축하해주세요 &lt;br /&gt;주소:http://URL&quot;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 접속후 클릭을 하게 되면 apk 파일이 다운하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;부고장 스미싱과 똑같이 문구에는 장소가 포함되지 않았기 때문에 피싱 페이지에서 열기 버튼을 누르면 확인할 수 있는 것처럼 접속한 사용자가 클릭하게 끔 유도하는 형태로 보입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;392&quot; data-origin-height=&quot;719&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cHXezM/btsD4kFTmt1/VyjXGTuPcl4nJbXHpKG3Ek/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cHXezM/btsD4kFTmt1/VyjXGTuPcl4nJbXHpKG3Ek/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cHXezM/btsD4kFTmt1/VyjXGTuPcl4nJbXHpKG3Ek/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcHXezM%2FbtsD4kFTmt1%2FVyjXGTuPcl4nJbXHpKG3Ek%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;392&quot; height=&quot;719&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;392&quot; data-origin-height=&quot;719&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HTML 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 페이지는 청첩장 이미지를 보여주고, 클릭 시&amp;nbsp; 악성앱을 다운로드 하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;752&quot; data-origin-height=&quot;329&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/vH0uH/btsD2GCYue5/mz6MefnlKoxfoxhSDKIVJk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/vH0uH/btsD2GCYue5/mz6MefnlKoxfoxhSDKIVJk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/vH0uH/btsD2GCYue5/mz6MefnlKoxfoxhSDKIVJk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FvH0uH%2FbtsD2GCYue5%2Fmz6MefnlKoxfoxhSDKIVJk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;752&quot; height=&quot;329&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;752&quot; data-origin-height=&quot;329&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;pre id=&quot;code_1706480113361&quot; class=&quot;javascript&quot; style=&quot;background-color: #f8f8f8; color: #383a42; text-align: start;&quot; data-ke-language=&quot;javascript&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;script&amp;gt;
        window.location = &quot;ynwtuu://?install&quot;;

        function downAlert() {
            if (window.confirm(&quot;결혼식장 장소와 시간을 보기위하여 확인을눌러주세요.&quot;)) {
                
                const newTab = window.open('', '_parent');
                const downloadLink = document.createElement('a');
                downloadLink.href = '/app'; 
               downloadLink.setAttribute('download', '모바일 결혼.apk');
                newTab.document.body.appendChild(downloadLink);
                downloadLink.click(); 
                window.location = &quot;ynwtuu://?install&quot;;
            } 
          

        }
        var $main = $('.preview-main');
        var css_obj = $main.data('css');
        $main.css('background-color', css_obj.backgroundColor);

        $('.J_prev').on('click', () =&amp;gt; {
            tabPage(1)
        });
        $('.J_next').on('click', () =&amp;gt; {
            tabPage(-1)
        });
        var wrapper = document.getElementById('wrapper');

        function tabPage(is_up) {
            wrapper.contentWindow.postMessage(is_up, '*');
        }
      

    &amp;lt;/script&amp;gt;&amp;lt;a href=&quot;https://go.appp.ooguy.com/app&quot; download=&quot;모바일 결혼.apk&quot;&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이미지를 클릭 하면 &quot;결혼식장 장소와 시간을 보기 위하여 확인을눌러주세요.&quot; 창이 뜨고, /app 페이지로 넘어가게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문자에 포함된 URL을 누르게되면 결혼식 초대장 피싱 사이트로 접속하게 되며, 페이지에 있는 이미지 클릭 시 특정 페이지로 넘어가게 되며, 최종적으로는 APK파일을 다운로드하게 됩니다. 해당 APK 파일은&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;악성 앱&lt;/span&gt;입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago 분석</category>
      <category>[Web발신] 저희 [재혼] 합니다 말도 많고 탈도 많은 저희 커플 우여곡절 끝에 함께 이겨내기로 했습니다. 모든이의 축복 속에 잘살겠습니다. 참석하시어 축하해주세요</category>
      <category>[재혼]</category>
      <category>말도 많고 탈도 많은 저희 커플 우여곡절 끝에</category>
      <category>모든이의 축복 속에 잘살겠습니다</category>
      <category>모르는 사람 청첩장</category>
      <category>보안</category>
      <category>스미싱</category>
      <category>청첩장</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/195</guid>
      <comments>https://cago-young.tistory.com/195#entry195comment</comments>
      <pubDate>Mon, 29 Jan 2024 07:29:39 +0900</pubDate>
    </item>
    <item>
      <title>카카오 계열사 사칭 피싱 사이트 (24.01.19)</title>
      <link>https://cago-young.tistory.com/194</link>
      <description>&lt;p style=&quot;background-color: #ffffff; color: #282828; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;해당 기사는 최근에 발생한 스미싱 공격에 대한 내용입니다. 메시지의 내용은 가짜&lt;b&gt; '카카오P'&lt;/b&gt;로부터 온 송금 안전성을 강조하며, 사용자에게 &lt;b&gt;링크 클릭을 유도&lt;/b&gt;하는 것으로 나타났습니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;color: #333333;&quot;&gt;'카카오P'라는 계열사는 &lt;b&gt;실제로 존재하지 않았습니다.&lt;/b&gt; 이 스미싱 문자는 주로 사용자를 현금으로 유인하여 개인 정보를 탈취하거나 피&lt;b&gt;싱 사이트로 유도하여 악성앱을 설치하는&lt;/b&gt; 전형적인 &lt;b&gt;스미싱 공격 방식을 사용&lt;/b&gt;하고 있습니다. 아래는 기사 원문입니다.&lt;/span&gt;&lt;/p&gt;
&lt;h3 style=&quot;background-color: #ffffff; color: #282828; text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt;[긴급] &amp;lsquo;5만원이 지급되었습니다&amp;rsquo; 카카오 계열사 사칭 스미싱 주의보&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=125913&amp;amp;page=1&amp;amp;kind=1&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.boannews.com/media/view.asp?idx=125913&amp;amp;page=1&amp;amp;kind=1&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1705815425215&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;[긴급] &amp;lsquo;5만원이 지급되었습니다&amp;rsquo; 카카오 계열사 사칭 스미싱 주의보&quot; data-og-description=&quot;&amp;lsquo;친구님이 카카오P에서 5만원을 송금했습니다. 안전한 송금입니다. 친구에게 송금여부를 직접 확인해보세요.&amp;rsquo; 19일 카카오 계열사를 사칭한 &amp;lsquo;카카오P&amp;rsquo;로부터 온 문자 메시지 내용이다. 내용&quot; data-og-host=&quot;www.boannews.com&quot; data-og-source-url=&quot;https://www.boannews.com/media/view.asp?idx=125913&amp;amp;page=1&amp;amp;kind=1&quot; data-og-url=&quot;http://www.boannews.com/media/view.asp?idx=125913&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bjaUdK/hyU5HZpVCi/BHZcXSsr6fAHxAgzeZoDe0/img.jpg?width=531&amp;amp;height=1074&amp;amp;face=0_0_531_1074&quot;&gt;&lt;a href=&quot;https://www.boannews.com/media/view.asp?idx=125913&amp;amp;page=1&amp;amp;kind=1&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.boannews.com/media/view.asp?idx=125913&amp;amp;page=1&amp;amp;kind=1&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bjaUdK/hyU5HZpVCi/BHZcXSsr6fAHxAgzeZoDe0/img.jpg?width=531&amp;amp;height=1074&amp;amp;face=0_0_531_1074');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;[긴급] &amp;lsquo;5만원이 지급되었습니다&amp;rsquo; 카카오 계열사 사칭 스미싱 주의보&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;&amp;lsquo;친구님이 카카오P에서 5만원을 송금했습니다. 안전한 송금입니다. 친구에게 송금여부를 직접 확인해보세요.&amp;rsquo; 19일 카카오 계열사를 사칭한 &amp;lsquo;카카오P&amp;rsquo;로부터 온 문자 메시지 내용이다. 내용&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.boannews.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 스미싱은 '카카오픽'이라는 &lt;b&gt;존재 하지 않는&lt;/b&gt; 카카오계열사를 사칭하여 카카오계열사에서 &lt;b&gt;진행하는 이벤트인 것처럼 속여&lt;/b&gt; &lt;b&gt;송금한 금액&lt;/b&gt;을 안전하게 받으려면 &lt;b&gt;링크를 누르게 끔&lt;/b&gt; 문자 문구를 작성한 &lt;b&gt;스미싱 문구&lt;/b&gt;를 배포하여 피싱 사이트로 &lt;b&gt;접속 유도&lt;/b&gt;하는 형태입니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;스미싱 문구&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;5만원이 지급되었습니다.&lt;br /&gt;[Web발신]&lt;br /&gt;친구님이 카카오P에서 &quot;xxxxx&quot;님께 5만원을 송금 했습니다&lt;br /&gt;&lt;br /&gt;안전한 송금 입니다 친구에게 송금여부를 직접 확인 해보세요&lt;br /&gt;●금액:50,000원&lt;br /&gt;●기한:2024-01-20 23:59:59까지&lt;br /&gt;&lt;br /&gt;아래 링크를 통해 송금을 받아주세요.&lt;br /&gt;https://xgo.kr/5KL&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;-----------&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이 메시지는 카카오P 클릭참여를 통해 지원되는 이벤트로 발송되었으며, 메시지를 받은 전화번호로만 금액을 수령할 수 있습니다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;문구.PNG&quot; data-origin-width=&quot;300&quot; data-origin-height=&quot;650&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/obzY1/btsDKNnz0i1/oiBMuKetg1NByEXuJ73mJ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/obzY1/btsDKNnz0i1/oiBMuKetg1NByEXuJ73mJ1/img.png&quot; data-alt=&quot;출처: 보안뉴스&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/obzY1/btsDKNnz0i1/oiBMuKetg1NByEXuJ73mJ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FobzY1%2FbtsDKNnz0i1%2FoiBMuKetg1NByEXuJ73mJ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;300&quot; height=&quot;650&quot; data-filename=&quot;문구.PNG&quot; data-origin-width=&quot;300&quot; data-origin-height=&quot;650&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;출처: 보안뉴스&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;※ 아무리 이벤트라고 해도 앱 다운의 정상 배포방식은 애플스토어, 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;피싱 사이트 접속 화면&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;492&quot; data-origin-height=&quot;929&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b0jdou/btsDJCtlPSI/p9kXHEsKrUiyViQodyFiQ0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b0jdou/btsDJCtlPSI/p9kXHEsKrUiyViQodyFiQ0/img.png&quot; data-alt=&quot;카카오P 사칭 피싱 사이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b0jdou/btsDJCtlPSI/p9kXHEsKrUiyViQodyFiQ0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb0jdou%2FbtsDJCtlPSI%2Fp9kXHEsKrUiyViQodyFiQ0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;492&quot; height=&quot;929&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;492&quot; data-origin-height=&quot;929&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;카카오P 사칭 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;스미싱 문자에 포함된 URL 주소로 접속하게 되면 &lt;b&gt;'카카오 픽'&lt;/b&gt;이라는 이름과 함께 &lt;b&gt;이벤트 페이지&lt;/b&gt;로 보이는 곳으로 접속하게 됩니다. 해당 페이지는 이벤트를 참여하려면 아래에 있는 '참여하러 가기'라는 &lt;b&gt;버튼을 클릭하게&lt;/b&gt; 유도합니다. 해당 버튼을 클릭하게 되면 &lt;b&gt;APK파일을 다운로드&lt;/b&gt;하게 됩니다. 다운로드한 &lt;b&gt;&lt;span style=&quot;color: #ef5369;&quot;&gt;APK파일은&lt;/span&gt; 악성앱&lt;/b&gt;입니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;VirusTotal&amp;nbsp;탐지&amp;nbsp;결과&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;AhnLab-V3&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ee2323;&quot;&gt;PUP/Android.Malct.1190475&lt;/span&gt; &lt;br /&gt;Alibaba&amp;nbsp;:&amp;nbsp;TrojanBanker:Android/SoumniBot.22cbcb3d &lt;br /&gt;Avast-Mobile&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Android:Evo-gen&amp;nbsp;[Trj]&lt;/span&gt; &lt;br /&gt;Avira&amp;nbsp;(no&amp;nbsp;cloud)&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;ANDROID/AVE.Evo.mlzim&lt;/span&gt; &lt;br /&gt;BitDefenderFalx&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Android.Trojan.Agent.gQNSO&lt;/span&gt; &lt;br /&gt;Cynet&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Malicious&amp;nbsp;(score:&amp;nbsp;99)&lt;/span&gt; &lt;br /&gt;ESET-NOD32&amp;nbsp;:&lt;span style=&quot;color: #ef5369;&quot;&gt;&amp;nbsp;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/Spy.Agent.DBB&lt;/span&gt; &lt;br /&gt;Google&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Detected&lt;/span&gt; &lt;br /&gt;Ikarus&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Trojan-Spy.AndroidOS.Agent&lt;/span&gt; &lt;br /&gt;K7GW&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Spyware&amp;nbsp;(&amp;nbsp;005af3231&amp;nbsp;)&lt;/span&gt; &lt;br /&gt;Kaspersky&amp;nbsp;:&amp;nbsp;&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;HEUR:Trojan-Banker.AndroidOS.SoumniBot.c&lt;/span&gt; &lt;br /&gt;McAfee&amp;nbsp;:&amp;nbsp;Artemis!0CC882453FE7 &lt;br /&gt;Skyhigh&amp;nbsp;(SWG)&amp;nbsp;:&amp;nbsp;Artemis!Trojan &lt;br /&gt;Symantec&amp;nbsp;:&lt;span style=&quot;color: #ef5369;&quot;&gt;&amp;nbsp;Trojan.Gen.MBT&lt;/span&gt; &lt;br /&gt;Symantec&amp;nbsp;Mobile&amp;nbsp;Insight&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;AdLibrary:Generisk&lt;/span&gt; &lt;br /&gt;Tencent&amp;nbsp;:&lt;span style=&quot;color: #ef5369;&quot;&gt;&amp;nbsp;Android.Trojan-Banker.Soumnibot.Kqil&lt;/span&gt; &lt;br /&gt;Trustlook&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Android.Malware.Spyware&lt;/span&gt; &lt;br /&gt;WithSecure&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;Malware.ANDROID/AVE.Evo.mlzim&lt;/span&gt; &lt;br /&gt;ZoneAlarm&amp;nbsp;by&amp;nbsp;Check&amp;nbsp;Point&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ef5369;&quot;&gt;HEUR:Trojan-Banker.AndroidOS.SoumniBot.c&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;요새&amp;nbsp;피싱&amp;nbsp;사이트를&amp;nbsp;잘&amp;nbsp;만들기&amp;nbsp;때문에&amp;nbsp;항상&amp;nbsp;SNS&amp;nbsp;나&amp;nbsp;SMS&amp;nbsp;등&amp;nbsp;문구를&amp;nbsp;잘&amp;nbsp;확인하시고,&amp;nbsp;개인정보&amp;nbsp;입력&amp;nbsp;요구&amp;nbsp;시에는&amp;nbsp;항상&amp;nbsp;한&amp;nbsp;번&amp;nbsp;더&amp;nbsp;생각하고,&amp;nbsp;정상&amp;nbsp;사이트인지&amp;nbsp;확인하시기&amp;nbsp;바랍니다.&amp;nbsp; &lt;br /&gt;검색&amp;nbsp;사이트에서&amp;nbsp;해당&amp;nbsp;회사나&amp;nbsp;기관들을&amp;nbsp;검색하시고,&amp;nbsp;검색&amp;nbsp;결과&amp;nbsp;대부분은&amp;nbsp;상위&amp;nbsp;페이지에&amp;nbsp;노출됩니다.&amp;nbsp; &lt;br /&gt;전화번호만&amp;nbsp;있는&amp;nbsp;경우&amp;nbsp;전화했을&amp;nbsp;때&amp;nbsp;앱&amp;nbsp;설치하라고&amp;nbsp;링크를&amp;nbsp;보내주는&amp;nbsp;건&amp;nbsp;거르시고&amp;nbsp;직접&amp;nbsp;앱&amp;nbsp;스토어에&amp;nbsp;들어가서&amp;nbsp;설치하시기&amp;nbsp;바랍니다.&amp;nbsp;&amp;nbsp;항상&amp;nbsp;앱&amp;nbsp;설치&amp;nbsp;하실&amp;nbsp;때는&amp;nbsp;신뢰&amp;nbsp;가능한&amp;nbsp;원스토어나&amp;nbsp;플레이스토어&amp;nbsp;등을&amp;nbsp;이용하시는&amp;nbsp;게&amp;nbsp;좋습니다. &lt;br /&gt;신고는&amp;nbsp;기존에&amp;nbsp;신고는&amp;nbsp;경찰청,&amp;nbsp;금감원,&amp;nbsp;KISA에&amp;nbsp;따로&amp;nbsp;신고하고&amp;nbsp;절차가&amp;nbsp;복잡했는데&amp;nbsp;이번에&amp;nbsp;경찰과&amp;nbsp;금융감독원,&amp;nbsp;한국인터넷진흥원(KISA),&amp;nbsp;방송통신위원회,&amp;nbsp;통신&amp;nbsp;3사&amp;nbsp;직원&amp;nbsp;등이&amp;nbsp;합처서&amp;nbsp;운영되는&amp;nbsp;&lt;b&gt;통합신고대응센터(112)&lt;/b&gt;로&amp;nbsp;신고&amp;nbsp;가능&amp;nbsp;하니&amp;nbsp;참고&amp;nbsp;하시면&amp;nbsp;좋습니다. &lt;br /&gt;&amp;nbsp;통합신고대응센터는&amp;nbsp;&lt;b&gt;보이스피싱&amp;nbsp;피해&amp;nbsp;신고&amp;nbsp;창구&lt;/b&gt;를&amp;nbsp;&lt;b&gt;112로&amp;nbsp;통합해&lt;/b&gt;&amp;nbsp;&lt;b&gt;사건&amp;nbsp;접수뿐&amp;nbsp;아니라&amp;nbsp;악성&amp;nbsp;앱&amp;nbsp;등&amp;nbsp;범행수단&amp;nbsp;차단,&amp;nbsp;피해구제&amp;nbsp;및&amp;nbsp;지급정지와&amp;nbsp;추가예방&amp;nbsp;등&lt;/b&gt;을&amp;nbsp;한&amp;nbsp;번에&amp;nbsp;처리할&amp;nbsp;수&amp;nbsp;있게&amp;nbsp;했다.&amp;nbsp;피해가&amp;nbsp;없거나&amp;nbsp;단순&amp;nbsp;상담건인&amp;nbsp;경우에는&amp;nbsp;피해구제&amp;nbsp;방법을&amp;nbsp;안내하고&amp;nbsp;추가&amp;nbsp;예방&amp;nbsp;방법&amp;nbsp;등을&amp;nbsp;알려줍니다.&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>000원 ●기한:2024-01-20 23:59:59까지 아래 링크를 통해 송금을 받아주세요.</category>
      <category>5만원이 지급되었습니다.</category>
      <category>5만원이 지급되었습니다. [Web발신] 친구님이 카카오P에서 &amp;quot;xxxxx&amp;quot;님께 5만원을 송금 했습니다 안전한 송금 입니다 친구에게 송금여부를 직접 확인 해보세요 ●금액:50</category>
      <category>cago</category>
      <category>스미싱</category>
      <category>스팸</category>
      <category>안전한 송금</category>
      <category>친구에게 송금 여부를 직접</category>
      <category>카카오 이벤트</category>
      <category>카카오P</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/194</guid>
      <comments>https://cago-young.tistory.com/194#entry194comment</comments>
      <pubDate>Sun, 21 Jan 2024 15:18:15 +0900</pubDate>
    </item>
    <item>
      <title>단축 URL 리다이렉트 확인</title>
      <link>https://cago-young.tistory.com/193</link>
      <description>&lt;h3 data-ke-size=&quot;size23&quot;&gt;개요&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;업무중에 단축 URL 이나 URL을 많이 봐야 하는데, 사람이 일일이 보는게 너무 힘들다고 느껴져서 만들어 볼까 하고 시작함. 단축 기준 접속시 최종으로 접속되는 URL이 필요하고, 해당 URL에 도메인, 접속 되는지에 대한 상태코드 정도 필요 하다 싶어서 해당 기준으로 잡고 시작함.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;ShortURL_Redirect&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;비번 : cago&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;fileblock&quot; data-ke-align=&quot;alignCenter&quot;&gt;&lt;a href=&quot;https://blog.kakaocdn.net/dn/cBq5Cr/btsD6v0VgZj/B0IWKeJJMj39cIq7ReDav1/ShortURL_Redirect.zip?attach=1&amp;amp;knm=tfile.zip&quot; class=&quot;&quot;&gt;
    &lt;div class=&quot;image&quot;&gt;&lt;/div&gt;
    &lt;div class=&quot;desc&quot;&gt;&lt;div class=&quot;filename&quot;&gt;&lt;span class=&quot;name&quot;&gt;ShortURL_Redirect.zip&lt;/span&gt;&lt;/div&gt;
&lt;div class=&quot;size&quot;&gt;7.03MB&lt;/div&gt;
&lt;/div&gt;
  &lt;/a&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;입력값은 txt 파일로 받아 출력 값으로는 입력 URL, 리다이렉트 URL, 리다이렉트 도메인, 리다이렉트 도메인 상태코드&lt;br /&gt;리다이렉트 도메인 값은 입력 URL 과 리다이렉트 URL이 다를때만 나오게 된다.&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;실행 순서&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;1. input.txt 에 확인 할 URL 넣는다&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;458&quot; data-origin-height=&quot;199&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Ioxv6/btsDDa38tBf/pGM08AyTILKMls3wCA3Qf0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Ioxv6/btsDDa38tBf/pGM08AyTILKMls3wCA3Qf0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Ioxv6/btsDDa38tBf/pGM08AyTILKMls3wCA3Qf0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FIoxv6%2FbtsDDa38tBf%2FpGM08AyTILKMls3wCA3Qf0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;458&quot; height=&quot;199&quot; data-origin-width=&quot;458&quot; data-origin-height=&quot;199&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;2. ShortURL_Redirect_flow.exe 실행&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;439&quot; data-origin-height=&quot;104&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cZSM31/btsDyP8h477/OHbWfeFK6VBbIftkNKkBm0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cZSM31/btsDyP8h477/OHbWfeFK6VBbIftkNKkBm0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cZSM31/btsDyP8h477/OHbWfeFK6VBbIftkNKkBm0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcZSM31%2FbtsDyP8h477%2FOHbWfeFK6VBbIftkNKkBm0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;439&quot; height=&quot;104&quot; data-origin-width=&quot;439&quot; data-origin-height=&quot;104&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;3. CSV 파일 떨어지면&amp;nbsp; 확인&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;163&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bSkIwM/btsDA9dUlA2/Y5iVKH2bM9lXbRoJLUswCk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bSkIwM/btsDA9dUlA2/Y5iVKH2bM9lXbRoJLUswCk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bSkIwM/btsDA9dUlA2/Y5iVKH2bM9lXbRoJLUswCk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbSkIwM%2FbtsDA9dUlA2%2FY5iVKH2bM9lXbRoJLUswCk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;805&quot; height=&quot;163&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;163&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2024/01/18 병렬처리 방식으로 바꿈&lt;br /&gt;2024/01/19 테스트 500개 돌리면 메모리 99MB 정도 사용 쓰레드 수 2~3배정도 늘려도 될꺼 같음. 회사에서 동작안됨....&lt;br /&gt;2024/01/21 회사에서 동작안되는거는 쓰레드가 멈춤 현상이 있음&lt;br /&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;2024/01/22 retrun 말고 raise 이용하니 쓰레드 멈추는거 해결 하긴함. 하지만 접속은 되는데 HTTPConnectionPool 에러 뜨는 현상 발견..&lt;/span&gt;&lt;/p&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1705648099307&quot; class=&quot;python&quot; data-ke-language=&quot;python&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;#-*- coding: utf-8 -*-
import requests
import csv
import time
import threading
from concurrent.futures import ThreadPoolExecutor
import concurrent.futures 

headers = {
    'User-Agent': 'Mozilla/5.0 (Linux; Android 4.4.2; Nexus 4 Build/KOT49H) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.114 Mobile Safari/537.36'}
def get_final_redirected_url(url):
    url_in = url
    try:
        with requests.Session() as session:
            session.headers.update(headers)
            response = session.get(url, allow_redirects=False, verify=False, timeout=10)
        # 최종 리다이렉트된 URL 가져오기
            while response.headers.get('Location'):
                if(&quot;.&quot; in response.headers.get('Location')):
                    url = response.headers['Location']
                    response = session.get(url, allow_redirects=False,verify=False, timeout=10, )
            
                else: return url
            return url
    except requests.exceptions.Timeout as errc:
        domain_c = domain_cutting(url_in, url)
        if(&quot;wsgadd.kt.com&quot;) in url:
            state_code = &quot;KT 스미싱&quot;            
            Csv_Writer(url_in, url, domain_c, state_code)
            raise
        
        Csv_Writer(url_in, url, domain_c, &quot;확인&quot;)
        raise

    except requests.RequestException as e:
        return url



def domain_cutting(final_redirected_url:str, original_url:str):
    final_redirected_url = final_redirected_url.replace('https://', '').replace('http://', '')
    original_url = original_url.replace('https://', '').replace('http://', '')

    final_redirected_url2 = final_redirected_url.split('/') 
    original_url2 = original_url.split('/')    
    
    if(final_redirected_url2[0] == original_url2[0]):
        return None
    else:
        final_domain_url = final_redirected_url2[0]

        return final_domain_url

def check_status_code(final_redirected_url):
    try:
        with requests.Session() as session:
            session.headers.update(headers)
            response = session.get(final_redirected_url)
            response.raise_for_status()  # 이 부분에서 상태 코드를 체크하여 에러가 있으면 예외 발생
            return response.status_code
        
    except requests.exceptions.HTTPError as errh:
        return(&quot;HTTP error&quot;)
    except requests.exceptions.ConnectionError as errc:
        return(&quot;error Connecting&quot;)
    except requests.exceptions.Timeout as errt:
        return(&quot;Timeout error:&quot;)
    except requests.exceptions.RequestException as err:
        return (&quot;Request error&quot;)

def Csv_Writer(original_url, final_redirected_url, final_domain, final_status_code):
    with csv_lock:
        with open(output_filename, 'a', newline='') as outfile:
            csv_writer = csv.writer(outfile)
            csv_writer.writerow([original_url, final_redirected_url, final_domain, final_status_code])

def process_url(original_url:str):

    if &quot;https://&quot; in original_url:
        pass
    else:
        original_url = original_url.replace(&quot;http://&quot;, &quot;https://&quot;)
    try:
        final_redirected_url = get_final_redirected_url(original_url)
        final_status_code = check_status_code(final_redirected_url)
        final_domain = domain_cutting(final_redirected_url, original_url)
        Csv_Writer(original_url, final_redirected_url, final_domain, final_status_code)

    except Exception as e:
        Csv_Writer(original_url, url, final_domain, final_status_code)
        print(f&quot;An error occurred for URL {original_url}: {e}&quot;)
        raise


if __name__ == &quot;__main__&quot;:
    input_filename = &quot;input.txt&quot;  # 입력 파일명을 적절히 수정
    output_filename = &quot;output.csv&quot;  # 출력 파일명을 적절히 수정
    csv_lock = threading.Lock()
    count_time = time.time()



    with open(output_filename, 'w', newline='',encoding=&quot;utf-8&quot;) as outfile:
        csv_writer = csv.writer(outfile)
        csv_writer.writerow(['Original URL', 'Final Redirected URL', 'Final_domain', 'Fianl_status_code'])  # CSV 헤더 작성
        
         # 세션 객체 생성 및 헤더 설정

        with open(input_filename, 'r', encoding=&quot;utf-8&quot;) as infile, ThreadPoolExecutor(max_workers=200) as executor:
            futures = {executor.submit(process_url, line.strip()): line for line in infile} 

        for future in concurrent.futures.as_completed(futures):
            try:
                url = futures[future]
                future.result()
              
            except Exception as e:
                print(f&quot;An error occurred for URL {url}: {e}&quot;)
        
        print(time.time() - count_time)
           
    print(f&quot;Processing completed. Output saved to {output_filename}&quot;)&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;</description>
      <category>Basic/Python</category>
      <category>단축 URL 리다이렉트 확인</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/193</guid>
      <comments>https://cago-young.tistory.com/193#entry193comment</comments>
      <pubDate>Wed, 17 Jan 2024 17:49:07 +0900</pubDate>
    </item>
    <item>
      <title>LockBit 랜섬웨어 3.0</title>
      <link>https://cago-young.tistory.com/190</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;최근 공격 받은 암센터 관련 뉴스&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&quot;&gt;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704006149681&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;Seattle cancer center confirms cyberattack after ransomware gang threats&quot; data-og-description=&quot;A cybercrime group has listed the Fred Hutchinson Cancer Center on its data leak site. Local news reports said individual patients were being extorted.&quot; data-og-host=&quot;therecord.media&quot; data-og-source-url=&quot;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&quot; data-og-url=&quot;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/0cRuh/hyUXXzqS0i/je3jUjWEczJTVnWz7KNXz0/img.jpg?width=1085&amp;amp;height=630&amp;amp;face=0_0_1085_630,https://scrap.kakaocdn.net/dn/bfv5nZ/hyUTDbzYgn/hUxfbDyjjcihK1CUw0RmyK/img.jpg?width=1085&amp;amp;height=630&amp;amp;face=0_0_1085_630&quot;&gt;&lt;a href=&quot;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://therecord.media/seattle-fred-hutch-cancer-center-ransomware-attack&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/0cRuh/hyUXXzqS0i/je3jUjWEczJTVnWz7KNXz0/img.jpg?width=1085&amp;amp;height=630&amp;amp;face=0_0_1085_630,https://scrap.kakaocdn.net/dn/bfv5nZ/hyUTDbzYgn/hUxfbDyjjcihK1CUw0RmyK/img.jpg?width=1085&amp;amp;height=630&amp;amp;face=0_0_1085_630');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;Seattle cancer center confirms cyberattack after ransomware gang threats&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;A cybercrime group has listed the Fred Hutchinson Cancer Center on its data leak site. Local news reports said individual patients were being extorted.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;therecord.media&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;779&quot; data-origin-height=&quot;481&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bKROL3/btsCTWeUj2L/aftvw31IqPmOuWA25vWhW1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bKROL3/btsCTWeUj2L/aftvw31IqPmOuWA25vWhW1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bKROL3/btsCTWeUj2L/aftvw31IqPmOuWA25vWhW1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbKROL3%2FbtsCTWeUj2L%2Faftvw31IqPmOuWA25vWhW1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;779&quot; height=&quot;481&quot; data-origin-width=&quot;779&quot; data-origin-height=&quot;481&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 소개&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;LockBit은 악명 높은 랜섬웨어 스트레인 중 하나로, 기업 및 기관을 주요 타깃으로 하는 고급 악성 소프트웨어입니다. 최근에 병원을 공격을 했었습니다. 랜섬웨어는 기기의 파일을 암호화하고 해독키를 제공하기 위해 대상에게 금전을 요구합니다. 그리고 이 요구에 따르지 않으면 피해자의 데이터를 영구적으로 손상시키거나 공개할 위협을 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. 동작 방식&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;LockBit은 일반적으로 악성 이메일(스피어 피싱), 피싱 링크, 또는 악성 다운로더와 같은 각종 사회 공학 기술을 사용하여 기기에 침투합니다. 한 번 기기에 침투하면 시스템의 중요한 파일을 암호화하고, 그 후에 피해자에게 암호 해독을 위한 해독키와 금액을 지불하도록 요구합니다. &lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. 특징&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;자동화된 프로세스: LockBit은 자동화된 프로세스를 통해 기업 네트워크를 탐색하고 효율적으로 파일을 암호화합니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;빠른&amp;nbsp;암호화:&amp;nbsp;랜섬웨어가&amp;nbsp;기기에&amp;nbsp;침투하면&amp;nbsp;빠르게&amp;nbsp;파일을&amp;nbsp;암호화하며&amp;nbsp;금액을&amp;nbsp;요구합니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이중&amp;nbsp;위협:&amp;nbsp;LockBit은&amp;nbsp;데이터를&amp;nbsp;암호화하는&amp;nbsp;것&amp;nbsp;외에도&amp;nbsp;압축된&amp;nbsp;형태로&amp;nbsp;백업을&amp;nbsp;만들어&amp;nbsp;데이터를&amp;nbsp;보호하지&amp;nbsp;못하게&amp;nbsp;합니다.&amp;nbsp;이는&amp;nbsp;데이터&amp;nbsp;손실&amp;nbsp;위협을&amp;nbsp;증가시킵니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;금전&amp;nbsp;요구:&amp;nbsp;해독키를&amp;nbsp;얻기&amp;nbsp;위해&amp;nbsp;피해자에게&amp;nbsp;일정&amp;nbsp;금액의&amp;nbsp;비트코인&amp;nbsp;또는&amp;nbsp;기타&amp;nbsp;암호화폐를&amp;nbsp;요구합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;행위 : NSIS 스크립트, 코드난독화 해제, 안티 디버깅, 관리자 권환 획득, 권한 상승, 암호화 옵셥 지정, 암호화 확장자 생성, 아이콘변경, 배경화면 변경, 랜섬노트 생성등&lt;/span&gt;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4. 예방 및 대응&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;보안 업데이트: 시스템 및 소프트웨어를 최신 상태로 유지하고 보안 업데이트를 시행하여 새로운 취약점으로부터 보호합니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;백업:&amp;nbsp;주기적으로&amp;nbsp;중요한&amp;nbsp;데이터를&amp;nbsp;안전한&amp;nbsp;위치에&amp;nbsp;백업하고,&amp;nbsp;백업&amp;nbsp;데이터의&amp;nbsp;무결성을&amp;nbsp;확인합니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자&amp;nbsp;교육:&amp;nbsp;피싱&amp;nbsp;공격&amp;nbsp;및&amp;nbsp;악성&amp;nbsp;링크를&amp;nbsp;인식하는&amp;nbsp;교육을&amp;nbsp;받은&amp;nbsp;사용자는&amp;nbsp;랜섬웨어에&amp;nbsp;노출될&amp;nbsp;위험이&amp;nbsp;줄어듭니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;보안&amp;nbsp;소프트웨어:&amp;nbsp;강력한&amp;nbsp;안티바이러스&amp;nbsp;및&amp;nbsp;악성&amp;nbsp;코드&amp;nbsp;방지&amp;nbsp;소프트웨어를&amp;nbsp;사용하여&amp;nbsp;기기를&amp;nbsp;보호합니다. &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;LockBit과&amp;nbsp;같은&amp;nbsp;랜섬웨어에&amp;nbsp;대한&amp;nbsp;예방은&amp;nbsp;항상&amp;nbsp;중요하며,&amp;nbsp;효과적인&amp;nbsp;백업&amp;nbsp;및&amp;nbsp;보안&amp;nbsp;정책을&amp;nbsp;구현하여&amp;nbsp;기업&amp;nbsp;및&amp;nbsp;기기를&amp;nbsp;보호하는&amp;nbsp;것이&amp;nbsp;필요합니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;lockbit 랜섬웨어 3.0 보고서 참고 및 랜섬웨어 암호기능 분석 보고서&amp;nbsp;&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.somansa.com/security-report/security-note/lockbit30_202212/&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.somansa.com/security-report/security-note/lockbit30_202212/&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704005825826&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;개인정보보호 1위기업 소만사&quot; data-og-description=&quot;내부정보유출방지(DLP), 개인정보유출방지, DB접근제어, 유해사이트 차단 솔루션 기업&quot; data-og-host=&quot;www.somansa.com&quot; data-og-source-url=&quot;https://www.somansa.com/security-report/security-note/lockbit30_202212/&quot; data-og-url=&quot;https://www.somansa.com&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/dJ8pgT/hyUTBdLluR/k97TZsI9yfQbkz8hlsCBP0/img.png?width=512&amp;amp;height=512&amp;amp;face=0_0_512_512,https://scrap.kakaocdn.net/dn/bzj1q6/hyUTJbMosj/AeZ3mAsx2PfxQH3uCQ0D41/img.jpg?width=2560&amp;amp;height=1707&amp;amp;face=0_0_2560_1707,https://scrap.kakaocdn.net/dn/bXBZl6/hyUXQ79czO/LwHyXw175Votkhrg3IXwG1/img.jpg?width=2340&amp;amp;height=1560&amp;amp;face=0_0_2340_1560&quot;&gt;&lt;a href=&quot;https://www.somansa.com/security-report/security-note/lockbit30_202212/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.somansa.com/security-report/security-note/lockbit30_202212/&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/dJ8pgT/hyUTBdLluR/k97TZsI9yfQbkz8hlsCBP0/img.png?width=512&amp;amp;height=512&amp;amp;face=0_0_512_512,https://scrap.kakaocdn.net/dn/bzj1q6/hyUTJbMosj/AeZ3mAsx2PfxQH3uCQ0D41/img.jpg?width=2560&amp;amp;height=1707&amp;amp;face=0_0_2560_1707,https://scrap.kakaocdn.net/dn/bXBZl6/hyUXQ79czO/LwHyXw175Votkhrg3IXwG1/img.jpg?width=2340&amp;amp;height=1560&amp;amp;face=0_0_2340_1560');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;개인정보보호 1위기업 소만사&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;내부정보유출방지(DLP), 개인정보유출방지, DB접근제어, 유해사이트 차단 솔루션 기업&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.somansa.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704005616219&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;KISA 암호이용활성화  - 암호 역기능 대응 - 자료실&quot; data-og-description=&quot;한국인터넷진흥원(KISA)에서는 LockBit 3.0 랜섬웨어 암호기능 분석 보고서를 배포하고 있습니다. 내용 : 랜섬웨어 실행과정 및 암호화 과정, 복구 가능성 등 다음글 2023-12-21 이전글 2023-12-22&quot; data-og-host=&quot;seed.kisa.or.kr&quot; data-og-source-url=&quot;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&quot; data-og-url=&quot;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://seed.kisa.or.kr/kisa/Board/167/detailView.do&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;KISA 암호이용활성화 - 암호 역기능 대응 - 자료실&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;한국인터넷진흥원(KISA)에서는 LockBit 3.0 랜섬웨어 암호기능 분석 보고서를 배포하고 있습니다. 내용 : 랜섬웨어 실행과정 및 암호화 과정, 복구 가능성 등 다음글 2023-12-21 이전글 2023-12-22&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;seed.kisa.or.kr&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>lockbit 랜섬웨어</category>
      <category>보안</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/190</guid>
      <comments>https://cago-young.tistory.com/190#entry190comment</comments>
      <pubDate>Sun, 31 Dec 2023 16:03:13 +0900</pubDate>
    </item>
    <item>
      <title>자주 사용 하는 adb 명령어</title>
      <link>https://cago-young.tistory.com/189</link>
      <description>&lt;h2 data-ke-size=&quot;size26&quot;&gt;Android 디버그 브릿지&lt;/h2&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;기기와 통신할 수 있도록 지원하는 다목적 명령줄 도구입니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;작동 방식은 adb 클라이언트를 시작하면 클라이언트는 먼저 이미 실행 중인 adb 서버 프로세스가 있는지 확인합니다. 없으면 서버 프로세스를 시작합니다. 서버가 시작되면 로컬 TCP 포트 5037에 바인딩되고 adb 클라이언트에서 전송된 명령어를 받습니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;애뮬레이터는 한쌍의 포트를 사용하는데, 하나는 콘솔 연결용, adb 연결용 포트로 사용합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;애뮬레이터 1, 콘솔 : 5554&lt;br /&gt;애뮬레이터 1, adb :&amp;nbsp; 5555&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;자주 사용 하는 명령어&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;adb devices [ -l ] : 연결된 기기목록의 상태를 보여줍니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&amp;nbsp;-ㅣ 옵션은 기기 무엇인지 알려줍니다&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignLeft&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;630&quot; data-origin-height=&quot;155&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kKDZg/btsB6O9q6v4/jKHKlKBC3vKl07dokBEzWK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kKDZg/btsB6O9q6v4/jKHKlKBC3vKl07dokBEzWK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kKDZg/btsB6O9q6v4/jKHKlKBC3vKl07dokBEzWK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkKDZg%2FbtsB6O9q6v4%2FjKHKlKBC3vKl07dokBEzWK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;630&quot; height=&quot;155&quot; data-origin-width=&quot;630&quot; data-origin-height=&quot;155&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb kill-server : adb 서버 종료&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb start-server : adb 서버 실행&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb install &amp;lt;path_to_your.apk&amp;gt; : apk 설치&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb uninstall &amp;lt;package&amp;gt; : 특정 패키지 삭제&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb forward tcp:6666 tcp:5555 : 포트전달&lt;br /&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;&amp;nbsp; &amp;nbsp;ex) 호스트 포트 6666 -&amp;gt; 5555로 전달&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb pull remote local : 기기에서 파일 및 폴더 가져오기&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb push local remote : 기기에 파일 및 폴더 넣기&lt;br /&gt;&amp;nbsp;ex) adb push ./test.txt /sdcard/myfile.txt&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&amp;nbsp;adb shell&lt;/h2&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;대부분 토이박스에서 shell 명령어 확인 가능&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;a href=&quot;https://landley.net/toybox/quick.html&quot;&gt;토이박스(shell 명령어 지원)&amp;nbsp; &amp;nbsp;&lt;/a&gt;&lt;a href=&quot;https://landley.net/toybox/quick.html&quot;&gt;https://landley.net/toybox/quick.html&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell pm list &amp;lt;package&amp;gt; : 디바이스에 설치된 패키지 목록을 표시합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell am start -n &amp;lt;Package/activity&amp;gt; : 특정 액티비티 실행&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell am force-stop &amp;lt;Package&amp;gt; : 특정 앱(패키지) 강제 종료&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell dumpsys &amp;lt;package&amp;gt; : 특정 패키지의 상세 정보를 표시합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell dumpsys :&amp;nbsp; 시스템 상태 및 서비스 정보 덤프&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell pm list permission-groups -f&amp;nbsp; : 권한 그룹과 그에 속한 권한 목록을 표시합니다&lt;/p&gt;
&lt;p data-ke-size=&quot;size18&quot;&gt;adb shell pm list permissions -g -f&amp;nbsp; : 그룹별 권한과 해당 권한이 사용된 패키지 목록을 표시합니다&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://developer.android.com/studio/command-line/adb?hl=ko#shellcommands&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://developer.android.com/studio/command-line/adb?hl=ko#shellcommands&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1702632339186&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;Android 디버그 브리지(adb) &amp;nbsp;|&amp;nbsp; Android 개발자 &amp;nbsp;|&amp;nbsp; Android Developers&quot; data-og-description=&quot;기기와 통신할 수 있도록 지원하는 다목적 명령줄 도구인 Android 디버그 브리지에 대해 알아보세요.&quot; data-og-host=&quot;developer.android.com&quot; data-og-source-url=&quot;https://developer.android.com/studio/command-line/adb?hl=ko#shellcommands&quot; data-og-url=&quot;https://developer.android.com/studio/command-line/adb?hl=ko&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/EOziG/hyUL1wjd02/48XfTc1reHzzJfGqoUgkEk/img.png?width=1201&amp;amp;height=676&amp;amp;face=0_0_1201_676,https://scrap.kakaocdn.net/dn/bsj48M/hyUL3Vexsi/2qX2YIYK7KJBhQVZuQyI21/img.png?width=1174&amp;amp;height=988&amp;amp;face=0_0_1174_988,https://scrap.kakaocdn.net/dn/bfklX4/hyULWPj4fs/sUMFhdXH5xZyrKsYPVrKc0/img.png?width=365&amp;amp;height=675&amp;amp;face=0_0_365_675&quot;&gt;&lt;a href=&quot;https://developer.android.com/studio/command-line/adb?hl=ko#shellcommands&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://developer.android.com/studio/command-line/adb?hl=ko#shellcommands&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/EOziG/hyUL1wjd02/48XfTc1reHzzJfGqoUgkEk/img.png?width=1201&amp;amp;height=676&amp;amp;face=0_0_1201_676,https://scrap.kakaocdn.net/dn/bsj48M/hyUL3Vexsi/2qX2YIYK7KJBhQVZuQyI21/img.png?width=1174&amp;amp;height=988&amp;amp;face=0_0_1174_988,https://scrap.kakaocdn.net/dn/bfklX4/hyULWPj4fs/sUMFhdXH5xZyrKsYPVrKc0/img.png?width=365&amp;amp;height=675&amp;amp;face=0_0_365_675');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;Android 디버그 브리지(adb) &amp;nbsp;|&amp;nbsp; Android 개발자 &amp;nbsp;|&amp;nbsp; Android Developers&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;기기와 통신할 수 있도록 지원하는 다목적 명령줄 도구인 Android 디버그 브리지에 대해 알아보세요.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;developer.android.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;</description>
      <category>play/Android</category>
      <category>ADB 명령어</category>
      <category>adb 앱 설치</category>
      <category>adb 패키지 정보</category>
      <category>adb 포트</category>
      <category>앱 삭제</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/189</guid>
      <comments>https://cago-young.tistory.com/189#entry189comment</comments>
      <pubDate>Fri, 15 Dec 2023 18:27:10 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 국민건강보험 사칭 악성앱 분석 (23.12.03)</title>
      <link>https://cago-young.tistory.com/187</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;공기관 사칭 스미싱인 국민건강보험&amp;nbsp;피싱 사이트입니다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태입니다.&amp;nbsp; 스미싱 문자는&amp;nbsp;&lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험,&amp;nbsp;&lt;/span&gt;건강검사, 건강검진, 국민보험공단, 통지서, 통보문, 통보서, 신체검사, 통지내역, [The보험센터] , [국민보험공단]&lt;/span&gt;&lt;/b&gt;&amp;nbsp;등 이러한 문구가 포함된 문자를 보내는 형태로 배포되고 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;저번달에 나온&amp;nbsp;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://cago-young.tistory.com/178&quot;&gt;국민건강보험 사칭 피싱 사이트 (23.11.01)와&lt;/a&gt;&amp;nbsp;차이점은 피싱 페이지가 바뀐 것이 확인 가능 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모르는 번호로 연락이 오면 항상 꼼꼼히 확인하셔서 피해 없으시길 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[국민보험공단]&lt;br /&gt;신체검사 통지서내역 발급완료. 내용조회 http://URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;트윗.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;550&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/deeWZj/btsBGpQxzkR/BQdBBf3IlQDlPr6k6ImOlK/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/deeWZj/btsBGpQxzkR/BQdBBf3IlQDlPr6k6ImOlK/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/deeWZj/btsBGpQxzkR/BQdBBf3IlQDlPr6k6ImOlK/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdeeWZj%2FbtsBGpQxzkR%2FBQdBBf3IlQDlPr6k6ImOlK%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1080&quot; height=&quot;550&quot; data-filename=&quot;트윗.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;550&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[The보험센터]&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;건강검사 통보내역 발급완료. 내용조회 https://URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;인스타ㅓ.jpg&quot; data-origin-width=&quot;971&quot; data-origin-height=&quot;590&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bzgtqj/btsBMUaDVAa/gxyptlzxeEZ0apCoLiQcD0/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bzgtqj/btsBMUaDVAa/gxyptlzxeEZ0apCoLiQcD0/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bzgtqj/btsBMUaDVAa/gxyptlzxeEZ0apCoLiQcD0/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbzgtqj%2FbtsBMUaDVAa%2FgxyptlzxeEZ0apCoLiQcD0%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;971&quot; height=&quot;590&quot; data-filename=&quot;인스타ㅓ.jpg&quot; data-origin-width=&quot;971&quot; data-origin-height=&quot;590&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/29WLo/btsBDPJgD4Z/TamdqPW6ILBSm0qIHnQ6Uk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/29WLo/btsBDPJgD4Z/TamdqPW6ILBSm0qIHnQ6Uk/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/29WLo/btsBDPJgD4Z/TamdqPW6ILBSm0qIHnQ6Uk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F29WLo%2FbtsBDPJgD4Z%2FTamdqPW6ILBSm0qIHnQ6Uk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;839&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3J7O5/btsBJiiGlRu/puiBeBTjOba2RGF5eThQO1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3J7O5/btsBJiiGlRu/puiBeBTjOba2RGF5eThQO1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3J7O5/btsBJiiGlRu/puiBeBTjOba2RGF5eThQO1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3J7O5%2FbtsBJiiGlRu%2FpuiBeBTjOba2RGF5eThQO1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;470&quot; height=&quot;839&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;839&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HTML 분석&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 페이지는 건강검진 이미지를 보여주고, 클릭 시&amp;nbsp; 악성앱을 다운로드하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;965&quot; data-origin-height=&quot;526&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b6WbOq/btsBCZFjIzq/5FxMUxnIJzBTf5toKL24W0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b6WbOq/btsBCZFjIzq/5FxMUxnIJzBTf5toKL24W0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b6WbOq/btsBCZFjIzq/5FxMUxnIJzBTf5toKL24W0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb6WbOq%2FbtsBCZFjIzq%2F5FxMUxnIJzBTf5toKL24W0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;965&quot; height=&quot;526&quot; data-origin-width=&quot;965&quot; data-origin-height=&quot;526&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;138&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ccQwTA/btsBFoR5rtk/of6yOgSVsWLhK1XEEdcs3K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ccQwTA/btsBFoR5rtk/of6yOgSVsWLhK1XEEdcs3K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ccQwTA/btsBFoR5rtk/of6yOgSVsWLhK1XEEdcs3K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FccQwTA%2FbtsBFoR5rtk%2Fof6yOgSVsWLhK1XEEdcs3K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;682&quot; height=&quot;138&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;138&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;유포지 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1702189442897&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;https://iz02.q0vf.autos/
https://iz02.q0vf.autos/apk/nhis.apk

https://u10.ou4u.boats/
https://u10.ou4u.boats/apk/nhis.apk&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문자에 포함된 URL 주소로 접속하면&amp;nbsp; '국민건강보험' 사칭 피싱 사이트 페이지로 접속된다. 해당 페이지에서는 &quot;국민건강보험 어플 다운로드&quot;라는 버튼이 보이고, 해당 버튼을 클릭하게 되면 APK 파일을 다운로드하게 된다. 다운로드한 APK 파일은&amp;nbsp;&lt;span style=&quot;color: #ee2323;&quot;&gt;악성앱입니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;악성 앱 리소스 분석&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name: The건강보험&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Version : 1.0&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Package Name : badhbiij.ahgbdeak.afeaebfl&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5&amp;nbsp;:&amp;nbsp;083174aed67fcac342c636bf36347ab5 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1&amp;nbsp;:&amp;nbsp;4d5102bb77cd29d3b25e362b7d22f68a1d777790 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-256&amp;nbsp;:&amp;nbsp;3d04e86a4f798ce8f982b37cf31e05fa942b9b3445da4deced5e00ac54b854de &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Vhash&amp;nbsp;:&amp;nbsp;b24b2660da3ad4355401214dff678cb7 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SSDEEP&amp;nbsp;:&amp;nbsp;196608:ip7xELXZcSaoipnVxYaBkYdOgJFoufr7RsiGs3Pj1iBdc8OT:07xEDtaoAYfgLTxsiGs3PjV1T&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h4&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira (no cloud) :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;ANDROID/Malformed.ZIP.Gen&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;ANDROID/Malformed.ZIP.Gen&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Cynet :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Malicious (score: 99)&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malicious (score: 99)&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Malicious (score: 99)&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Android.Packed.15.origin&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android.Packed.15.origin&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Android.Packed.15.origin&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32 :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;A Variant Of Android/TrojanDropper.Agent.LKS&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;A Variant Of Android/TrojanDropper.Agent.LKS&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;A Variant Of Android/TrojanDropper.Agent.LKS&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;F-Secure :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Malware.ANDROID/Malformed.ZIP.Gen&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Android/Agent.LKS!tr&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android/Agent.LKS!tr&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Detected&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Detected&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Trojan-Spy.AndroidOS.Letscall&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Trojan-Spy.AndroidOS.Letscall&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm by Check Point :&amp;nbsp;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&quot;&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;virus.png&quot; data-origin-width=&quot;1018&quot; data-origin-height=&quot;752&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b37C5O/btsBGpQp53t/cj2UAqXMPrr8k7VClLJpZk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b37C5O/btsBGpQp53t/cj2UAqXMPrr8k7VClLJpZk/img.png&quot; data-alt=&quot;virustotal 정보&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b37C5O/btsBGpQp53t/cj2UAqXMPrr8k7VClLJpZk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb37C5O%2FbtsBGpQp53t%2Fcj2UAqXMPrr8k7VClLJpZk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1018&quot; height=&quot;752&quot; data-filename=&quot;virus.png&quot; data-origin-width=&quot;1018&quot; data-origin-height=&quot;752&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;virustotal 정보&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;aapt dump xmltree The건강보험_1.0.apk AndroidManifest.xml&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Xml 정보&lt;/p&gt;
&lt;pre id=&quot;code_1702190464081&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;  E: manifest (line=2)
    A: android:versionCode(0x0101021b)=(type 0x10)0x1
    A: android:versionName(0x0101021c)=&quot;1.0&quot; (Raw: &quot;1.0&quot;)
    A: android:compileSdkVersion(0x01010572)=(type 0x10)0x17
    A: android:compileSdkVersionCodename(0x01010573)=&quot;6.0-2438415&quot; (Raw: &quot;6.0-2438415&quot;)
    A: package=&quot;badhbiij.ahgbdeak.afeaebfl&quot; (Raw: &quot;badhbiij.ahgbdeak.afeaebfl&quot;)
    A: platformBuildVersionCode=(type 0x10)0x17
    A: platformBuildVersionName=&quot;6.0-2438415&quot; (Raw: &quot;6.0-2438415&quot;)
    E: uses-sdk (line=0)
      A: android:minSdkVersion(0x0101020c)=(type 0x10)0x1a
      A: android:targetSdkVersion(0x01010270)=(type 0x10)0x20
    E: uses-permission (line=3)
      A: android:name(0x01010003)=&quot;android.permission.INTERNET&quot; (Raw: &quot;android.permission.INTERNET&quot;)
    E: uses-permission (line=4)
      A: android:name(0x01010003)=&quot;android.permission.ACCESS_NETWORK_STATE&quot; (Raw: &quot;android.permission.ACCESS_NETWORK_STATE&quot;)
    E: uses-permission (line=5)
      A: android:name(0x01010003)=&quot;android.permission.READ_PRIVILEGED_PHONE_STATE&quot; (Raw: &quot;android.permission.READ_PRIVILEGED_PHONE_STATE&quot;)
    E: uses-feature (line=6)
      A: android:name(0x01010003)=&quot;android.hardware.telephony&quot; (Raw: &quot;android.hardware.telephony&quot;)
      A: android:required(0x0101028e)=(type 0x12)0x0
    E: uses-permission (line=7)
      A: android:name(0x01010003)=&quot;android.permission.READ_PHONE_STATE&quot; (Raw: &quot;android.permission.READ_PHONE_STATE&quot;)
    E: uses-permission (line=8)
      A: android:name(0x01010003)=&quot;android.permission.READ_PHONE_NUMBERS&quot; (Raw: &quot;android.permission.READ_PHONE_NUMBERS&quot;)
    E: uses-permission (line=9)
      A: android:name(0x01010003)=&quot;android.permission.VIBRATE&quot; (Raw: &quot;android.permission.VIBRATE&quot;)
    E: uses-permission (line=10)
      A: android:name(0x01010003)=&quot;android.permission.READ_SMS&quot; (Raw: &quot;android.permission.READ_SMS&quot;)
    E: uses-permission (line=11)
      A: android:name(0x01010003)=&quot;android.permission.RECEIVE_SMS&quot; (Raw: &quot;android.permission.RECEIVE_SMS&quot;)
    E: uses-permission (line=12)
      A: android:name(0x01010003)=&quot;android.permission.RECEIVE_MMS&quot; (Raw: &quot;android.permission.RECEIVE_MMS&quot;)
    E: uses-permission (line=13)
      A: android:name(0x01010003)=&quot;android.permission.SEND_SMS&quot; (Raw: &quot;android.permission.SEND_SMS&quot;)
    E: uses-permission (line=14)
      A: android:name(0x01010003)=&quot;android.permission.READ_CONTACTS&quot; (Raw: &quot;android.permission.READ_CONTACTS&quot;)
    E: uses-permission (line=15)
      A: android:name(0x01010003)=&quot;android.permission.GET_ACCOUNTS&quot; (Raw: &quot;android.permission.GET_ACCOUNTS&quot;)
    E: uses-permission (line=16)
      A: android:name(0x01010003)=&quot;android.permission.READ_EXTERNAL_STORAGE&quot; (Raw: &quot;android.permission.READ_EXTERNAL_STORAGE&quot;)
    E: uses-permission (line=17)
      A: android:name(0x01010003)=&quot;android.permission.WRITE_EXTERNAL_STORAGE&quot; (Raw: &quot;android.permission.WRITE_EXTERNAL_STORAGE&quot;)
    E: uses-permission (line=18)
      A: android:name(0x01010003)=&quot;android.permission.WAKE_LOCK&quot; (Raw: &quot;android.permission.WAKE_LOCK&quot;)
    E: uses-permission (line=19)
      A: android:name(0x01010003)=&quot;android.permission.RECEIVE_BOOT_COMPLETED&quot; (Raw: &quot;android.permission.RECEIVE_BOOT_COMPLETED&quot;)
    E: uses-permission (line=20)
      A: android:name(0x01010003)=&quot;android.permission.FOREGROUND_SERVICE&quot; (Raw: &quot;android.permission.FOREGROUND_SERVICE&quot;)
    E: application (line=21)
      A: android:theme(0x01010000)=@0x7f100199
      A: android:label(0x01010001)=@0x7f0f001c
      A: android:icon(0x01010002)=@0x7f0d0000
      A: android:name(0x01010003)=&quot;e6mx.ebj.j0tc.n5d&quot; (Raw: &quot;e6mx.ebj.j0tc.n5d&quot;)
      A: android:debuggable(0x0101000f)=(type 0x12)0x0
      A: android:allowBackup(0x01010280)=(type 0x12)0x0
      A: android:supportsRtl(0x010103af)=(type 0x12)0xffffffff
      A: android:extractNativeLibs(0x010104ea)=(type 0x12)0xffffffff
      A: android:fullBackupContent(0x010104eb)=@0x7f120000
      A: android:usesCleartextTraffic(0x010104ec)=(type 0x12)0xffffffff
      A: android:networkSecurityConfig(0x01010527)=@0x7f120002
      A: android:appComponentFactory(0x0101057a)=&quot;androidx.core.app.CoreComponentFactory&quot; (Raw: &quot;androidx.core.app.CoreComponentFactory&quot;)
      A: android:requestLegacyExternalStorage(0x01010603)=(type 0x12)0xffffffff
      A: android:dataExtractionRules(0x0101063e)=@0x7f120001
      E: activity (line=22)
        A: android:name(0x01010003)=&quot;badhbiij.ahgbdeak.afeaebfl.ecgcfecj&quot; (Raw: &quot;badhbiij.ahgbdeak.afeaebfl.ecgcfecj&quot;)
        A: android:exported(0x01010010)=(type 0x12)0xffffffff
        E: intent-filter (line=23)
          E: action (line=24)
            A: android:name(0x01010003)=&quot;android.intent.action.MAIN&quot; (Raw: &quot;android.intent.action.MAIN&quot;)
          E: category (line=25)
            A: android:name(0x01010003)=&quot;android.intent.category.LAUNCHER&quot; (Raw: &quot;android.intent.category.LAUNCHER&quot;)
      E: provider (line=28)
        A: android:name(0x01010003)=&quot;androidx.core.content.FileProvider&quot; (Raw: &quot;androidx.core.content.FileProvider&quot;)
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:authorities(0x01010018)=&quot;com.sms.yu.fileProvider&quot; (Raw: &quot;com.sms.yu.fileProvider&quot;)
        A: android:grantUriPermissions(0x0101001b)=(type 0x12)0xffffffff
        E: meta-data (line=29)
          A: android:name(0x01010003)=&quot;android.support.FILE_PROVIDER_PATHS&quot; (Raw: &quot;android.support.FILE_PROVIDER_PATHS&quot;)
          A: android:value(0x01010024)=&quot;&quot; (Raw: &quot;&quot;)
          A: android:resource(0x01010025)=@0x7f120003
      E: receiver (line=31)
        A: android:name(0x01010003)=&quot;badhbiij.ahgbdeak.afeaebfl.receiver.dabcbjdm&quot; (Raw: &quot;badhbiij.ahgbdeak.afeaebfl.receiver.dabcbjdm&quot;)
        A: android:permission(0x01010006)=&quot;android.permission.BROADCAST_SMS&quot; (Raw: &quot;android.permission.BROADCAST_SMS&quot;)
        A: android:exported(0x01010010)=(type 0x12)0xffffffff
        E: intent-filter (line=32)
          A: android:priority(0x0101001c)=(type 0x10)0x7fffffff
          E: action (line=33)
            A: android:name(0x01010003)=&quot;android.provider.Telephony.SMS_RECEIVED&quot; (Raw: &quot;android.provider.Telephony.SMS_RECEIVED&quot;)
        E: intent-filter (line=35)
          A: android:priority(0x0101001c)=(type 0x10)0x7fffffff
          E: action (line=36)
            A: android:name(0x01010003)=&quot;android.provider.Telephony.WAP_PUSH_RECEIVED&quot; (Raw: &quot;android.provider.Telephony.WAP_PUSH_RECEIVED&quot;)
          E: data (line=37)
            A: android:mimeType(0x01010026)=&quot;application/vnd.wap.mms-message&quot; (Raw: &quot;application/vnd.wap.mms-message&quot;)
      E: provider (line=40)
        A: android:name(0x01010003)=&quot;androidx.startup.InitializationProvider&quot; (Raw: &quot;androidx.startup.InitializationProvider&quot;)
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:authorities(0x01010018)=&quot;badhbiij.ahgbdeak.afeaebfl.androidx-startup&quot; (Raw: &quot;badhbiij.ahgbdeak.afeaebfl.androidx-startup&quot;)
        E: meta-data (line=41)
          A: android:name(0x01010003)=&quot;androidx.work.WorkManagerInitializer&quot; (Raw: &quot;androidx.work.WorkManagerInitializer&quot;)
          A: android:value(0x01010024)=&quot;androidx.startup&quot; (Raw: &quot;androidx.startup&quot;)
      E: service (line=43)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.SystemAlarmService&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.SystemAlarmService&quot;)
        A: android:enabled(0x0101000e)=@0x7f040003
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
      E: service (line=44)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemjob.SystemJobService&quot; (Raw: &quot;androidx.work.impl.background.systemjob.SystemJobService&quot;)
        A: android:permission(0x01010006)=&quot;android.permission.BIND_JOB_SERVICE&quot; (Raw: &quot;android.permission.BIND_JOB_SERVICE&quot;)
        A: android:enabled(0x0101000e)=@0x7f040005
        A: android:exported(0x01010010)=(type 0x12)0xffffffff
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
      E: service (line=45)
        A: android:name(0x01010003)=&quot;androidx.work.impl.foreground.SystemForegroundService&quot; (Raw: &quot;androidx.work.impl.foreground.SystemForegroundService&quot;)
        A: android:enabled(0x0101000e)=@0x7f040004
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
      E: receiver (line=46)
        A: android:name(0x01010003)=&quot;androidx.work.impl.utils.ForceStopRunnable$BroadcastReceiver&quot; (Raw: &quot;androidx.work.impl.utils.ForceStopRunnable$BroadcastReceiver&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0xffffffff
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
      E: receiver (line=47)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0x0
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=48)
          E: action (line=49)
            A: android:name(0x01010003)=&quot;android.intent.action.ACTION_POWER_CONNECTED&quot; (Raw: &quot;android.intent.action.ACTION_POWER_CONNECTED&quot;)
          E: action (line=50)
            A: android:name(0x01010003)=&quot;android.intent.action.ACTION_POWER_DISCONNECTED&quot; (Raw: &quot;android.intent.action.ACTION_POWER_DISCONNECTED&quot;)
      E: receiver (line=53)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0x0
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=54)
          E: action (line=55)
            A: android:name(0x01010003)=&quot;android.intent.action.BATTERY_OKAY&quot; (Raw: &quot;android.intent.action.BATTERY_OKAY&quot;)
          E: action (line=56)
            A: android:name(0x01010003)=&quot;android.intent.action.BATTERY_LOW&quot; (Raw: &quot;android.intent.action.BATTERY_LOW&quot;)
      E: receiver (line=59)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0x0
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=60)
          E: action (line=61)
            A: android:name(0x01010003)=&quot;android.intent.action.DEVICE_STORAGE_LOW&quot; (Raw: &quot;android.intent.action.DEVICE_STORAGE_LOW&quot;)
          E: action (line=62)
            A: android:name(0x01010003)=&quot;android.intent.action.DEVICE_STORAGE_OK&quot; (Raw: &quot;android.intent.action.DEVICE_STORAGE_OK&quot;)
      E: receiver (line=65)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0x0
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=66)
          E: action (line=67)
            A: android:name(0x01010003)=&quot;android.net.conn.CONNECTIVITY_CHANGE&quot; (Raw: &quot;android.net.conn.CONNECTIVITY_CHANGE&quot;)
      E: receiver (line=70)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.RescheduleReceiver&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.RescheduleReceiver&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0x0
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=71)
          E: action (line=72)
            A: android:name(0x01010003)=&quot;android.intent.action.BOOT_COMPLETED&quot; (Raw: &quot;android.intent.action.BOOT_COMPLETED&quot;)
          E: action (line=73)
            A: android:name(0x01010003)=&quot;android.intent.action.TIME_SET&quot; (Raw: &quot;android.intent.action.TIME_SET&quot;)
          E: action (line=74)
            A: android:name(0x01010003)=&quot;android.intent.action.TIMEZONE_CHANGED&quot; (Raw: &quot;android.intent.action.TIMEZONE_CHANGED&quot;)
      E: receiver (line=77)
        A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver&quot;)
        A: android:enabled(0x0101000e)=@0x7f040003
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=78)
          E: action (line=79)
            A: android:name(0x01010003)=&quot;androidx.work.impl.background.systemalarm.UpdateProxies&quot; (Raw: &quot;androidx.work.impl.background.systemalarm.UpdateProxies&quot;)
      E: receiver (line=82)
        A: android:name(0x01010003)=&quot;androidx.work.impl.diagnostics.DiagnosticsReceiver&quot; (Raw: &quot;androidx.work.impl.diagnostics.DiagnosticsReceiver&quot;)
        A: android:permission(0x01010006)=&quot;android.permission.DUMP&quot; (Raw: &quot;android.permission.DUMP&quot;)
        A: android:enabled(0x0101000e)=(type 0x12)0xffffffff
        A: android:exported(0x01010010)=(type 0x12)0xffffffff
        A: android:directBootAware(0x01010505)=(type 0x12)0x0
        E: intent-filter (line=83)
          E: action (line=84)
            A: android:name(0x01010003)=&quot;androidx.work.diagnostics.REQUEST_DIAGNOSTICS&quot; (Raw: &quot;androidx.work.diagnostics.REQUEST_DIAGNOSTICS&quot;)
      E: service (line=87)
        A: android:name(0x01010003)=&quot;androidx.room.MultiInstanceInvalidationService&quot; (Raw: &quot;androidx.room.MultiInstanceInvalidationService&quot;)
        A: android:exported(0x01010010)=(type 0x12)0x0
        A: android:directBootAware(0x01010505)=(type 0x12)0xffffffff
      E: meta-data (line=88)
        A: android:name(0x01010003)=&quot;ljwovijajpbc&quot; (Raw: &quot;ljwovijajpbc&quot;)
        A: android:value(0x01010024)=&quot;R5VucyZTxGZL5spDo/PJVA==_jlfwnpajqfbc&quot; (Raw: &quot;R5VucyZTxGZL5spDo/PJVA==_jlfwnpajqfbc&quot;)
      E: meta-data (line=89)
        A: android:name(0x01010003)=&quot;app_name&quot; (Raw: &quot;app_name&quot;)
        A: android:value(0x01010024)=&quot;badhbiij.ahgbdeak.afeaebfl.deiehddm&quot; (Raw: &quot;badhbiij.ahgbdeak.afeaebfl.deiehddm&quot;)&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Permission&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; width=&quot;144&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td width=&quot;72&quot; height=&quot;22&quot;&gt;권한&lt;/td&gt;
&lt;td width=&quot;72&quot;&gt;설명&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;ACCESS_NETWORK_STATE&lt;/td&gt;
&lt;td&gt;네트워크 상태에 대한 정보에 액세스할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;BIND_JOB_SERVICE&lt;/td&gt;
&lt;td&gt;작업 서비스에 바인딩할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;BROADCAST_SMS&lt;/td&gt;
&lt;td&gt;SMS 메시지를 브로드캐스트할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;DUMP&lt;/td&gt;
&lt;td&gt;시스템 상태를 덤프하고 디버그 정보를 수집할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;FOREGROUND_SERVICE&lt;/td&gt;
&lt;td&gt;포그라운드 서비스를 실행할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;GET_ACCOUNTS&lt;/td&gt;
&lt;td&gt;계정 관련 정보에 액세스할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;INTERNET&lt;/td&gt;
&lt;td&gt;인터넷에 액세스할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_CONTACTS&lt;/td&gt;
&lt;td&gt;연락처 정보를 읽을 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_EXTERNAL_STORAGE&lt;/td&gt;
&lt;td&gt;외부 저장소의 콘텐츠를 읽을 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_PHONE_NUMBERS&lt;/td&gt;
&lt;td&gt;전화 번호에 대한 읽기 권한을 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_PHONE_STATE&lt;/td&gt;
&lt;td&gt;전화 상태 및 식별자 정보를 읽을 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_PRIVILEGED_PHONE_STATE&lt;/td&gt;
&lt;td&gt;특권이 있는 전화 상태 정보에 대한 읽기 권한을 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;READ_SMS&lt;/td&gt;
&lt;td&gt;SMS(단문 메시지 서비스) 메시지를 읽을 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;RECEIVE_BOOT_COMPLETED&lt;/td&gt;
&lt;td&gt;부팅이 완료된 후에 방송을 수신하여 특정 작업을 수행할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;RECEIVE_MMS&lt;/td&gt;
&lt;td&gt;MMS(멀티미디어 메시지 서비스)를 수신할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;RECEIVE_SMS&lt;/td&gt;
&lt;td&gt;SMS 메시지를 수신할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;SEND_SMS&lt;/td&gt;
&lt;td&gt;SMS 메시지를 보낼 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;VIBRATE&lt;/td&gt;
&lt;td&gt;진동을 제어할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;WAKE_LOCK&lt;/td&gt;
&lt;td&gt;장치가 화면이 꺼진 상태에서도 작동할 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td height=&quot;22&quot;&gt;WRITE_EXTERNAL_STORAGE&lt;/td&gt;
&lt;td&gt;외부 저장소에 콘텐츠를 쓸 수 있도록 허용합니다.&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;코드 분석&lt;/h2&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Web View(정상 사이트)&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;letter-spacing: 0px;&quot;&gt;1. Web View(정상 사이트)를 보여 줍니다&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;웹뷰 정상사이트를 보여줌.png&quot; data-origin-width=&quot;539&quot; data-origin-height=&quot;190&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/czryyw/btsBJetPu6A/uzWSO858uLe9Nb4RwCK5J1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/czryyw/btsBJetPu6A/uzWSO858uLe9Nb4RwCK5J1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/czryyw/btsBJetPu6A/uzWSO858uLe9Nb4RwCK5J1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fczryyw%2FbtsBJetPu6A%2FuzWSO858uLe9Nb4RwCK5J1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;539&quot; height=&quot;190&quot; data-filename=&quot;웹뷰 정상사이트를 보여줌.png&quot; data-origin-width=&quot;539&quot; data-origin-height=&quot;190&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;웹뷰 정상사이트를 보여줌2.png&quot; data-origin-width=&quot;410&quot; data-origin-height=&quot;697&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Ent2p/btsBFdQIUBG/jGl9Rj8v1kwNQVY8K4i7vK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Ent2p/btsBFdQIUBG/jGl9Rj8v1kwNQVY8K4i7vK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Ent2p/btsBFdQIUBG/jGl9Rj8v1kwNQVY8K4i7vK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEnt2p%2FbtsBFdQIUBG%2FjGl9Rj8v1kwNQVY8K4i7vK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;410&quot; height=&quot;697&quot; data-filename=&quot;웹뷰 정상사이트를 보여줌2.png&quot; data-origin-width=&quot;410&quot; data-origin-height=&quot;697&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;2. send 메세지&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;리시브 send.png&quot; data-origin-width=&quot;772&quot; data-origin-height=&quot;284&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ssKuE/btsBHrNKphW/jPRTaID3UbaKqJKjiFCPO1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ssKuE/btsBHrNKphW/jPRTaID3UbaKqJKjiFCPO1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ssKuE/btsBHrNKphW/jPRTaID3UbaKqJKjiFCPO1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FssKuE%2FbtsBHrNKphW%2FjPRTaID3UbaKqJKjiFCPO1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;772&quot; height=&quot;284&quot; data-filename=&quot;리시브 send.png&quot; data-origin-width=&quot;772&quot; data-origin-height=&quot;284&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수집.png&quot; data-origin-width=&quot;701&quot; data-origin-height=&quot;474&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/CQN5M/btsBF1oI0Bz/fJROnXUNtBscxHeOUdnd61/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/CQN5M/btsBF1oI0Bz/fJROnXUNtBscxHeOUdnd61/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/CQN5M/btsBF1oI0Bz/fJROnXUNtBscxHeOUdnd61/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FCQN5M%2FbtsBF1oI0Bz%2FfJROnXUNtBscxHeOUdnd61%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;701&quot; height=&quot;474&quot; data-filename=&quot;sms 수집.png&quot; data-origin-width=&quot;701&quot; data-origin-height=&quot;474&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;3. 주소록 수집&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;984&quot; data-origin-height=&quot;458&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbH8SVe%2FbtsBGkIuFfH%2F44KpWGgiQkTmbaBb1DGne1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;984&quot; height=&quot;458&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;984&quot; data-origin-height=&quot;458&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;4. 정보 유출지를 볼수 있음&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정보유출지 확인 가능.png&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;317&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dna7Tm/btsBGWmTaaK/mV1ditfkTUi84MD4ELkQ31/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dna7Tm/btsBGWmTaaK/mV1ditfkTUi84MD4ELkQ31/img.png&quot; data-alt=&quot;]&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dna7Tm/btsBGWmTaaK/mV1ditfkTUi84MD4ELkQ31/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fdna7Tm%2FbtsBGWmTaaK%2FmV1ditfkTUi84MD4ELkQ31%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;715&quot; height=&quot;317&quot; data-filename=&quot;정보유출지 확인 가능.png&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;317&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;]&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;5.&amp;nbsp; 주소록 수집 및 유출&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;984&quot; data-origin-height=&quot;458&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bH8SVe/btsBGkIuFfH/44KpWGgiQkTmbaBb1DGne1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbH8SVe%2FbtsBGkIuFfH%2F44KpWGgiQkTmbaBb1DGne1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;984&quot; height=&quot;458&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;984&quot; data-origin-height=&quot;458&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;5. 갤러리 수집 및 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;이미지 수집 츄룰.png&quot; data-origin-width=&quot;947&quot; data-origin-height=&quot;619&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kP9La/btsBGpbX4Ll/8wrFAIRDm9fFmOBrmdIpUK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kP9La/btsBGpbX4Ll/8wrFAIRDm9fFmOBrmdIpUK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kP9La/btsBGpbX4Ll/8wrFAIRDm9fFmOBrmdIpUK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkP9La%2FbtsBGpbX4Ll%2F8wrFAIRDm9fFmOBrmdIpUK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;947&quot; height=&quot;619&quot; data-filename=&quot;이미지 수집 츄룰.png&quot; data-origin-width=&quot;947&quot; data-origin-height=&quot;619&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;5.&amp;nbsp; &amp;nbsp;정보 유출을 api&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;api.png&quot; data-origin-width=&quot;1376&quot; data-origin-height=&quot;266&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/scnhm/btsBDR8bzOl/TO8A1ozIumAUzXmujb4L1k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/scnhm/btsBDR8bzOl/TO8A1ozIumAUzXmujb4L1k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/scnhm/btsBDR8bzOl/TO8A1ozIumAUzXmujb4L1k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fscnhm%2FbtsBDR8bzOl%2FTO8A1ozIumAUzXmujb4L1k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1376&quot; height=&quot;266&quot; data-filename=&quot;api.png&quot; data-origin-width=&quot;1376&quot; data-origin-height=&quot;266&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;api2 유출 정보.png&quot; data-origin-width=&quot;1074&quot; data-origin-height=&quot;626&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kCvKQ/btsBF22dxfC/hOGUGHhJm5w9YWCRxmAOF1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kCvKQ/btsBF22dxfC/hOGUGHhJm5w9YWCRxmAOF1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kCvKQ/btsBF22dxfC/hOGUGHhJm5w9YWCRxmAOF1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkCvKQ%2FbtsBF22dxfC%2FhOGUGHhJm5w9YWCRxmAOF1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1074&quot; height=&quot;626&quot; data-filename=&quot;api2 유출 정보.png&quot; data-origin-width=&quot;1074&quot; data-origin-height=&quot;626&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;신고는 기존에 신고는 경찰청, 금감원, KISA에 따로 신고하고 절차가 복잡했는데 이번에&amp;nbsp;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;경찰과 금융감독원, 한국인터넷진흥원(KISA), 방송통신위원회, 통신 3사 직원 등이 합처서 운영되는&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;통합신고대응센터(112)로 신고 가능 하니 참고 하시면 좋습니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #222222; text-align: start; font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;통합신고대응센터&lt;/span&gt;는 보이스피싱 피해 신고 창구를 112로 통합해&amp;nbsp;&lt;span style=&quot;color: #f89009;&quot;&gt;사건 접수뿐 아니라 악성 앱 등 범행수단 차단, 피해구제 및 지급정지와 추가예방&lt;/span&gt;&amp;nbsp;등을 한 번에 처리할 수 있게 했습니다. 피해가 없거나 단순 상담건인 경우에는 피해구제 방법을 안내하고 추가 예방 방법 등을 알려줍니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/b&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704102230906&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-description=&quot;cago_note 블로그 운영중!&quot; data-og-host=&quot;open.kakao.com&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/dHSKoK/hyUTIKXtok/4QkBSCqCOo0L8yHhSnlJFk/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/dHSKoK/hyUTIKXtok/4QkBSCqCOo0L8yHhSnlJFk/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중!&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago</category>
      <category>The국민보험</category>
      <category>[The보험센터] 건강검사 통보내역 발급완료. 내용조회 https://URL</category>
      <category>[국민보험공단] 신체검사 통지서내역 발급완료. 내용조회</category>
      <category>건강검사 통보서 전송완료</category>
      <category>건강검진</category>
      <category>공공기관 사칭 문자</category>
      <category>스미싱</category>
      <category>스팸</category>
      <category>악성 앱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/187</guid>
      <comments>https://cago-young.tistory.com/187#entry187comment</comments>
      <pubDate>Mon, 11 Dec 2023 02:00:16 +0900</pubDate>
    </item>
    <item>
      <title>국민건강보험 사칭 피싱 사이트 (23.12.03)</title>
      <link>https://cago-young.tistory.com/186</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;공공기관 사칭 스미싱인 국민건강보험&amp;nbsp;피싱 사이트입니다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태입니다.&amp;nbsp; 스미싱 문자는&amp;nbsp;&lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험,&amp;nbsp;&lt;/span&gt;건강검사, 건강검진, 국민보험공단, 통지서, 통보문, 통보서, 신체검사, 통지내역&lt;/span&gt;&lt;/b&gt;&amp;nbsp;등 이러한 문구가 포함된 문자를 보내는 형태로 배포되고 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;저번달에 나온 &lt;a href=&quot;https://cago-young.tistory.com/178&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;국민건강보험 사칭 피싱 사이트 (23.11.01)와&lt;/a&gt; 차이점은 피싱 페이지가 바뀐 것이 확인 가능 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모르는 번호로 연락이 오면 항상 꼼꼼히 확인하셔서 피해 없으시길 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[국민보험공단]&lt;br /&gt;신체검사 통지서내역 발급완료. 내용조회 http://URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;트윗.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;550&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/9YVu5/btsBypDDBHR/hrRR7k4i11DSCKPtoBB1KK/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/9YVu5/btsBypDDBHR/hrRR7k4i11DSCKPtoBB1KK/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/9YVu5/btsBypDDBHR/hrRR7k4i11DSCKPtoBB1KK/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F9YVu5%2FbtsBypDDBHR%2FhrRR7k4i11DSCKPtoBB1KK%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1080&quot; height=&quot;550&quot; data-filename=&quot;트윗.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;550&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Fu3FN/btsBC5p7xvZ/99hfwRLUqYbCVW6INAxAa0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Fu3FN/btsBC5p7xvZ/99hfwRLUqYbCVW6INAxAa0/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Fu3FN/btsBC5p7xvZ/99hfwRLUqYbCVW6INAxAa0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FFu3FN%2FbtsBC5p7xvZ%2F99hfwRLUqYbCVW6INAxAa0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;839&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bBwWEO/btsBBVIib9z/UkUuTEbarAHfHINPTHirr1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bBwWEO/btsBBVIib9z/UkUuTEbarAHfHINPTHirr1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bBwWEO/btsBBVIib9z/UkUuTEbarAHfHINPTHirr1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbBwWEO%2FbtsBBVIib9z%2FUkUuTEbarAHfHINPTHirr1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;470&quot; height=&quot;839&quot; data-filename=&quot;1.PNG&quot; data-origin-width=&quot;470&quot; data-origin-height=&quot;839&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문자에 포함된 URL 주소로 접속하면&amp;nbsp; '국민건강보험' 사칭 피싱 사이트 페이지로 접속된다. 해당 페이지에서는 &quot;국민건강보험 어플 다운로드&quot;라는 버튼이 보이고, 해당 버튼을 클릭하게 되면 APK 파일을 다운로드하게 된다. 다운로드한 APK 파일은 &lt;span style=&quot;color: #ee2323;&quot;&gt;악성앱입니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h3&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira (no cloud) : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;ANDROID/Malformed.ZIP.Gen&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Cynet : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Malicious (score: 99)&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malicious (score: 99)&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Android.Packed.15.origin&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android.Packed.15.origin&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32 : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;A Variant Of Android/TrojanDropper.Agent.LKS&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;A Variant Of Android/TrojanDropper.Agent.LKS&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;F-Secure : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Malware.ANDROID/Malformed.ZIP.Gen&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Android/Agent.LKS!tr&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android/Agent.LKS!tr&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Detected&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Detected&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;Trojan-Spy.AndroidOS.Letscall&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Trojan-Spy.AndroidOS.Letscall&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style=&quot;color: #20242c; text-align: start;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm by Check Point : &lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&quot;&gt;&lt;i&gt;&lt;/i&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;신고는 기존에 신고는 경찰청, 금감원, KISA에 따로 신고하고 절차가 복잡했는데 이번에 &lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;경찰과 금융감독원, 한국인터넷진흥원(KISA), 방송통신위원회, 통신 3사 직원 등이 합처서 운영되는 &lt;/span&gt;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt;통합신고대응센터(112)로 신고 가능 하니 참고 하시면 좋습니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #222222; text-align: start; font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #222222; text-align: start;&quot;&gt; &lt;span style=&quot;font-family: 'Noto Serif KR'; color: #222222; text-align: start;&quot;&gt;통합신고대응센터&lt;/span&gt;는 보이스피싱 피해 신고 창구를 112로 통합해 &lt;span style=&quot;color: #f89009;&quot;&gt;사건 접수뿐 아니라 악성 앱 등 범행수단 차단, 피해구제 및 지급정지와 추가예방&lt;/span&gt; 등을 한 번에 처리할 수 있게 했다. 피해가 없거나 단순 상담건인 경우에는 피해구제 방법을 안내하고 추가 예방 방법 등을 알려줍니다.&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago</category>
      <category>The국민보험</category>
      <category>[국민보험공단] 신체검사 통지서내역 발급완료. 내용조회</category>
      <category>건강검사 통보서 전송완료</category>
      <category>건강검진</category>
      <category>공공기관 사칭 문자</category>
      <category>스미싱</category>
      <category>스팸</category>
      <category>악성 앱</category>
      <category>악성앱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/186</guid>
      <comments>https://cago-young.tistory.com/186#entry186comment</comments>
      <pubDate>Thu, 7 Dec 2023 22:55:42 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 부고장 사칭 스미싱 악성앱 분석 (23.11.26)</title>
      <link>https://cago-young.tistory.com/185</link>
      <description>&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;지인 관련 스미싱인 부고장 사칭 피싱 사이트입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문구는 지인 사칭으로 배포되고 있습니다. 지인 사칭 스미싱 문구는 결혼식, 돌잔치, 지인 행사, 부고 관련 메시지를 포함하여 보내고 있습니다. 해당 피싱 사이트는 부고 관련 메시지를 사칭하여 스미싱 문구를 베포 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상적인 부고 메세지는 요새는 일반적으로 대부분 상주이름, 일시, 발인 일시, 장소가 문자에 포함되는데 부고 관련 사칭 스미싱은 해당 정보가 기입이 안되어 있는 게 확인됩니다. (장소, 일시등이&lt;span style=&quot;color: #f89009;&quot;&gt; 문자에 기입되어 있다고 정상은 아닙니다.&lt;/span&gt;)&lt;/span&gt;&lt;/p&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;문구)&lt;br /&gt;&quot;아버님께서 금일아침에 별세하셨기에 삼가 알려드립니다.. 장례식장주소 http://URL&quot;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_인스타.png&quot; data-origin-width=&quot;531&quot; data-origin-height=&quot;493&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ZHTUo/btsBffofEb6/jIBUily1ViWFg2S8eICMwK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ZHTUo/btsBffofEb6/jIBUily1ViWFg2S8eICMwK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ZHTUo/btsBffofEb6/jIBUily1ViWFg2S8eICMwK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FZHTUo%2FbtsBffofEb6%2FjIBUily1ViWFg2S8eICMwK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;531&quot; height=&quot;493&quot; data-filename=&quot;edited_인스타.png&quot; data-origin-width=&quot;531&quot; data-origin-height=&quot;493&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 분석&lt;/span&gt;&lt;/h2&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 접속 후 클릭을 하게 되면 apk 파일이 다운하게 됩니다.&amp;nbsp;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구에는 장소가 포함되지 않았기 때문에 피싱 페이지에서 열기 버튼을 누르면 확인할 수 있는 것처럼 접속한 사용자가 클릭하게 끔 유도하는 형태로 보입니다.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;피싱 화면.png&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;771&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bTVegL/btsBiPousR9/oECzkULMrYspX6bDZhiWmK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bTVegL/btsBiPousR9/oECzkULMrYspX6bDZhiWmK/img.png&quot; data-alt=&quot;부고장 사칭 피싱 사이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bTVegL/btsBiPousR9/oECzkULMrYspX6bDZhiWmK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbTVegL%2FbtsBiPousR9%2FoECzkULMrYspX6bDZhiWmK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;771&quot; data-filename=&quot;피싱 화면.png&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;771&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;부고장 사칭 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HTML 분석&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 페이지는 부고장 이미지를 보여주고, 클릭 시&amp;nbsp; 악성앱을 다운로드하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;분석 html1.png&quot; data-origin-width=&quot;1377&quot; data-origin-height=&quot;191&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cuoUxn/btsBfJWVoHN/HOKm0XA6vNToa3eP1kLwSK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cuoUxn/btsBfJWVoHN/HOKm0XA6vNToa3eP1kLwSK/img.png&quot; data-alt=&quot;html 소스&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cuoUxn/btsBfJWVoHN/HOKm0XA6vNToa3eP1kLwSK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcuoUxn%2FbtsBfJWVoHN%2FHOKm0XA6vNToa3eP1kLwSK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1377&quot; height=&quot;191&quot; data-filename=&quot;분석 html1.png&quot; data-origin-width=&quot;1377&quot; data-origin-height=&quot;191&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;html 소스&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;pre id=&quot;code_1701512143927&quot; class=&quot;typescript&quot; style=&quot;background-color: #f8f8f8; color: #383a42; text-align: start;&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;	function downAlert(){
		alert(&quot;장례식장 장소와 시간을 보기위하여 확인을눌러주세요.&quot;);
		window.open(&quot;down.php&quot;);
	}
    var $main = $('.preview-main');
    var css_obj = $main.data('css');
    $main.css('background-color', css_obj.backgroundColor);

    $('.J_prev').on('click', ()=&amp;gt;{
        tabPage(1)
    });
    $('.J_next').on('click', ()=&amp;gt;{
        tabPage(-1)
    });
    var wrapper = document.getElementById('wrapper');
    function tabPage(is_up) {
        wrapper.contentWindow.postMessage(is_up, '*');
    }&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이미지를 클릭하면 &quot;장례식장 장소와 시간을 보기 위하여 확인 눌러주세요.&quot; 창이 뜨고, down.php 페이지로 넘어가게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;버튼 클릭 알럿.png&quot; data-origin-width=&quot;443&quot; data-origin-height=&quot;141&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bV041i/btsBiqWCeZy/68aLBVfO4nkvNU4j9cBHU0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bV041i/btsBiqWCeZy/68aLBVfO4nkvNU4j9cBHU0/img.png&quot; data-alt=&quot;클리시 창화면을 보여줌&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bV041i/btsBiqWCeZy/68aLBVfO4nkvNU4j9cBHU0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbV041i%2FbtsBiqWCeZy%2F68aLBVfO4nkvNU4j9cBHU0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;443&quot; height=&quot;141&quot; data-filename=&quot;버튼 클릭 알럿.png&quot; data-origin-width=&quot;443&quot; data-origin-height=&quot;141&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;클리시 창화면을 보여줌&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;down.php 페이지에서는 get 요청을 보내 &quot;cloudflare&quot;라는 클라우드 서버에 접속하여 최종적으로 악성앱을 다운하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;854&quot; data-origin-height=&quot;95&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bkQ2U0/btsBgvqAuFu/UGBAxHfVJbh2DBJjU0fzgK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bkQ2U0/btsBgvqAuFu/UGBAxHfVJbh2DBJjU0fzgK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bkQ2U0/btsBgvqAuFu/UGBAxHfVJbh2DBJjU0fzgK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbkQ2U0%2FbtsBgvqAuFu%2FUGBAxHfVJbh2DBJjU0fzgK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;854&quot; height=&quot;95&quot; data-origin-width=&quot;854&quot; data-origin-height=&quot;95&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;673&quot; data-origin-height=&quot;72&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cQgRwy/btsBkl04NdI/HJN68P88gEOdppSkveqkX0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cQgRwy/btsBkl04NdI/HJN68P88gEOdppSkveqkX0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cQgRwy/btsBkl04NdI/HJN68P88gEOdppSkveqkX0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcQgRwy%2FbtsBkl04NdI%2FHJN68P88gEOdppSkveqkX0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;673&quot; height=&quot;72&quot; data-origin-width=&quot;673&quot; data-origin-height=&quot;72&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;apk 다우ㅡㄴ.png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;140&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/VPWgG/btsBjrtWh18/m6gU3Vng9fq9reGuTxtp90/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/VPWgG/btsBjrtWh18/m6gU3Vng9fq9reGuTxtp90/img.png&quot; data-alt=&quot;apk파일 다운&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/VPWgG/btsBjrtWh18/m6gU3Vng9fq9reGuTxtp90/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FVPWgG%2FbtsBjrtWh18%2Fm6gU3Vng9fq9reGuTxtp90%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;683&quot; height=&quot;140&quot; data-filename=&quot;apk 다우ㅡㄴ.png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;140&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;apk파일 다운&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;유포지 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1701512961964&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;https://t[.]ly/FOT26
https://kor[.]iconlive[.]store/
https://kor[.]iconlive[.]store/down.php
https://kor[.]iconlive[.]store/data/apk/%EB%AA%A8%EB%B0%94%EC%9D%BC%20%EB%B6%80%EA%B3%A0.apk&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문자에 포함된 URL을 누르게 되면 부고장 피싱 사이트로 접속하게 되며, 페이지에 있는 이미지 클릭 시 특정 페이지로 넘어가게 되며, 최종적으로는 APK파일을 다운로드하게 됩니다. 해당 APK 파일은&amp;nbsp;&lt;span style=&quot;color: #ee2323;&quot;&gt;악성 앱&lt;/span&gt;입니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;악성 앱 리소스 분석&lt;/span&gt;&lt;/h2&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name: 부고장(개인용)&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Version : 1.0.6&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Package Name : sedfkkerdf.esfwdclppq.fpqlcz&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5: 674 cc4848662 d50 ca96 ea6 fc4 f27 dd15&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1 : 4 e44340 e6 e1 d50 bcd0 bec8843162 f9 d2 d23 e5973&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-256 : 5 c0 bc752 a08 d556803 cd611 d628 a7 a7 cadd994 aec9 bd82 bfd604 e83 bde4849 d b&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Vhash : 51 c2 e2523 d748 b1281 ba16 b75475 e661&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 백신 탐지 결과&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira&amp;nbsp;(no&amp;nbsp;cloud)&amp;nbsp;:&lt;span style=&quot;color: #ffc1c8;&quot;&gt;&amp;nbsp;ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BitDefenderFalx&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Trojan.AgentSpy.DT&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Cynet&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Malicious&amp;nbsp;(score:&amp;nbsp;99)&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Packed.15.origin&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/TrojanDropper.Agent.LKS&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;F-Secure&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet&amp;nbsp;:&amp;nbsp;Android/Agent.LKS! tr&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm&amp;nbsp;by&amp;nbsp;Check&amp;nbsp;Point&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;961&quot; data-origin-height=&quot;681&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/QRYL5/btsBgaHczEb/tdvFfP7XO8TSDO6GB0GblK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/QRYL5/btsBgaHczEb/tdvFfP7XO8TSDO6GB0GblK/img.png&quot; data-alt=&quot;VirusTotal 탐지 결과&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/QRYL5/btsBgaHczEb/tdvFfP7XO8TSDO6GB0GblK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQRYL5%2FbtsBgaHczEb%2FtdvFfP7XO8TSDO6GB0GblK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;961&quot; height=&quot;681&quot; data-origin-width=&quot;961&quot; data-origin-height=&quot;681&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;VirusTotal 탐지 결과&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities 2&amp;nbsp; , Services 4, Receivers 1, Providers 1&lt;/span&gt;&lt;/p&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1701513371642&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;?xml version=&quot;1.0&quot; encoding=&quot;UTF-8&quot;?&amp;gt;
&amp;lt;manifest android:compileSdkVersion=&quot;23&quot; android:compileSdkVersionCodename=&quot;6.0-2438415&quot; android:tag=&quot;&quot; android:versionCode=&quot;106&quot; android:versionName=&quot;1.0.6&quot; package=&quot;sedfkkerdf.esfwdclppq.fpqlcz&quot; platformBuildVersionCode=&quot;23&quot; platformBuildVersionName=&quot;6.0-2438415&quot; xmlns:android=&quot;http://schemas.android.com/apk/res/android&quot;&amp;gt;
  &amp;lt;uses-sdk android:minSdkVersion=&quot;24&quot; android:tag=&quot;&quot; android:targetSdkVersion=&quot;26&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.ACCESS_WIFI_STATE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_CONTACTS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.WRITE_CONTACTS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_SMS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.SEND_SMS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_EXTERNAL_STORAGE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.WRITE_EXTERNAL_STORAGE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.SYSTEM_ALERT_WINDOW&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_STATE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.WAKE_LOCK&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.WRITE_EXTERNAL_STORAGE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.ACCESS_NETWORK_STATE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_STATE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.READ_EXTERNAL_STORAGE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.INTERNET&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.GET_ACCOUNTS&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.FOREGROUND_SERVICE&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-permission android:name=&quot;android.permission.RECEIVE_BOOT_COMPLETED&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-feature android:glEsVersion=&quot;0x20000&quot; android:required=&quot;true&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;uses-feature android:name=&quot;android.hardware.telephony&quot; android:required=&quot;false&quot; android:tag=&quot;&quot;/&amp;gt;
  &amp;lt;application android:allowBackup=&quot;true&quot; android:appComponentFactory=&quot;androidx.core.app.CoreComponentFactory&quot; android:icon=&quot;@NP_MANAGER12/NP_MANAGER&quot; android:label=&quot;@NP_MANAGER15/NP_MANAGER&quot; android:name=&quot;cv3c.rep.i7p5.okt&quot; android:networkSecurityConfig=&quot;@NP_MANAGER18/NP_MANAGER&quot; android:roundIcon=&quot;@NP_MANAGER12/NP_MANAGER&quot; android:supportsRtl=&quot;true&quot; android:tag=&quot;&quot; android:theme=&quot;@NP_MANAGER16/NP_MANAGER&quot;&amp;gt;
    &amp;lt;activity android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.ui.ac.SplashActivity&quot; android:tag=&quot;&quot; android:theme=&quot;@NP_MANAGER16/NP_MANAGER&quot;&amp;gt;
      &amp;lt;intent-filter android:tag=&quot;&quot;&amp;gt;
        &amp;lt;action android:name=&quot;android.intent.action.MAIN&quot; android:tag=&quot;&quot;/&amp;gt;
        &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot; android:tag=&quot;&quot;/&amp;gt;
      &amp;lt;/intent-filter&amp;gt;
    &amp;lt;/activity&amp;gt;
    &amp;lt;activity-alias android:enabled=&quot;false&quot; android:exported=&quot;true&quot; android:icon=&quot;@android:color/transparent&quot; android:label=&quot;&quot; android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.alias&quot; android:tag=&quot;&quot; android:targetActivity=&quot;sedfkkerdf.esfwdclppq.fpqlcz.ui.ac.SplashActivity&quot;&amp;gt;
      &amp;lt;intent-filter android:tag=&quot;&quot;&amp;gt;
        &amp;lt;action android:name=&quot;android.intent.action.MAIN&quot; android:tag=&quot;&quot;/&amp;gt;
        &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot; android:tag=&quot;&quot;/&amp;gt;
      &amp;lt;/intent-filter&amp;gt;
    &amp;lt;/activity-alias&amp;gt;
    &amp;lt;activity android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.ui.ac.IndexActivity&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;service android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.keepalive.service.RunningService&quot; android:permission=&quot;android.permission.BIND_JOB_SERVICE&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;service android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.keepalive.service.AssistService&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;service android:enabled=&quot;true&quot; android:exported=&quot;true&quot; android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.keepalive.service.PlayerMusicService&quot; android:process=&quot;:music_service&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;service android:name=&quot;org.eclipse.paho.android.service.MqttService&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;receiver android:name=&quot;sedfkkerdf.esfwdclppq.fpqlcz.keepalive.receiver.BootCompletedReceiver&quot; android:tag=&quot;&quot;&amp;gt;
      &amp;lt;intent-filter android:tag=&quot;&quot;&amp;gt;
        &amp;lt;action android:name=&quot;android.intent.action.PHONE_STATE&quot; android:tag=&quot;&quot;/&amp;gt;
      &amp;lt;/intent-filter&amp;gt;
      &amp;lt;intent-filter android:priority=&quot;2147483647&quot; android:tag=&quot;&quot;&amp;gt;
        &amp;lt;action android:name=&quot;android.intent.action.BOOT_COMPLETED&quot; android:tag=&quot;&quot;/&amp;gt;
      &amp;lt;/intent-filter&amp;gt;
    &amp;lt;/receiver&amp;gt;
    &amp;lt;provider android:authorities=&quot;sedfkkerdf.esfwdclppq.fpqlcz.provider&quot; android:exported=&quot;false&quot; android:grantUriPermissions=&quot;true&quot; android:name=&quot;androidx.core.content.FileProvider&quot; android:tag=&quot;&quot;&amp;gt;
      &amp;lt;meta-data android:name=&quot;android.support.FILE_PROVIDER_PATHS&quot; android:resource=&quot;@NP_MANAGER18/NP_MANAGER&quot; android:tag=&quot;&quot;/&amp;gt;
    &amp;lt;/provider&amp;gt;
    &amp;lt;meta-data android:name=&quot;jdpuyaazshgu&quot; android:tag=&quot;&quot; android:value=&quot;wvKWlGqv5M2msJgAUwNU0w==_mzacdobzmccv&quot;/&amp;gt;
    &amp;lt;meta-data android:name=&quot;app_name&quot; android:tag=&quot;&quot; android:value=&quot;sedfkkerdf.esfwdclppq.fpqlcz.base.BaseApplication&quot;/&amp;gt;
  &amp;lt;/application&amp;gt;
&amp;lt;/manifest&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Permission&lt;/span&gt;&lt;/h4&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;table style=&quot;color: #374151; text-align: left; border-collapse: collapse; width: 100%; height: 374px;&quot; border=&quot;1&quot; data-ke-style=&quot;style15&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;권한&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;설명&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ACCESS_WIFI_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Wi-Fi 상태 및 정보에 액세스할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_CONTACTS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;연락처 정보를 읽을 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WRITE_CONTACTS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;연락처에 쓸 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS(단문 메시지 서비스) 메시지를 읽을 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SEND_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 보낼 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_EXTERNAL_STORAGE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;외부 저장소의 콘텐츠를 읽을 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WRITE_EXTERNAL_STORAGE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;외부 저장소에 콘텐츠를 쓸 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SYSTEM_ALERT_WINDOW&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;시스템 경고 창을 표시할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_PHONE_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화 상태 및 식별자 정보를 읽을 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 34px;&quot;&gt;
&lt;td style=&quot;height: 34px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;REQUEST_IGNORE_BATTERY_OPTIMIZATIONS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 34px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;배터리 최적화를 무시할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WAKE_LOCK&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;장치가 화면이 꺼진 상태에서도 작동할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ACCESS_NETWORK_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 상태에 대한 정보에 액세스할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;INTERNET&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;인터넷에 액세스할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GET_ACCOUNTS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;계정 관련 정보에 액세스할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;FOREGROUND_SERVICE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;포그라운드 서비스를 실행할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 40px;&quot;&gt;
&lt;td style=&quot;height: 40px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RECEIVE_BOOT_COMPLETED&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 40px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;부팅이 완료된 후에 방송을 수신하여 특정 작업을 수행할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;Activities 2&amp;nbsp; , Services 4, Receivers 1, Providers 1와 16개의 권한을 사용하는 것을 알 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h2 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size26&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드분석&lt;/span&gt;&lt;/h2&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;앱 실행시 assets 안에 gif 사진 파일을 보여주고, 아이콘 은닉, sms 기본앱 변경, 베터리 최적화, 부팅 시 앱 실행 기능을 수행 하고 서버와 mqtt 연결(로그인)을 하여 악성행위를 진행 합니다.&lt;br /&gt;기기정보, 갤러리(사진, 동영상), 공동인증서, 계정, sms, 주소록, 앱 설치 목록을 수집 하고 mqtt handler 메세지을 이용하여 원격제어를 통해 특정 행위와 정보 유출 행위를 수행 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;앱 실행시 화면을 보여줌&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;아이콘 은닉&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;베터리 최적화&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;sms 기본앱 변경&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;부팅시 앱 (서비스) 실행&amp;nbsp;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;mqtt 로그인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;정보 수집 후 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;공동 인증서 수집 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;mqtt를 이용한 원격제어&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;악성 행위&lt;/h3&gt;
&lt;h4 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 앱 실행시 화면을 보여줌&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱실행시 사진을 보여줌1.png&quot; data-origin-width=&quot;981&quot; data-origin-height=&quot;116&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bAPXoq/btsBiu5MsHs/Ft5CfxTyUzi04kkC2XAXH1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bAPXoq/btsBiu5MsHs/Ft5CfxTyUzi04kkC2XAXH1/img.png&quot; data-alt=&quot;이미지를 보여줌 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bAPXoq/btsBiu5MsHs/Ft5CfxTyUzi04kkC2XAXH1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbAPXoq%2FbtsBiu5MsHs%2FFt5CfxTyUzi04kkC2XAXH1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;981&quot; height=&quot;116&quot; data-filename=&quot;앱실행시 사진을 보여줌1.png&quot; data-origin-width=&quot;981&quot; data-origin-height=&quot;116&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;이미지를 보여줌 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱실행시 사진을 보여줌2.png&quot; data-origin-width=&quot;672&quot; data-origin-height=&quot;705&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b881BG/btsBjP2oq5J/PsVsw4azv0wRRLjaJZalh1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b881BG/btsBjP2oq5J/PsVsw4azv0wRRLjaJZalh1/img.png&quot; data-alt=&quot;이미지를 보여줌 2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b881BG/btsBjP2oq5J/PsVsw4azv0wRRLjaJZalh1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb881BG%2FbtsBjP2oq5J%2FPsVsw4azv0wRRLjaJZalh1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;672&quot; height=&quot;705&quot; data-filename=&quot;앱실행시 사진을 보여줌2.png&quot; data-origin-width=&quot;672&quot; data-origin-height=&quot;705&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;이미지를 보여줌 2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. 아이콘 은닉&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;아이콘 은닉.png&quot; data-origin-width=&quot;882&quot; data-origin-height=&quot;160&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ppy9n/btsBjChQjeN/wiGkp5ievlWKOaL0ZQdk0K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ppy9n/btsBjChQjeN/wiGkp5ievlWKOaL0ZQdk0K/img.png&quot; data-alt=&quot;아이콘 은닉&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ppy9n/btsBjChQjeN/wiGkp5ievlWKOaL0ZQdk0K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fppy9n%2FbtsBjChQjeN%2FwiGkp5ievlWKOaL0ZQdk0K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;882&quot; height=&quot;160&quot; data-filename=&quot;아이콘 은닉.png&quot; data-origin-width=&quot;882&quot; data-origin-height=&quot;160&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;아이콘 은닉&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. 베터리 최적화&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;베터리 최적화.png&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;213&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bCSOL0/btsBiQVcrjN/OjKgu7NSIZK1fXMwyrsEk0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bCSOL0/btsBiQVcrjN/OjKgu7NSIZK1fXMwyrsEk0/img.png&quot; data-alt=&quot;베터리 최적화&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bCSOL0/btsBiQVcrjN/OjKgu7NSIZK1fXMwyrsEk0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbCSOL0%2FbtsBiQVcrjN%2FOjKgu7NSIZK1fXMwyrsEk0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;715&quot; height=&quot;213&quot; data-filename=&quot;베터리 최적화.png&quot; data-origin-width=&quot;715&quot; data-origin-height=&quot;213&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;베터리 최적화&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4. sms&amp;nbsp;기본앱&amp;nbsp;변경&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 기본앱 변경.png&quot; data-origin-width=&quot;578&quot; data-origin-height=&quot;111&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bGhIVU/btsBgKBrsZs/RH0ArMA61MT8iYlED68KV0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bGhIVU/btsBgKBrsZs/RH0ArMA61MT8iYlED68KV0/img.png&quot; data-alt=&quot;sms 기본앱 변경&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bGhIVU/btsBgKBrsZs/RH0ArMA61MT8iYlED68KV0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbGhIVU%2FbtsBgKBrsZs%2FRH0ArMA61MT8iYlED68KV0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;578&quot; height=&quot;111&quot; data-filename=&quot;sms 기본앱 변경.png&quot; data-origin-width=&quot;578&quot; data-origin-height=&quot;111&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 기본앱 변경&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;5. 부팅시 앱 (서비스) 실행&amp;nbsp;&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;부팅시 앱 서비스 실행.png&quot; data-origin-width=&quot;652&quot; data-origin-height=&quot;419&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Ef49A/btsBiR7AP6X/qgvSoKfyx7thSQ6ghZeIu1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Ef49A/btsBiR7AP6X/qgvSoKfyx7thSQ6ghZeIu1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Ef49A/btsBiR7AP6X/qgvSoKfyx7thSQ6ghZeIu1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FEf49A%2FbtsBiR7AP6X%2FqgvSoKfyx7thSQ6ghZeIu1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;652&quot; height=&quot;419&quot; data-filename=&quot;부팅시 앱 서비스 실행.png&quot; data-origin-width=&quot;652&quot; data-origin-height=&quot;419&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;6. mqtt 로그인&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;mqtt1.png&quot; data-origin-width=&quot;834&quot; data-origin-height=&quot;146&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cdNp2r/btsBgvD81eL/Aj2B5ktkxyMszPAcBIW150/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cdNp2r/btsBgvD81eL/Aj2B5ktkxyMszPAcBIW150/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cdNp2r/btsBgvD81eL/Aj2B5ktkxyMszPAcBIW150/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcdNp2r%2FbtsBgvD81eL%2FAj2B5ktkxyMszPAcBIW150%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;834&quot; height=&quot;146&quot; data-filename=&quot;mqtt1.png&quot; data-origin-width=&quot;834&quot; data-origin-height=&quot;146&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;mqtt2.png&quot; data-origin-width=&quot;749&quot; data-origin-height=&quot;489&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bY9MBR/btsBiruqAjl/LJ4mn3HxP5K5hyHloh7Z5K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bY9MBR/btsBiruqAjl/LJ4mn3HxP5K5hyHloh7Z5K/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bY9MBR/btsBiruqAjl/LJ4mn3HxP5K5hyHloh7Z5K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbY9MBR%2FbtsBiruqAjl%2FLJ4mn3HxP5K5hyHloh7Z5K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;749&quot; height=&quot;489&quot; data-filename=&quot;mqtt2.png&quot; data-origin-width=&quot;749&quot; data-origin-height=&quot;489&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;로그인.png&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;390&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/5yHdh/btsBj7WbKCI/UH2akVpWdlQmC4ksvNKVxK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/5yHdh/btsBj7WbKCI/UH2akVpWdlQmC4ksvNKVxK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/5yHdh/btsBj7WbKCI/UH2akVpWdlQmC4ksvNKVxK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F5yHdh%2FbtsBj7WbKCI%2FUH2akVpWdlQmC4ksvNKVxK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;814&quot; height=&quot;390&quot; data-filename=&quot;로그인.png&quot; data-origin-width=&quot;814&quot; data-origin-height=&quot;390&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;7. 정보 수집 후 유출&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;디바이스, sms, 주소록, 계정 정보 수집 유출&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;수집정보 유출.png&quot; data-origin-width=&quot;613&quot; data-origin-height=&quot;481&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/p7UbZ/btsBgK2yh5e/8EdkaIjWo92yVnazhck3B0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/p7UbZ/btsBgK2yh5e/8EdkaIjWo92yVnazhck3B0/img.png&quot; data-alt=&quot;정보 수집 후 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/p7UbZ/btsBgK2yh5e/8EdkaIjWo92yVnazhck3B0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fp7UbZ%2FbtsBgK2yh5e%2F8EdkaIjWo92yVnazhck3B0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;613&quot; height=&quot;481&quot; data-filename=&quot;수집정보 유출.png&quot; data-origin-width=&quot;613&quot; data-origin-height=&quot;481&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정보 수집 후 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;기기정보 수집.png&quot; data-origin-width=&quot;789&quot; data-origin-height=&quot;443&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b4CJol/btsBffIvYRZ/cGKpP37okK8MfyVsotx5H0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b4CJol/btsBffIvYRZ/cGKpP37okK8MfyVsotx5H0/img.png&quot; data-alt=&quot;기기 정보 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b4CJol/btsBffIvYRZ/cGKpP37okK8MfyVsotx5H0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb4CJol%2FbtsBffIvYRZ%2FcGKpP37okK8MfyVsotx5H0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;789&quot; height=&quot;443&quot; data-filename=&quot;기기정보 수집.png&quot; data-origin-width=&quot;789&quot; data-origin-height=&quot;443&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;기기 정보 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 정보 수집.png&quot; data-origin-width=&quot;1090&quot; data-origin-height=&quot;538&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Pv2K6/btsBjoD3zjy/XquhpvNCEhKSUe6ZgazdL0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Pv2K6/btsBjoD3zjy/XquhpvNCEhKSUe6ZgazdL0/img.png&quot; data-alt=&quot;sms 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Pv2K6/btsBjoD3zjy/XquhpvNCEhKSUe6ZgazdL0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPv2K6%2FbtsBjoD3zjy%2FXquhpvNCEhKSUe6ZgazdL0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1090&quot; height=&quot;538&quot; data-filename=&quot;sms 정보 수집.png&quot; data-origin-width=&quot;1090&quot; data-origin-height=&quot;538&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주소록수집.png&quot; data-origin-width=&quot;863&quot; data-origin-height=&quot;453&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dwM5WS/btsBiqh2Ytj/symv6WQMKTTjW3UvhSmcL0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dwM5WS/btsBiqh2Ytj/symv6WQMKTTjW3UvhSmcL0/img.png&quot; data-alt=&quot;주소록 정보 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dwM5WS/btsBiqh2Ytj/symv6WQMKTTjW3UvhSmcL0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdwM5WS%2FbtsBiqh2Ytj%2Fsymv6WQMKTTjW3UvhSmcL0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;863&quot; height=&quot;453&quot; data-filename=&quot;주소록수집.png&quot; data-origin-width=&quot;863&quot; data-origin-height=&quot;453&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;주소록 정보 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;기기에 설정된 계정 정보 수집.png&quot; data-origin-width=&quot;488&quot; data-origin-height=&quot;143&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dhrbLG/btsBjrHr7G0/pb0afeXBxxNugPiaZjQWUk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dhrbLG/btsBjrHr7G0/pb0afeXBxxNugPiaZjQWUk/img.png&quot; data-alt=&quot;계정 정보 수집&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dhrbLG/btsBjrHr7G0/pb0afeXBxxNugPiaZjQWUk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdhrbLG%2FbtsBjrHr7G0%2Fpb0afeXBxxNugPiaZjQWUk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;488&quot; height=&quot;143&quot; data-filename=&quot;기기에 설정된 계정 정보 수집.png&quot; data-origin-width=&quot;488&quot; data-origin-height=&quot;143&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;계정 정보 수집&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;8.&amp;nbsp; 공동 인증서 수집 유출&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;공동인증서 수집 유출.png&quot; data-origin-width=&quot;923&quot; data-origin-height=&quot;353&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nmstR/btsBh5SS6Bh/JD9F82D4ZTBLmX9w6djchk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nmstR/btsBh5SS6Bh/JD9F82D4ZTBLmX9w6djchk/img.png&quot; data-alt=&quot;공동 인증서&amp;amp;amp;nbsp; 수집 유츨&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nmstR/btsBh5SS6Bh/JD9F82D4ZTBLmX9w6djchk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnmstR%2FbtsBh5SS6Bh%2FJD9F82D4ZTBLmX9w6djchk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;923&quot; height=&quot;353&quot; data-filename=&quot;공동인증서 수집 유출.png&quot; data-origin-width=&quot;923&quot; data-origin-height=&quot;353&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;공동 인증서&amp;amp;nbsp; 수집 유츨&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;9.&amp;nbsp; mqtt를 이용한 원격제어&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;핸들러 메세지를 이용하여 원격제어를 합니다. 원격제어를 이용하여 지정된 악성행위를 수행 한다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2.\t휴대전화&amp;nbsp;정보&amp;nbsp;저장&amp;nbsp;확인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3.\t연락처 저장 확인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&quot;연락처 삭제 주제&quot;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4.\t메시지 내용 저장 확인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;5.\t통화기록 저장 확인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;6.\t사진 가져오기 OK&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;7.\t비디오 가져오기 확인&amp;nbsp;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;8.\t상임관리자가 원격으로 문자를 보내면 OK&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;14.\t 애플리케이션 목록 확인&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;주소록 전화 번호 추가&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;볼륨제어&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;mqtt handle messages를 통한 원격 제어.png&quot; data-origin-width=&quot;653&quot; data-origin-height=&quot;540&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nNqHa/btsBitMzuMg/HdEX7wTJcQCZKNRNuSHZj0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nNqHa/btsBitMzuMg/HdEX7wTJcQCZKNRNuSHZj0/img.png&quot; data-alt=&quot;헨들러 메세지 별 악성행위&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nNqHa/btsBitMzuMg/HdEX7wTJcQCZKNRNuSHZj0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnNqHa%2FbtsBitMzuMg%2FHdEX7wTJcQCZKNRNuSHZj0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;653&quot; height=&quot;540&quot; data-filename=&quot;mqtt handle messages를 통한 원격 제어.png&quot; data-origin-width=&quot;653&quot; data-origin-height=&quot;540&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;헨들러 메세지 별 악성행위&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;볼륨 제어.png&quot; data-origin-width=&quot;676&quot; data-origin-height=&quot;326&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Q2zC8/btsBik3mp4e/be2935IKBBrUlkIrVkICt1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Q2zC8/btsBik3mp4e/be2935IKBBrUlkIrVkICt1/img.png&quot; data-alt=&quot;볼륨 제어&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Q2zC8/btsBik3mp4e/be2935IKBBrUlkIrVkICt1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQ2zC8%2FbtsBik3mp4e%2Fbe2935IKBBrUlkIrVkICt1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;676&quot; height=&quot;326&quot; data-filename=&quot;볼륨 제어.png&quot; data-origin-width=&quot;676&quot; data-origin-height=&quot;326&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;볼륨 제어&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;설치된 앱 정보 수집 유출.png&quot; data-origin-width=&quot;856&quot; data-origin-height=&quot;474&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/wGhCj/btsBgwwfjm5/zSsCecyJ0QkPYWyYEhCnRK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/wGhCj/btsBgwwfjm5/zSsCecyJ0QkPYWyYEhCnRK/img.png&quot; data-alt=&quot;설치된 앱 정보 수집 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/wGhCj/btsBgwwfjm5/zSsCecyJ0QkPYWyYEhCnRK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FwGhCj%2FbtsBgwwfjm5%2FzSsCecyJ0QkPYWyYEhCnRK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;856&quot; height=&quot;474&quot; data-filename=&quot;설치된 앱 정보 수집 유출.png&quot; data-origin-width=&quot;856&quot; data-origin-height=&quot;474&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;설치된 앱 정보 수집 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;원격지에서 받은 sms 메세지를 송신.png&quot; data-origin-width=&quot;807&quot; data-origin-height=&quot;659&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Bvxnt/btsBjQNMQvp/qEDa2GxHtWZivpsJ5NbKY1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Bvxnt/btsBjQNMQvp/qEDa2GxHtWZivpsJ5NbKY1/img.png&quot; data-alt=&quot;원격지에서 받은 sms 메세지 송신 기능 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Bvxnt/btsBjQNMQvp/qEDa2GxHtWZivpsJ5NbKY1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FBvxnt%2FbtsBjQNMQvp%2FqEDa2GxHtWZivpsJ5NbKY1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;807&quot; height=&quot;659&quot; data-filename=&quot;원격지에서 받은 sms 메세지를 송신.png&quot; data-origin-width=&quot;807&quot; data-origin-height=&quot;659&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;원격지에서 받은 sms 메세지 송신 기능 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;원격지에서 받은 sms 메세지를 송신2.png&quot; data-origin-width=&quot;716&quot; data-origin-height=&quot;237&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/zRzTx/btsBj9T1snZ/3ctGo2kLUjau3av5kUBVz0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/zRzTx/btsBj9T1snZ/3ctGo2kLUjau3av5kUBVz0/img.png&quot; data-alt=&quot;원격지에서 받은 sms 메세지 송신 기능 2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/zRzTx/btsBj9T1snZ/3ctGo2kLUjau3av5kUBVz0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FzRzTx%2FbtsBj9T1snZ%2F3ctGo2kLUjau3av5kUBVz0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;716&quot; height=&quot;237&quot; data-filename=&quot;원격지에서 받은 sms 메세지를 송신2.png&quot; data-origin-width=&quot;716&quot; data-origin-height=&quot;237&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;원격지에서 받은 sms 메세지 송신 기능 2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;이미지 동영상 수집 유출.png&quot; data-origin-width=&quot;667&quot; data-origin-height=&quot;638&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bGKEti/btsBjocUHL8/LavM49M1eaXgaUqSyJ1KM0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bGKEti/btsBjocUHL8/LavM49M1eaXgaUqSyJ1KM0/img.png&quot; data-alt=&quot;이미지 동영상 수집 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bGKEti/btsBjocUHL8/LavM49M1eaXgaUqSyJ1KM0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbGKEti%2FbtsBjocUHL8%2FLavM49M1eaXgaUqSyJ1KM0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;667&quot; height=&quot;638&quot; data-filename=&quot;이미지 동영상 수집 유출.png&quot; data-origin-width=&quot;667&quot; data-origin-height=&quot;638&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;이미지 동영상 수집 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 행위&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;각종 정보 유출, 로그인, 주소록 정보 유출&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;네트워크 로그인.png&quot; data-origin-width=&quot;1192&quot; data-origin-height=&quot;472&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJNv4R/btsBiUb6uv5/HjYBFYenY1s3sB7fEZOIN1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJNv4R/btsBiUb6uv5/HjYBFYenY1s3sB7fEZOIN1/img.png&quot; data-alt=&quot;로그인&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJNv4R/btsBiUb6uv5/HjYBFYenY1s3sB7fEZOIN1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJNv4R%2FbtsBiUb6uv5%2FHjYBFYenY1s3sB7fEZOIN1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1192&quot; height=&quot;472&quot; data-filename=&quot;네트워크 로그인.png&quot; data-origin-width=&quot;1192&quot; data-origin-height=&quot;472&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;로그인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;네트워크 각종정보.png&quot; data-origin-width=&quot;1207&quot; data-origin-height=&quot;818&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bKlzCa/btsBfe3XvPg/9jC3wKciyNZoLFY6Gt7MB0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bKlzCa/btsBfe3XvPg/9jC3wKciyNZoLFY6Gt7MB0/img.png&quot; data-alt=&quot;각종 정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bKlzCa/btsBfe3XvPg/9jC3wKciyNZoLFY6Gt7MB0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbKlzCa%2FbtsBfe3XvPg%2F9jC3wKciyNZoLFY6Gt7MB0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1207&quot; height=&quot;818&quot; data-filename=&quot;네트워크 각종정보.png&quot; data-origin-width=&quot;1207&quot; data-origin-height=&quot;818&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;각종 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;네트워크 주소록 정보.png&quot; data-origin-width=&quot;1139&quot; data-origin-height=&quot;458&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bsjfeO/btsBjBwtyWG/9bxBHasJzL8RjnQSWHku7K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bsjfeO/btsBjBwtyWG/9bxBHasJzL8RjnQSWHku7K/img.png&quot; data-alt=&quot;주소록 정보 유출&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bsjfeO/btsBjBwtyWG/9bxBHasJzL8RjnQSWHku7K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbsjfeO%2FbtsBjBwtyWG%2F9bxBHasJzL8RjnQSWHku7K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1139&quot; height=&quot;458&quot; data-filename=&quot;네트워크 주소록 정보.png&quot; data-origin-width=&quot;1139&quot; data-origin-height=&quot;458&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;주소록 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 악성앱에 주요 유출 행위는 &lt;span style=&quot;color: #ef5369;&quot;&gt;SMS, 주소록, 기기정보, 기기에 저장된 계정 정보, 사진, 동영상, 공동인증서 정보&lt;/span&gt;가 유출 됩니다.&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 정상 사이트는 검색 결과 대부분은 상위 페이지에 노출됩니다. 도메인 정보와 검색 결과를 비교해서 맞는지 확인 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704102247892&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-description=&quot;cago_note 블로그 운영중!&quot; data-og-host=&quot;open.kakao.com&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/dHSKoK/hyUTIKXtok/4QkBSCqCOo0L8yHhSnlJFk/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/dHSKoK/hyUTIKXtok/4QkBSCqCOo0L8yHhSnlJFk/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중!&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago 분석</category>
      <category>별세</category>
      <category>보안</category>
      <category>부고 문자</category>
      <category>부고장</category>
      <category>스미싱</category>
      <category>아버님께서 금일아침에 별세하셨기에 삼가 알려드립니다.. 장례식장주소</category>
      <category>악성앱</category>
      <category>지인 사칭</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/185</guid>
      <comments>https://cago-young.tistory.com/185#entry185comment</comments>
      <pubDate>Sat, 2 Dec 2023 20:46:36 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 정부24 사칭 스미싱 악성앱 분석 (23.11.09)</title>
      <link>https://cago-young.tistory.com/184</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;관공서 사칭 악성 앱 정부 24입니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt;정부24 관련 현재 배포되고 있는 스미싱 문구는&amp;nbsp; &quot;쓰레기 무단투기로 단속되어 과태료 부과되였습니다.&quot; 내용이 포함해 스미싱 문자를 배포하고 있습니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부 24(구 민원 24)에서 과태료, 범칙금 등으로 배포되고 있는데 &quot;교통민원 24&quot; 스미싱 문구와 비슷하게 범법 행위를 직접적으로 언급하여 문자를 보낼 것으로 추정됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트 접속 시 해당 페이지는 &quot;&lt;span style=&quot;color: #f89009;&quot;&gt;번호입력 - 본인인증 - 악성앱 설치&lt;/span&gt;&quot; 순으로 진행되고, 피싱 사이트에서는 정상 사이트처럼 사용자를 속여 개인정보 수집을 진행하고 마지막에는 악성앱 설치를 유도하기 때문에 주의하셔야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[민원24]쓰레기 무단투기로 단속되어 과태료 부과되였습니다. 과태료확인: URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;문자메시지 내용.png&quot; data-origin-width=&quot;535&quot; data-origin-height=&quot;315&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJ6PuH/btsA7Q9lvdd/e2h6llc4FCuQUYwTwk9fN0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJ6PuH/btsA7Q9lvdd/e2h6llc4FCuQUYwTwk9fN0/img.png&quot; data-alt=&quot;사진 출처 : 목포시&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJ6PuH/btsA7Q9lvdd/e2h6llc4FCuQUYwTwk9fN0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJ6PuH%2FbtsA7Q9lvdd%2Fe2h6llc4FCuQUYwTwk9fN0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;535&quot; height=&quot;315&quot; data-filename=&quot;문자메시지 내용.png&quot; data-origin-width=&quot;535&quot; data-origin-height=&quot;315&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;사진 출처 : 목포시&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;목포시에서 &quot;관공서 사칭 문자 스미싱 피해 주의&quot;라는 보도 자료를 참고하여 작성했습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot;&gt;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1701251313617&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/sJwkn/hyUuVIZUcF/gYuk3guVndnapi45vPqX2K/img.png?width=1200&amp;amp;height=627&amp;amp;face=0_0_1200_627&quot; data-og-url=&quot;http://www.mokpo.go.kr/www&quot; data-og-source-url=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot; data-og-host=&quot;152.99.135.118&quot; data-og-description=&quot;목포시청 목포시 대표 누리집 www.mokpo.go.kr&quot; data-og-title=&quot;지역여건&quot; data-og-type=&quot;article&quot; data-ke-align=&quot;alignCenter&quot; data-ke-type=&quot;opengraph&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #000000;&quot; href=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot; data-source-url=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/sJwkn/hyUuVIZUcF/gYuk3guVndnapi45vPqX2K/img.png?width=1200&amp;amp;height=627&amp;amp;face=0_0_1200_627');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;지역여건&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; style=&quot;color: #909090;&quot; data-ke-size=&quot;size16&quot;&gt;목포시청 목포시 대표 누리집 www.mokpo.go.kr&lt;/p&gt;
&lt;p class=&quot;og-host&quot; style=&quot;color: #909090;&quot; data-ke-size=&quot;size16&quot;&gt;152.99.135.118&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 배포 방식&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부에서 앱 다운로드 하는 경우는 특이사항이 아닌 이상 요구 하지 않을 것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mxCIU/btsA7xvexq4/7GKicKJ6zGs22696mldBB0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mxCIU/btsA7xvexq4/7GKicKJ6zGs22696mldBB0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mxCIU/btsA7xvexq4/7GKicKJ6zGs22696mldBB0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmxCIU%2FbtsA7xvexq4%2F7GKicKJ6zGs22696mldBB0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1034&quot; height=&quot;383&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는&amp;nbsp;&lt;span style=&quot;color: #f89009;&quot;&gt;번호 입력 - 본인인증 - 앱 다운&lt;/span&gt;&amp;nbsp;순으로 진행됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 사칭 사이트인&amp;nbsp;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://www.gov.kr/&quot;&gt;정부24 홈페이지&lt;/a&gt;와 번호 입력 부분 빼고는 거의 비슷하게 생겼기 때문에 홈페이지만 보고 판단하기에는 일반 사용장 입장에서는 구분이 어려울 것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJ16p3/btsBbJuBuvN/45PKr1dJxK1PpbORUDWLL0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJ16p3/btsBbJuBuvN/45PKr1dJxK1PpbORUDWLL0/img.png&quot; style=&quot;width: 28.1725%; margin-right: 10px;&quot; data-widthpercent=&quot;28.84&quot; data-filename=&quot;edited_1.png&quot; data-origin-height=&quot;816&quot; data-origin-width=&quot;411&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJ16p3/btsBbJuBuvN/45PKr1dJxK1PpbORUDWLL0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJ16p3%2FbtsBbJuBuvN%2F45PKr1dJxK1PpbORUDWLL0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;411&quot; height=&quot;816&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/uREHO/btsBbFZ165i/bP0LvJLkr4qP9JeYLC2Ld0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/uREHO/btsBbFZ165i/bP0LvJLkr4qP9JeYLC2Ld0/img.png&quot; style=&quot;width: 35.5493%; margin-right: 10px;&quot; data-widthpercent=&quot;36.4&quot; data-filename=&quot;3.png&quot; data-origin-height=&quot;793&quot; data-origin-width=&quot;504&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/uREHO/btsBbFZ165i/bP0LvJLkr4qP9JeYLC2Ld0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FuREHO%2FbtsBbFZ165i%2FbP0LvJLkr4qP9JeYLC2Ld0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;504&quot; height=&quot;793&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/L0Hb8/btsA6URL4Ho/IcuiDbXP7k6Dy5qLplZsCk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/L0Hb8/btsA6URL4Ho/IcuiDbXP7k6Dy5qLplZsCk/img.png&quot; style=&quot;width: 33.9525%;&quot; data-widthpercent=&quot;34.76&quot; data-filename=&quot;4.png&quot; data-origin-height=&quot;827&quot; data-origin-width=&quot;502&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/L0Hb8/btsA6URL4Ho/IcuiDbXP7k6Dy5qLplZsCk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FL0Hb8%2FbtsA6URL4Ho%2FIcuiDbXP7k6Dy5qLplZsCk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;502&quot; height=&quot;827&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;피싱 사이트 순서&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 정보 유출&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bbqGf3/btsBbJahiU8/XeICqID8PA6AV8MlRdUNZ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bbqGf3/btsBbJahiU8/XeICqID8PA6AV8MlRdUNZ1/img.png&quot; data-is-animation=&quot;false&quot; data-filename=&quot;edited_1.png&quot; data-origin-height=&quot;816&quot; data-origin-width=&quot;411&quot; style=&quot;width: 47.4702%; margin-right: 10px;&quot; data-widthpercent=&quot;48.03&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bbqGf3/btsBbJahiU8/XeICqID8PA6AV8MlRdUNZ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbbqGf3%2FbtsBbJahiU8%2FXeICqID8PA6AV8MlRdUNZ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;411&quot; height=&quot;816&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/MwN9Z/btsA7STBXet/QCadoYymo6T6SCjNPYtZc1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/MwN9Z/btsA7STBXet/QCadoYymo6T6SCjNPYtZc1/img.png&quot; data-is-animation=&quot;false&quot; data-filename=&quot;본인인증 1.png&quot; data-origin-height=&quot;844&quot; data-origin-width=&quot;460&quot; style=&quot;width: 51.367%;&quot; data-widthpercent=&quot;51.97&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/MwN9Z/btsA7STBXet/QCadoYymo6T6SCjNPYtZc1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FMwN9Z%2FbtsA7STBXet%2FQCadoYymo6T6SCjNPYtZc1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;460&quot; height=&quot;844&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;입력 정보&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bMdcwk/btsA6SGmNyT/XhKZekiobmDPwbHZk1lEd0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bMdcwk/btsA6SGmNyT/XhKZekiobmDPwbHZk1lEd0/img.png&quot; style=&quot;width: 34.6014%; margin-right: 10px;&quot; data-widthpercent=&quot;35.01&quot; data-filename=&quot;휴대폰2.png&quot; data-origin-height=&quot;166&quot; data-origin-width=&quot;446&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bMdcwk/btsA6SGmNyT/XhKZekiobmDPwbHZk1lEd0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbMdcwk%2FbtsA6SGmNyT%2FXhKZekiobmDPwbHZk1lEd0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;446&quot; height=&quot;166&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/l0SG6/btsBc1arhyL/POrknGc5dA4HXF3tZnKoa1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/l0SG6/btsBc1arhyL/POrknGc5dA4HXF3tZnKoa1/img.png&quot; style=&quot;width: 64.2358%;&quot; data-widthpercent=&quot;64.99&quot; data-filename=&quot;edited_휴대폰1.png&quot; data-origin-height=&quot;82&quot; data-origin-width=&quot;409&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/l0SG6/btsBc1arhyL/POrknGc5dA4HXF3tZnKoa1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fl0SG6%2FbtsBc1arhyL%2FPOrknGc5dA4HXF3tZnKoa1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;409&quot; height=&quot;82&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;입력 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;입력한 번호가 피싱 사이트 서버로 전송되는 것을 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cqyBk7/btsBb7orXPu/0pvKvP8hGNR5ZEVwbnN6q1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cqyBk7/btsBb7orXPu/0pvKvP8hGNR5ZEVwbnN6q1/img.png&quot; style=&quot;width: 59.0632%; margin-right: 10px;&quot; data-widthpercent=&quot;59.76&quot; data-filename=&quot;본인인증 3.png&quot; data-origin-height=&quot;169&quot; data-origin-width=&quot;456&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cqyBk7/btsBb7orXPu/0pvKvP8hGNR5ZEVwbnN6q1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcqyBk7%2FbtsBb7orXPu%2F0pvKvP8hGNR5ZEVwbnN6q1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;456&quot; height=&quot;169&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ck1eDO/btsA7zmeBc2/3uS6kquu4iPtpWf9c3UwR1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ck1eDO/btsA7zmeBc2/3uS6kquu4iPtpWf9c3UwR1/img.png&quot; style=&quot;width: 39.774%;&quot; data-widthpercent=&quot;40.24&quot; data-filename=&quot;본인인증 2.png&quot; data-origin-height=&quot;235&quot; data-origin-width=&quot;427&quot; data-is-animation=&quot;false&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ck1eDO/btsA7zmeBc2/3uS6kquu4iPtpWf9c3UwR1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fck1eDO%2FbtsA7zmeBc2%2F3uS6kquu4iPtpWf9c3UwR1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;427&quot; height=&quot;235&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;간편 인증 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;간편 인증 페이지에서는 입력한 이름, 주민번호, 통신사, 번호 가 유출 되는 것을 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;유포 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1701251313623&quot; class=&quot;asciidoc&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;www.goosmsi[.]com/6jIfin
https://www.seoulnsk[.]live/
https://www.seoulnsk[.]live/index/in?tel=
https://www.seoulnsk[.]live/index/down?tel=
https://www.seoulnsk[.]live/index/down-app?tel=&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문자에 포함된 URL 주소로 접속하면 정부 24(구 민원24) 사칭 피싱 사이트로 접속하게 되며, 사용자에게 개인정보 요구 및 수집을 합니다. 마지막 페이지에서 설치하기 버튼을 클릭하면 APK 파일을 설치하게 되며, 해당 앱은&amp;nbsp;&lt;span style=&quot;color: #ee2323;&quot;&gt;악성 앱&lt;span style=&quot;color: #000000;&quot;&gt;입니다.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;리소스 분석&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name: 정부24&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Version : 13.2.1.22&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Package Name : com.moumoonmk.kr&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5&amp;nbsp;:&amp;nbsp;5bdbf26d893930341be56864fd5dc82c &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1&amp;nbsp;:&amp;nbsp;7571e1f9ab9756e81931f1a7cd10a79c52824587 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-256&amp;nbsp;:&amp;nbsp;539276363768922ae242148c86bfc3075e176f6aaa91856e5e867bb6c43d10f5 &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Vhash&amp;nbsp;:&amp;nbsp;81c51febc3176db9b0b003f6178089d1&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BitDefenderFalx :&lt;span style=&quot;color: #ffc1c8;&quot;&gt;&amp;nbsp;Android.Trojan.SpyAgent.JK&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Packed.15.origin&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32 :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/TrojanDropper.Agent.LKS&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet : Android/Agent.LKS!tr&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google :&lt;span style=&quot;color: #ffc1c8;&quot;&gt;&amp;nbsp;Detected&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Sophos :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android&amp;nbsp;Packed&amp;nbsp;App&amp;nbsp;(PUA)&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm by Check Point :&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;바토ㅗ.png&quot; data-origin-width=&quot;979&quot; data-origin-height=&quot;661&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/03LcI/btsA8NKX9J8/p01UTk3AReB5UwiFu4xFh1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/03LcI/btsA8NKX9J8/p01UTk3AReB5UwiFu4xFh1/img.png&quot; data-alt=&quot;VirusTotal 탐지 결과&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/03LcI/btsA8NKX9J8/p01UTk3AReB5UwiFu4xFh1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F03LcI%2FbtsA8NKX9J8%2Fp01UTk3AReB5UwiFu4xFh1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;979&quot; height=&quot;661&quot; data-filename=&quot;바토ㅗ.png&quot; data-origin-width=&quot;979&quot; data-origin-height=&quot;661&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;VirusTotal 탐지 결과&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities 3&amp;nbsp; , Services 4, Receivers 5, Providers 3&lt;/span&gt;&lt;/p&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;aapt&amp;nbsp;dump&amp;nbsp;xmlstrings&amp;nbsp;정부24_13.2.1.22.apk&amp;nbsp;AndroidManifest.xml&lt;/span&gt;&lt;/p&gt;
&lt;pre id=&quot;code_1701257981662&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;android.permission.ACCESS_NETWORK_STATE
android.permission.ACCESS_NOTIFICATION_POLICY
android.permission.ACCESS_WIFI_STATE
android.permission.BIND_DEVICE_ADMIN
android.permission.BIND_JOB_SERVICE
android.permission.BROADCAST_SMS
android.permission.BROADCAST_WAP_PUSH
android.permission.CHANGE_NETWORK_STATE
android.permission.CHANGE_WIFI_STATE
android.permission.DELETE_PACKAGES
android.permission.DEVICE_POWER
android.permission.GET_TASKS
android.permission.GET_TOP_ACTIVITY_INFO
android.permission.INTERACT_ACROSS_USERS_FULL
android.permission.INTERNET
android.permission.READ_CONTACTS
android.permission.READ_EXTERNAL_STORAGE
android.permission.READ_PHONE_STATE
android.permission.READ_SMS
android.permission.RECEIVE_BOOT_COMPLETED
android.permission.RECEIVE_MMS
android.permission.RECEIVE_SMS
android.permission.RECEIVE_WAP_PUSH
android.permission.REORDER_TASKS
android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS
android.permission.SEND_RESPOND_VIA_MESSAGE
android.permission.SEND_SMS
android.permission.SYSTEM_ALERT_WINDOW
android.permission.VIBRATE
android.permission.WAKE_LOCK
android.permission.WRITE_APN_SETTINGS
android.permission.WRITE_CONTACTS
android.permission.WRITE_EXTERNAL_STORAGE


android.provider.Telephony.SMS_DELIVER
android.provider.Telephony.SMS_RECEIVED
android.provider.Telephony.WAP_PUSH_DELIVER


com.tencent.shopcj.receiver.AlarmReceiver
com.tencent.shopcj.receiver.MSmsReceiver
com.tencent.shopcj.receiver.MainReceiver
com.tencent.shopcj.receiver.MyDeviceAdminReceiver
com.tencent.shopcj.receiver.SmsReceiver

com.tencent.shopcj.service.HeadlessSmsSendService
com.tencent.shopcj.service.MainService
com.tencent.shopcj.service.MyJobService
com.tencent.shopcj.service.RemoteService

com.tencent.shopcj.ui.AdminActivity
com.tencent.shopcj.ui.ComposeSmsActivity
com.tencent.shopcj.ui.MainActivity&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android Permission&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;color: #374151; text-align: left; border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style13&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; 권한 &lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; 설명 &lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ACCESS_NETWORK_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크에 대한 정보에 접근합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ACCESS_NOTIFICATION_POLICY&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;알림 정책에 대한 접근을 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ACCESS_WIFI_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Wi-Fi 네트워크에 대한 정보에 접근합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BIND_DEVICE_ADMIN&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;응용 프로그램이 디바이스 관리자에 바인딩될 수 있게 합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BIND_JOB_SERVICE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;작업 서비스에 바인딩할 수 있게 합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BROADCAST_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;받은 SMS 메시지를 방송합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BROADCAST_WAP_PUSH&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WAP 푸시 수신을 방송합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;CHANGE_NETWORK_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 연결 상태를 변경합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;CHANGE_WIFI_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Wi-Fi 연결 상태를 변경합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DELETE_PACKAGES&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;응용 프로그램을 삭제할 수 있도록 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DEVICE_POWER&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전원 관리에 대한 저수준 액세스를 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GET_TASKS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;현재 또는 최근에 실행 중인 작업에 대한 정보를 검색합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;GET_TOP_ACTIVITY_INFO&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;최상위 활동에 대한 정보를 검색합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;INTERACT_ACROSS_USERS_FULL&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자 간에 완전한 상호 작용을 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;INTERNET&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 소켓을 엽니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_CONTACTS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 연락처 데이터를 읽습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_EXTERNAL_STORAGE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;외부 저장소에서 읽습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_PHONE_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화 상태를 읽습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;READ_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 읽습니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RECEIVE_BOOT_COMPLETED&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;부팅 완료 알림을 수신합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RECEIVE_MMS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MMS 메시지를 수신합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RECEIVE_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 수신합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;RECEIVE_WAP_PUSH&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WAP 푸시 메시지를 수신합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;REORDER_TASKS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;시스템 작업을 재정렬합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;REQUEST_IGNORE_BATTERY_OPTIMIZATIONS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;애플리케이션의 배터리 최적화를 무시하도록 요청합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SEND_RESPOND_VIA_MESSAGE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;앱이 SMS 메시지를 전송하고 수신 메시지에 응답할 수 있게 합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SEND_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 전송합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SYSTEM_ALERT_WINDOW&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;시스템 레벨 경고를 표시합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VIBRATE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;진동 장치를 제어합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WAKE_LOCK&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;PowerManager WakeLocks를 사용하여 프로세서가 절전 모드로 들어가지 않도록 합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WRITE_APN_SETTINGS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APN 설정을 작성할 수 있게 허용합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WRITE_CONTACTS&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용자의 연락처 데이터를 작성합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;WRITE_EXTERNAL_STORAGE&lt;/span&gt;&lt;/td&gt;
&lt;td&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;외부 저장소의 내용을 수정하거나 삭제합니다.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;앱 실행 시 아이콘을 은닉하고, sms 기본앱 변경, 배터리 최적화, 부팅 시 앱 실행을 수행합니다.&lt;br /&gt;디바이스, 시스템, phone, 네트워크, 배터리, sms, 주소록, 갤러리, 녹음 파일,&amp;nbsp; 정보를 수집 하고 &lt;br /&gt;su 권한 획득, 앱설치 목록, 특정 앱 설치 유무, 녹음, 통화 녹음, sms 감시, 유출지 업데이트, 수집 정보 유출 행위를 수행합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;아이콘 은닉&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;sms 기본앱 변경&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;배터리 최적화 및 부팅시 앱 실행&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;각종 정보 수집 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;SMS 정보 수집 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;주소록 정보 수집 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;갤러리 폴더 정보 수집 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;녹음 기능 파일 파일 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;su 권한 획득&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;sms&amp;nbsp;송신&amp;nbsp;기능&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;설치된&amp;nbsp;앱&amp;nbsp;정보&amp;nbsp;수집&amp;nbsp;유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;특정&amp;nbsp;앱&amp;nbsp;설치&amp;nbsp;유무&amp;nbsp;확인&amp;nbsp;유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;전원&amp;nbsp;및&amp;nbsp;WiFi&amp;nbsp;잠금&amp;nbsp;상태&amp;nbsp;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;모니터링&amp;nbsp;기능&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;정보 유출지 확인 및 업데이트&amp;nbsp;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span&gt;정보&amp;nbsp;유출&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 아이콘 은닉 기능&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;아이콘 은닉.png&quot; data-origin-width=&quot;838&quot; data-origin-height=&quot;261&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/IesC6/btsA7CcbQ58/ZboLcBEeww8vHTWUm2NAT1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/IesC6/btsA7CcbQ58/ZboLcBEeww8vHTWUm2NAT1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/IesC6/btsA7CcbQ58/ZboLcBEeww8vHTWUm2NAT1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FIesC6%2FbtsA7CcbQ58%2FZboLcBEeww8vHTWUm2NAT1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;838&quot; height=&quot;261&quot; data-filename=&quot;아이콘 은닉.png&quot; data-origin-width=&quot;838&quot; data-origin-height=&quot;261&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. sms 기본앱 변경&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 기본앱 변경.png&quot; data-origin-width=&quot;983&quot; data-origin-height=&quot;106&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kyCcr/btsBbQUQrMo/TxzJkQkBkKKR8A8w6Zjmq1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kyCcr/btsBbQUQrMo/TxzJkQkBkKKR8A8w6Zjmq1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kyCcr/btsBbQUQrMo/TxzJkQkBkKKR8A8w6Zjmq1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkyCcr%2FbtsBbQUQrMo%2FTxzJkQkBkKKR8A8w6Zjmq1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;983&quot; height=&quot;106&quot; data-filename=&quot;sms 기본앱 변경.png&quot; data-origin-width=&quot;983&quot; data-origin-height=&quot;106&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. 베터리 최적화 및 부팅시 앱 실행&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;베터리 최적화.png&quot; data-origin-width=&quot;711&quot; data-origin-height=&quot;191&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/rB1jC/btsA71iri0u/9zKkKbMYYCTHWlZXdGyAK0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/rB1jC/btsA71iri0u/9zKkKbMYYCTHWlZXdGyAK0/img.png&quot; data-alt=&quot;베터리 최적화&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/rB1jC/btsA71iri0u/9zKkKbMYYCTHWlZXdGyAK0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FrB1jC%2FbtsA71iri0u%2F9zKkKbMYYCTHWlZXdGyAK0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;711&quot; height=&quot;191&quot; data-filename=&quot;베터리 최적화.png&quot; data-origin-width=&quot;711&quot; data-origin-height=&quot;191&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;베터리 최적화&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;부팅시 앱 실행.png&quot; data-origin-width=&quot;882&quot; data-origin-height=&quot;418&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJDZTT/btsA8NjYCVl/gmpsK3Oac4xtig3g2DeJRK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJDZTT/btsA8NjYCVl/gmpsK3Oac4xtig3g2DeJRK/img.png&quot; data-alt=&quot;부팅시 앱 실행&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJDZTT/btsA8NjYCVl/gmpsK3Oac4xtig3g2DeJRK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJDZTT%2FbtsA8NjYCVl%2FgmpsK3Oac4xtig3g2DeJRK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;882&quot; height=&quot;418&quot; data-filename=&quot;부팅시 앱 실행.png&quot; data-origin-width=&quot;882&quot; data-origin-height=&quot;418&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;부팅시 앱 실행&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4. 각종 정보 수집&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span&gt;디바이스, 시스템, 핸드폰, 네트워크, 센서, 베터리 정보 수집&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;디바이스 정보 수집 유출.png&quot; data-origin-width=&quot;1365&quot; data-origin-height=&quot;84&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bWzxCC/btsA7RUJcgW/kwzkDk4CRZ8vK9wDBUuYx0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bWzxCC/btsA7RUJcgW/kwzkDk4CRZ8vK9wDBUuYx0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bWzxCC/btsA7RUJcgW/kwzkDk4CRZ8vK9wDBUuYx0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbWzxCC%2FbtsA7RUJcgW%2FkwzkDk4CRZ8vK9wDBUuYx0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1365&quot; height=&quot;84&quot; data-filename=&quot;디바이스 정보 수집 유출.png&quot; data-origin-width=&quot;1365&quot; data-origin-height=&quot;84&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;디바이스 정보수집1.png&quot; data-origin-width=&quot;708&quot; data-origin-height=&quot;130&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bmd5gu/btsA7NxZyN8/jk8glyhtgrpsD7mSRlKhwK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bmd5gu/btsA7NxZyN8/jk8glyhtgrpsD7mSRlKhwK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bmd5gu/btsA7NxZyN8/jk8glyhtgrpsD7mSRlKhwK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbmd5gu%2FbtsA7NxZyN8%2Fjk8glyhtgrpsD7mSRlKhwK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;708&quot; height=&quot;130&quot; data-filename=&quot;디바이스 정보수집1.png&quot; data-origin-width=&quot;708&quot; data-origin-height=&quot;130&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;614&quot; data-origin-height=&quot;464&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Fe24Z/btsA4QB4IlH/RsROalcqM9Vb7DkTVIC1iK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Fe24Z/btsA4QB4IlH/RsROalcqM9Vb7DkTVIC1iK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Fe24Z/btsA4QB4IlH/RsROalcqM9Vb7DkTVIC1iK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FFe24Z%2FbtsA4QB4IlH%2FRsROalcqM9Vb7DkTVIC1iK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;614&quot; height=&quot;464&quot; data-origin-width=&quot;614&quot; data-origin-height=&quot;464&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;694&quot; data-origin-height=&quot;548&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dxBNpM/btsA4PXttDm/pWryyTfhbYKTbvkuMejgn1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dxBNpM/btsA4PXttDm/pWryyTfhbYKTbvkuMejgn1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dxBNpM/btsA4PXttDm/pWryyTfhbYKTbvkuMejgn1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdxBNpM%2FbtsA4PXttDm%2FpWryyTfhbYKTbvkuMejgn1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;694&quot; height=&quot;548&quot; data-origin-width=&quot;694&quot; data-origin-height=&quot;548&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;554&quot; data-origin-height=&quot;62&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HDFkO/btsBbNDMkWo/vYhRCZzhWPkVZn0hVSDKPk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HDFkO/btsBbNDMkWo/vYhRCZzhWPkVZn0hVSDKPk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HDFkO/btsBbNDMkWo/vYhRCZzhWPkVZn0hVSDKPk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHDFkO%2FbtsBbNDMkWo%2FvYhRCZzhWPkVZn0hVSDKPk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;554&quot; height=&quot;62&quot; data-origin-width=&quot;554&quot; data-origin-height=&quot;62&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;5. SMS 정보 수집 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수집 유출.png&quot; data-origin-width=&quot;990&quot; data-origin-height=&quot;371&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/1pFd0/btsA5g1AEha/cyKKo3GkBba4E35596IvlK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/1pFd0/btsA5g1AEha/cyKKo3GkBba4E35596IvlK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/1pFd0/btsA5g1AEha/cyKKo3GkBba4E35596IvlK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F1pFd0%2FbtsA5g1AEha%2FcyKKo3GkBba4E35596IvlK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;990&quot; height=&quot;371&quot; data-filename=&quot;sms 수집 유출.png&quot; data-origin-width=&quot;990&quot; data-origin-height=&quot;371&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수집.png&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;428&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/DY06y/btsA9jwq6em/iq2vM18HSk1en9a2ArVKlK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/DY06y/btsA9jwq6em/iq2vM18HSk1en9a2ArVKlK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/DY06y/btsA9jwq6em/iq2vM18HSk1en9a2ArVKlK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FDY06y%2FbtsA9jwq6em%2Fiq2vM18HSk1en9a2ArVKlK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;428&quot; data-filename=&quot;sms 수집.png&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;428&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;6. 주소록 정보 수집 및 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주소록 수집 유출.png&quot; data-origin-width=&quot;988&quot; data-origin-height=&quot;253&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Plb30/btsBbEGL9gU/f2887cJ1BKT9dwA7ZN7sl1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Plb30/btsBbEGL9gU/f2887cJ1BKT9dwA7ZN7sl1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Plb30/btsBbEGL9gU/f2887cJ1BKT9dwA7ZN7sl1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPlb30%2FbtsBbEGL9gU%2Ff2887cJ1BKT9dwA7ZN7sl1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;988&quot; height=&quot;253&quot; data-filename=&quot;주소록 수집 유출.png&quot; data-origin-width=&quot;988&quot; data-origin-height=&quot;253&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;1035&quot; data-origin-height=&quot;557&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Rk4hT/btsBbIbk7fH/3db2o1YS7BRL4UMtSjSPmk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Rk4hT/btsBbIbk7fH/3db2o1YS7BRL4UMtSjSPmk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Rk4hT/btsBbIbk7fH/3db2o1YS7BRL4UMtSjSPmk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRk4hT%2FbtsBbIbk7fH%2F3db2o1YS7BRL4UMtSjSPmk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1035&quot; height=&quot;557&quot; data-filename=&quot;주소록 수집.png&quot; data-origin-width=&quot;1035&quot; data-origin-height=&quot;557&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;7. 갤러리 폴더 정보 수집 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;갤러리 uri.png&quot; data-origin-width=&quot;1005&quot; data-origin-height=&quot;377&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/TJY4z/btsA4WbfnaV/l03ujEv7i0qpz7PDltQ8qK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/TJY4z/btsA4WbfnaV/l03ujEv7i0qpz7PDltQ8qK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/TJY4z/btsA4WbfnaV/l03ujEv7i0qpz7PDltQ8qK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FTJY4z%2FbtsA4WbfnaV%2Fl03ujEv7i0qpz7PDltQ8qK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1005&quot; height=&quot;377&quot; data-filename=&quot;갤러리 uri.png&quot; data-origin-width=&quot;1005&quot; data-origin-height=&quot;377&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;이미지 사진 업로드.png&quot; data-origin-width=&quot;1162&quot; data-origin-height=&quot;625&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/q1O9e/btsBaZqXo7y/YhdAqgVKUbUnqY8FuVHI20/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/q1O9e/btsBaZqXo7y/YhdAqgVKUbUnqY8FuVHI20/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/q1O9e/btsBaZqXo7y/YhdAqgVKUbUnqY8FuVHI20/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fq1O9e%2FbtsBaZqXo7y%2FYhdAqgVKUbUnqY8FuVHI20%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1162&quot; height=&quot;625&quot; data-filename=&quot;이미지 사진 업로드.png&quot; data-origin-width=&quot;1162&quot; data-origin-height=&quot;625&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;8. 녹음 기능 및 녹음 파일 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;녹음 기능.png&quot; data-origin-width=&quot;812&quot; data-origin-height=&quot;618&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bMj4aT/btsA7RUJCrP/YhDIp4VrmDS9ezf8sz6Vl1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bMj4aT/btsA7RUJCrP/YhDIp4VrmDS9ezf8sz6Vl1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bMj4aT/btsA7RUJCrP/YhDIp4VrmDS9ezf8sz6Vl1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbMj4aT%2FbtsA7RUJCrP%2FYhDIp4VrmDS9ezf8sz6Vl1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;812&quot; height=&quot;618&quot; data-filename=&quot;녹음 기능.png&quot; data-origin-width=&quot;812&quot; data-origin-height=&quot;618&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;업로드 녹음.png&quot; data-origin-width=&quot;852&quot; data-origin-height=&quot;289&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dh8udj/btsA7ZEYYm7/ME7SYRlnEqlFQxKKZH22Zk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dh8udj/btsA7ZEYYm7/ME7SYRlnEqlFQxKKZH22Zk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dh8udj/btsA7ZEYYm7/ME7SYRlnEqlFQxKKZH22Zk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fdh8udj%2FbtsA7ZEYYm7%2FME7SYRlnEqlFQxKKZH22Zk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;852&quot; height=&quot;289&quot; data-filename=&quot;업로드 녹음.png&quot; data-origin-width=&quot;852&quot; data-origin-height=&quot;289&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;8. su 권한 획득&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;admin1.png&quot; data-origin-width=&quot;420&quot; data-origin-height=&quot;106&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3ce6Z/btsA6SM87LX/KVaN6FKuhfI4FletHLk160/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3ce6Z/btsA6SM87LX/KVaN6FKuhfI4FletHLk160/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3ce6Z/btsA6SM87LX/KVaN6FKuhfI4FletHLk160/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3ce6Z%2FbtsA6SM87LX%2FKVaN6FKuhfI4FletHLk160%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;420&quot; height=&quot;106&quot; data-filename=&quot;admin1.png&quot; data-origin-width=&quot;420&quot; data-origin-height=&quot;106&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;admin2.png&quot; data-origin-width=&quot;507&quot; data-origin-height=&quot;501&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cOoqOT/btsA9iYB9FZ/WhK11tweAyLgjfY4HJfPD1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cOoqOT/btsA9iYB9FZ/WhK11tweAyLgjfY4HJfPD1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cOoqOT/btsA9iYB9FZ/WhK11tweAyLgjfY4HJfPD1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcOoqOT%2FbtsA9iYB9FZ%2FWhK11tweAyLgjfY4HJfPD1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;507&quot; height=&quot;501&quot; data-filename=&quot;admin2.png&quot; data-origin-width=&quot;507&quot; data-origin-height=&quot;501&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;9. sms 송신 기능&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 송신 기능.png&quot; data-origin-width=&quot;727&quot; data-origin-height=&quot;135&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/k5J4I/btsBcbEopfk/o3KM4veKrpCheICU4DyMSK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/k5J4I/btsBcbEopfk/o3KM4veKrpCheICU4DyMSK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/k5J4I/btsBcbEopfk/o3KM4veKrpCheICU4DyMSK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fk5J4I%2FbtsBcbEopfk%2Fo3KM4veKrpCheICU4DyMSK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;727&quot; height=&quot;135&quot; data-filename=&quot;sms 송신 기능.png&quot; data-origin-width=&quot;727&quot; data-origin-height=&quot;135&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 송신.png&quot; data-origin-width=&quot;609&quot; data-origin-height=&quot;304&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/15ucd/btsA4b0u6WV/zSK9nS6gmTEyQRph463iHK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/15ucd/btsA4b0u6WV/zSK9nS6gmTEyQRph463iHK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/15ucd/btsA4b0u6WV/zSK9nS6gmTEyQRph463iHK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F15ucd%2FbtsA4b0u6WV%2FzSK9nS6gmTEyQRph463iHK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;609&quot; height=&quot;304&quot; data-filename=&quot;sms 송신.png&quot; data-origin-width=&quot;609&quot; data-origin-height=&quot;304&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;10. 설치된 앱 정보 수집 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;설치된 앱 정보 수집.png&quot; data-origin-width=&quot;1049&quot; data-origin-height=&quot;446&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cb6trp/btsBbMSoCsb/OPVk63GDAyuhfJSuGVsXBk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cb6trp/btsBbMSoCsb/OPVk63GDAyuhfJSuGVsXBk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cb6trp/btsBbMSoCsb/OPVk63GDAyuhfJSuGVsXBk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcb6trp%2FbtsBbMSoCsb%2FOPVk63GDAyuhfJSuGVsXBk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1049&quot; height=&quot;446&quot; data-filename=&quot;설치된 앱 정보 수집.png&quot; data-origin-width=&quot;1049&quot; data-origin-height=&quot;446&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;설치된 앱 정보 수집 유출.png&quot; data-origin-width=&quot;940&quot; data-origin-height=&quot;183&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mxauE/btsA4b0u6Xk/HxjOUbZg2Ru6m8F4AbOuSK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mxauE/btsA4b0u6Xk/HxjOUbZg2Ru6m8F4AbOuSK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mxauE/btsA4b0u6Xk/HxjOUbZg2Ru6m8F4AbOuSK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmxauE%2FbtsA4b0u6Xk%2FHxjOUbZg2Ru6m8F4AbOuSK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;940&quot; height=&quot;183&quot; data-filename=&quot;설치된 앱 정보 수집 유출.png&quot; data-origin-width=&quot;940&quot; data-origin-height=&quot;183&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;12.&amp;nbsp; 특정 앱 설치 유무 확인 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;특정 앱 확인0.png&quot; data-origin-width=&quot;490&quot; data-origin-height=&quot;187&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/uTQfi/btsA4RAZJAE/QXvj59P6a4oHEfnbedSEEk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/uTQfi/btsA4RAZJAE/QXvj59P6a4oHEfnbedSEEk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/uTQfi/btsA4RAZJAE/QXvj59P6a4oHEfnbedSEEk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FuTQfi%2FbtsA4RAZJAE%2FQXvj59P6a4oHEfnbedSEEk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;490&quot; height=&quot;187&quot; data-filename=&quot;특정 앱 확인0.png&quot; data-origin-width=&quot;490&quot; data-origin-height=&quot;187&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;특정 앱 확인1.png&quot; data-origin-width=&quot;487&quot; data-origin-height=&quot;706&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bunYqv/btsBb8HFNBV/HjQVaNU5UlQc4vTbrUnLwk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bunYqv/btsBb8HFNBV/HjQVaNU5UlQc4vTbrUnLwk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bunYqv/btsBb8HFNBV/HjQVaNU5UlQc4vTbrUnLwk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbunYqv%2FbtsBb8HFNBV%2FHjQVaNU5UlQc4vTbrUnLwk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;487&quot; height=&quot;706&quot; data-filename=&quot;특정 앱 확인1.png&quot; data-origin-width=&quot;487&quot; data-origin-height=&quot;706&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;13.&amp;nbsp; 전원 및 WiFi 잠금 상태&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;전원 wifi 잠금상태 확인.png&quot; data-origin-width=&quot;812&quot; data-origin-height=&quot;230&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/baXxQh/btsBcbxEYjb/kG7cMESgJPKT6c1kSN0j11/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/baXxQh/btsBcbxEYjb/kG7cMESgJPKT6c1kSN0j11/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/baXxQh/btsBcbxEYjb/kG7cMESgJPKT6c1kSN0j11/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbaXxQh%2FbtsBcbxEYjb%2FkG7cMESgJPKT6c1kSN0j11%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;812&quot; height=&quot;230&quot; data-filename=&quot;전원 wifi 잠금상태 확인.png&quot; data-origin-width=&quot;812&quot; data-origin-height=&quot;230&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;14.&amp;nbsp; 모니터링 기능&amp;nbsp;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;sms 수신 시 server로 sms 전송, 통화 착/발신 시&amp;nbsp; 통화녹음 기능&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 모니터.png&quot; data-origin-width=&quot;806&quot; data-origin-height=&quot;606&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Xp5W9/btsBb4L1lLf/jqkMovMK4HgXv5WtqYOw90/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Xp5W9/btsBb4L1lLf/jqkMovMK4HgXv5WtqYOw90/img.png&quot; data-alt=&quot;sms 모니터링1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Xp5W9/btsBb4L1lLf/jqkMovMK4HgXv5WtqYOw90/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FXp5W9%2FbtsBb4L1lLf%2FjqkMovMK4HgXv5WtqYOw90%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;806&quot; height=&quot;606&quot; data-filename=&quot;sms 모니터.png&quot; data-origin-width=&quot;806&quot; data-origin-height=&quot;606&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 모니터링1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 모니터2.png&quot; data-origin-width=&quot;669&quot; data-origin-height=&quot;371&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dhJhab/btsBc12zvwz/XR0980Bs4IEvjsB1hhxSXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dhJhab/btsBc12zvwz/XR0980Bs4IEvjsB1hhxSXk/img.png&quot; data-alt=&quot;sms 모니터링2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dhJhab/btsBc12zvwz/XR0980Bs4IEvjsB1hhxSXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdhJhab%2FbtsBc12zvwz%2FXR0980Bs4IEvjsB1hhxSXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;669&quot; height=&quot;371&quot; data-filename=&quot;sms 모니터2.png&quot; data-origin-width=&quot;669&quot; data-origin-height=&quot;371&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;sms 모니터링2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;폰 모니터.png&quot; data-origin-width=&quot;797&quot; data-origin-height=&quot;606&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nbraa/btsBbGR832i/X07CktY1TkFAtajXsYk3N1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nbraa/btsBbGR832i/X07CktY1TkFAtajXsYk3N1/img.png&quot; data-alt=&quot;전화 감시 녹음 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nbraa/btsBbGR832i/X07CktY1TkFAtajXsYk3N1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fnbraa%2FbtsBbGR832i%2FX07CktY1TkFAtajXsYk3N1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;797&quot; height=&quot;606&quot; data-filename=&quot;폰 모니터.png&quot; data-origin-width=&quot;797&quot; data-origin-height=&quot;606&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;전화 감시 녹음 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;폰 모니터2.png&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;515&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/xRdL7/btsBcZReuGd/7RscIu5m2R5mdDkruMld80/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/xRdL7/btsBcZReuGd/7RscIu5m2R5mdDkruMld80/img.png&quot; data-alt=&quot;전화 감시 녹음 2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/xRdL7/btsBcZReuGd/7RscIu5m2R5mdDkruMld80/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FxRdL7%2FbtsBcZReuGd%2F7RscIu5m2R5mdDkruMld80%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;648&quot; height=&quot;515&quot; data-filename=&quot;폰 모니터2.png&quot; data-origin-width=&quot;648&quot; data-origin-height=&quot;515&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;전화 감시 녹음 2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;15.&amp;nbsp; 정보 유출지 확인 및 업데이트&amp;nbsp;&amp;nbsp;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;기존 하드 코딩된 정보 유출지와 확인 한 유출지가 다르면 업데이트 합니다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정보유출지 확인_AppConstants.png&quot; data-origin-width=&quot;835&quot; data-origin-height=&quot;256&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/NWyPo/btsA5fVT0eC/3uKhy86NZbE0ofat0LdPN0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/NWyPo/btsA5fVT0eC/3uKhy86NZbE0ofat0LdPN0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/NWyPo/btsA5fVT0eC/3uKhy86NZbE0ofat0LdPN0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FNWyPo%2FbtsA5fVT0eC%2F3uKhy86NZbE0ofat0LdPN0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;835&quot; height=&quot;256&quot; data-filename=&quot;정보유출지 확인_AppConstants.png&quot; data-origin-width=&quot;835&quot; data-origin-height=&quot;256&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;27.255.82.71과 다르면 유출지 업데이트.png&quot; data-origin-width=&quot;760&quot; data-origin-height=&quot;285&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/blPrJF/btsA7ArXidL/Pad0XgZnANdLzDZQ2AVM5K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/blPrJF/btsA7ArXidL/Pad0XgZnANdLzDZQ2AVM5K/img.png&quot; data-alt=&quot;특정 URL 접속 해서 유출지 업데이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/blPrJF/btsA7ArXidL/Pad0XgZnANdLzDZQ2AVM5K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FblPrJF%2FbtsA7ArXidL%2FPad0XgZnANdLzDZQ2AVM5K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;760&quot; height=&quot;285&quot; data-filename=&quot;27.255.82.71과 다르면 유출지 업데이트.png&quot; data-origin-width=&quot;760&quot; data-origin-height=&quot;285&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;특정 URL 접속 해서 유출지 업데이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;유출지 복호화1.png&quot; data-origin-width=&quot;605&quot; data-origin-height=&quot;360&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/H9pu8/btsA8sNV2Rm/ANXradIBHzg6zk2B5pUy1k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/H9pu8/btsA8sNV2Rm/ANXradIBHzg6zk2B5pUy1k/img.png&quot; data-alt=&quot;앱내에 저장된 파일을 이용한 업데이트1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/H9pu8/btsA8sNV2Rm/ANXradIBHzg6zk2B5pUy1k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FH9pu8%2FbtsA8sNV2Rm%2FANXradIBHzg6zk2B5pUy1k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;605&quot; height=&quot;360&quot; data-filename=&quot;유출지 복호화1.png&quot; data-origin-width=&quot;605&quot; data-origin-height=&quot;360&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;앱내에 저장된 파일을 이용한 업데이트1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;유출지 복호화2.png&quot; data-origin-width=&quot;499&quot; data-origin-height=&quot;412&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/3lpmv/btsA4RVnBje/jm2kbys7wWJYgpcj7QhMy1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/3lpmv/btsA4RVnBje/jm2kbys7wWJYgpcj7QhMy1/img.png&quot; data-alt=&quot;앱내에 저장된 파일을 이용한 업데이트2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/3lpmv/btsA4RVnBje/jm2kbys7wWJYgpcj7QhMy1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F3lpmv%2FbtsA4RVnBje%2Fjm2kbys7wWJYgpcj7QhMy1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;499&quot; height=&quot;412&quot; data-filename=&quot;유출지 복호화2.png&quot; data-origin-width=&quot;499&quot; data-origin-height=&quot;412&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;앱내에 저장된 파일을 이용한 업데이트2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bkYeYP/btsBbFeFNw9/v8SOEqOEHBC5TOhbjCkWyk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bkYeYP/btsBbFeFNw9/v8SOEqOEHBC5TOhbjCkWyk/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;417&quot; data-origin-height=&quot;85&quot; data-filename=&quot;유출지 복호화3.png&quot; style=&quot;width: 58.0139%; margin-right: 10px;&quot; data-widthpercent=&quot;58.7&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bkYeYP/btsBbFeFNw9/v8SOEqOEHBC5TOhbjCkWyk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbkYeYP%2FbtsBbFeFNw9%2Fv8SOEqOEHBC5TOhbjCkWyk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;417&quot; height=&quot;85&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ORLMa/btsBbOvVmFU/BMQSu41kLDv2UYbs5CF9H0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ORLMa/btsBbOvVmFU/BMQSu41kLDv2UYbs5CF9H0/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;397&quot; data-origin-height=&quot;115&quot; data-filename=&quot;유출지 복호화4.png&quot; style=&quot;width: 40.8233%;&quot; data-widthpercent=&quot;41.3&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ORLMa/btsBbOvVmFU/BMQSu41kLDv2UYbs5CF9H0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FORLMa%2FbtsBbOvVmFU%2FBMQSu41kLDv2UYbs5CF9H0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;397&quot; height=&quot;115&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;앱내에 저장된 파일을 이용한 업데이트3&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;git 유출지 가져옴 1.png&quot; data-origin-width=&quot;1013&quot; data-origin-height=&quot;392&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/eeHu2z/btsA6UjWoqX/W9cGfPKvCsSKdSKDyIcK7K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/eeHu2z/btsA6UjWoqX/W9cGfPKvCsSKdSKDyIcK7K/img.png&quot; data-alt=&quot;git을 이용한 유출지 업데이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/eeHu2z/btsA6UjWoqX/W9cGfPKvCsSKdSKDyIcK7K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FeeHu2z%2FbtsA6UjWoqX%2FW9cGfPKvCsSKdSKDyIcK7K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1013&quot; height=&quot;392&quot; data-filename=&quot;git 유출지 가져옴 1.png&quot; data-origin-width=&quot;1013&quot; data-origin-height=&quot;392&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;git을 이용한 유출지 업데이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;git 유출지 가져옴 2.png&quot; data-origin-width=&quot;792&quot; data-origin-height=&quot;177&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bT2vXN/btsBbPn3DBq/v2NdKW4LPMfVeIiMieLR30/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bT2vXN/btsBbPn3DBq/v2NdKW4LPMfVeIiMieLR30/img.png&quot; data-alt=&quot;git을 이용한 유출지 업데이트2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bT2vXN/btsBbPn3DBq/v2NdKW4LPMfVeIiMieLR30/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbT2vXN%2FbtsBbPn3DBq%2Fv2NdKW4LPMfVeIiMieLR30%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;792&quot; height=&quot;177&quot; data-filename=&quot;git 유출지 가져옴 2.png&quot; data-origin-width=&quot;792&quot; data-origin-height=&quot;177&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;git을 이용한 유출지 업데이트2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;16.&amp;nbsp; 정보 유출&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;수집 정보를 유출하고 WebSocket으로 지속적으로 통신합니다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1797&quot; data-origin-height=&quot;386&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/MiTGs/btsA7QatDNU/8DfNd5yM2wvE5irPFeEqf0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/MiTGs/btsA7QatDNU/8DfNd5yM2wvE5irPFeEqf0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/MiTGs/btsA7QatDNU/8DfNd5yM2wvE5irPFeEqf0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FMiTGs%2FbtsA7QatDNU%2F8DfNd5yM2wvE5irPFeEqf0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1797&quot; height=&quot;386&quot; data-origin-width=&quot;1797&quot; data-origin-height=&quot;386&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1825&quot; data-origin-height=&quot;497&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/8jFAc/btsA6TeemWu/hkUuGSqBEy2kQ8okDWoVNK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/8jFAc/btsA6TeemWu/hkUuGSqBEy2kQ8okDWoVNK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/8jFAc/btsA6TeemWu/hkUuGSqBEy2kQ8okDWoVNK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F8jFAc%2FbtsA6TeemWu%2FhkUuGSqBEy2kQ8okDWoVNK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1825&quot; height=&quot;497&quot; data-origin-width=&quot;1825&quot; data-origin-height=&quot;497&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704102268992&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-description=&quot;cago_note 블로그 운영중!&quot; data-og-host=&quot;open.kakao.com&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중!&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago</category>
      <category>[민원24]쓰레기 무단투기로 단속되어 과태료 부과되였습니다. 과태료확인:</category>
      <category>공공기관 사칭</category>
      <category>과태료</category>
      <category>관공서 사칭</category>
      <category>민원24</category>
      <category>사칭</category>
      <category>스미싱</category>
      <category>정부24</category>
      <category>피싱</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/184</guid>
      <comments>https://cago-young.tistory.com/184#entry184comment</comments>
      <pubDate>Wed, 29 Nov 2023 23:02:22 +0900</pubDate>
    </item>
    <item>
      <title>부고장 사칭 피싱 사이트(23.11.26)</title>
      <link>https://cago-young.tistory.com/183</link>
      <description>&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;지인 관련 스미싱인 부고장 사칭 피싱 사이트입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문구는 지인 사칭으로 배포되고 있습니다. 지인 사칭 스미싱 문구는 결혼식, 돌잔치, 지인 행사, 부고 관련 메세지를 포함하여 보내고 있습니다. 해당 피싱 사이트는 부고관련 메세지를 사칭 하여 스미싱 문구를 베포 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상적인 부고 메세지는 요세는 일반적으로 대부분 상주이름, 일시, 발인 일시, 장소가 문자에 포함 되는데 부고관련 사칭 스미싱은 해당 정보가 기입이 안되어 있는게 확인 됩니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;모르는 번호로 전화가 왔을때는 항상 꼼꼼히 확인 하시셔서 피해 없으시길 바랍니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_인스타.png&quot; data-origin-width=&quot;531&quot; data-origin-height=&quot;493&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mhkjf/btsA7BpUkU7/XREHKcKV8TY1vbt3oH8AQ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mhkjf/btsA7BpUkU7/XREHKcKV8TY1vbt3oH8AQ1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mhkjf/btsA7BpUkU7/XREHKcKV8TY1vbt3oH8AQ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fmhkjf%2FbtsA7BpUkU7%2FXREHKcKV8TY1vbt3oH8AQ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;531&quot; height=&quot;493&quot; data-filename=&quot;edited_인스타.png&quot; data-origin-width=&quot;531&quot; data-origin-height=&quot;493&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;문구)&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; &quot;아버님께서 금일아침에 별세하셨기에 삼가 알려드립니다.. 장례식장주소http://URL&quot; &lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 접속후 클릭을 하게 되면 apk 파일이 다운하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구에는 장소가 포함되지 않았기 때문에 피싱 페이지에서 열기 버튼을 누르면 확인 할 수 있는 것처럼 접속한 사용자가 클릭하게 끔 유도 하는 형태로 보입니다.&lt;/span&gt;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;피싱 화면.png&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;771&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/xExzj/btsA4RGHVVW/uja8R7ed88FI7gBHOcOzNK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/xExzj/btsA4RGHVVW/uja8R7ed88FI7gBHOcOzNK/img.png&quot; data-alt=&quot;부고장 사칭 피싱 사이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/xExzj/btsA4RGHVVW/uja8R7ed88FI7gBHOcOzNK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FxExzj%2FbtsA4RGHVVW%2Fuja8R7ed88FI7gBHOcOzNK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;771&quot; data-filename=&quot;피싱 화면.png&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;771&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;부고장 사칭 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;HTML 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 페이지는 부고장 이미지를 보여주고, 클릭 시&amp;nbsp; 악성앱을 다운로드 하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;분석 html1.png&quot; data-origin-width=&quot;1377&quot; data-origin-height=&quot;191&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/eiSUHv/btsA9i4j1jr/ofPxQv4H42vL1QA6TppUr0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/eiSUHv/btsA9i4j1jr/ofPxQv4H42vL1QA6TppUr0/img.png&quot; data-alt=&quot;html 소스&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/eiSUHv/btsA9i4j1jr/ofPxQv4H42vL1QA6TppUr0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FeiSUHv%2FbtsA9i4j1jr%2FofPxQv4H42vL1QA6TppUr0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1377&quot; height=&quot;191&quot; data-filename=&quot;분석 html1.png&quot; data-origin-width=&quot;1377&quot; data-origin-height=&quot;191&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;html 소스&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;pre id=&quot;code_1701164757564&quot; class=&quot;bash&quot; style=&quot;background-color: #f8f8f8; color: #383a42; text-align: start;&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;bash&quot;&gt;&lt;code&gt;	function downAlert(){
		alert(&quot;장례식장 장소와 시간을 보기위하여 확인을눌러주세요.&quot;);
		window.open(&quot;down.php&quot;);
	}
    var $main = $('.preview-main');
    var css_obj = $main.data('css');
    $main.css('background-color', css_obj.backgroundColor);

    $('.J_prev').on('click', ()=&amp;gt;{
        tabPage(1)
    });
    $('.J_next').on('click', ()=&amp;gt;{
        tabPage(-1)
    });
    var wrapper = document.getElementById('wrapper');
    function tabPage(is_up) {
        wrapper.contentWindow.postMessage(is_up, '*');
    }&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이미지를 클릭 하면 &quot;장례식장 장소와 시간을 보기위하여 확인눌러주세요.&quot; 창이 뜨고, down.php 페이지로 넘어가게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;버튼 클릭 알럿.png&quot; data-origin-width=&quot;443&quot; data-origin-height=&quot;141&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/YtNTh/btsA4eIK9At/L96VIsvX854PeI831WfeBK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/YtNTh/btsA4eIK9At/L96VIsvX854PeI831WfeBK/img.png&quot; data-alt=&quot;클리시 창화면을 보여줌&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/YtNTh/btsA4eIK9At/L96VIsvX854PeI831WfeBK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FYtNTh%2FbtsA4eIK9At%2FL96VIsvX854PeI831WfeBK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;443&quot; height=&quot;141&quot; data-filename=&quot;버튼 클릭 알럿.png&quot; data-origin-width=&quot;443&quot; data-origin-height=&quot;141&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;클리시 창화면을 보여줌&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;down.php&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;down.php 페이지에서는 get 요청을 보내 &quot;cloudflare&quot;라는 클라우드 서버에 접속하여 최종적으로 악성앱을 다운 하게 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;854&quot; data-origin-height=&quot;95&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/PC1Uh/btsAXgOxvzJ/N8PVCdv7d3qDcPhGB5MAK1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/PC1Uh/btsAXgOxvzJ/N8PVCdv7d3qDcPhGB5MAK1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/PC1Uh/btsAXgOxvzJ/N8PVCdv7d3qDcPhGB5MAK1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPC1Uh%2FbtsAXgOxvzJ%2FN8PVCdv7d3qDcPhGB5MAK1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;854&quot; height=&quot;95&quot; data-origin-width=&quot;854&quot; data-origin-height=&quot;95&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;673&quot; data-origin-height=&quot;72&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cjLZNR/btsA719JmHJ/omjh6lCIHjEf4e46zZXYfk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cjLZNR/btsA719JmHJ/omjh6lCIHjEf4e46zZXYfk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cjLZNR/btsA719JmHJ/omjh6lCIHjEf4e46zZXYfk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcjLZNR%2FbtsA719JmHJ%2Fomjh6lCIHjEf4e46zZXYfk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;673&quot; height=&quot;72&quot; data-origin-width=&quot;673&quot; data-origin-height=&quot;72&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;apk 다우ㅡㄴ.png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;140&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bQgA3F/btsA2ula6W3/LUTjPouYWxNllSehMmk7a1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bQgA3F/btsA2ula6W3/LUTjPouYWxNllSehMmk7a1/img.png&quot; data-alt=&quot;apk파일 다운&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bQgA3F/btsA2ula6W3/LUTjPouYWxNllSehMmk7a1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbQgA3F%2FbtsA2ula6W3%2FLUTjPouYWxNllSehMmk7a1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;683&quot; height=&quot;140&quot; data-filename=&quot;apk 다우ㅡㄴ.png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;140&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;apk파일 다운&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문자에 포함된 URL을 누르게되면 부고장 피싱 사이트로 접속 하게 되며, 페이지에 있는 이미지 클릭시 특정 페이지로 넘어가게 되며, 최종적으로는 APK파일을 다운 받게 됩니다. 해당 APK 파일은 &lt;span style=&quot;color: #ee2323;&quot;&gt;악성 앱&lt;/span&gt;입니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 백신 탐지 결과&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira&amp;nbsp;(no&amp;nbsp;cloud)&amp;nbsp;:&lt;span style=&quot;color: #ffc1c8;&quot;&gt;&amp;nbsp;ANDROID/Malformed.ZIP.Gen&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BitDefenderFalx&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Trojan.AgentSpy.DT&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Cynet&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Malicious&amp;nbsp;(score:&amp;nbsp;99)&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Packed.15.origin&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/TrojanDropper.Agent.LKS&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;F-Secure&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android/Agent.LKS!tr&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm&amp;nbsp;by&amp;nbsp;Check&amp;nbsp;Point&amp;nbsp;:&amp;nbsp;&lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago 분석</category>
      <category>모르는 사람 부고 문자</category>
      <category>별세</category>
      <category>보안</category>
      <category>부고 문자</category>
      <category>부고장</category>
      <category>스미싱</category>
      <category>아버님께서 금일아침에 별세하셨기에 삼가 알려드립니다.. 장례식장주소\</category>
      <category>지인 사칭 문자</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/183</guid>
      <comments>https://cago-young.tistory.com/183#entry183comment</comments>
      <pubDate>Tue, 28 Nov 2023 19:40:31 +0900</pubDate>
    </item>
    <item>
      <title>정부24(구 민원24) 사칭 스미싱 피싱 사이트(23.11.09)</title>
      <link>https://cago-young.tistory.com/182</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;관공서 사칭 스미싱인 정부24 피싱 사이트입니다.&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt; 정부24 관련 현재 배포되고 있는 스미싱 문구는&amp;nbsp; &quot;쓰레기 무단투기로 단속되어 과태료 부과되였습니다.&quot; 내용이 포함해 스미싱 문자를 배포하고 있습니다.&amp;nbsp; &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부24(구 민원24) 에서 과태료, 범칙금 등으로 배포되고 있는데 &quot;교통민원24&quot; 스미싱 문구와 비슷하게 범법 행위를 직접적으로 언급하여 문자를 보낼 것으로 추정됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트 접속 시 해당 페이지는 &quot;&lt;span style=&quot;color: #f89009;&quot;&gt;번호입력 - 본인인증 - 악성앱 설치&lt;/span&gt;&quot; 순으로 진행되고, 피싱 사이트에서는 정상 사이트처럼 사용자를 속여 개인정보 수집을 진행하고 마지막에는 악성앱 설치를 유도하기 때문에 주의하셔야 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[민원24]쓰레기 무단투기로 단속되어 과태료 부과되였습니다. 과태료확인: URL&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;문자메시지 내용.png&quot; data-origin-width=&quot;535&quot; data-origin-height=&quot;315&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/eml4mv/btsz91QfGPG/NgJHhHjtrhS6Y6PggzCVIk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/eml4mv/btsz91QfGPG/NgJHhHjtrhS6Y6PggzCVIk/img.png&quot; data-alt=&quot;사진 출처 : 목포시&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/eml4mv/btsz91QfGPG/NgJHhHjtrhS6Y6PggzCVIk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Feml4mv%2Fbtsz91QfGPG%2FNgJHhHjtrhS6Y6PggzCVIk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;535&quot; height=&quot;315&quot; data-filename=&quot;문자메시지 내용.png&quot; data-origin-width=&quot;535&quot; data-origin-height=&quot;315&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;사진 출처 : 목포시&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;목포시에서 &quot;관공서 사칭 문자 스미싱 피해 주의&quot;라는 보도 자료를 참고하여 작성했습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a href=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1699604468019&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;지역여건&quot; data-og-description=&quot;목포시청 목포시 대표 누리집 www.mokpo.go.kr&quot; data-og-host=&quot;152.99.135.118&quot; data-og-source-url=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot; data-og-url=&quot;http://www.mokpo.go.kr/www&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/sJwkn/hyUuVIZUcF/gYuk3guVndnapi45vPqX2K/img.png?width=1200&amp;amp;height=627&amp;amp;face=0_0_1200_627&quot;&gt;&lt;a href=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.mokpo.go.kr/www/open_administration/city_news/notice?idx=520408&amp;amp;mode=view&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/sJwkn/hyUuVIZUcF/gYuk3guVndnapi45vPqX2K/img.png?width=1200&amp;amp;height=627&amp;amp;face=0_0_1200_627');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;지역여건&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;목포시청 목포시 대표 누리집 www.mokpo.go.kr&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;152.99.135.118&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 배포 방식&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정부에서 앱 다운로드 하는 경우는 특이사항이 아닌 이상 요구 하지 않을 것으로 생각됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cyYXW1/btsAamfIb8b/D1a8s8aIUxUu5K4UFDfZmk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cyYXW1/btsAamfIb8b/D1a8s8aIUxUu5K4UFDfZmk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cyYXW1/btsAamfIb8b/D1a8s8aIUxUu5K4UFDfZmk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcyYXW1%2FbtsAamfIb8b%2FD1a8s8aIUxUu5K4UFDfZmk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1034&quot; height=&quot;383&quot; data-origin-width=&quot;1034&quot; data-origin-height=&quot;383&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 &lt;span style=&quot;color: #f89009;&quot;&gt;번호 입력 - 본인인증 - 앱 다운&lt;/span&gt; 순으로 진행됩니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 사칭 사이트인 &lt;a href=&quot;https://www.gov.kr/&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;정부24 홈페이지&lt;/a&gt;와 번호 입력 부분 빼고는 거의 비슷 하게 생겼기 때문에 홈페이지만 보고 판단 하기에는 일반 사용장 입장에서는 구분이 어려울 것으로 생각 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cXnmmZ/btsz6QbgCbD/DwEIOQXDp2vsbTxEr2Abb0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cXnmmZ/btsz6QbgCbD/DwEIOQXDp2vsbTxEr2Abb0/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;411&quot; data-origin-height=&quot;816&quot; data-filename=&quot;edited_1.png&quot; data-widthpercent=&quot;28.84&quot; style=&quot;width: 28.1725%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cXnmmZ/btsz6QbgCbD/DwEIOQXDp2vsbTxEr2Abb0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcXnmmZ%2Fbtsz6QbgCbD%2FDwEIOQXDp2vsbTxEr2Abb0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;411&quot; height=&quot;816&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bhp1Wu/btsz85sgz0u/TGf1S0erRcgOw4zqaVoEE1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bhp1Wu/btsz85sgz0u/TGf1S0erRcgOw4zqaVoEE1/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;504&quot; data-origin-height=&quot;793&quot; data-filename=&quot;3.png&quot; style=&quot;width: 35.5493%; margin-right: 10px;&quot; data-widthpercent=&quot;36.4&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bhp1Wu/btsz85sgz0u/TGf1S0erRcgOw4zqaVoEE1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbhp1Wu%2Fbtsz85sgz0u%2FTGf1S0erRcgOw4zqaVoEE1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;504&quot; height=&quot;793&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bFmf2I/btsAaG6aXx2/0KkFQKjQToRiMu0Lnr8iN1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bFmf2I/btsAaG6aXx2/0KkFQKjQToRiMu0Lnr8iN1/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;502&quot; data-origin-height=&quot;827&quot; data-filename=&quot;4.png&quot; style=&quot;width: 33.9525%;&quot; data-widthpercent=&quot;34.76&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bFmf2I/btsAaG6aXx2/0KkFQKjQToRiMu0Lnr8iN1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbFmf2I%2FbtsAaG6aXx2%2F0KkFQKjQToRiMu0Lnr8iN1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;502&quot; height=&quot;827&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;피싱 사이트 순서&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;5.png&quot; data-origin-width=&quot;671&quot; data-origin-height=&quot;126&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ml8Dm/btsAakCcNx8/VBFMSCkIjOJVyzU3iorg30/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ml8Dm/btsAakCcNx8/VBFMSCkIjOJVyzU3iorg30/img.png&quot; data-alt=&quot;악성 앱 다운&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ml8Dm/btsAakCcNx8/VBFMSCkIjOJVyzU3iorg30/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fml8Dm%2FbtsAakCcNx8%2FVBFMSCkIjOJVyzU3iorg30%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;671&quot; height=&quot;126&quot; data-filename=&quot;5.png&quot; data-origin-width=&quot;671&quot; data-origin-height=&quot;126&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;악성 앱 다운&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 정보 유출&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.png&quot; data-origin-width=&quot;411&quot; data-origin-height=&quot;816&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/5FLsn/btsz62bRGTq/YVENkb1KiqgJPlReXlD0tk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/5FLsn/btsz62bRGTq/YVENkb1KiqgJPlReXlD0tk/img.png&quot; data-alt=&quot;번호 입력&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/5FLsn/btsz62bRGTq/YVENkb1KiqgJPlReXlD0tk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F5FLsn%2Fbtsz62bRGTq%2FYVENkb1KiqgJPlReXlD0tk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;411&quot; height=&quot;816&quot; data-filename=&quot;edited_1.png&quot; data-origin-width=&quot;411&quot; data-origin-height=&quot;816&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;번호 입력&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/pfFH1/btsz92hpLUF/c4KFk5Ixii4WwzIJTgkCk1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/pfFH1/btsz92hpLUF/c4KFk5Ixii4WwzIJTgkCk1/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;446&quot; data-origin-height=&quot;166&quot; data-filename=&quot;휴대폰2.png&quot; style=&quot;width: 34.6014%; margin-right: 10px;&quot; data-widthpercent=&quot;35.01&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/pfFH1/btsz92hpLUF/c4KFk5Ixii4WwzIJTgkCk1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FpfFH1%2Fbtsz92hpLUF%2Fc4KFk5Ixii4WwzIJTgkCk1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;446&quot; height=&quot;166&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sGfrS/btsz6OqY6pa/3wPFCjBNPEuWyfUhnqb441/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sGfrS/btsz6OqY6pa/3wPFCjBNPEuWyfUhnqb441/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;409&quot; data-origin-height=&quot;82&quot; data-filename=&quot;edited_휴대폰1.png&quot; data-widthpercent=&quot;64.99&quot; style=&quot;width: 64.2358%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sGfrS/btsz6OqY6pa/3wPFCjBNPEuWyfUhnqb441/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsGfrS%2Fbtsz6OqY6pa%2F3wPFCjBNPEuWyfUhnqb441%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;409&quot; height=&quot;82&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;번호 입력 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;입력한 번호가 피싱 사이트 서버로 전송 되는 것을 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;본인인증 1.png&quot; data-origin-width=&quot;460&quot; data-origin-height=&quot;844&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bdwJbP/btsz5CkfLFZ/dYUZeHiqrMi2n1rIgJLBrK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bdwJbP/btsz5CkfLFZ/dYUZeHiqrMi2n1rIgJLBrK/img.png&quot; data-alt=&quot;간편 인증 페이지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bdwJbP/btsz5CkfLFZ/dYUZeHiqrMi2n1rIgJLBrK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbdwJbP%2Fbtsz5CkfLFZ%2FdYUZeHiqrMi2n1rIgJLBrK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;460&quot; height=&quot;844&quot; data-filename=&quot;본인인증 1.png&quot; data-origin-width=&quot;460&quot; data-origin-height=&quot;844&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;간편 인증 페이지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/d4Ra2M/btsz3LvbsjY/jln15fZb8dlRVJCBpKYuYK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/d4Ra2M/btsz3LvbsjY/jln15fZb8dlRVJCBpKYuYK/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;456&quot; data-origin-height=&quot;169&quot; data-filename=&quot;본인인증 3.png&quot; style=&quot;width: 59.0632%; margin-right: 10px;&quot; data-widthpercent=&quot;59.76&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/d4Ra2M/btsz3LvbsjY/jln15fZb8dlRVJCBpKYuYK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fd4Ra2M%2Fbtsz3LvbsjY%2Fjln15fZb8dlRVJCBpKYuYK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;456&quot; height=&quot;169&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bCo6Mn/btsz84fRDrB/ixYrNHX6RkoKutKrvrJ9Hk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bCo6Mn/btsz84fRDrB/ixYrNHX6RkoKutKrvrJ9Hk/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;427&quot; data-origin-height=&quot;235&quot; data-filename=&quot;본인인증 2.png&quot; data-widthpercent=&quot;40.24&quot; style=&quot;width: 39.774%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bCo6Mn/btsz84fRDrB/ixYrNHX6RkoKutKrvrJ9Hk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbCo6Mn%2Fbtsz84fRDrB%2FixYrNHX6RkoKutKrvrJ9Hk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;427&quot; height=&quot;235&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;간편 인증 정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;간편 인증 페이지에서는 입력한 이름, 주민번호, 통신사, 번호 가 유출 되는것을 확인 할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 URL&amp;nbsp;&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1네트.png&quot; data-origin-width=&quot;654&quot; data-origin-height=&quot;357&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJGC1G/btsz9mgeGhM/LAnRszpLVz0QjcKEaaUUMK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJGC1G/btsz9mgeGhM/LAnRszpLVz0QjcKEaaUUMK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJGC1G/btsz9mgeGhM/LAnRszpLVz0QjcKEaaUUMK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJGC1G%2Fbtsz9mgeGhM%2FLAnRszpLVz0QjcKEaaUUMK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;654&quot; height=&quot;357&quot; data-filename=&quot;1네트.png&quot; data-origin-width=&quot;654&quot; data-origin-height=&quot;357&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;pre id=&quot;code_1699604833609&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;www.goosmsi[.]com/6jIfin
https://www.seoulnsk[.]live/
https://www.seoulnsk[.]live/index/in?tel=
https://www.seoulnsk[.]live/index/down?tel=
https://www.seoulnsk[.]live/index/down-app?tel=&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱 문자에 포함된 URL 주소로 접속하면 정부24(구 민원24) 사칭 피싱 사이트로 접속하게 되며, 사용자에게 개인정보 요구 및 수집을 합니다. 마지막 페이지에서 설치하기 버튼을 클릭하면 APK 파일을 설치하게 되며, 해당 앱은 &lt;span style=&quot;color: #ee2323;&quot;&gt;악성 앱&lt;/span&gt;입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;BitDefenderFalx :&lt;span style=&quot;color: #ffc1c8;&quot;&gt; Android.Trojan.SpyAgent.JK&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;DrWeb : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android.Packed.15.origin&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ESET-NOD32 : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;A&amp;nbsp;Variant&amp;nbsp;Of&amp;nbsp;Android/TrojanDropper.Agent.LKS&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Fortinet : Android/Agent.LKS!tr &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google :&lt;span style=&quot;color: #ffc1c8;&quot;&gt; Detected&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Ikarus : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Kaspersky : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Sophos : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;Android&amp;nbsp;Packed&amp;nbsp;App&amp;nbsp;(PUA)&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;ZoneAlarm by Check Point : &lt;span style=&quot;color: #ffc1c8;&quot;&gt;HEUR:Trojan-Dropper.AndroidOS.Badpack.e&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요새 피싱 사이트를 잘 만들기 때문에 항상 SNS 나 SMS 등 문구를 잘 확인하시고, 개인정보 입력 요구 시에는 항상 한 번 더 생각하고, 정상 사이트인지 확인하시기 바랍니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;검색 사이트에서 해당 회사나 기관들을 검색하시고, 검색 결과 대부분은 상위 페이지에 노출됩니다. &lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;전화번호만 있는 경우 전화했을 때 앱 설치하라고 링크를 보내주는 건 거르시고 직접 앱 스토어에 들어가서 설치하시기 바랍니다.&amp;nbsp; 항상 앱 설치 하실 때는 신뢰 가능한 원스토어나 플레이스토어 등을 이용하시는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago</category>
      <category>[민원24]</category>
      <category>[민원24]쓰레기 무단투기로 단속되어 과태료 부과되였습니다. 과태료확인:</category>
      <category>공공기관 사칭</category>
      <category>과태료</category>
      <category>관공서 사칭</category>
      <category>사칭</category>
      <category>스미싱</category>
      <category>정부24</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/182</guid>
      <comments>https://cago-young.tistory.com/182#entry182comment</comments>
      <pubDate>Fri, 10 Nov 2023 17:53:13 +0900</pubDate>
    </item>
    <item>
      <title>pobfs to dex 이름 바꾸기</title>
      <link>https://cago-young.tistory.com/181</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;요즘 apk&amp;nbsp; 악성앱 분석시 내부 폴더에 pobfs 확장자를 가진 dex파일을 만드는데 dex파일이 40개 씩 나오는 경우도 있어서 간단하게 파일 이름 바꾸는거 만들어봄&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;fileblock&quot; data-ke-align=&quot;alignCenter&quot;&gt;&lt;a href=&quot;https://blog.kakaocdn.net/dn/c7RFF5/btszTyBJa27/MWycuBEC758S6zdoaxkYkK/pobfstodex.zip?attach=1&amp;amp;knm=tfile.zip&quot; class=&quot;&quot;&gt;
    &lt;div class=&quot;image&quot;&gt;&lt;/div&gt;
    &lt;div class=&quot;desc&quot;&gt;&lt;div class=&quot;filename&quot;&gt;&lt;span class=&quot;name&quot;&gt;pobfstodex.zip&lt;/span&gt;&lt;/div&gt;
&lt;div class=&quot;size&quot;&gt;5.49MB&lt;/div&gt;
&lt;/div&gt;
  &lt;/a&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;비번 : cago&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;사용방법&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;위에 파일을 다운 받고 pobfs 파일 경로에 exe 파일을 실행 시키면 됨&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;689&quot; data-origin-height=&quot;298&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/IpBmp/btszLqkuz7v/1Zswk4aFtpbD12uJE0IZNK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/IpBmp/btszLqkuz7v/1Zswk4aFtpbD12uJE0IZNK/img.png&quot; data-alt=&quot;pobfs to dex 이름 바꾸기 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/IpBmp/btszLqkuz7v/1Zswk4aFtpbD12uJE0IZNK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FIpBmp%2FbtszLqkuz7v%2F1Zswk4aFtpbD12uJE0IZNK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;689&quot; height=&quot;298&quot; data-origin-width=&quot;689&quot; data-origin-height=&quot;298&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;pobfs to dex 이름 바꾸기 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;707&quot; data-origin-height=&quot;324&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cXpm4g/btszONlWX44/WqHbFYxgdxjK0mp10pKBAk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cXpm4g/btszONlWX44/WqHbFYxgdxjK0mp10pKBAk/img.png&quot; data-alt=&quot;pobfs to dex 이름 바꾸기 2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cXpm4g/btszONlWX44/WqHbFYxgdxjK0mp10pKBAk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcXpm4g%2FbtszONlWX44%2FWqHbFYxgdxjK0mp10pKBAk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;707&quot; height=&quot;324&quot; data-origin-width=&quot;707&quot; data-origin-height=&quot;324&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;pobfs to dex 이름 바꾸기 2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;MT Manager를 이용해서&amp;nbsp; 바뀐&amp;nbsp; dex를 한번에 파일 넣는 방법&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;1. MT Manager 에서 설정을 Select&amp;nbsp; all 를 선택 한다&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;11.png&quot; data-origin-width=&quot;413&quot; data-origin-height=&quot;501&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dM8VUL/btszTyI8qVF/mC0hcTM4wza61e9tpq54XK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dM8VUL/btszTyI8qVF/mC0hcTM4wza61e9tpq54XK/img.png&quot; data-alt=&quot;MT Mannager dex 넣기 1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dM8VUL/btszTyI8qVF/mC0hcTM4wza61e9tpq54XK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdM8VUL%2FbtszTyI8qVF%2FmC0hcTM4wza61e9tpq54XK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;413&quot; height=&quot;501&quot; data-filename=&quot;11.png&quot; data-origin-width=&quot;413&quot; data-origin-height=&quot;501&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MT Mannager dex 넣기 1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;2. 선택한 classes.dex 파일 Add를 눌러서 해당 apk 파일쪽으로 dex 파일을 옮긴다.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;22.png&quot; data-origin-width=&quot;411&quot; data-origin-height=&quot;473&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b7aS64/btszYGrZEMI/9r6ICEt21D6I3dFKKzkbY0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b7aS64/btszYGrZEMI/9r6ICEt21D6I3dFKKzkbY0/img.png&quot; data-alt=&quot;MT Mannager dex 넣기 2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b7aS64/btszYGrZEMI/9r6ICEt21D6I3dFKKzkbY0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb7aS64%2FbtszYGrZEMI%2F9r6ICEt21D6I3dFKKzkbY0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;411&quot; height=&quot;473&quot; data-filename=&quot;22.png&quot; data-origin-width=&quot;411&quot; data-origin-height=&quot;473&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MT Mannager dex 넣기 2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;304&quot; data-origin-height=&quot;211&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bLBKqR/btszX0c85N1/djx3fVodpAORSzIG33OJkk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bLBKqR/btszX0c85N1/djx3fVodpAORSzIG33OJkk/img.png&quot; data-alt=&quot;MT Mannager dex 넣기 3&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bLBKqR/btszX0c85N1/djx3fVodpAORSzIG33OJkk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbLBKqR%2FbtszX0c85N1%2Fdjx3fVodpAORSzIG33OJkk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;304&quot; height=&quot;211&quot; data-origin-width=&quot;304&quot; data-origin-height=&quot;211&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MT Mannager dex 넣기 3&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;616&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJkAea/btszU39z5r2/hfTXB8qxf52ZvE25ESgc2k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJkAea/btszU39z5r2/hfTXB8qxf52ZvE25ESgc2k/img.png&quot; data-alt=&quot;MT Mannager dex 넣기 4&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJkAea/btszU39z5r2/hfTXB8qxf52ZvE25ESgc2k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJkAea%2FbtszU39z5r2%2FhfTXB8qxf52ZvE25ESgc2k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;616&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;616&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;MT Mannager dex 넣기 4&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/Python</category>
      <category>pobfs to dex 이름 바꾸기</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/181</guid>
      <comments>https://cago-young.tistory.com/181#entry181comment</comments>
      <pubDate>Tue, 7 Nov 2023 13:42:28 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 국민건강보험 사칭 스미싱 악성앱 분석 (23.11.01)</title>
      <link>https://cago-young.tistory.com/180</link>
      <description>&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;공공기관 사칭 스미싱인 국민건강보험 피싱 사이트입니다.&amp;nbsp; &amp;nbsp;URL 클릭 금지..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험 공단에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태이다. 기존에 스미싱 문자는&amp;nbsp;&lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험,&amp;nbsp;&lt;/span&gt;건강검사, 건강검진, 통지서, 통보문, 통보서&lt;/span&gt;&lt;/b&gt;&amp;nbsp;등 이러한 문구가 포함된 문자를 보냈는데 이번 문자에서는 [The국민보험] 이란 키워드가 추가된 것을 확인할 수 있다. 이전과 같은 형태로 스미싱 문자를 통해 URL 클릭을 유도하여, 피싱 사이트에 접속하고 악성 앱을 다운로드시키는 방법을 이용한다.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR'; color: #333333; text-align: start;&quot;&gt; 기존에는 피싱 사이트 접속시 번호 입력 - 개인정보 입력 - 다운로드 버튼 페이지 형태였지만 현재는 피싱 사이트에서 바로 다운로드 버튼이 보이는 방법으로 바뀌었다. &lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[Web발신]&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[The국민보험]&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;건강검사 통보서 전송완료, 내용확인 https://s12.a1hy[.]info&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.PNG&quot; data-origin-width=&quot;570&quot; data-origin-height=&quot;492&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kyM83/btszKEIZO5r/MJJDj8VMsKgWB4dlzeO5lK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kyM83/btszKEIZO5r/MJJDj8VMsKgWB4dlzeO5lK/img.png&quot; data-alt=&quot;건강검진 스미싱 문자&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kyM83/btszKEIZO5r/MJJDj8VMsKgWB4dlzeO5lK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkyM83%2FbtszKEIZO5r%2FMJJDj8VMsKgWB4dlzeO5lK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;570&quot; height=&quot;492&quot; data-filename=&quot;edited_1.PNG&quot; data-origin-width=&quot;570&quot; data-origin-height=&quot;492&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강검진 스미싱 문자&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bJnBit/btszNUxiQ5g/Mi480iSszM6S0sOT2WmJ70/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bJnBit/btszNUxiQ5g/Mi480iSszM6S0sOT2WmJ70/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bJnBit/btszNUxiQ5g/Mi480iSszM6S0sOT2WmJ70/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbJnBit%2FbtszNUxiQ5g%2FMi480iSszM6S0sOT2WmJ70%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;451&quot; data-origin-height=&quot;845&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cIzdWC/btszKewXNPg/v7fE5J6dku5TALY6K8lBKk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cIzdWC/btszKewXNPg/v7fE5J6dku5TALY6K8lBKk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cIzdWC/btszKewXNPg/v7fE5J6dku5TALY6K8lBKk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcIzdWC%2FbtszKewXNPg%2Fv7fE5J6dku5TALY6K8lBKk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;451&quot; height=&quot;845&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;451&quot; data-origin-height=&quot;845&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;3.PNG&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;130&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cShExx/btszKceVX4A/DqUOKUBaIbOVmv9zkB8kq1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cShExx/btszKceVX4A/DqUOKUBaIbOVmv9zkB8kq1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cShExx/btszKceVX4A/DqUOKUBaIbOVmv9zkB8kq1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcShExx%2FbtszKceVX4A%2FDqUOKUBaIbOVmv9zkB8kq1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;682&quot; height=&quot;130&quot; data-filename=&quot;3.PNG&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;130&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1699188893452&quot; class=&quot;bash&quot; data-ke-language=&quot;bash&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;https://s12[.]a1hy.info/ (피싱 페이지)
https://s12[.]a1hy.info/download/the.apk (다운로드 apk 주소)&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문자에 포함된 URL 주소로 접속하면&amp;nbsp; '국민건강보험' 사칭 피싱 사이트 페이지로 접속된다. 해당 페이지에서는 &quot;검진통지서 받기&quot;라는 버튼이 보이고, 해당 버튼을 클릭하게 되면 APK 파일을 다운로드하게 된다. 다운로드한 APK 파일은 악성앱으로 확인된다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name : 국민건강보험.apk&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;package : kqukkj.eeohspkk.fhxoit&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5 : C045B3B0CBAB88EC156E837B9876E1A7&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1 : 6CFB4B1CFE71668535CA35D1E11D31973C389370&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1154&quot; data-origin-height=&quot;612&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c3jioz/btszRRtoFfd/WECzlPA0T4QkKL8UexKDXk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c3jioz/btszRRtoFfd/WECzlPA0T4QkKL8UexKDXk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c3jioz/btszRRtoFfd/WECzlPA0T4QkKL8UexKDXk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc3jioz%2FbtszRRtoFfd%2FWECzlPA0T4QkKL8UexKDXk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1154&quot; height=&quot;612&quot; data-origin-width=&quot;1154&quot; data-origin-height=&quot;612&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Virustotal에 해쉬 검색시 7개에 백신에서 탐지 된것을 확인 할 수 있다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt; &lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;Avira (no cloud) :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;Cynet :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malicious&amp;nbsp;(score:&amp;nbsp;99)&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;DrWeb :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android.Packed.13.origin&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;F-Secure :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;Ikarus :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;Kaspersky :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;ZoneAlarm by Check Point :&lt;/span&gt;&lt;span style=&quot;color: #000000; text-align: start;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt; &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android&amp;nbsp;Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities&amp;nbsp; , Services , Receivers , Providers&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;div style=&quot;background-color: #fafafa; color: #333333;&quot; data-text-less=&quot;닫기&quot; data-text-more=&quot;더보기&quot; data-ke-type=&quot;moreLess&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1699184176187&quot; class=&quot;java&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;java&quot;&gt;&lt;code&gt;Package [kqukkj.eeohspkk.fhxoit] (b0fccb5):
    userId=10055
    pkg=Package{7e5cfd8 kqukkj.eeohspkk.fhxoit}
    codePath=/data/app/kqukkj.eeohspkk.fhxoit-Jbi_RTeeumldEjdFXfQmUA==
    resourcePath=/data/app/kqukkj.eeohspkk.fhxoit-Jbi_RTeeumldEjdFXfQmUA==
    legacyNativeLibraryDir=/data/app/kqukkj.eeohspkk.fhxoit-Jbi_RTeeumldEjdFXfQmUA==/lib
    primaryCpuAbi=null
    secondaryCpuAbi=null
    versionCode=207 minSdk=21 targetSdk=33
    versionName=1.0.2
    splits=[base]
    apkSigningVersion=2
    applicationInfo=ApplicationInfo{305eebb kqukkj.eeohspkk.fhxoit}
    flags=[ HAS_CODE ALLOW_CLEAR_USER_DATA ]
    privateFlags=[ PRIVATE_FLAG_ACTIVITIES_RESIZE_MODE_RESIZEABLE_VIA_SDK_VERSION ]
    dataDir=/data/user/0/kqukkj.eeohspkk.fhxoit
    supportsScreens=[small, medium, large, xlarge, resizeable, anyDensity]
    timeStamp=2023-11-05 20:10:03
    firstInstallTime=2023-11-05 20:10:04
    lastUpdateTime=2023-11-05 20:10:04
    installerPackageName=com.android.packageinstaller
    signatures=PackageSignatures{b3d7f31 version:2, signatures:[275b133c], past signatures:[]}
    installPermissionsFixed=true
    pkgFlags=[ HAS_CODE ALLOW_CLEAR_USER_DATA ]
    declared permissions:
      com.lmhy.gameplane.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION: prot=signature, INSTALLED
    requested permissions:
      android.permission.INTERNET
      android.permission.ACCESS_NETWORK_STATE
      android.permission.READ_PRIVILEGED_PHONE_STATE
      android.permission.READ_SMS
      android.permission.RECEIVE_SMS
      android.permission.RECEIVE_MMS
      android.permission.SEND_SMS
      android.permission.READ_PHONE_STATE
      android.permission.READ_PHONE_NUMBERS
      android.permission.VIBRATE
      com.lmhy.gameplane.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
    install permissions:
      android.permission.INTERNET: granted=true
      android.permission.ACCESS_NETWORK_STATE: granted=true
      android.permission.VIBRATE: granted=true
      com.lmhy.gameplane.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION: granted=true
    User 0: ceDataInode=5832759 installed=true hidden=false suspended=false stopped=false notLaunched=false enabled=0 instant=false virtual=false
      lastDisabledCaller: com.android.packageinstaller
      gids=[3003]
      runtime permissions:
        android.permission.READ_SMS: granted=true
        android.permission.READ_PHONE_NUMBERS: granted=true
        android.permission.RECEIVE_MMS: granted=true
        android.permission.RECEIVE_SMS: granted=true
        android.permission.READ_PHONE_STATE: granted=true
        android.permission.SEND_SMS: granted=true&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android&amp;nbsp;Permission&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;background-color: #f7f7f8; color: #374151; text-align: left; border-collapse: collapse; width: 100%; height: 268px;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style2&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;권한&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;설명&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.INTERNET&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;인터넷에 액세스할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.ACCESS_NETWORK_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;네트워크 연결 상태 및 유형에 액세스할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 34px;&quot;&gt;
&lt;td style=&quot;height: 34px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_PRIVILEGED_PHONE_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 34px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;특권된 휴대폰 상태 정보에 대한 읽기 액세스 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 읽을 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.RECEIVE_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 수신하고 처리할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 40px;&quot;&gt;
&lt;td style=&quot;height: 40px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.RECEIVE_MMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 40px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MMS(Multimedia Messaging Service) 메시지를 수신하고 처리할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.SEND_SMS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SMS 메시지를 전송할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_PHONE_STATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;휴대폰 상태 및 신호 정보에 읽기 액세스 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.READ_PHONE_NUMBERS&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;휴대폰 번호에 읽기 액세스 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr style=&quot;height: 20px;&quot;&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;android.permission.VIBRATE&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;height: 20px;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;기기 진동을 제어할 수 있는 권한.&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 앱은 각종 기기정보, 개인정보, sms 정보 수집을 하고, 수집된 정보를 특정 C&amp;amp;C 서버 주소로 유출 행위를 한다. 또한 사용자를 속이기 위해 정상 사이트를 보여준다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Web View(정상 사이트)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;각종 정보 수집&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;sms 정보수집 및 진동 제어&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정보 유출&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 앱 실행 시 정상 사이트를 보여줌&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 사이트 &quot;www.nhis.or.kr&quot; 페이지의 화면을 보여주며 정상 앱인것 처럼 사용자를 속인다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱시작시 정상사이트 접속.PNG&quot; data-origin-width=&quot;937&quot; data-origin-height=&quot;404&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/GCtCx/btszLtGWM8D/HcXoRqNjok9ENkHOfdVL01/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/GCtCx/btszLtGWM8D/HcXoRqNjok9ENkHOfdVL01/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/GCtCx/btszLtGWM8D/HcXoRqNjok9ENkHOfdVL01/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGCtCx%2FbtszLtGWM8D%2FHcXoRqNjok9ENkHOfdVL01%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;937&quot; height=&quot;404&quot; data-filename=&quot;앱시작시 정상사이트 접속.PNG&quot; data-origin-width=&quot;937&quot; data-origin-height=&quot;404&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2.&amp;nbsp; 각종 정보 수집&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;핸드폰번호, sim 번호, IMEI 번호, 통신사 정보 수집&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;기기정보.PNG&quot; data-origin-width=&quot;1141&quot; data-origin-height=&quot;512&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bwGbMP/btszJ1ESWkc/bacjfci06gsdkQmLWIADHk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bwGbMP/btszJ1ESWkc/bacjfci06gsdkQmLWIADHk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bwGbMP/btszJ1ESWkc/bacjfci06gsdkQmLWIADHk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbwGbMP%2FbtszJ1ESWkc%2Fbacjfci06gsdkQmLWIADHk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1141&quot; height=&quot;512&quot; data-filename=&quot;기기정보.PNG&quot; data-origin-width=&quot;1141&quot; data-origin-height=&quot;512&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;기기정보2.PNG&quot; data-origin-width=&quot;577&quot; data-origin-height=&quot;204&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/lAvEn/btszK7RNbJ3/iZiaGmUjelhWxPDeszusO0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/lAvEn/btszK7RNbJ3/iZiaGmUjelhWxPDeszusO0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/lAvEn/btszK7RNbJ3/iZiaGmUjelhWxPDeszusO0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FlAvEn%2FbtszK7RNbJ3%2FiZiaGmUjelhWxPDeszusO0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;577&quot; height=&quot;204&quot; data-filename=&quot;기기정보2.PNG&quot; data-origin-width=&quot;577&quot; data-origin-height=&quot;204&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3.&amp;nbsp; SMS 수신시 정보 유출 및 진동 제어&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;리시브 1.PNG&quot; data-origin-width=&quot;708&quot; data-origin-height=&quot;538&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bcEMcz/btszLqQ1w7x/1tl7hZJUK22UUHcMdf3Ht0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bcEMcz/btszLqQ1w7x/1tl7hZJUK22UUHcMdf3Ht0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bcEMcz/btszLqQ1w7x/1tl7hZJUK22UUHcMdf3Ht0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbcEMcz%2FbtszLqQ1w7x%2F1tl7hZJUK22UUHcMdf3Ht0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;708&quot; height=&quot;538&quot; data-filename=&quot;리시브 1.PNG&quot; data-origin-width=&quot;708&quot; data-origin-height=&quot;538&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;리시브 2.PNG&quot; data-origin-width=&quot;1051&quot; data-origin-height=&quot;396&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/AVst2/btszLXBctM4/FKEAvKGAT9H6FLEw4OBKAk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/AVst2/btszLXBctM4/FKEAvKGAT9H6FLEw4OBKAk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/AVst2/btszLXBctM4/FKEAvKGAT9H6FLEw4OBKAk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FAVst2%2FbtszLXBctM4%2FFKEAvKGAT9H6FLEw4OBKAk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1051&quot; height=&quot;396&quot; data-filename=&quot;리시브 2.PNG&quot; data-origin-width=&quot;1051&quot; data-origin-height=&quot;396&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4.&amp;nbsp; 유출지 (C&amp;amp;C)정보&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;유출지를 보여줌.PNG&quot; data-origin-width=&quot;862&quot; data-origin-height=&quot;279&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dcdleE/btszQCb3KCR/aEwYXgB2xxhCVFNqjAX411/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dcdleE/btszQCb3KCR/aEwYXgB2xxhCVFNqjAX411/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dcdleE/btszQCb3KCR/aEwYXgB2xxhCVFNqjAX411/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdcdleE%2FbtszQCb3KCR%2FaEwYXgB2xxhCVFNqjAX411%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;862&quot; height=&quot;279&quot; data-filename=&quot;유출지를 보여줌.PNG&quot; data-origin-width=&quot;862&quot; data-origin-height=&quot;279&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;5.&amp;nbsp; 정보 유출 형태&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;api.PNG&quot; data-origin-width=&quot;1075&quot; data-origin-height=&quot;332&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dBHH1P/btszJJxgswi/IFByYaFtIusvzrWOF7vbb0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dBHH1P/btszJJxgswi/IFByYaFtIusvzrWOF7vbb0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dBHH1P/btszJJxgswi/IFByYaFtIusvzrWOF7vbb0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdBHH1P%2FbtszJJxgswi%2FIFByYaFtIusvzrWOF7vbb0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1075&quot; height=&quot;332&quot; data-filename=&quot;api.PNG&quot; data-origin-width=&quot;1075&quot; data-origin-height=&quot;332&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;네트워크.PNG&quot; data-origin-width=&quot;1292&quot; data-origin-height=&quot;467&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/GJhwa/btszLn02Q6m/pBFGwGYrtGjfCfSJSOzklk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/GJhwa/btszLn02Q6m/pBFGwGYrtGjfCfSJSOzklk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/GJhwa/btszLn02Q6m/pBFGwGYrtGjfCfSJSOzklk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGJhwa%2FbtszLn02Q6m%2FpBFGwGYrtGjfCfSJSOzklk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1292&quot; height=&quot;467&quot; data-filename=&quot;네트워크.PNG&quot; data-origin-width=&quot;1292&quot; data-origin-height=&quot;467&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;해당 앱은 핸드폰 기기정보, 개인정보, 통신사 정보등이 유출됩니다. 기기정보 같은 경우는 sim 스와핑으로 sim 복제 가능성도 있구요, 개인정보 탈취와 문자 정보 탈취로 인해 악의적으로 사용자 인증 하여 추가 행위를&amp;nbsp; 할 수 있습니다.&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://open.kakao.com/o/sy8rOtNf&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1704102282236&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;cago_note님의 오픈프로필&quot; data-og-description=&quot;cago_note 블로그 운영중!&quot; data-og-host=&quot;open.kakao.com&quot; data-og-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628&quot;&gt;&lt;a href=&quot;https://open.kakao.com/o/sy8rOtNf&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://open.kakao.com/o/sy8rOtNf&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/mXaxf/hyUTCqpbRH/v0FXzENLWpF4jZAoSBKs7K/img.jpg?width=1200&amp;amp;height=628&amp;amp;face=0_0_1200_628');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;cago_note님의 오픈프로필&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;cago_note 블로그 운영중!&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;open.kakao.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago</category>
      <category>The국민보험</category>
      <category>건강검진</category>
      <category>건강보험</category>
      <category>공공기관 사칭 문자</category>
      <category>스미싱</category>
      <category>스팸</category>
      <category>악성앱</category>
      <category>피싱사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/180</guid>
      <comments>https://cago-young.tistory.com/180#entry180comment</comments>
      <pubDate>Sun, 5 Nov 2023 21:16:41 +0900</pubDate>
    </item>
    <item>
      <title>국민건강보험 사칭 피싱 사이트 (23.11.01)</title>
      <link>https://cago-young.tistory.com/178</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;공공기관 사칭 스미싱인 국민건강보험 피싱 사이트입니다.&amp;nbsp; &amp;nbsp;URL 클릭 금지..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험 공단에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태이다. 기존에 스미싱 문자는&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험,&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;건강검사, 건강검진, 통지서, 통보문, 통보서&lt;/span&gt;&lt;/b&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;등 이러한 문구가 포함된 문자를 보냈는데 이번 문자에서는 [The국민보험] 이란 키워드가 추가된 것을 확인할 수 있다. 이전과 같은 형태로 스미싱 문자를 통해 URL 클릭을 유도하여, 피싱 사이트에 접속하고 악성 앱을 다운로드시키는 방법을 이용한다. &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;기존에는 피싱 사이트 접속시 번호 입력 - 개인정보 입력 - 다운로드 버튼 페이지 형태였지만 현재는 피싱 사이트에서 바로 다운로드 버튼이 보이는 방법으로 바뀌었다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[Web발신]&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[The국민보험]&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;건강검사 통보서 전송완료, 내용확인 https://s12.a1hy[.]info&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.PNG&quot; data-origin-width=&quot;570&quot; data-origin-height=&quot;492&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ckfMRt/btszC7wyW2B/jhpilSeuU1nynvtAlSXia0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ckfMRt/btszC7wyW2B/jhpilSeuU1nynvtAlSXia0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ckfMRt/btszC7wyW2B/jhpilSeuU1nynvtAlSXia0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FckfMRt%2FbtszC7wyW2B%2FjhpilSeuU1nynvtAlSXia0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;570&quot; height=&quot;492&quot; data-filename=&quot;edited_1.PNG&quot; data-origin-width=&quot;570&quot; data-origin-height=&quot;492&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b2Im18/btszC05lUb8/ksbWsWm9C6ymicCRlcp5T1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b2Im18/btszC05lUb8/ksbWsWm9C6ymicCRlcp5T1/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b2Im18/btszC05lUb8/ksbWsWm9C6ymicCRlcp5T1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb2Im18%2FbtszC05lUb8%2FksbWsWm9C6ymicCRlcp5T1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style6&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;451&quot; data-origin-height=&quot;845&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b4oBoI/btszCZ6oR0U/aFfB0Hjnpunr37ka8EeiLK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b4oBoI/btszCZ6oR0U/aFfB0Hjnpunr37ka8EeiLK/img.png&quot; data-alt=&quot;국민건강보험 피싱 사이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b4oBoI/btszCZ6oR0U/aFfB0Hjnpunr37ka8EeiLK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb4oBoI%2FbtszCZ6oR0U%2FaFfB0Hjnpunr37ka8EeiLK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;451&quot; height=&quot;845&quot; data-filename=&quot;2.PNG&quot; data-origin-width=&quot;451&quot; data-origin-height=&quot;845&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;국민건강보험 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1698829531920&quot; class=&quot;javascript&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-type=&quot;codeblock&quot; data-ke-language=&quot;javascript&quot;&gt;&lt;code&gt;https://s12[.]a1hy.info/ (피싱 페이지)
https://s12[.]a1hy.info/download/the.apk (다운로드 apk 주소)&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문자에 포함된 URL 주소로 접속하면&amp;nbsp; '국민건강보험' 사칭 피싱 사이트 페이지로 접속된다. 해당 페이지에서는 &quot;검진통지서 받기&quot;라는 버튼이 보이고, 해당 버튼을 클릭하게 되면 APK 파일을 다운로드하게 된다. 다운로드한 APK 파일은 악성앱으로 확인된다.&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot; data-tooltip=&quot;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&quot;&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;VirusTotal 탐지 결과&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Avira (no cloud) :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;br /&gt;Cynet :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malicious&amp;nbsp;(score:&amp;nbsp;99)&lt;/span&gt;&lt;br /&gt;DrWeb :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Android.Packed.13.origin&lt;/span&gt;&lt;br /&gt;F-Secure :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Malware.ANDROID/Malformed.ZIP.Gen&lt;/span&gt;&lt;br /&gt;Ikarus :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;Trojan-Dropper.AndroidOS.Agent&lt;/span&gt;&lt;br /&gt;Kaspersky :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;br /&gt;ZoneAlarm by Check Point :&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #ee2323;&quot;&gt;HEUR:Trojan-Spy.AndroidOS.FakeApp.q&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;요즘은 후후나 스팸 차단 서비스가 있지만 번호로 판단하는 것은 위험합니다. 아래 기사와 같이 해커가 악의적으로 정상 회사 번호를 이용하여 스미싱이나 스팸 문자를 배포를 하기 때문에 정상 번호로 왔다고 해서 믿으면 안 됩니다.&lt;br /&gt;아래는 쇼핑몰 회사 번호에서 교통민원24, 벌금, 범칙금등에 내용을 보내서 판단하기 어렵지 않지만, 택배 관련 스미싱 문자가 올 수 있기 때문에&amp;nbsp; 항상 주의하셔야 합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://m.boannews.com/html/detail.html?idx=123237&quot; target=&quot;_blank&quot; rel=&quot;noopener&amp;nbsp;noreferrer&quot;&gt;https://m.boannews.com/html/detail.html?idx=123237&lt;/a&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1698831778014&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;article&quot; data-og-title=&quot;STCO, 고객센터 번호로 발송된 스미싱 문자 사과... 고객정보 유출은 확인 안돼&quot; data-og-description=&quot;남성 패션 코디네이션 브랜드 STCO(에스티코)를 운영하는 STO(대표 김흥수)가 홈페이지 공지를 통해 &amp;lsquo;스미싱 문자 발송에 대한 안내 및 사과문&amp;rsquo;을 올렸다.&quot; data-og-host=&quot;m.boannews.com&quot; data-og-source-url=&quot;https://m.boannews.com/html/detail.html?idx=123237&quot; data-og-url=&quot;http://m.boannews.com/html/detail.html?idx=123237&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/fVmlS/hyUnO4Nx7Y/j7dR5pBKkKjjfZkukoIwFK/img.jpg?width=750&amp;amp;height=476&amp;amp;face=0_0_750_476&quot;&gt;&lt;a href=&quot;https://m.boannews.com/html/detail.html?idx=123237&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://m.boannews.com/html/detail.html?idx=123237&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/fVmlS/hyUnO4Nx7Y/j7dR5pBKkKjjfZkukoIwFK/img.jpg?width=750&amp;amp;height=476&amp;amp;face=0_0_750_476');&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;STCO, 고객센터 번호로 발송된 스미싱 문자 사과... 고객정보 유출은 확인 안돼&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;남성 패션 코디네이션 브랜드 STCO(에스티코)를 운영하는 STO(대표 김흥수)가 홈페이지 공지를 통해 &amp;lsquo;스미싱 문자 발송에 대한 안내 및 사과문&amp;rsquo;을 올렸다.&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;m.boannews.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr data-ke-style=&quot;style5&quot; data-ke-type=&quot;horizontalRule&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago</category>
      <category>The국민보험</category>
      <category>건강검사 통보서 전송완료</category>
      <category>건강검진</category>
      <category>공공기관 사칭 문자</category>
      <category>스미싱</category>
      <category>스팸</category>
      <category>악성앱</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/178</guid>
      <comments>https://cago-young.tistory.com/178#entry178comment</comments>
      <pubDate>Wed, 1 Nov 2023 18:58:02 +0900</pubDate>
    </item>
    <item>
      <title>[책 읽기] 인간관계론 리뷰</title>
      <link>https://cago-young.tistory.com/177</link>
      <description>&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;221&quot; data-origin-height=&quot;331&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/HEiDV/btsw2LctlGJ/Q16iNKDGQqbOHmkO1zurp0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/HEiDV/btsw2LctlGJ/Q16iNKDGQqbOHmkO1zurp0/img.png&quot; data-alt=&quot;데일 카네기 인간관계론&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/HEiDV/btsw2LctlGJ/Q16iNKDGQqbOHmkO1zurp0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FHEiDV%2Fbtsw2LctlGJ%2FQ16iNKDGQqbOHmkO1zurp0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;221&quot; height=&quot;331&quot; data-origin-width=&quot;221&quot; data-origin-height=&quot;331&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;데일 카네기 인간관계론&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;h3 style=&quot;text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt; &lt;span style=&quot;color: #777777;&quot;&gt;데일 카네기 인간관계론&lt;/span&gt; &lt;/h3&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;h3 style=&quot;text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt;사람들을 설득하는 12가지 방법&lt;/h3&gt;&lt;pre data-ke-type=&quot;codeblock&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot;&gt;&lt;code&gt;1. 논쟁을 이기는 유일한 방법은 논쟁을 피하는 방법이다.

2. 다른사람의 의견을 존중하라 절대로 그사람이 틀렸다고 하지마라

3. 당신이 틀렸다면 빨리 분명히 인정하라

4 우호적으로 시작 하라

5. 다른 사람들오 하여금 당장 네네 말하게 하라

6.&amp;nbsp;&amp;nbsp;말을 많이 하게 만들어라

7. 다른사람이 하여금 스스로 생각했다고 여기도록 만들어라

8. 진심으로 다른사람 관점에서 사물을 보려 애써라

9. 다른사람에 생각과 욕망에 공감 하라

10. 고상한동기에 호소 하라

11. 생각 극화 하기

12. 도전 의욕을 불러 이르켜라&lt;/code&gt;&lt;/pre&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;음 읽으면서 재밌었다고 느끼고 한번 시도해 볼 만한 상황이 있었는데 '중요한 사람 대접하기'였나?&amp;nbsp;&lt;br&gt;어머니가 지병때문에 운동을 해야 하는데 맨날 안 하는 상황이었고, 같이 하려고 해도 말할 때마다 도망치 셨는데, 말을 할 때 엄마는 '우리한테 중요 한 사람이니까~' 하면서 하니까 조금씩 운동을 하시고 있고 언제까지 효과를 볼지 모르지만 최근에는 오늘 만보 걸었다고 자랑도 하시는 거 보니 확실히 효가는 있는 거 같은 거 같다.&lt;br&gt;&lt;br&gt;책을 읽으면서는 음... 내용을 보다 보니 개인과 개인 관계에서는 한 번쯤 시도해 볼 만한 방법도 많은 거 같긴 한데.. 지속가능한 방법인지는 잘 모르겠다..&amp;nbsp;&lt;br&gt;&lt;br&gt;내 상황에서 할 수있는 방법이 있나? 바꾸거나 시도해볼 만 게 있나? 찾아보긴 했는데&amp;nbsp;&lt;br&gt;'도전 의욕을 불러 이르켜라' 이것도&amp;nbsp;&amp;nbsp;해볼만 한거 같기도...?&lt;br&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Distracting thoughts</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/177</guid>
      <comments>https://cago-young.tistory.com/177#entry177comment</comments>
      <pubDate>Mon, 2 Oct 2023 13:21:51 +0900</pubDate>
    </item>
    <item>
      <title>[문서 파일] CFBF와 OOXML</title>
      <link>https://cago-young.tistory.com/175</link>
      <description>&lt;h3 data-ke-size=&quot;size23&quot;&gt;&amp;nbsp;&lt;/h3&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;CFBF (Compound File Binary Format)&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;CFBF는 바이너리 파일 형식으로, 주로 이전 버전의 마이크로소프트 &lt;span style=&quot;color: #f89009;&quot;&gt;오피스 문서와 한글 문서&lt;/span&gt;(예: .doc, .xls, .ppt, hwp)에 사용됩니다. 이 형식은 여러 부분으로 나누어진 복합 문서를 저장하기 위한 것이며, 파일 내부에 OLE (Object Linking and Embedding) 개체를 포함할 수 있습니다. CFBF는 파일 시스템과 비슷한 구조를 가지며, &lt;span style=&quot;color: #f89009;&quot;&gt;섹터로 구분된 데이터 스트림&lt;/span&gt;을 사용하여 데이터를 저장합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;624&quot; data-origin-height=&quot;289&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/boSCUK/btsuZ29dGG4/oKI0Ii6E0WiKbKG15FLYm1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/boSCUK/btsuZ29dGG4/oKI0Ii6E0WiKbKG15FLYm1/img.png&quot; data-alt=&quot;OLE 파일 시그니처&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/boSCUK/btsuZ29dGG4/oKI0Ii6E0WiKbKG15FLYm1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FboSCUK%2FbtsuZ29dGG4%2FoKI0Ii6E0WiKbKG15FLYm1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;624&quot; height=&quot;289&quot; data-origin-width=&quot;624&quot; data-origin-height=&quot;289&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;OLE 파일 시그니처&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;OLE 파일 시그니처는 D0 CF 입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스트림 확인은 OLEdmp 라이브러리 이용하여 확인 하면됩니다. - OLEdmp에서 읽을수 없으면 대부분 OOXML 이라고 생각 하면됨&lt;/span&gt;&lt;/p&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;OLEdmp는 OLETools라고 알려진 일련의 오픈 소스 도구 중 하나입니다.&amp;nbsp; 주로 OLE (Object Linking and Embedding) 구조와 관련된 파일 형식을 분석하고, 해당 파일 내부의 객체와 데이터를 추출하는 데 사용됩니다. OLE는 주로 마이크로소프트의 파일 형식 중 하나인 COM 구조와 함께 사용되며, 주로 문서와 같은 리소스를 다른 문서나 응용 프로그램에 삽입하거나 연결하는 데 사용됩니다. &lt;br /&gt;&lt;br /&gt;OLE&amp;nbsp;파일&amp;nbsp;분석:&amp;nbsp;OLEdmp는&amp;nbsp;주로&amp;nbsp;OLE&amp;nbsp;파일&amp;nbsp;형식을&amp;nbsp;분석하는&amp;nbsp;데&amp;nbsp;사용됩니다.&amp;nbsp;이&amp;nbsp;형식은&amp;nbsp;주로&amp;nbsp;마이크로소프트의&amp;nbsp;Office&amp;nbsp;문서&amp;nbsp;와&amp;nbsp;한글&amp;nbsp;문서&amp;nbsp;(ex:.doc,&amp;nbsp;.xls,&amp;nbsp;.ppt,&amp;nbsp;.hwp)와&amp;nbsp;관련이&amp;nbsp;있습니다. &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;br /&gt;객체&amp;nbsp;및&amp;nbsp;데이터&amp;nbsp;추출:&amp;nbsp;이&amp;nbsp;도구는&amp;nbsp;OLE&amp;nbsp;파일&amp;nbsp;내부의&amp;nbsp;객체와&amp;nbsp;데이터를&amp;nbsp;추출하는&amp;nbsp;데&amp;nbsp;사용됩니다.&amp;nbsp;이로써&amp;nbsp;OLE&amp;nbsp;파일에&amp;nbsp;포함된&amp;nbsp;객체를&amp;nbsp;개별적으로&amp;nbsp;살펴보거나&amp;nbsp;복구할&amp;nbsp;수&amp;nbsp;있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;디버깅&amp;nbsp;및&amp;nbsp;보안&amp;nbsp;분석:&amp;nbsp;OLEdmp는&amp;nbsp;악성&amp;nbsp;문서나&amp;nbsp;악성&amp;nbsp;코드를&amp;nbsp;분석할&amp;nbsp;때&amp;nbsp;사용하는&amp;nbsp;도구입니다.&amp;nbsp;OLE&amp;nbsp;파일에서&amp;nbsp;악성&amp;nbsp;행위나&amp;nbsp;취약점을&amp;nbsp;찾는&amp;nbsp;데&amp;nbsp;도움을&amp;nbsp;줄&amp;nbsp;수&amp;nbsp;있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;OOXML (Office Open XML)&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;OOXML은 마이크로소프트 오피스 2007 버전 이상의 파일 형식에 사용됩니다. 이 형식은 개방형 표준으로, 문서, 스프레드시트 및 프레젠테이션을 저장하는 데 사용됩니다. OOXML 문서는 일반적으로 .docx (Word), .xlsx (Excel), .pptx (PowerPoint) hwpx등의 확장자로 알려져 있습니다. OOXML 파일은 일반적으로&lt;span style=&quot;color: #f89009;&quot;&gt; ZIP 압축을 사용하며 XML 기반의 표준 구조&lt;/span&gt;를 갖고 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;캡처.PNG&quot; data-origin-width=&quot;623&quot; data-origin-height=&quot;243&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/UUbkK/btsu7UoUTwO/sN3uWjxx7HAxzXF9bQaZx1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/UUbkK/btsu7UoUTwO/sN3uWjxx7HAxzXF9bQaZx1/img.png&quot; data-alt=&quot;OOXML 시그니처&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/UUbkK/btsu7UoUTwO/sN3uWjxx7HAxzXF9bQaZx1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FUUbkK%2Fbtsu7UoUTwO%2FsN3uWjxx7HAxzXF9bQaZx1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;623&quot; height=&quot;243&quot; data-filename=&quot;캡처.PNG&quot; data-origin-width=&quot;623&quot; data-origin-height=&quot;243&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;OOXML 시그니처&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;OOXML 시그니처는 50 4B 03 04 14 00 06 00 입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;분석시&amp;nbsp; zip/unzip을 이용해서 보면 됩니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;444&quot; data-origin-height=&quot;122&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/9ctVA/btsuSheQbxQ/TDk1kI6k1eKPJl8iuOx7Tk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/9ctVA/btsuSheQbxQ/TDk1kI6k1eKPJl8iuOx7Tk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/9ctVA/btsuSheQbxQ/TDk1kI6k1eKPJl8iuOx7Tk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F9ctVA%2FbtsuSheQbxQ%2FTDk1kI6k1eKPJl8iuOx7Tk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;444&quot; height=&quot;122&quot; data-origin-width=&quot;444&quot; data-origin-height=&quot;122&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;hwp 파일 포맷 :&amp;nbsp;&lt;a href=&quot;https://www.hancom.com/etc/hwpDownload.do&quot;&gt;https://www.hancom.com/etc/hwpDownload.do&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;figure id=&quot;og_1695303398962&quot; contenteditable=&quot;false&quot; data-ke-type=&quot;opengraph&quot; data-ke-align=&quot;alignCenter&quot; data-og-type=&quot;website&quot; data-og-title=&quot;글로벌 소프트웨어의 리더, 한글과컴퓨터&quot; data-og-description=&quot;OWPML 파일 형식 공개 한글과컴퓨터는 2010년 6월 29일 자사의 바이너리 포맷인 HWP와 마크업 언어인 HWPML을 공개하였습니다. 이전 버전인 HWP 2.x/3.x와 HWP 2002부터 시작하여 HWP 2014, HWP 2018까지 사용하&quot; data-og-host=&quot;www.hancom.com&quot; data-og-source-url=&quot;https://www.hancom.com/etc/hwpDownload.do&quot; data-og-url=&quot;https://www.hancom.com/etc/hwpDownload.do&quot; data-og-image=&quot;&quot;&gt;&lt;a href=&quot;https://www.hancom.com/etc/hwpDownload.do&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot; data-source-url=&quot;https://www.hancom.com/etc/hwpDownload.do&quot;&gt;
&lt;div class=&quot;og-image&quot; style=&quot;background-image: url();&quot;&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;og-text&quot;&gt;
&lt;p class=&quot;og-title&quot; data-ke-size=&quot;size16&quot;&gt;글로벌 소프트웨어의 리더, 한글과컴퓨터&lt;/p&gt;
&lt;p class=&quot;og-desc&quot; data-ke-size=&quot;size16&quot;&gt;OWPML 파일 형식 공개 한글과컴퓨터는 2010년 6월 29일 자사의 바이너리 포맷인 HWP와 마크업 언어인 HWPML을 공개하였습니다. 이전 버전인 HWP 2.x/3.x와 HWP 2002부터 시작하여 HWP 2014, HWP 2018까지 사용하&lt;/p&gt;
&lt;p class=&quot;og-host&quot; data-ke-size=&quot;size16&quot;&gt;www.hancom.com&lt;/p&gt;
&lt;/div&gt;
&lt;/a&gt;&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/기타</category>
      <category>CFBF</category>
      <category>OLEdmp</category>
      <category>OOXML</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/175</guid>
      <comments>https://cago-young.tistory.com/175#entry175comment</comments>
      <pubDate>Thu, 21 Sep 2023 22:11:39 +0900</pubDate>
    </item>
    <item>
      <title>경찰청교통민원24 사칭 스미싱 피싱 사이트 (23.09.11)</title>
      <link>https://cago-young.tistory.com/170</link>
      <description>&lt;h3 style=&quot;text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt;&amp;nbsp; 항상 URL 링크 클릭 조심 합시다!&lt;/h3&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;해당 스미싱은 경찰청 교통민원24&lt;span style=&quot;color: #555555;&quot;&gt;(이파인) 사칭으로 자주 나오는 스미싱입니다.&amp;nbsp; 문자(SMS)로 교통위반으로 범칙금, 벌점, 고지서, 통보서, 처벌 결과등 발송됐다며 문자 메시지가 온다. 최근 문자도&lt;/span&gt;&lt;b&gt;&lt;span style=&quot;color: #F89009;&quot;&gt; 끼어들기, 전조등, 과속, 신호등&lt;/span&gt;&lt;/b&gt;&lt;span style=&quot;color: #555555;&quot;&gt; 등 운전자들이 자주 실수 할 수 있는 범법 행위를 직접적으로 언급 하는 문자를 포함해서 보내는 거 같다.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span style=&quot;color: #555555;&quot;&gt;해당 문구는 아래와 같이 &quot;끼어들기 금지 위반 처벌 결과 전송 완료&quot; 내용과 같이 확인하라는 URL을 같이 보낸다.&lt;/span&gt;&lt;br&gt;&amp;nbsp;&lt;/p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;500&quot; data-origin-height=&quot;450&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bsOI7J/btstxmVets9/YaQGkI85eVK94CCDWbJkcK/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bsOI7J/btstxmVets9/YaQGkI85eVK94CCDWbJkcK/img.jpg&quot; data-alt=&quot;교통민원24 사칭 스미싱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bsOI7J/btstxmVets9/YaQGkI85eVK94CCDWbJkcK/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbsOI7J%2FbtstxmVets9%2FYaQGkI85eVK94CCDWbJkcK%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;500&quot; height=&quot;450&quot; data-origin-width=&quot;500&quot; data-origin-height=&quot;450&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;교통민원24 사칭 스미싱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;스미싱 문구)&lt;br&gt;[Web발신] [교통민원24] 끼어들기 금지 위반 : 처벌 결과 전송 완료 http://fiolpv[.]ndrzl[.]monster:6013&lt;/p&gt;&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot;&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;h3 style=&quot;text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt;피싱 메인 페이지&lt;/h3&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;해당 스미싱에 있는 주소를 접속하게 되면 경찰청 교통민원24 사칭 피싱 사이트에 접속하게 됩니다.&amp;nbsp;&lt;br&gt;&amp;nbsp;&lt;/p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kNH8h/btstwHFzIz1/NhvgSFbLWtJVBXKHTKJXC0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kNH8h/btstwHFzIz1/NhvgSFbLWtJVBXKHTKJXC0/img.png&quot; data-origin-width=&quot;406&quot; data-origin-height=&quot;611&quot; style=&quot;width: 31.3443%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kNH8h/btstwHFzIz1/NhvgSFbLWtJVBXKHTKJXC0/img.png&quot; alt=&quot;&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkNH8h%2FbtstwHFzIz1%2FNhvgSFbLWtJVBXKHTKJXC0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;406&quot; height=&quot;611&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/PueGI/btstwEPyUnA/f1PegfGAG7l55DFS4fKkQk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/PueGI/btstwEPyUnA/f1PegfGAG7l55DFS4fKkQk/img.png&quot; data-origin-width=&quot;401&quot; data-origin-height=&quot;580&quot; style=&quot;width: 32.6129%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/PueGI/btstwEPyUnA/f1PegfGAG7l55DFS4fKkQk/img.png&quot; alt=&quot;&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPueGI%2FbtstwEPyUnA%2Ff1PegfGAG7l55DFS4fKkQk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;401&quot; height=&quot;580&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cmj9kL/btstwfPKLfD/JeT47cIu8fQTHalljKTHF0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cmj9kL/btstwfPKLfD/JeT47cIu8fQTHalljKTHF0/img.png&quot; data-origin-width=&quot;406&quot; data-origin-height=&quot;568&quot; style=&quot;width: 33.7172%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cmj9kL/btstwfPKLfD/JeT47cIu8fQTHalljKTHF0/img.png&quot; alt=&quot;&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcmj9kL%2FbtstwfPKLfD%2FJeT47cIu8fQTHalljKTHF0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;406&quot; height=&quot;568&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;피싱사이트 접속 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;&lt;span style=&quot;color: #555555;&quot;&gt;아래는 실제 교통민원 24 사이트입니다.&lt;/span&gt;&lt;br&gt;&amp;nbsp;&lt;br&gt;&lt;a href=&quot;https://www.efine.go.kr/main/main.do&quot; target=&quot;_blank&quot;&gt;&lt;span&gt;https://www.efine.go.kr/main/main.do&lt;/span&gt;&lt;/a&gt;&lt;/p&gt;&lt;figure data-ke-type=&quot;opengraph&quot; data-og-title=&quot;경찰청교통민원24(이파인)&quot; data-ke-align=&quot;alignCenter&quot; data-og-description=&quot;경찰청교통민원24(이파인)&quot; data-og-host=&quot;www.efine.go.kr&quot; data-og-source-url=&quot;https://www.efine.go.kr/main/main.do&quot; data-og-image=&quot;https://scrap.kakaocdn.net/dn/bpf3lE/hyTSprf45a/LzK5A1oEImsKajgDcOjWx1/img.png?width=600&amp;amp;height=150&amp;amp;face=0_0_600_150,https://scrap.kakaocdn.net/dn/kqSSf/hyTSqDGw4p/E5ekERKkNkpK0mdKtaXtFk/img.jpg?width=570&amp;amp;height=404&amp;amp;face=0_0_570_404,https://scrap.kakaocdn.net/dn/dYmpzg/hyTSs2zuSW/h1MqJWHaQyux4b3PuHaSck/img.jpg?width=570&amp;amp;height=404&amp;amp;face=0_0_570_404&quot; data-og-url=&quot;https://www.efine.go.kr&quot;&gt;&lt;a href=&quot;https://www.efine.go.kr&quot; target=&quot;_blank&quot; data-source-url=&quot;https://www.efine.go.kr/main/main.do&quot;&gt;&lt;div class=&quot;og-image&quot; style=&quot;background-image: url('https://scrap.kakaocdn.net/dn/bpf3lE/hyTSprf45a/LzK5A1oEImsKajgDcOjWx1/img.png?width=600&amp;amp;height=150&amp;amp;face=0_0_600_150,https://scrap.kakaocdn.net/dn/kqSSf/hyTSqDGw4p/E5ekERKkNkpK0mdKtaXtFk/img.jpg?width=570&amp;amp;height=404&amp;amp;face=0_0_570_404,https://scrap.kakaocdn.net/dn/dYmpzg/hyTSs2zuSW/h1MqJWHaQyux4b3PuHaSck/img.jpg?width=570&amp;amp;height=404&amp;amp;face=0_0_570_404')&quot;&gt; &lt;/div&gt;&lt;div class=&quot;og-text&quot;&gt;&lt;p class=&quot;og-title&quot;&gt;경찰청교통민원24(이파인)&lt;/p&gt;&lt;p class=&quot;og-desc&quot;&gt;경찰청교통민원24(이파인)&lt;/p&gt;&lt;p class=&quot;og-host&quot;&gt;www.efine.go.kr&lt;/p&gt;&lt;/div&gt;&lt;/a&gt;&lt;/figure&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;&amp;nbsp;&lt;br&gt;&amp;nbsp;&lt;/p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cshumI/btstxNLJY8G/XXHxNzPsXQQ3DA6LhDLgH0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cshumI/btstxNLJY8G/XXHxNzPsXQQ3DA6LhDLgH0/img.png&quot; data-origin-width=&quot;376&quot; data-origin-height=&quot;308&quot; style=&quot;width: 27.4421%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cshumI/btstxNLJY8G/XXHxNzPsXQQ3DA6LhDLgH0/img.png&quot; alt=&quot;&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcshumI%2FbtstxNLJY8G%2FXXHxNzPsXQQ3DA6LhDLgH0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;376&quot; height=&quot;308&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b4Fo4u/btstwmBouD2/lClQXnVLq5Ap52pdeLIMJK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b4Fo4u/btstwmBouD2/lClQXnVLq5Ap52pdeLIMJK/img.png&quot; data-origin-width=&quot;451&quot; data-origin-height=&quot;142&quot; style=&quot;width: 71.3951%;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b4Fo4u/btstwmBouD2/lClQXnVLq5Ap52pdeLIMJK/img.png&quot; alt=&quot;&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb4Fo4u%2FbtstwmBouD2%2FlClQXnVLq5Ap52pdeLIMJK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;451&quot; height=&quot;142&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;교통민원24&amp;amp;amp;nbsp; 로그인&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;p data-ke-size=&quot;size18&quot; style=&quot;text-align: left;&quot;&gt;&lt;b&gt;교통민원 사이트에서 인증 절차는 모바일에서 인증 못 하게 만들었습니다.&lt;/b&gt;&lt;/p&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot;&gt;&lt;h3 style=&quot;text-align: left;&quot; data-ke-size=&quot;size23&quot;&gt;HTML 분석&lt;/h3&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&lt;span style=&quot;color: #555555;&quot;&gt;&amp;nbsp;접속 시 개인정보를 요구하는 화면이 나오고 개인정보를 입력하게 되면 입력한 정보가 공격자 서버로 넘어가면서 다음 페이지에 접속하는 형태입니다.&amp;nbsp; 최종적으로는 악성앱을 다운로드 페이지로 넘어가 악성 앱을 다운로드하게 합니다.&lt;/span&gt;&lt;br&gt;&amp;nbsp;&lt;/p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;777&quot; data-origin-height=&quot;216&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sy9wP/btstztF2IX3/FTyAAkJQUpQQ7Lks3m6C81/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sy9wP/btstztF2IX3/FTyAAkJQUpQQ7Lks3m6C81/img.png&quot; data-alt=&quot;번호 검증&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sy9wP/btstztF2IX3/FTyAAkJQUpQQ7Lks3m6C81/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fsy9wP%2FbtstztF2IX3%2FFTyAAkJQUpQQ7Lks3m6C81%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;777&quot; height=&quot;216&quot; data-origin-width=&quot;777&quot; data-origin-height=&quot;216&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;번호 검증&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;478&quot; data-origin-height=&quot;134&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b5Tczj/btstxmOr82D/hyi8ytjEO0VGN8smNwAK1k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b5Tczj/btstxmOr82D/hyi8ytjEO0VGN8smNwAK1k/img.png&quot; data-alt=&quot;유출 정보1&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b5Tczj/btstxmOr82D/hyi8ytjEO0VGN8smNwAK1k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb5Tczj%2FbtstxmOr82D%2Fhyi8ytjEO0VGN8smNwAK1k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;478&quot; height=&quot;134&quot; data-origin-width=&quot;478&quot; data-origin-height=&quot;134&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;유출 정보1&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;335&quot; data-origin-height=&quot;80&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cq4DRf/btstx4GMw6s/LZEKhgSdJE0fAEkKhmHpa1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cq4DRf/btstx4GMw6s/LZEKhgSdJE0fAEkKhmHpa1/img.png&quot; data-alt=&quot;리다이렉트 페이지&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cq4DRf/btstx4GMw6s/LZEKhgSdJE0fAEkKhmHpa1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcq4DRf%2Fbtstx4GMw6s%2FLZEKhgSdJE0fAEkKhmHpa1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;335&quot; height=&quot;80&quot; data-origin-width=&quot;335&quot; data-origin-height=&quot;80&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;리다이렉트 페이지&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;pre data-ke-type=&quot;codeblock&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot;&gt;&lt;code&gt;function select_gift()
{
	var f = document.event;
	if ( f.mobile_no1.value == &quot;&quot;) 
	{ 
		alert(&quot;실명 입력이 필요 합니다.&quot;);
		f.mobile_no1.focus();
		return;
	}
	if (f.mobile_no2.value.length &amp;lt; 6) { 
		alert(&quot;생년월일을 정화하게 입력하세요.&quot;);
		f.mobile_no2.focus();
		return;
	}
	if(!checknum(f.mobile_no2.value))
	{
		alert(&quot;휴대폰번호에 숫자를 입력하세요.&quot;);
		f.mobile_no2.value=&quot;&quot;;
		f.mobile_no2.focus();
		return;
	}
	f.method = &quot;POST&quot;;
	f.action = &quot;82dfb4ee0abbdc8f706f3e9cea65e8df129fa7f6/&quot;;
	f.submit();
}&lt;/code&gt;&lt;/pre&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;487&quot; data-origin-height=&quot;362&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dYVi7r/btstC1WJsnN/jMpfqDkQ52qOJPRfdSNGSK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dYVi7r/btstC1WJsnN/jMpfqDkQ52qOJPRfdSNGSK/img.png&quot; data-alt=&quot;유출 정보2&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dYVi7r/btstC1WJsnN/jMpfqDkQ52qOJPRfdSNGSK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdYVi7r%2FbtstC1WJsnN%2FjMpfqDkQ52qOJPRfdSNGSK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;487&quot; height=&quot;362&quot; data-origin-width=&quot;487&quot; data-origin-height=&quot;362&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;유출 정보2&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;pre data-ke-type=&quot;codeblock&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot;&gt;&lt;code&gt;&amp;lt;tr&amp;gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;td height=&quot;35&quot; align=&quot;center&quot;&amp;gt;&amp;lt;a href=&quot;http://fiolpv[.]ndrzl[.]monster:6013/82dfb4ee0abbdc8f706f3e9cea65e8df129fa7f6/01000000000.apk&quot; style=&quot;color:#FFFFFF; text-decoration:none; font-size:18px; color:#000000; padding:10px 3px; display:block; background-color:#FFFFFF;&quot;&amp;gt;&amp;lt;strong&amp;gt;다운로드 하기&amp;lt;/strong&amp;gt;&amp;lt;/a&amp;gt;&amp;lt;/td&amp;gt;
&amp;lt;/tr&amp;gt;&lt;/code&gt;&lt;/pre&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;681&quot; data-origin-height=&quot;134&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c6KFR1/btstxOw6B2a/PUQXEW7pD4vXq7jhERLOGk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c6KFR1/btstxOw6B2a/PUQXEW7pD4vXq7jhERLOGk/img.png&quot; data-alt=&quot;악성앱 다운&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c6KFR1/btstxOw6B2a/PUQXEW7pD4vXq7jhERLOGk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc6KFR1%2FbtstxOw6B2a%2FPUQXEW7pD4vXq7jhERLOGk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;681&quot; height=&quot;134&quot; data-origin-width=&quot;681&quot; data-origin-height=&quot;134&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;악성앱 다운&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;&amp;nbsp;&lt;br&gt;&lt;span style=&quot;color: #555555;&quot;&gt;해당 사이트 접속 후 요구하는 전화번호, 이름, 생년월일을 입력하면 입력한 값이 넘어가는 것을 확인할 수 있습니다.&lt;/span&gt;&lt;br&gt;&amp;nbsp;&lt;br&gt;&lt;span style=&quot;color: #333333;&quot;&gt;별거 아닌 정보가 넘어간다고 생각할 수 있지만 이 정보를 가지고 어떤 걸 할지는 모르는 게 제일 무서운 거 같아요... 해당 정보를 판매나 추후에 악용할 여지가 있기 때문에 개인정보는 신뢰할 수 있는 사이트에서만 입력하는 게 좋습니다.&lt;/span&gt;&lt;/p&gt;&lt;hr data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot;&gt;&lt;p data-ke-size=&quot;size18&quot; style=&quot;text-align: left;&quot;&gt;&amp;nbsp;&lt;br&gt;&lt;span style=&quot;color: #3D62CE;&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/span&gt;&lt;/p&gt;&lt;p data-ke-size=&quot;size16&quot; style=&quot;text-align: left;&quot;&gt;&lt;br&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;br&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago</category>
      <category>[교통민원24] 끼어들기 금지 위반 : 처벌 결과 전송 완료</category>
      <category>교통민원 URL</category>
      <category>교통민원 링크</category>
      <category>교통민원 문자</category>
      <category>스미싱</category>
      <category>카고 분석</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/170</guid>
      <comments>https://cago-young.tistory.com/170#entry170comment</comments>
      <pubDate>Mon, 11 Sep 2023 01:07:32 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 국민건강보험 사칭 스미싱 악성앱 분석 (23.09.04)</title>
      <link>https://cago-young.tistory.com/168</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이번에는 공공기관 사칭 국민건강보험 스미싱에서 다운되는 &quot;인터넷.apk&quot; 분석 보고서 입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp; &amp;nbsp;URL 클릭 금지..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험 공단에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태입니다. 해당 문자는&amp;nbsp;&lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험,&amp;nbsp;&lt;/span&gt;건강검사, 건강검진, 통지서, 통보문, 통보서&lt;/span&gt;&lt;/b&gt;&amp;nbsp;등 이러한 문구가 포함되며, 건강 검진 결과 확인을 위해 URL 클릭을 유도 하는 형태이고, 해당 URL을 클릭하면 개인정보 입력 후 최종적으로 악성 앱을 다운로드하는 형태입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[Web발신] 건강검사보험 통보문 전달완료 hxxp://yhsgwac[.]lat&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_xxzassdfa.png&quot; data-origin-width=&quot;592&quot; data-origin-height=&quot;429&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/nLS7q/btssPv68RJt/MUM4v7aH96BovGsKB5Meq1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/nLS7q/btssPv68RJt/MUM4v7aH96BovGsKB5Meq1/img.png&quot; data-alt=&quot;건강검진 문자 (스미싱)&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/nLS7q/btssPv68RJt/MUM4v7aH96BovGsKB5Meq1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FnLS7q%2FbtssPv68RJt%2FMUM4v7aH96BovGsKB5Meq1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;592&quot; height=&quot;429&quot; data-filename=&quot;edited_xxzassdfa.png&quot; data-origin-width=&quot;592&quot; data-origin-height=&quot;429&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강검진 문자 (스미싱)&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mvtPv/btssPuApqAp/1uKpsib9Jr109c7OcuOMIK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mvtPv/btssPuApqAp/1uKpsib9Jr109c7OcuOMIK/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mvtPv/btssPuApqAp/1uKpsib9Jr109c7OcuOMIK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmvtPv%2FbtssPuApqAp%2F1uKpsib9Jr109c7OcuOMIK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/sNnqs/btss3W9ppba/gKcCQSFCPUt1RHGZGpt1IK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/sNnqs/btss3W9ppba/gKcCQSFCPUt1RHGZGpt1IK/img.png&quot; style=&quot;width: 34.8502%; margin-right: 10px;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;688&quot; data-filename=&quot;1.png&quot; data-widthpercent=&quot;35.68&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/sNnqs/btss3W9ppba/gKcCQSFCPUt1RHGZGpt1IK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsNnqs%2Fbtss3W9ppba%2FgKcCQSFCPUt1RHGZGpt1IK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;688&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kBUnG/btssPv0nSUI/6W4C2Z6gG4nv0uTeNNV2lk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kBUnG/btssPv0nSUI/6W4C2Z6gG4nv0uTeNNV2lk/img.png&quot; style=&quot;width: 31.1645%; margin-right: 10px;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;783&quot; data-filename=&quot;2.png&quot; data-widthpercent=&quot;31.91&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kBUnG/btssPv0nSUI/6W4C2Z6gG4nv0uTeNNV2lk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkBUnG%2FbtssPv0nSUI%2F6W4C2Z6gG4nv0uTeNNV2lk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;783&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Mi7Sh/btssYS0vBnB/4vqGeZmoxV4Bg9bRk1pDX1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Mi7Sh/btssYS0vBnB/4vqGeZmoxV4Bg9bRk1pDX1/img.png&quot; style=&quot;width: 31.6598%;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;399&quot; data-origin-height=&quot;765&quot; data-filename=&quot;3.png&quot; data-widthpercent=&quot;32.41&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Mi7Sh/btssYS0vBnB/4vqGeZmoxV4Bg9bRk1pDX1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FMi7Sh%2FbtssYS0vBnB%2F4vqGeZmoxV4Bg9bRk1pDX1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;399&quot; height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;건강보험 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ekdns.png&quot; data-origin-width=&quot;690&quot; data-origin-height=&quot;136&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/PTArX/btssTrXb4al/1zaWvkBQpU3je4nf9BW651/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/PTArX/btssTrXb4al/1zaWvkBQpU3je4nf9BW651/img.png&quot; data-alt=&quot;다운로드&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/PTArX/btssTrXb4al/1zaWvkBQpU3je4nf9BW651/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPTArX%2FbtssTrXb4al%2F1zaWvkBQpU3je4nf9BW651%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;690&quot; height=&quot;136&quot; data-filename=&quot;ekdns.png&quot; data-origin-width=&quot;690&quot; data-origin-height=&quot;136&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;다운로드&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1693776289602&quot; class=&quot;dts&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-language=&quot;shell&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;hxxp://yhsgwac[.]lat/  (번호 입력 페이지)
hxxp://yhsgwac[.]lat/info.html (이름 생년월일 입력 페이지)
hxxp://yhsgwac[.]lat/finish.html (다운로드 페이지)
hxxp://yhsgwac[.]lat/download (최종 유포지)&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;해당 사이트는 건강보험 공단 사칭하는 피싱&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;사이트로&amp;nbsp;&lt;b&gt;번호입력, 이름, 생년월일&lt;/b&gt;을 입력하면 다음 페이지로 넘어가고 최종적으로 &lt;b&gt;&quot;다운로드&quot; 버튼&lt;/b&gt;을 누르면 최종적으로&amp;nbsp;&lt;b&gt;악성앱이 다운로드&lt;/b&gt;되는 형태입니다. 해당 악성앱 이름은 신기하게도 &lt;span style=&quot;color: #f89009;&quot;&gt;&quot;인터넷&quot;&lt;/span&gt; 입니다..&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;페이지 분석&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;20230902_145911_10.png&quot; data-origin-width=&quot;1151&quot; data-origin-height=&quot;146&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/9iLwD/btssQa24oCp/DpZcLxtRWgVtiEo6g8ONYk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/9iLwD/btssQa24oCp/DpZcLxtRWgVtiEo6g8ONYk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/9iLwD/btssQa24oCp/DpZcLxtRWgVtiEo6g8ONYk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F9iLwD%2FbtssQa24oCp%2FDpZcLxtRWgVtiEo6g8ONYk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1151&quot; height=&quot;146&quot; data-filename=&quot;20230902_145911_10.png&quot; data-origin-width=&quot;1151&quot; data-origin-height=&quot;146&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;20230902_145911_8.png&quot; data-origin-width=&quot;836&quot; data-origin-height=&quot;331&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bpW4Pb/btss3LtfKAk/jfKE3zYXzk96FbLy2hjf40/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bpW4Pb/btss3LtfKAk/jfKE3zYXzk96FbLy2hjf40/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bpW4Pb/btss3LtfKAk/jfKE3zYXzk96FbLy2hjf40/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbpW4Pb%2Fbtss3LtfKAk%2FjfKE3zYXzk96FbLy2hjf40%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;836&quot; height=&quot;331&quot; data-filename=&quot;20230902_145911_8.png&quot; data-origin-width=&quot;836&quot; data-origin-height=&quot;331&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ZOzwP/btssSCSu8jl/Irf3B44IjUbxTPnQJaAZi1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ZOzwP/btssSCSu8jl/Irf3B44IjUbxTPnQJaAZi1/img.png&quot; style=&quot;width: 50.9279%; margin-right: 10px;&quot; data-origin-width=&quot;412&quot; data-origin-height=&quot;108&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;51.53&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ZOzwP/btssSCSu8jl/Irf3B44IjUbxTPnQJaAZi1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FZOzwP%2FbtssSCSu8jl%2FIrf3B44IjUbxTPnQJaAZi1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;412&quot; height=&quot;108&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bHWPnG/btssUaOpkHh/pI0E1Lh66SkNxord7y2kG0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bHWPnG/btssUaOpkHh/pI0E1Lh66SkNxord7y2kG0/img.png&quot; style=&quot;width: 47.9094%;&quot; data-origin-width=&quot;445&quot; data-origin-height=&quot;124&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;48.47&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bHWPnG/btssUaOpkHh/pI0E1Lh66SkNxord7y2kG0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbHWPnG%2FbtssUaOpkHh%2FpI0E1Lh66SkNxord7y2kG0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;445&quot; height=&quot;124&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: left; font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 페이지를 넘어갈 때 입력한 개인정보들이 공격자(서버)에 넘어가는 것을 확인할 수 있습니다. 사용자가 입력한 정보(개인정보)를&amp;nbsp; 공격자가 &lt;b&gt;악의적으로 이용 가능&lt;/b&gt; 하기 때문에 주의가 필요 합니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #000000;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;APK 파일 정보&lt;/span&gt;&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;App Name : 인터넷&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;package : com.agshacs.pt&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;MD5 : F49F3B7E471BEDDEB215D0D6AB4F9BBA&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;SHA-1 : DBFE08EC5028B4255A87C109D89661B6CE3C688E&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;바토.PNG&quot; data-origin-width=&quot;990&quot; data-origin-height=&quot;579&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bIXjV5/btssPv0nbr1/p2WmRPqPn49uInokkr4lrK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bIXjV5/btssPv0nbr1/p2WmRPqPn49uInokkr4lrK/img.png&quot; data-alt=&quot;virustotal 결과&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bIXjV5/btssPv0nbr1/p2WmRPqPn49uInokkr4lrK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbIXjV5%2FbtssPv0nbr1%2Fp2WmRPqPn49uInokkr4lrK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;990&quot; height=&quot;579&quot; data-filename=&quot;바토.PNG&quot; data-origin-width=&quot;990&quot; data-origin-height=&quot;579&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;virustotal 결과&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Virustotal에 해쉬 검색시 12개에 백신에서 탐지 된것을 확인 할 수 있다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android&amp;nbsp;Manifest&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Activities 1 , Services 1, Receivers 1, Providers 1&lt;/span&gt;&lt;/p&gt;
&lt;div style=&quot;background-color: #fafafa; color: #333333;&quot; data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1693776757849&quot; class=&quot;java&quot; data-ke-language=&quot;java&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;?xml version=&quot;1.0&quot; encoding=&quot;utf-8&quot;?&amp;gt;
&amp;lt;manifest xmlns:android=&quot;http://schemas.android.com/apk/res/android&quot; android:versionCode=&quot;10017&quot; android:versionName=&quot;1.0.17&quot; android:compileSdkVersion=&quot;31&quot; android:compileSdkVersionCodename=&quot;12&quot; package=&quot;com.agshacs.pt&quot; platformBuildVersionCode=&quot;31&quot; platformBuildVersionName=&quot;12&quot;&amp;gt;
    &amp;lt;uses-sdk android:minSdkVersion=&quot;21&quot; android:targetSdkVersion=&quot;31&quot;/&amp;gt;
    &amp;lt;uses-feature android:name=&quot;android.hardware.telephony&quot; android:required=&quot;false&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.INTERNET&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_SMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_STATE&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.RECEIVE_BOOT_COMPLETED&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.FOREGROUND_SERVICE&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS&quot;/&amp;gt;
    &amp;lt;application android:theme=&quot;@style/Theme.Xms&quot; android:label=&quot;@string/app_name&quot; android:icon=&quot;@drawable/icon&quot; android:allowBackup=&quot;false&quot; android:supportsRtl=&quot;true&quot; android:usesCleartextTraffic=&quot;true&quot; android:roundIcon=&quot;@drawable/icon&quot; android:appComponentFactory=&quot;androidx.core.app.CoreComponentFactory&quot;&amp;gt;
        &amp;lt;activity android:name=&quot;com.agshacs.pt.MainActivity&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter&amp;gt;
                &amp;lt;action android:name=&quot;android.intent.action.MAIN&quot;/&amp;gt;
                &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/activity&amp;gt;
        &amp;lt;service android:name=&quot;com.agshacs.pt.core.XmsService&quot; android:enabled=&quot;true&quot; android:exported=&quot;true&quot;/&amp;gt;
        &amp;lt;receiver android:name=&quot;com.agshacs.pt.core.BootReceiver&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter android:priority=&quot;999&quot;&amp;gt;
                &amp;lt;action android:name=&quot;android.intent.action.BOOT_COMPLETED&quot;/&amp;gt;
                &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/receiver&amp;gt;
        &amp;lt;provider android:name=&quot;androidx.startup.InitializationProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.agshacs.pt.androidx-startup&quot;&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.emoji2.text.EmojiCompatInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.lifecycle.ProcessLifecycleInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
        &amp;lt;/provider&amp;gt;
    &amp;lt;/application&amp;gt;
&amp;lt;/manifest&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Android&amp;nbsp;Permission&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; width=&quot;795&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #fde9d9;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;권한&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #fde9d9;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;설명&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.INTERNET&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;인터넷에&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;액세스할&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.READ_SMS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SMS &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;메시지를&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;읽을&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.READ_PHONE_STATE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;전화&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;상태&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;및&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;장치&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;정보에&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;액세스할&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.RECEIVE_BOOT_COMPLETED&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;기기&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;부팅&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;시&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;앱을&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;자동으로&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;시작할&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.FOREGROUND_SERVICE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;포그라운드&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;서비스를&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;실행할&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;399&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;396&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #000000;&quot;&gt;배터리&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;최적화를&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;무시하도록&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;요청할&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;있게&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #000000;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;코드 분석&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 앱은 각종 기기정보, 개인정보, sms 정보 수집을 하고, 수집된 정보를 특정 C&amp;amp;C 서버 주소로 유출 행위를 한다. 또한 사용자를 속이기 위해 정상 사이트를 보여준다.&lt;/span&gt;&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Web View(정상 사이트)&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;베터리 최적화&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;부팅시 자동 실행&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;각종 정보 수집&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;sms 정보수집&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정보 유출&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;프록시 설정을 위한 웹 브라우저 연결&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;1. 앱 실행 시 정상 사이트를 보여줌&lt;/span&gt;&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;정상 사이트 &quot;m.naver.com&quot; 페이지의 화면을 보여주며 정상 앱인것 처럼 사용자를 속인다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱 실행시 정상 사이트.PNG&quot; data-origin-width=&quot;659&quot; data-origin-height=&quot;360&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Kufke/btssUaHE3js/KuXhNjhNCxTZzuf1617MJ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Kufke/btssUaHE3js/KuXhNjhNCxTZzuf1617MJ1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Kufke/btssUaHE3js/KuXhNjhNCxTZzuf1617MJ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FKufke%2FbtssUaHE3js%2FKuXhNjhNCxTZzuf1617MJ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;659&quot; height=&quot;360&quot; data-filename=&quot;앱 실행시 정상 사이트.PNG&quot; data-origin-width=&quot;659&quot; data-origin-height=&quot;360&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;2. 베터리 최적화&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;베터리 최적화.PNG&quot; data-origin-width=&quot;626&quot; data-origin-height=&quot;147&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/RTNH5/btssUJpvU9z/NJm4oRfIyLioRC2zQe9dLK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/RTNH5/btssUJpvU9z/NJm4oRfIyLioRC2zQe9dLK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/RTNH5/btssUJpvU9z/NJm4oRfIyLioRC2zQe9dLK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRTNH5%2FbtssUJpvU9z%2FNJm4oRfIyLioRC2zQe9dLK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;626&quot; height=&quot;147&quot; data-filename=&quot;베터리 최적화.PNG&quot; data-origin-width=&quot;626&quot; data-origin-height=&quot;147&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;3. 부팅시 자동 실행&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;부팅시 실행.PNG&quot; data-origin-width=&quot;730&quot; data-origin-height=&quot;399&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cfGUsH/btssZe3BbPj/5NeaCrYqUK64c6DevAh9Vk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cfGUsH/btssZe3BbPj/5NeaCrYqUK64c6DevAh9Vk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cfGUsH/btssZe3BbPj/5NeaCrYqUK64c6DevAh9Vk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcfGUsH%2FbtssZe3BbPj%2F5NeaCrYqUK64c6DevAh9Vk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;730&quot; height=&quot;399&quot; data-filename=&quot;부팅시 실행.PNG&quot; data-origin-width=&quot;730&quot; data-origin-height=&quot;399&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;4. 앱 권한 요청&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;권한 확인2.PNG&quot; data-origin-width=&quot;898&quot; data-origin-height=&quot;77&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Dc8jS/btssToMVkAC/FsOjSkSGIjPbIncfJNzbc1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Dc8jS/btssToMVkAC/FsOjSkSGIjPbIncfJNzbc1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Dc8jS/btssToMVkAC/FsOjSkSGIjPbIncfJNzbc1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FDc8jS%2FbtssToMVkAC%2FFsOjSkSGIjPbIncfJNzbc1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;898&quot; height=&quot;77&quot; data-filename=&quot;권한 확인2.PNG&quot; data-origin-width=&quot;898&quot; data-origin-height=&quot;77&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;권한 확인.PNG&quot; data-origin-width=&quot;1007&quot; data-origin-height=&quot;497&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/1uF9I/btss3YlPAiv/FTcdsB4ratLs7sqQCv1tTK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/1uF9I/btss3YlPAiv/FTcdsB4ratLs7sqQCv1tTK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/1uF9I/btss3YlPAiv/FTcdsB4ratLs7sqQCv1tTK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F1uF9I%2Fbtss3YlPAiv%2FFTcdsB4ratLs7sqQCv1tTK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1007&quot; height=&quot;497&quot; data-filename=&quot;권한 확인.PNG&quot; data-origin-width=&quot;1007&quot; data-origin-height=&quot;497&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;5.&amp;nbsp; 각종 정보 수집&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;핸드폰번호, sim 번호, IMEI 번호, 통신사 정보 수집&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;각종 정보 수집.PNG&quot; data-origin-width=&quot;1108&quot; data-origin-height=&quot;491&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/AbQ4r/btssSnAWxJQ/F9ju9kHWSLZxVO62JaY2p0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/AbQ4r/btssSnAWxJQ/F9ju9kHWSLZxVO62JaY2p0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/AbQ4r/btssSnAWxJQ/F9ju9kHWSLZxVO62JaY2p0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FAbQ4r%2FbtssSnAWxJQ%2FF9ju9kHWSLZxVO62JaY2p0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1108&quot; height=&quot;491&quot; data-filename=&quot;각종 정보 수집.PNG&quot; data-origin-width=&quot;1108&quot; data-origin-height=&quot;491&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;6.&amp;nbsp; SMS 정보 수집 및 유출&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms정보수집.PNG&quot; data-origin-width=&quot;1313&quot; data-origin-height=&quot;434&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/V9zfd/btssVGF4by9/PYl1gimqJnYN0rX25ObXlk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/V9zfd/btssVGF4by9/PYl1gimqJnYN0rX25ObXlk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/V9zfd/btssVGF4by9/PYl1gimqJnYN0rX25ObXlk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FV9zfd%2FbtssVGF4by9%2FPYl1gimqJnYN0rX25ObXlk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1313&quot; height=&quot;434&quot; data-filename=&quot;sms정보수집.PNG&quot; data-origin-width=&quot;1313&quot; data-origin-height=&quot;434&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;7.&amp;nbsp; 유출지 (C&amp;amp;C)정보&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정보 유출지.PNG&quot; data-origin-width=&quot;782&quot; data-origin-height=&quot;91&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/AFSOM/btssS3vvxp5/8zQsrXvzelTuhGG4K5bXJ1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/AFSOM/btssS3vvxp5/8zQsrXvzelTuhGG4K5bXJ1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/AFSOM/btssS3vvxp5/8zQsrXvzelTuhGG4K5bXJ1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FAFSOM%2FbtssS3vvxp5%2F8zQsrXvzelTuhGG4K5bXJ1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;782&quot; height=&quot;91&quot; data-filename=&quot;정보 유출지.PNG&quot; data-origin-width=&quot;782&quot; data-origin-height=&quot;91&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;8.&amp;nbsp; 정보 유출 형태&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정보유출.PNG&quot; data-origin-width=&quot;597&quot; data-origin-height=&quot;323&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/b9U0AP/btssVGMRsGp/P8XjmlcuQ3KCn3VAAB0tO0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/b9U0AP/btssVGMRsGp/P8XjmlcuQ3KCn3VAAB0tO0/img.png&quot; data-alt=&quot;유출 형태&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/b9U0AP/btssVGMRsGp/P8XjmlcuQ3KCn3VAAB0tO0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fb9U0AP%2FbtssVGMRsGp%2FP8XjmlcuQ3KCn3VAAB0tO0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;597&quot; height=&quot;323&quot; data-filename=&quot;정보유출.PNG&quot; data-origin-width=&quot;597&quot; data-origin-height=&quot;323&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;유출 형태&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;9.&amp;nbsp; 프록시 설정을 위한 웹 브라우저 연결&amp;nbsp;&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;845&quot; data-origin-height=&quot;422&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/RXGva/btss84tdYkA/6psjf73CAAORoPrbmeaCf1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/RXGva/btss84tdYkA/6psjf73CAAORoPrbmeaCf1/img.png&quot; data-alt=&quot;웹 브라우저 연결&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/RXGva/btss84tdYkA/6psjf73CAAORoPrbmeaCf1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRXGva%2Fbtss84tdYkA%2F6psjf73CAAORoPrbmeaCf1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;845&quot; height=&quot;422&quot; data-origin-width=&quot;845&quot; data-origin-height=&quot;422&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;웹 브라우저 연결&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;프록시 설정.PNG&quot; data-origin-width=&quot;667&quot; data-origin-height=&quot;614&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/tS0dP/btssSBe2ryH/p2DfecUFg6OA9J8epcivsK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/tS0dP/btssSBe2ryH/p2DfecUFg6OA9J8epcivsK/img.png&quot; data-alt=&quot;프록시 설정&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/tS0dP/btssSBe2ryH/p2DfecUFg6OA9J8epcivsK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FtS0dP%2FbtssSBe2ryH%2Fp2DfecUFg6OA9J8epcivsK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;667&quot; height=&quot;614&quot; data-filename=&quot;프록시 설정.PNG&quot; data-origin-width=&quot;667&quot; data-origin-height=&quot;614&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;프록시 설정&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;b&gt;해당 앱은 핸드폰 기기정보, 개인정보, 통신사 정보등이 유출됩니다. 기기정보 같은 경우는 sim 스와핑으로 sim 복제 가능성도 있구요, 개인정보 탈취와 문자 정보 탈취로 인해 악의적으로 사용자 인증 하여 추가 행위를&amp;nbsp; 할 수 있습니다.&lt;/b&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago분석</category>
      <category>건강검사보험 통보문 전달완료</category>
      <category>건강검진 사칭</category>
      <category>건강보험 문자</category>
      <category>건강보험센터</category>
      <category>문자 사기</category>
      <category>보안</category>
      <category>스미싱</category>
      <category>악성앱</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/168</guid>
      <comments>https://cago-young.tistory.com/168#entry168comment</comments>
      <pubDate>Mon, 4 Sep 2023 07:41:29 +0900</pubDate>
    </item>
    <item>
      <title>국민건강보험 사칭 피싱 사이트 (23.09.02)</title>
      <link>https://cago-young.tistory.com/167</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이번에는 공공기관 사칭 스미싱인 국민건강보험 피싱 사이트입니다.&amp;nbsp; &amp;nbsp;URL 클릭 금지..&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;해당 스미싱은 건강검사 통지서 관련으로 국민건강보험 공단에서 보낸 것처럼 건강검진 안내 문구를 사칭해 스미싱 문자를 보내는 형태이다. 해당 문자는 &lt;b&gt;&lt;span style=&quot;color: #f89009;&quot;&gt;&lt;span style=&quot;text-align: left;&quot;&gt;건강보험, &lt;/span&gt;건강검사, 건강검진, 통지서, 통보문, 통보서&lt;/span&gt;&lt;/b&gt; 등 이러한 문구가 포함되며, 확인을 위해 URL 클릭을 유도 하는 형태이다. 해당 URL을 클릭하면 개인정보 입력 후 최종적으로 악성 앱을 다운로드하는 형태입니다.&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;스미싱 문구&lt;/span&gt;&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;[Web발신] 건강검사보험 통보문 전달완료 hxxp://yhsgwac[.]lat&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_xxzassdfa.png&quot; data-origin-width=&quot;592&quot; data-origin-height=&quot;429&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/QvBAz/btssNkR9lVi/DT71FNcNbbLInDiNED2sLK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/QvBAz/btssNkR9lVi/DT71FNcNbbLInDiNED2sLK/img.png&quot; data-alt=&quot;건강검진 문자 (스미싱)&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/QvBAz/btssNkR9lVi/DT71FNcNbbLInDiNED2sLK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQvBAz%2FbtssNkR9lVi%2FDT71FNcNbbLInDiNED2sLK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;592&quot; height=&quot;429&quot; data-filename=&quot;edited_xxzassdfa.png&quot; data-origin-width=&quot;592&quot; data-origin-height=&quot;429&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강검진 문자 (스미싱)&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;정상&amp;nbsp; 배포 방식&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bIU6Hu/btssS39D6KI/n6sCB767KHF5ga9pMhCy4k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bIU6Hu/btssS39D6KI/n6sCB767KHF5ga9pMhCy4k/img.png&quot; data-alt=&quot;건강보험 앱&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bIU6Hu/btssS39D6KI/n6sCB767KHF5ga9pMhCy4k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbIU6Hu%2FbtssS39D6KI%2Fn6sCB767KHF5ga9pMhCy4k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1069&quot; height=&quot;440&quot; data-origin-width=&quot;1069&quot; data-origin-height=&quot;440&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;건강보험 앱&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;※ 정상 배포방식은 원스토어, 구글플래이 해당 사이트(어플)를 통해서만 배포합니다.&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h3 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 접속 화면&amp;nbsp;&lt;/span&gt;&lt;/h3&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bjBl5Z/btssUNE2FzZ/R14MsZelljl88g3S1jQ0YK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bjBl5Z/btssUNE2FzZ/R14MsZelljl88g3S1jQ0YK/img.png&quot; style=&quot;width: 34.85015420303266%;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;395&quot; data-origin-height=&quot;688&quot; data-filename=&quot;1.png&quot; data-widthpercent=&quot;35.68&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bjBl5Z/btssUNE2FzZ/R14MsZelljl88g3S1jQ0YK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbjBl5Z%2FbtssUNE2FzZ%2FR14MsZelljl88g3S1jQ0YK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;395&quot; height=&quot;688&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/detXS7/btssUa1yPTR/b6hXrDAg6kPUopLppAfe7K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/detXS7/btssUa1yPTR/b6hXrDAg6kPUopLppAfe7K/img.png&quot; style=&quot;width: 31.1645125009553%;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;402&quot; data-origin-height=&quot;783&quot; data-filename=&quot;2.png&quot; data-widthpercent=&quot;31.91&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/detXS7/btssUa1yPTR/b6hXrDAg6kPUopLppAfe7K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdetXS7%2FbtssUa1yPTR%2Fb6hXrDAg6kPUopLppAfe7K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;402&quot; height=&quot;783&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/7oa6v/btssVHq1qb9/CJ88I0Y8VH2fdfxgq8xFf0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/7oa6v/btssVHq1qb9/CJ88I0Y8VH2fdfxgq8xFf0/img.png&quot; style=&quot;width: 31.659751900663196%;&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;399&quot; data-origin-height=&quot;765&quot; data-filename=&quot;3.png&quot; data-widthpercent=&quot;32.41&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/7oa6v/btssVHq1qb9/CJ88I0Y8VH2fdfxgq8xFf0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F7oa6v%2FbtssVHq1qb9%2FCJ88I0Y8VH2fdfxgq8xFf0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;399&quot; height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;건강보험 피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;피싱 사이트 URL 주소&lt;/span&gt;&lt;/h4&gt;
&lt;pre id=&quot;code_1693633712736&quot; class=&quot;dts&quot; style=&quot;background-color: #f8f8f8; color: #383a42;&quot; data-ke-language=&quot;shell&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;hxxp://yhsgwac[.]lat/  (번호 입력 페이지)
hxxp://yhsgwac[.]lat/info.html (이름 생년월일 입력 페이지)
hxxp://yhsgwac[.]lat/finish.html (다운로드 페이지)
hxxp://yhsgwac[.]lat/download (최종 유포지)&lt;/code&gt;&lt;/pre&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;해당 사이트는 건강보험 공단 사칭하는 피싱&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #555555; text-align: left;&quot;&gt;사이트로 &lt;b&gt;번호입력, 이름, 생년월일&lt;/b&gt;을 입력하면 다음 페이지로 넘어가고 최종적으로 &quot;다운로드&quot; 버튼을 누르면 최종적으로&amp;nbsp;&lt;b&gt;악성앱이 다운로드&lt;/b&gt;되는 형태입니다.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;color: #555555; text-align: left; font-family: 'Noto Serif KR';&quot;&gt;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;페이지 분석&lt;/span&gt;&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;1151&quot; data-origin-height=&quot;146&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cLHxCD/btssSBr3f5h/OLSfyTcvbo74xyJ5cYEe70/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cLHxCD/btssSBr3f5h/OLSfyTcvbo74xyJ5cYEe70/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cLHxCD/btssSBr3f5h/OLSfyTcvbo74xyJ5cYEe70/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcLHxCD%2FbtssSBr3f5h%2FOLSfyTcvbo74xyJ5cYEe70%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1151&quot; height=&quot;146&quot; data-origin-width=&quot;1151&quot; data-origin-height=&quot;146&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;836&quot; data-origin-height=&quot;331&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/ddzJRB/btssTnGKMKM/UGpzdsPKQBXXOrzIXYfA40/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/ddzJRB/btssTnGKMKM/UGpzdsPKQBXXOrzIXYfA40/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/ddzJRB/btssTnGKMKM/UGpzdsPKQBXXOrzIXYfA40/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FddzJRB%2FbtssTnGKMKM%2FUGpzdsPKQBXXOrzIXYfA40%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;836&quot; height=&quot;331&quot; data-origin-width=&quot;836&quot; data-origin-height=&quot;331&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/9Pbqg/btssT6ENeOu/s1Kir3ekxx2vjXmKM3D4i1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/9Pbqg/btssT6ENeOu/s1Kir3ekxx2vjXmKM3D4i1/img.png&quot; data-origin-width=&quot;412&quot; data-origin-height=&quot;108&quot; data-is-animation=&quot;false&quot; data-widthpercent=&quot;51.53&quot; style=&quot;width: 50.9279%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/9Pbqg/btssT6ENeOu/s1Kir3ekxx2vjXmKM3D4i1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F9Pbqg%2FbtssT6ENeOu%2Fs1Kir3ekxx2vjXmKM3D4i1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;412&quot; height=&quot;108&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/93HHr/btssVIwHVg7/k7ClSacbys68mjYqIERTM1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/93HHr/btssVIwHVg7/k7ClSacbys68mjYqIERTM1/img.png&quot; data-origin-width=&quot;445&quot; data-origin-height=&quot;124&quot; data-is-animation=&quot;false&quot; style=&quot;width: 47.9094%;&quot; data-widthpercent=&quot;48.47&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/93HHr/btssVIwHVg7/k7ClSacbys68mjYqIERTM1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2F93HHr%2FbtssVIwHVg7%2Fk7ClSacbys68mjYqIERTM1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;445&quot; height=&quot;124&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
  &lt;figcaption&gt;정보 유출&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #000000;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #555555; text-align: left; font-family: 'Noto Serif KR';&quot;&gt;해당 피싱 사이트는 페이지를 넘어갈 때 입력한 개인정보들이 공격자(서버)에 넘어가는 것을 확인할 수 있습니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size14&quot;&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago</category>
      <category>건강검사보험 통보문 전달완료</category>
      <category>건강검진 사칭</category>
      <category>건강보험 문자</category>
      <category>공공기관사칭 문자</category>
      <category>문자 사기</category>
      <category>보안</category>
      <category>스미싱</category>
      <category>악성앱</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/167</guid>
      <comments>https://cago-young.tistory.com/167#entry167comment</comments>
      <pubDate>Sat, 2 Sep 2023 14:45:17 +0900</pubDate>
    </item>
    <item>
      <title>지인(부고장) 사칭 피싱 사이트 (23.08.19)</title>
      <link>https://cago-young.tistory.com/165</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이번에 지인 관련 스미싱인 부고장 사칭 피싱 사이트입니다.&amp;nbsp; &amp;nbsp;URL 클릭 금지..&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 스미싱은 지인 사칭으로 배포되고 있다. 비슷 한 문구로는 결혼식, 돌잔치, 지인 행사 등이 있지만 이번에는 부고장 관련 문구로 배고 되고 있는 듯하다.&amp;nbsp; 해당 URL 접속 시 부고장 피싱 페이지가 보인다 생각보다 페이지를 잘 만들었고,&amp;nbsp; &quot;장례절차 확인하기&quot; 버튼 클릭 시 악성앱이 다운된다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_blob&quot; data-origin-width=&quot;600&quot; data-origin-height=&quot;385&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Gxg31/btsrH9PGkcF/oDhgKfgiH407Y6DIkjKK5k/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Gxg31/btsrH9PGkcF/oDhgKfgiH407Y6DIkjKK5k/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Gxg31/btsrH9PGkcF/oDhgKfgiH407Y6DIkjKK5k/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FGxg31%2FbtsrH9PGkcF%2FoDhgKfgiH407Y6DIkjKK5k%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;600&quot; height=&quot;385&quot; data-filename=&quot;edited_blob&quot; data-origin-width=&quot;600&quot; data-origin-height=&quot;385&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문구)&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;[Web발신] [부고]18일 저녁 10시경 부친께서 별세하셨습니다. 안내 http://xn02[.]h8gd[.]hair&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;악성앱 다운로드 과정&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;피싱 메인 페이지&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 스미싱에 있는 주소를 접속하게되면 모바일 부고장 피싱 사이트에 접속 하게 된다. 해당 사이트를 보면 상당히 잘 만들어 진걸 볼 수 있다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1 (1).png&quot; data-origin-width=&quot;389&quot; data-origin-height=&quot;765&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/riiip/btsrCRWwVfx/PRm0ZxcHKb6NUvb4MxCtu1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/riiip/btsrCRWwVfx/PRm0ZxcHKb6NUvb4MxCtu1/img.png&quot; data-alt=&quot;피싱 사이트&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/riiip/btsrCRWwVfx/PRm0ZxcHKb6NUvb4MxCtu1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Friiip%2FbtsrCRWwVfx%2FPRm0ZxcHKb6NUvb4MxCtu1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;389&quot; height=&quot;765&quot; data-filename=&quot;1 (1).png&quot; data-origin-width=&quot;389&quot; data-origin-height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;피싱 사이트&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;이번 스미싱은 스미싱 문구나 해당 페이지&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;접속할 때&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;고인의 정보나 상주의 정보를&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;확인할&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;수 없다.&amp;nbsp; 상주나 고인의 정보를 확인 하기 위해서는&amp;nbsp; &quot;장례절차 확인하기&quot;&amp;nbsp; 버튼를 눌러야 확인 할 수 있는것 처럼 만든거 같다. 이때 해당 버튼을 누르게 되면 악성앱을&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;다운로드하게&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;된다. (피싱 사이트 접속은 이미 확인을&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;하기 위해&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;스미싱에 있는 URL을&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;누른 거 기&lt;span style=&quot;color: #333333; text-align: start;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;때문에 버튼을 누르지 않을까 함...)&lt;/span&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;HTML 분석&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 페이지는 부고장 이미지를 보여주고, 버튼 클릭 시&amp;nbsp; 악성앱을 다운로드 하게 된다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ㅁ.PNG&quot; data-origin-width=&quot;1241&quot; data-origin-height=&quot;224&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bOq0vd/btsrDgaXyMf/V0tqM3GXN6f2UpjDvPqjK1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bOq0vd/btsrDgaXyMf/V0tqM3GXN6f2UpjDvPqjK1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bOq0vd/btsrDgaXyMf/V0tqM3GXN6f2UpjDvPqjK1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbOq0vd%2FbtsrDgaXyMf%2FV0tqM3GXN6f2UpjDvPqjK1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1241&quot; height=&quot;224&quot; data-filename=&quot;ㅁ.PNG&quot; data-origin-width=&quot;1241&quot; data-origin-height=&quot;224&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;pre id=&quot;code_1692446610748&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;function click_download() {
    var link = document.createElement(&quot;a&quot;);
    link.download = &quot;부고장&quot;;
    link.href = '/download/the.apk';
    document.body.appendChild(link);
    link.click();
    document.body.removeChild(link);
    delete link;
	$.ajax({
		type: &quot;POST&quot;,
		url: `xinde/update_download.php`,
		data: { &quot;ipaddr&quot;: ipaddr, &quot;hostname&quot;: window.location.hostname },
		success: function(resp) {
			if(resp.success) {
				sessionStorage.setItem(&quot;page&quot;, 3);
			} else {
			}
		},
		error: function() {
		}
	});
}&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2 (1).png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;130&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c5Cf1J/btsrDF2DC4j/WoikDwryqoo4ryMzPMQDh0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c5Cf1J/btsrDF2DC4j/WoikDwryqoo4ryMzPMQDh0/img.png&quot; data-alt=&quot;악성앱 다운&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c5Cf1J/btsrDF2DC4j/WoikDwryqoo4ryMzPMQDh0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc5Cf1J%2FbtsrDF2DC4j%2FWoikDwryqoo4ryMzPMQDh0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;683&quot; height=&quot;130&quot; data-filename=&quot;2 (1).png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;130&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;악성앱 다운&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당&amp;nbsp;악성앱&amp;nbsp;다운 시&amp;nbsp;각종&amp;nbsp;기기정보,&amp;nbsp;개인정보,&amp;nbsp;sms&amp;nbsp;정보&amp;nbsp;수집을&amp;nbsp;하고,&amp;nbsp;수집된&amp;nbsp;정보를&amp;nbsp;특정&amp;nbsp;C&amp;amp;C&amp;nbsp;서버&amp;nbsp;주소로&amp;nbsp;유출&amp;nbsp;행위를&amp;nbsp;한다.&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/p&gt;</description>
      <category>Basic/정보보안</category>
      <category>cago 분석</category>
      <category>[부고]18일 저녁 10시경 부친께서 별세하셨습니다. 안내</category>
      <category>모르는 사람 부고 문자</category>
      <category>보안</category>
      <category>부고 문자</category>
      <category>부고장</category>
      <category>스미싱</category>
      <category>지인 사칭 문자</category>
      <category>피싱 사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/165</guid>
      <comments>https://cago-young.tistory.com/165#entry165comment</comments>
      <pubDate>Sat, 2 Sep 2023 14:05:35 +0900</pubDate>
    </item>
    <item>
      <title>[악성 앱] 모바일 부고장 사칭 악성앱 분석 (23.08.20)</title>
      <link>https://cago-young.tistory.com/166</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;이번에 지인 관련 스미싱인 부고장 사칭 악성 앱 입니다.&amp;nbsp; &amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;해당 스미싱은 지인 사칭으로 배포되고 있다. 비슷 한 문구로는 결혼식, 돌잔치, 지인 행사 등이 있지만 이번에는 부고장 관련 문구로 배고 되고 있는 듯하다.&amp;nbsp;&amp;nbsp;해당 URL 접속 시 부고장 피싱 페이지가 보인다. 생각보다 페이지를 잘 만들었다고 생각이 든다. 해당 페이지에서&amp;nbsp; &quot;장례절차 확인하기&quot; 버튼 클릭 시 악성앱이 다운된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;문구)&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;600&quot; data-origin-height=&quot;385&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/QTbtT/btsryqlqYOd/OZY5UNFmdN7cKY7kYMTiFk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/QTbtT/btsryqlqYOd/OZY5UNFmdN7cKY7kYMTiFk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/QTbtT/btsryqlqYOd/OZY5UNFmdN7cKY7kYMTiFk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQTbtT%2FbtsryqlqYOd%2FOZY5UNFmdN7cKY7kYMTiFk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;600&quot; height=&quot;385&quot; data-filename=&quot;blob&quot; data-origin-width=&quot;600&quot; data-origin-height=&quot;385&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;br /&gt;[Web발신]&amp;nbsp;[부고]18일&amp;nbsp;저녁&amp;nbsp;10시경&amp;nbsp;부친께서&amp;nbsp;별세하셨습니다.&amp;nbsp;안내&amp;nbsp;http://xn02[.]h8gd[.]hair&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;악성앱 다운로드 과정&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;피싱&amp;nbsp;메인&amp;nbsp;페이지&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 스미싱에 있는 주소를 접속하게되면 모바일 부고장 피싱 사이트에 접속 하게 된다. 해당 사이트를 보면 상당히 잘 만들어 진걸 볼 수 있다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;1 (1).png&quot; data-origin-width=&quot;389&quot; data-origin-height=&quot;765&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/saHee/btsrCof0O3Q/1kFnJv0FE9AJhAKsHFBFc0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/saHee/btsrCof0O3Q/1kFnJv0FE9AJhAKsHFBFc0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/saHee/btsrCof0O3Q/1kFnJv0FE9AJhAKsHFBFc0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FsaHee%2FbtsrCof0O3Q%2F1kFnJv0FE9AJhAKsHFBFc0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;389&quot; height=&quot;765&quot; data-filename=&quot;1 (1).png&quot; data-origin-width=&quot;389&quot; data-origin-height=&quot;765&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;2 (1).png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;130&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bkXXz0/btsrB5AZ77e/Ql9CtYDaOWS1pBh3yHYK91/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bkXXz0/btsrB5AZ77e/Ql9CtYDaOWS1pBh3yHYK91/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bkXXz0/btsrB5AZ77e/Ql9CtYDaOWS1pBh3yHYK91/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbkXXz0%2FbtsrB5AZ77e%2FQl9CtYDaOWS1pBh3yHYK91%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;683&quot; height=&quot;130&quot; data-filename=&quot;2 (1).png&quot; data-origin-width=&quot;683&quot; data-origin-height=&quot;130&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;이번&amp;nbsp;스미싱은&amp;nbsp;&lt;b&gt;스미싱&amp;nbsp;문구&lt;/b&gt;나&amp;nbsp;해당&amp;nbsp;&lt;b&gt;페이지 접속&amp;nbsp;&lt;/b&gt;할 때 고인의 정보나 상주의 정보를 확인할 수 없다.&amp;nbsp;&amp;nbsp;상주나 고인의 정보를 확인 하기 위해서는&amp;nbsp;&amp;nbsp;&quot;장례절차 확인하기&quot;&amp;nbsp;&amp;nbsp;버튼를 눌러야 확인 할 수 있는것 처럼 만든거 같다. 이때 해당 버튼을 누르게 되면 악성앱을 다운로드하게 된다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;u&gt;고인의 정보나 상주 정보를 확인을 위해 &lt;b&gt;버튼 클릭(악성 앱 다운)&lt;/b&gt;을 유도 하는 페이지인것으로&amp;nbsp; 확인 할 수 있다.&lt;/u&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;※&amp;nbsp;정상&amp;nbsp;배포방식은&amp;nbsp;원스토어,&amp;nbsp;구글플래이&amp;nbsp;해당&amp;nbsp;사이트(어플)를&amp;nbsp;통해서만&amp;nbsp;배포합니다. &lt;br /&gt;※&amp;nbsp;대부분의&amp;nbsp;정상&amp;nbsp;앱은&amp;nbsp;일반&amp;nbsp;사용자에게&amp;nbsp;특별한&amp;nbsp;접근&amp;nbsp;출처를&amp;nbsp;알&amp;nbsp;&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;앱&amp;nbsp;설치&amp;nbsp;권한을&amp;nbsp;요구&amp;nbsp;하지&amp;nbsp;않습니다.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;830&quot; data-origin-height=&quot;840&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/tsdMH/btsrDCSoBbp/VnVP6kYZp7kb5kcBwmAylK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/tsdMH/btsrDCSoBbp/VnVP6kYZp7kb5kcBwmAylK/img.png&quot; data-alt=&quot;정상 구글 플레이 스토어 배포&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/tsdMH/btsrDCSoBbp/VnVP6kYZp7kb5kcBwmAylK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FtsdMH%2FbtsrDCSoBbp%2FVnVP6kYZp7kb5kcBwmAylK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;830&quot; height=&quot;840&quot; data-origin-width=&quot;830&quot; data-origin-height=&quot;840&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;정상 구글 플레이 스토어 배포&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;HTML 분석&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;해당 페이지는 버튼 클릭을 위한 부고장 이미지를 보여주고, 버튼 클릭 시 특정 주소로 연결되어 악성앱을 다운로드 하게 되는 것을 확인 할 수 있다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;ㅁ.PNG&quot; data-origin-width=&quot;1241&quot; data-origin-height=&quot;224&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bk0m2n/btsrB2YzFAy/wUAFR1zJ9uadF4LbeQGDRK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bk0m2n/btsrB2YzFAy/wUAFR1zJ9uadF4LbeQGDRK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bk0m2n/btsrB2YzFAy/wUAFR1zJ9uadF4LbeQGDRK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbk0m2n%2FbtsrB2YzFAy%2FwUAFR1zJ9uadF4LbeQGDRK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1241&quot; height=&quot;224&quot; data-filename=&quot;ㅁ.PNG&quot; data-origin-width=&quot;1241&quot; data-origin-height=&quot;224&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;pre id=&quot;code_1692449652647&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;function click_download() {
    var link = document.createElement(&quot;a&quot;);
    link.download = &quot;부고장&quot;;
    link.href = '/download/the.apk';
    document.body.appendChild(link);
    link.click();
    document.body.removeChild(link);
    delete link;
	$.ajax({
		type: &quot;POST&quot;,
		url: `xinde/update_download.php`,
		data: { &quot;ipaddr&quot;: ipaddr, &quot;hostname&quot;: window.location.hostname },
		success: function(resp) {
			if(resp.success) {
				sessionStorage.setItem(&quot;page&quot;, 3);
			} else {
			}
		},
		error: function() {
		}
	});
}&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;pre id=&quot;code_1692449791639&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;유포지 : https://xn02[.]h8gd[.]hair/
최종 유포지 : https://xn02[.]h8gd[.]hair/download/the.apk&lt;/code&gt;&lt;/pre&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 data-ke-size=&quot;size23&quot;&gt;APK 파일 정보&lt;/h3&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;App Name : 모바일&amp;nbsp;부고장&lt;br /&gt;package : com.xguvpaxbfeua.slr&lt;br /&gt;MD5 : E334D0415B39167AD575FCF5B0226389&lt;br /&gt;SHA-1 : 46411E6011AD611DE892EC118138FA58C7EA9670&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;바토켤과.png&quot; data-origin-width=&quot;1355&quot; data-origin-height=&quot;620&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/dlIFr1/btsrDKiyYu8/ENKqhTpCjbg9rTmOwFKR4K/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/dlIFr1/btsrDKiyYu8/ENKqhTpCjbg9rTmOwFKR4K/img.png&quot; data-alt=&quot;Virustotal 결과&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/dlIFr1/btsrDKiyYu8/ENKqhTpCjbg9rTmOwFKR4K/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FdlIFr1%2FbtsrDKiyYu8%2FENKqhTpCjbg9rTmOwFKR4K%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1355&quot; height=&quot;620&quot; data-filename=&quot;바토켤과.png&quot; data-origin-width=&quot;1355&quot; data-origin-height=&quot;620&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;Virustotal 결과&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;Android&amp;nbsp;Manifest&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Activities 1 , Services 1, Receivers 1, Providers 1&lt;/p&gt;
&lt;div data-ke-type=&quot;moreLess&quot; data-text-more=&quot;더보기&quot; data-text-less=&quot;닫기&quot;&gt;&lt;a class=&quot;btn-toggle-moreless&quot;&gt;더보기&lt;/a&gt;
&lt;div class=&quot;moreless-content&quot;&gt;
&lt;pre id=&quot;code_1692450301118&quot; class=&quot;javascript&quot; data-ke-language=&quot;javascript&quot; data-ke-type=&quot;codeblock&quot;&gt;&lt;code&gt;&amp;lt;?xml version=&quot;1.0&quot; encoding=&quot;utf-8&quot;?&amp;gt;
&amp;lt;manifest xmlns:android=&quot;http://schemas.android.com/apk/res/android&quot; android:versionCode=&quot;1&quot; android:versionName=&quot;1.0&quot; android:compileSdkVersion=&quot;33&quot; android:compileSdkVersionCodename=&quot;13&quot; package=&quot;com.xguvpaxbfeua.slr&quot; platformBuildVersionCode=&quot;33&quot; platformBuildVersionName=&quot;13&quot;&amp;gt;
    &amp;lt;uses-sdk android:minSdkVersion=&quot;24&quot; android:targetSdkVersion=&quot;33&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.INTERNET&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.ACCESS_NETWORK_STATE&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PRIVILEGED_PHONE_STATE&quot;/&amp;gt;
    &amp;lt;uses-feature android:name=&quot;android.hardware.telephony&quot; android:required=&quot;false&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_SMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.RECEIVE_SMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.RECEIVE_MMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.SEND_SMS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_STATE&quot; android:maxSdkVersion=&quot;29&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.READ_PHONE_NUMBERS&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;android.permission.VIBRATE&quot;/&amp;gt;
    &amp;lt;permission android:name=&quot;com.xguvpaxbfeua.slr.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION&quot; android:protectionLevel=&quot;signature&quot;/&amp;gt;
    &amp;lt;uses-permission android:name=&quot;com.xguvpaxbfeua.slr.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION&quot;/&amp;gt;
    &amp;lt;application android:theme=&quot;@style/Theme.App17&quot; android:label=&quot;@string/app_name&quot; android:icon=&quot;@mipmap/ic_launcher&quot; android:debuggable=&quot;true&quot; android:allowBackup=&quot;true&quot; android:supportsRtl=&quot;true&quot; android:extractNativeLibs=&quot;false&quot; android:fullBackupContent=&quot;@xml/backup_rules&quot; android:usesCleartextTraffic=&quot;true&quot; android:networkSecurityConfig=&quot;@xml/network_security_config&quot; android:appComponentFactory=&quot;androidx.core.app.CoreComponentFactory&quot; android:dataExtractionRules=&quot;@xml/data_extraction_rules&quot;&amp;gt;
        &amp;lt;activity android:name=&quot;com.xguvpaxbfeua.slr.MainActivity&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter&amp;gt;
                &amp;lt;action android:name=&quot;android.intent.action.MAIN&quot;/&amp;gt;
                &amp;lt;category android:name=&quot;android.intent.category.LAUNCHER&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/activity&amp;gt;
        &amp;lt;service android:name=&quot;com.xguvpaxbfeua.slr.LoopService&quot; android:enabled=&quot;true&quot; android:exported=&quot;true&quot;/&amp;gt;
        &amp;lt;receiver android:name=&quot;com.xguvpaxbfeua.slr.Mopiotal&quot; android:exported=&quot;true&quot;&amp;gt;
            &amp;lt;intent-filter android:priority=&quot;2147483647&quot;&amp;gt;
                &amp;lt;action android:name=&quot;android.provider.Telephony.SMS_RECEIVED&quot;/&amp;gt;
            &amp;lt;/intent-filter&amp;gt;
        &amp;lt;/receiver&amp;gt;
        &amp;lt;provider android:name=&quot;androidx.startup.InitializationProvider&quot; android:exported=&quot;false&quot; android:authorities=&quot;com.xguvpaxbfeua.slr.androidx-startup&quot;&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.emoji2.text.EmojiCompatInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
            &amp;lt;meta-data android:name=&quot;androidx.lifecycle.ProcessLifecycleInitializer&quot; android:value=&quot;androidx.startup&quot;/&amp;gt;
        &amp;lt;/provider&amp;gt;
    &amp;lt;/application&amp;gt;
&amp;lt;/manifest&amp;gt;&lt;/code&gt;&lt;/pre&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;&amp;nbsp;&lt;/h4&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;Android&amp;nbsp;Permission&lt;/h4&gt;
&lt;table style=&quot;border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; width=&quot;632&quot; data-ke-align=&quot;alignLeft&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #fcd5b4;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;b&gt;&lt;span style=&quot;color: #374151;&quot;&gt;권한&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #fcd5b4;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;b&gt;&lt;span style=&quot;color: #374151;&quot;&gt;설명&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.INTERNET&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;인터넷에&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;연결하여&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;네트워크&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;통신을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수행할&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.ACCESS_NETWORK_STATE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;네트워크&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;상태에&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;대한&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;정보를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;액세스하고&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;,&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;연결&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;가능&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;여부&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;등을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;확인할&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.READ_PRIVILEGED_PHONE_STATE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;특권화된&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;권한으로&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;,&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;기기의&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;통화&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;상태와&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;관련된&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;정보를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;읽을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있습니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.READ_SMS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;SMS&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;메시지를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;읽을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.RECEIVE_SMS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;SMS&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;메시지를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수신할&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.RECEIVE_MMS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;MMS(Multimedia Messaging Service)&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;메시지를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수신할&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.SEND_SMS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;SMS&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;메시지를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;발신할&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.READ_PHONE_STATE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;기기의&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;전화&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;상태와&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;관련된&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;정보를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;읽을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있습니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.READ_PHONE_NUMBERS&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;기기에&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;저장된&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;전화&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;번호를&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;읽을&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;331&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;android.permission.VIBRATE&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;background-color: #f7f7f8;&quot; width=&quot;301&quot;&gt;&lt;span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;기기&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;진동 변경 할&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;수&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;있도록&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;합니다&lt;/span&gt;&lt;span style=&quot;color: #374151;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;h3 style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size23&quot;&gt;코드 분석&lt;/h3&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;모바일 부고장 사칭 앱은 각종 기기정보, 개인정보, sms 정보 수집을 하고, 수집된 정보를 특정 C&amp;amp;C 서버 주소로 유출 행위를 한다. 또한 사용자를 속이기 위해 정상 사이트를 보여준다.&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;UUID 생성 및 저장&lt;/li&gt;
&lt;li&gt;Web View(정상 사이트)&lt;/li&gt;
&lt;li&gt;각종 정보 수집&lt;/li&gt;
&lt;li&gt;sms 정보수집&lt;/li&gt;
&lt;li&gt;sms 수신시 진동 및 소리 제어&lt;/li&gt;
&lt;li&gt;정보 유출&lt;/li&gt;
&lt;/ul&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;1. 앱 실행 시 UUID 생성 및 저장&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;서버에서 식별자 역할을 할 것으로 추정된다&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;UUID.PNG&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;517&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/tzHkX/btsrH9ITHlB/RXmYZYvhKA56UOOshcVvnK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/tzHkX/btsrH9ITHlB/RXmYZYvhKA56UOOshcVvnK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/tzHkX/btsrH9ITHlB/RXmYZYvhKA56UOOshcVvnK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FtzHkX%2FbtsrH9ITHlB%2FRXmYZYvhKA56UOOshcVvnK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;805&quot; height=&quot;517&quot; data-filename=&quot;UUID.PNG&quot; data-origin-width=&quot;805&quot; data-origin-height=&quot;517&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;UUID2.PNG&quot; data-origin-width=&quot;473&quot; data-origin-height=&quot;162&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bmWCTr/btsryth4Hei/K8jByqDp00wgX3aIhPk2Vk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bmWCTr/btsryth4Hei/K8jByqDp00wgX3aIhPk2Vk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bmWCTr/btsryth4Hei/K8jByqDp00wgX3aIhPk2Vk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbmWCTr%2Fbtsryth4Hei%2FK8jByqDp00wgX3aIhPk2Vk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;473&quot; height=&quot;162&quot; data-filename=&quot;UUID2.PNG&quot; data-origin-width=&quot;473&quot; data-origin-height=&quot;162&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;2. 앱 실행 시 정상 사이트를 보여줌&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;정상 사이트 &quot;부고장.kr&quot; 페이지의 화면을 보여주며 정상 앱인것 처럼 사용자를 속인다.&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정상 사이트1.PNG&quot; data-origin-width=&quot;398&quot; data-origin-height=&quot;640&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cyGWF0/btsrDeYw36g/bhUtxHrvkPKgqFgy8SWh11/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cyGWF0/btsrDeYw36g/bhUtxHrvkPKgqFgy8SWh11/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cyGWF0/btsrDeYw36g/bhUtxHrvkPKgqFgy8SWh11/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcyGWF0%2FbtsrDeYw36g%2FbhUtxHrvkPKgqFgy8SWh11%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;398&quot; height=&quot;640&quot; data-filename=&quot;정상 사이트1.PNG&quot; data-origin-width=&quot;398&quot; data-origin-height=&quot;640&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정상사이트 보영줌.PNG&quot; data-origin-width=&quot;934&quot; data-origin-height=&quot;160&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/MVthh/btsrEp6jsLw/KeWsA6Cg4cKjiZkovSmtU1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/MVthh/btsrEp6jsLw/KeWsA6Cg4cKjiZkovSmtU1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/MVthh/btsrEp6jsLw/KeWsA6Cg4cKjiZkovSmtU1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FMVthh%2FbtsrEp6jsLw%2FKeWsA6Cg4cKjiZkovSmtU1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;934&quot; height=&quot;160&quot; data-filename=&quot;정상사이트 보영줌.PNG&quot; data-origin-width=&quot;934&quot; data-origin-height=&quot;160&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;3. 앱 권한 요청&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱 권한요청1.PNG&quot; data-origin-width=&quot;1237&quot; data-origin-height=&quot;144&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bllzkO/btsrH48FnwQ/Ko3RoqOdQ6FGTAEd9yeOuk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bllzkO/btsrH48FnwQ/Ko3RoqOdQ6FGTAEd9yeOuk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bllzkO/btsrH48FnwQ/Ko3RoqOdQ6FGTAEd9yeOuk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbllzkO%2FbtsrH48FnwQ%2FKo3RoqOdQ6FGTAEd9yeOuk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1237&quot; height=&quot;144&quot; data-filename=&quot;앱 권한요청1.PNG&quot; data-origin-width=&quot;1237&quot; data-origin-height=&quot;144&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;앱 권한요청2.PNG&quot; data-origin-width=&quot;730&quot; data-origin-height=&quot;342&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/QT5sM/btsrwYQshOv/eiPQvqTPrGD5q9i9AdI9f1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/QT5sM/btsrwYQshOv/eiPQvqTPrGD5q9i9AdI9f1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/QT5sM/btsrwYQshOv/eiPQvqTPrGD5q9i9AdI9f1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FQT5sM%2FbtsrwYQshOv%2FeiPQvqTPrGD5q9i9AdI9f1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;730&quot; height=&quot;342&quot; data-filename=&quot;앱 권한요청2.PNG&quot; data-origin-width=&quot;730&quot; data-origin-height=&quot;342&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;3.&amp;nbsp; 각종 정보 수집&lt;/h4&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;핸드폰번호, sim 번호, IMEI 번호, 통신사 정보 수집&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;각종정보 수지1.PNG&quot; data-origin-width=&quot;1004&quot; data-origin-height=&quot;549&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/T2sAr/btsrCoUB0sP/iKEeoOD6wWruGHL8o3rtMK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/T2sAr/btsrCoUB0sP/iKEeoOD6wWruGHL8o3rtMK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/T2sAr/btsrCoUB0sP/iKEeoOD6wWruGHL8o3rtMK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FT2sAr%2FbtsrCoUB0sP%2FiKEeoOD6wWruGHL8o3rtMK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1004&quot; height=&quot;549&quot; data-filename=&quot;각종정보 수지1.PNG&quot; data-origin-width=&quot;1004&quot; data-origin-height=&quot;549&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;각종정보 수지2.PNG&quot; data-origin-width=&quot;584&quot; data-origin-height=&quot;100&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c2PYE3/btsrDDjqMJb/xYHkFjrwv1oPZYdzSlMkWK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c2PYE3/btsrDDjqMJb/xYHkFjrwv1oPZYdzSlMkWK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c2PYE3/btsrDDjqMJb/xYHkFjrwv1oPZYdzSlMkWK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc2PYE3%2FbtsrDDjqMJb%2FxYHkFjrwv1oPZYdzSlMkWK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;584&quot; height=&quot;100&quot; data-filename=&quot;각종정보 수지2.PNG&quot; data-origin-width=&quot;584&quot; data-origin-height=&quot;100&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;4.&amp;nbsp; SMS 수신 시 볼륨 설정 및 진동 제어 기능&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수신2.PNG&quot; data-origin-width=&quot;517&quot; data-origin-height=&quot;182&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bZ0REB/btsrCmibKHL/enw9sWt1ktYKm5QgwdM3P1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bZ0REB/btsrCmibKHL/enw9sWt1ktYKm5QgwdM3P1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bZ0REB/btsrCmibKHL/enw9sWt1ktYKm5QgwdM3P1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbZ0REB%2FbtsrCmibKHL%2Fenw9sWt1ktYKm5QgwdM3P1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;517&quot; height=&quot;182&quot; data-filename=&quot;sms 수신2.PNG&quot; data-origin-width=&quot;517&quot; data-origin-height=&quot;182&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;5.&amp;nbsp; SMS 정보 수집 및 유출&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수신1.PNG&quot; data-origin-width=&quot;1126&quot; data-origin-height=&quot;374&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/mW5LV/btsrCwLVmqy/YBWjTQpGdcwqbiOKTrlqL1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/mW5LV/btsrCwLVmqy/YBWjTQpGdcwqbiOKTrlqL1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/mW5LV/btsrCwLVmqy/YBWjTQpGdcwqbiOKTrlqL1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FmW5LV%2FbtsrCwLVmqy%2FYBWjTQpGdcwqbiOKTrlqL1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1126&quot; height=&quot;374&quot; data-filename=&quot;sms 수신1.PNG&quot; data-origin-width=&quot;1126&quot; data-origin-height=&quot;374&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;sms 수신11.PNG&quot; data-origin-width=&quot;954&quot; data-origin-height=&quot;547&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bm3A4e/btsrwWZraFr/KKAKBePcvxfpZRVTsjoBZk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bm3A4e/btsrwWZraFr/KKAKBePcvxfpZRVTsjoBZk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bm3A4e/btsrwWZraFr/KKAKBePcvxfpZRVTsjoBZk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbm3A4e%2FbtsrwWZraFr%2FKKAKBePcvxfpZRVTsjoBZk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;954&quot; height=&quot;547&quot; data-filename=&quot;sms 수신11.PNG&quot; data-origin-width=&quot;954&quot; data-origin-height=&quot;547&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;6.&amp;nbsp; 유출지 (C&amp;amp;C)정보&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;유출지.PNG&quot; data-origin-width=&quot;565&quot; data-origin-height=&quot;208&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/NbSuv/btsrAOT4MQ1/XJZOHbhgGJN2iHEeKMTiRk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/NbSuv/btsrAOT4MQ1/XJZOHbhgGJN2iHEeKMTiRk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/NbSuv/btsrAOT4MQ1/XJZOHbhgGJN2iHEeKMTiRk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FNbSuv%2FbtsrAOT4MQ1%2FXJZOHbhgGJN2iHEeKMTiRk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;565&quot; height=&quot;208&quot; data-filename=&quot;유출지.PNG&quot; data-origin-width=&quot;565&quot; data-origin-height=&quot;208&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;7.&amp;nbsp; 유출 시 사용되는 API&lt;/h4&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;API.PNG&quot; data-origin-width=&quot;1074&quot; data-origin-height=&quot;318&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cxtctv/btsryqeBzyd/AvDxvrDWOdbKkvdmm6kKTK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cxtctv/btsryqeBzyd/AvDxvrDWOdbKkvdmm6kKTK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cxtctv/btsryqeBzyd/AvDxvrDWOdbKkvdmm6kKTK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fcxtctv%2FbtsryqeBzyd%2FAvDxvrDWOdbKkvdmm6kKTK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1074&quot; height=&quot;318&quot; data-filename=&quot;API.PNG&quot; data-origin-width=&quot;1074&quot; data-origin-height=&quot;318&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #000000; text-align: start;&quot; data-ke-size=&quot;size20&quot;&gt;8.&amp;nbsp; 정보 유출&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;사용 되는 API에 따라 유출되는 정보&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;uuid 전송.png&quot; data-origin-width=&quot;1150&quot; data-origin-height=&quot;336&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/cM15L8/btsrCQQSWJ9/rOeYJK4Eyve7M6CGqRYMBK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/cM15L8/btsrCQQSWJ9/rOeYJK4Eyve7M6CGqRYMBK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/cM15L8/btsrCQQSWJ9/rOeYJK4Eyve7M6CGqRYMBK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FcM15L8%2FbtsrCQQSWJ9%2FrOeYJK4Eyve7M6CGqRYMBK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1150&quot; height=&quot;336&quot; data-filename=&quot;uuid 전송.png&quot; data-origin-width=&quot;1150&quot; data-origin-height=&quot;336&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;정보전송2.png&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;238&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/RzNeD/btsrB7r5xFT/sGX4ruhaJxnV6lelKTnQEK/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/RzNeD/btsrB7r5xFT/sGX4ruhaJxnV6lelKTnQEK/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/RzNeD/btsrB7r5xFT/sGX4ruhaJxnV6lelKTnQEK/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FRzNeD%2FbtsrB7r5xFT%2FsGX4ruhaJxnV6lelKTnQEK%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;682&quot; height=&quot;238&quot; data-filename=&quot;정보전송2.png&quot; data-origin-width=&quot;682&quot; data-origin-height=&quot;238&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;각종정보 전속.png&quot; data-origin-width=&quot;967&quot; data-origin-height=&quot;243&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/c7CNux/btsrIaA2xVE/CJKTMW1KKDZzZw0Vf4WeP1/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/c7CNux/btsrIaA2xVE/CJKTMW1KKDZzZw0Vf4WeP1/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/c7CNux/btsrIaA2xVE/CJKTMW1KKDZzZw0Vf4WeP1/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fc7CNux%2FbtsrIaA2xVE%2FCJKTMW1KKDZzZw0Vf4WeP1%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;967&quot; height=&quot;243&quot; data-filename=&quot;각종정보 전속.png&quot; data-origin-width=&quot;967&quot; data-origin-height=&quot;243&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style5&quot; /&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;color: #333333; text-align: start;&quot; data-ke-size=&quot;size18&quot;&gt;&lt;a style=&quot;color: #3d62ce;&quot; href=&quot;https://cago-young.tistory.com/134&quot;&gt;휴대전화 보안 그리고 악성 앱 제거 방법&lt;/a&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: start;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;br /&gt;&lt;b&gt;KISA&amp;nbsp; 스마트폰 안전 수칙 10 계명&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;①&amp;nbsp;의심스러운&amp;nbsp;애플리케이션&amp;nbsp;다운로드하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;②&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;사이트&amp;nbsp;방문하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;③&amp;nbsp;발신인이&amp;nbsp;불명확하거나&amp;nbsp;의심스러운&amp;nbsp;메시지&amp;nbsp;및&amp;nbsp;메일&amp;nbsp;삭제하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;④&amp;nbsp;비밀번호&amp;nbsp;설정&amp;nbsp;기능을&amp;nbsp;이용하고&amp;nbsp;정기적으로&amp;nbsp;비밀번호&amp;nbsp;변경하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑤&amp;nbsp;블루투스&amp;nbsp;등&amp;nbsp;무선인터페이스는&amp;nbsp;사용&amp;nbsp;시에만&amp;nbsp;켜놓기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑥&amp;nbsp;이상&amp;nbsp;증상이&amp;nbsp;지속될&amp;nbsp;경우&amp;nbsp;악성코드&amp;nbsp;감염&amp;nbsp;여부&amp;nbsp;확인하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑦&amp;nbsp;다운로드한&amp;nbsp;파일은&amp;nbsp;바이러스&amp;nbsp;유무를&amp;nbsp;검사한&amp;nbsp;후&amp;nbsp;사용하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑧&amp;nbsp;PC에도&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;설치하고&amp;nbsp;정기적으로&amp;nbsp;바이러스&amp;nbsp;검사하기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑨&amp;nbsp;스마트폰&amp;nbsp;플랫폼의&amp;nbsp;구조를&amp;nbsp;임의로&amp;nbsp;변경하지&amp;nbsp;않기&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&amp;nbsp;&amp;nbsp;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;⑩&amp;nbsp;운영체제&amp;nbsp;및&amp;nbsp;백신&amp;nbsp;프로그램을&amp;nbsp;항상&amp;nbsp;최신&amp;nbsp;버전으로&amp;nbsp;업데이트하기&lt;/b&gt;&lt;/p&gt;</description>
      <category>play/분석</category>
      <category>cago 분석</category>
      <category>[부고]18일 저녁 10시경 부친께서 별세하셨습니다. 안내</category>
      <category>모르는 사람 부고 문자</category>
      <category>별세</category>
      <category>보안</category>
      <category>부고 문자</category>
      <category>부고장</category>
      <category>스미싱</category>
      <category>지인 사칭 스미싱</category>
      <category>피싱사이트</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/166</guid>
      <comments>https://cago-young.tistory.com/166#entry166comment</comments>
      <pubDate>Sun, 20 Aug 2023 08:00:41 +0900</pubDate>
    </item>
    <item>
      <title>Magisk Manager  란?</title>
      <link>https://cago-young.tistory.com/164</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;Magisk는&amp;nbsp;Android&amp;nbsp;기기에서&amp;nbsp;시스템&amp;nbsp;루트&amp;nbsp;권한(Root)을&amp;nbsp;얻고,&amp;nbsp;시스템&amp;nbsp;수정을&amp;nbsp;할&amp;nbsp;수&amp;nbsp;있게&amp;nbsp;해주는&amp;nbsp;오픈&amp;nbsp;소스&amp;nbsp;프로젝트입니다.&amp;nbsp;기본적으로&amp;nbsp;Android&amp;nbsp;운영&amp;nbsp;체제는&amp;nbsp;시스템&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;가지고&amp;nbsp;있지&amp;nbsp;않아서&amp;nbsp;시스템&amp;nbsp;설정을&amp;nbsp;변경하거나&amp;nbsp;앱의&amp;nbsp;루트&amp;nbsp;권한이&amp;nbsp;필요한&amp;nbsp;기능을&amp;nbsp;사용할&amp;nbsp;수&amp;nbsp;없습니다.&amp;nbsp;그러나&amp;nbsp;Magisk를&amp;nbsp;사용하면&amp;nbsp;Android&amp;nbsp;기기에&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;부여하여&amp;nbsp;이러한&amp;nbsp;제한을&amp;nbsp;우회할&amp;nbsp;수&amp;nbsp;있습니다. &lt;br /&gt;&lt;br /&gt;Magisk는&amp;nbsp;시스템의&amp;nbsp;내부에서&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;얻는데&amp;nbsp;사용되며,&amp;nbsp;이를&amp;nbsp;통해&amp;nbsp;다양한&amp;nbsp;기능과&amp;nbsp;모듈을&amp;nbsp;설치할&amp;nbsp;수&amp;nbsp;있습니다.&amp;nbsp;Magisk의&amp;nbsp;가장&amp;nbsp;큰&amp;nbsp;장점&amp;nbsp;중&amp;nbsp;하나는&amp;nbsp;시스템&amp;nbsp;파티션을&amp;nbsp;변경하지&amp;nbsp;않고&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;얻을&amp;nbsp;수&amp;nbsp;있다는&amp;nbsp;점입니다.&amp;nbsp;이렇게&amp;nbsp;함으로써&amp;nbsp;시스템의&amp;nbsp;무결성을&amp;nbsp;유지하면서도&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;이용할&amp;nbsp;수&amp;nbsp;있어서&amp;nbsp;안정적이고&amp;nbsp;보안적으로도&amp;nbsp;유리합니다. &lt;br /&gt;&lt;br /&gt;Magisk의&amp;nbsp;주요&amp;nbsp;기능과&amp;nbsp;장점: &lt;br /&gt;&lt;br /&gt;시스템&amp;nbsp;루트&amp;nbsp;권한&amp;nbsp;얻기:&amp;nbsp;Magisk를&amp;nbsp;설치하면&amp;nbsp;기기에&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;얻을&amp;nbsp;수&amp;nbsp;있습니다.&amp;nbsp;이를&amp;nbsp;통해&amp;nbsp;기기의&amp;nbsp;시스템&amp;nbsp;설정을&amp;nbsp;변경하거나&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;요구하는&amp;nbsp;앱과&amp;nbsp;기능을&amp;nbsp;사용할&amp;nbsp;수&amp;nbsp;있습니다. &lt;br /&gt;&lt;br /&gt;시스템&amp;nbsp;무결성&amp;nbsp;유지:&amp;nbsp;Magisk는&amp;nbsp;시스템&amp;nbsp;파티션을&amp;nbsp;수정하지&amp;nbsp;않고&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;얻으므로&amp;nbsp;시스템의&amp;nbsp;무결성을&amp;nbsp;유지할&amp;nbsp;수&amp;nbsp;있습니다. &lt;br /&gt;&lt;br /&gt;Systemless&amp;nbsp;모드:&amp;nbsp;Magisk의&amp;nbsp;시스템리스(Systemless)&amp;nbsp;모드를&amp;nbsp;사용하면&amp;nbsp;기기의&amp;nbsp;시스템&amp;nbsp;파티션을&amp;nbsp;건드리지&amp;nbsp;않고도&amp;nbsp;모듈을&amp;nbsp;설치하고&amp;nbsp;관리할&amp;nbsp;수&amp;nbsp;있습니다.&amp;nbsp;이는&amp;nbsp;OTA(Over-The-Air)&amp;nbsp;업데이트를&amp;nbsp;받을&amp;nbsp;때&amp;nbsp;유용합니다. &lt;br /&gt;&lt;br /&gt;Magisk&amp;nbsp;모듈:&amp;nbsp;Magisk&amp;nbsp;모듈은&amp;nbsp;기기에&amp;nbsp;기능을&amp;nbsp;추가하거나&amp;nbsp;수정할&amp;nbsp;수&amp;nbsp;있는&amp;nbsp;확장&amp;nbsp;기능입니다.&amp;nbsp;사용자는&amp;nbsp;Magisk&amp;nbsp;모듈을&amp;nbsp;설치하여&amp;nbsp;기기에&amp;nbsp;원하는&amp;nbsp;기능을&amp;nbsp;추가하거나&amp;nbsp;커스터마이징할&amp;nbsp;수&amp;nbsp;있습니다. &lt;br /&gt;&lt;br /&gt;SafetyNet&amp;nbsp;우회:&amp;nbsp;Magisk의&amp;nbsp;시스템리스&amp;nbsp;모드를&amp;nbsp;사용하면&amp;nbsp;SafetyNet&amp;nbsp;API&amp;nbsp;검사를&amp;nbsp;우회하여&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;가진&amp;nbsp;기기에서도&amp;nbsp;Google&amp;nbsp;Pay&amp;nbsp;및&amp;nbsp;기타&amp;nbsp;SafetyNet을&amp;nbsp;사용하는&amp;nbsp;앱을&amp;nbsp;실행할&amp;nbsp;수&amp;nbsp;있습니다. &lt;br /&gt;&lt;br /&gt;하지만&amp;nbsp;Magisk는&amp;nbsp;시스템&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;얻는&amp;nbsp;것이므로&amp;nbsp;오용할&amp;nbsp;경우&amp;nbsp;안전성과&amp;nbsp;보안에&amp;nbsp;문제가&amp;nbsp;발생할&amp;nbsp;수&amp;nbsp;있습니다.&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;가진&amp;nbsp;상태에서는&amp;nbsp;신중하게&amp;nbsp;사용해야&amp;nbsp;하며,&amp;nbsp;신뢰할&amp;nbsp;수&amp;nbsp;없는&amp;nbsp;소스로부터의&amp;nbsp;앱&amp;nbsp;또는&amp;nbsp;모듈&amp;nbsp;설치에&amp;nbsp;주의해야&amp;nbsp;합니다.&amp;nbsp;또한&amp;nbsp;일부&amp;nbsp;은행&amp;nbsp;앱이나&amp;nbsp;보안&amp;nbsp;감지&amp;nbsp;앱에서&amp;nbsp;Magisk&amp;nbsp;루트&amp;nbsp;권한을&amp;nbsp;감지하고&amp;nbsp;동작을&amp;nbsp;차단하는&amp;nbsp;경우가&amp;nbsp;있으므로&amp;nbsp;주의가&amp;nbsp;필요합니다.&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 data-ke-size=&quot;size20&quot;&gt;root hide 기능 이용 하는법&lt;/h4&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;실제 기기 루팅 된 기기에서 할 수 있음 &lt;a href=&quot;https://hw4n.tistory.com/13&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;루팅방법&lt;/a&gt;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;Magisk Manager - 설정 - Zygisk - DenyList 구성 - 타겟앱 - 재 부팅&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imagegridblock&quot;&gt;
  &lt;div class=&quot;image-container&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bj4ZRu/btspH2y1WJI/O1KTX47IGibPrknfOKMf10/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bj4ZRu/btspH2y1WJI/O1KTX47IGibPrknfOKMf10/img.jpg&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;2220&quot; data-filename=&quot;Screenshot_20230802-000731_One UI Home.jpg&quot; data-widthpercent=&quot;33.33&quot; style=&quot;width: 32.5581%; margin-right: 10px;&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bj4ZRu/btspH2y1WJI/O1KTX47IGibPrknfOKMf10/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2Fbj4ZRu%2FbtspH2y1WJI%2FO1KTX47IGibPrknfOKMf10%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1080&quot; height=&quot;2220&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/pZix1/btspokVDfyl/l5YBQXllhZtA9GAUrxjY91/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/pZix1/btspokVDfyl/l5YBQXllhZtA9GAUrxjY91/img.jpg&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;2220&quot; data-filename=&quot;Screenshot_20230802-000717.jpg&quot; style=&quot;width: 32.5581%; margin-right: 10px;&quot; data-widthpercent=&quot;33.33&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/pZix1/btspokVDfyl/l5YBQXllhZtA9GAUrxjY91/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FpZix1%2FbtspokVDfyl%2Fl5YBQXllhZtA9GAUrxjY91%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1080&quot; height=&quot;2220&quot;/&gt;&lt;/span&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Pd5Kq/btspGLK4k9E/G9DBNjBowzWSax4BkNttRk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Pd5Kq/btspGLK4k9E/G9DBNjBowzWSax4BkNttRk/img.png&quot; data-is-animation=&quot;false&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;2220&quot; data-filename=&quot;edited_Screenshot_20230802-001048.jpg&quot; style=&quot;width: 32.5581%;&quot; data-widthpercent=&quot;33.34&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Pd5Kq/btspGLK4k9E/G9DBNjBowzWSax4BkNttRk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FPd5Kq%2FbtspGLK4k9E%2FG9DBNjBowzWSax4BkNttRk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1080&quot; height=&quot;2220&quot;/&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/figure&gt;
&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;Screenshot_20230802-001215_NH.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;2220&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/kIRFA/btspMJy6O1K/JMfXfMxUDf3a5L1J9GRjVk/img.jpg&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/kIRFA/btspMJy6O1K/JMfXfMxUDf3a5L1J9GRjVk/img.jpg&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/kIRFA/btspMJy6O1K/JMfXfMxUDf3a5L1J9GRjVk/img.jpg&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FkIRFA%2FbtspMJy6O1K%2FJMfXfMxUDf3a5L1J9GRjVk%2Fimg.jpg&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;250&quot; height=&quot;514&quot; data-filename=&quot;Screenshot_20230802-001215_NH.jpg&quot; data-origin-width=&quot;1080&quot; data-origin-height=&quot;2220&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;a href=&quot;https://magiskmanager.com/#What_is_Magisk_Hide&quot; target=&quot;_blank&quot; rel=&quot;noopener&quot;&gt;https://magiskmanager.com/#What_is_Magisk_Hide&lt;/a&gt;&lt;/p&gt;</description>
      <category>space</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/164</guid>
      <comments>https://cago-young.tistory.com/164#entry164comment</comments>
      <pubDate>Wed, 2 Aug 2023 01:05:06 +0900</pubDate>
    </item>
    <item>
      <title>[AdSense] 애드샌스 수익 지급을 위한 결제 수단 추가 방법</title>
      <link>https://cago-young.tistory.com/163</link>
      <description>&lt;p data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;Google AdSense는 웹사이트 소유자와 블로거들이 온라인 광고를 통해 콘텐츠를 수익화하는 편리한 방법을 제공 합니다. 수익금을 받기 위해서는 AdSense 계정에 결제 수단을 등록해야 하고. 이 단계별 가이드에서는 은행 송금를 통해 결제 수단을 추가하는 방법을 안내해 드리겠습니다.&lt;/span&gt;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;1. Google AdSense에 접속&lt;/b&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;a style=&quot;color: #0070d1;&quot; href=&quot;https://adsense.google.com/&quot;&gt;Google AdSense&lt;/a&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;계정으로 로그인합니다. Tistory 블로그을 사용 중이라면 &quot;블로그 관리&quot; &amp;gt; &quot;수익&quot; &amp;gt; &quot;애드센스 관리&quot;로 이동한 후 &quot;정산하기&quot; 링크를 클릭하여 Google AdSense 결제정보 화면에 접속합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;img.png&quot; data-origin-width=&quot;1001&quot; data-origin-height=&quot;673&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/Om3xp/btsplOHInsa/kIwXTx2GrrhJcvQJHmt800/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/Om3xp/btsplOHInsa/kIwXTx2GrrhJcvQJHmt800/img.png&quot; data-alt=&quot;티스토리 애드센스 관리 화면&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/Om3xp/btsplOHInsa/kIwXTx2GrrhJcvQJHmt800/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FOm3xp%2FbtsplOHInsa%2FkIwXTx2GrrhJcvQJHmt800%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1001&quot; height=&quot;673&quot; data-filename=&quot;img.png&quot; data-origin-width=&quot;1001&quot; data-origin-height=&quot;673&quot;/&gt;&lt;/span&gt;&lt;figcaption&gt;티스토리 애드센스 관리 화면&lt;/figcaption&gt;
&lt;/figure&gt;
&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;2. 결제 수단 추가하기&lt;/b&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;결제 수단을 등록하기 전에 결제 수단 추가 링크를 클릭합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock widthContent&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;edited_1.png&quot; data-origin-width=&quot;1697&quot; data-origin-height=&quot;889&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bWofTC/btspgowHLzo/iIyoN0K0LjYYL0PkZghz70/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bWofTC/btspgowHLzo/iIyoN0K0LjYYL0PkZghz70/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bWofTC/btspgowHLzo/iIyoN0K0LjYYL0PkZghz70/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbWofTC%2FbtspgowHLzo%2FiIyoN0K0LjYYL0PkZghz70%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;1697&quot; height=&quot;889&quot; data-filename=&quot;edited_1.png&quot; data-origin-width=&quot;1697&quot; data-origin-height=&quot;889&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;3. 은행으로 결제 수단 선택하기&lt;/b&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이동한 화면에서 결제 수단 종류로 &quot;새 은행 송금 세부 정보 추가&quot;를 선택합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-filename=&quot;3.png&quot; data-origin-width=&quot;546&quot; data-origin-height=&quot;412&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/lkaOF/btsplNIMPdZ/QH5oha496g5irOIMtZTZe0/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/lkaOF/btsplNIMPdZ/QH5oha496g5irOIMtZTZe0/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/lkaOF/btsplNIMPdZ/QH5oha496g5irOIMtZTZe0/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FlkaOF%2FbtsplNIMPdZ%2FQH5oha496g5irOIMtZTZe0%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;546&quot; height=&quot;412&quot; data-filename=&quot;3.png&quot; data-origin-width=&quot;546&quot; data-origin-height=&quot;412&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;h4 style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;4. 은행 송금 세부정보 추가하기&lt;/b&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;아래&amp;nbsp;화면에서&amp;nbsp;은행&amp;nbsp;송금&amp;nbsp;세부정보를&amp;nbsp;입력합니다.&amp;nbsp;다음&amp;nbsp;정보를&amp;nbsp;참고하여&amp;nbsp;수익을&amp;nbsp;받을&amp;nbsp;은행&amp;nbsp;정보를&amp;nbsp;입력합니다.&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;figure class=&quot;imageblock alignCenter&quot; data-ke-mobileStyle=&quot;widthOrigin&quot; data-origin-width=&quot;722&quot; data-origin-height=&quot;883&quot;&gt;&lt;span data-url=&quot;https://blog.kakaocdn.net/dn/bK3G6X/btspk71RAgj/Hl6OqwcnMTfT93oO44D6tk/img.png&quot; data-phocus=&quot;https://blog.kakaocdn.net/dn/bK3G6X/btspk71RAgj/Hl6OqwcnMTfT93oO44D6tk/img.png&quot;&gt;&lt;img src=&quot;https://blog.kakaocdn.net/dn/bK3G6X/btspk71RAgj/Hl6OqwcnMTfT93oO44D6tk/img.png&quot; srcset=&quot;https://img1.daumcdn.net/thumb/R1280x0/?scode=mtistory2&amp;fname=https%3A%2F%2Fblog.kakaocdn.net%2Fdn%2FbK3G6X%2Fbtspk71RAgj%2FHl6OqwcnMTfT93oO44D6tk%2Fimg.png&quot; onerror=&quot;this.onerror=null; this.src='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png'; this.srcset='//t1.daumcdn.net/tistory_admin/static/images/no-image-v1.png';&quot; loading=&quot;lazy&quot; width=&quot;722&quot; height=&quot;883&quot; data-origin-width=&quot;722&quot; data-origin-height=&quot;883&quot;/&gt;&lt;/span&gt;&lt;/figure&gt;
&lt;/p&gt;
&lt;ul style=&quot;list-style-type: disc;&quot; data-ke-list-type=&quot;disc&quot;&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;수취인 ID: 선택사항이며 입력하지 않아도 됩니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;예금주의 이름: 예금주(본인) 이름을 영문으로 입력합니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;은행 이름: 수익금을 받을 계좌의 은행 이름을 영문으로 입력합니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;SWIFT 은행 식별 코드(BIC): 수익금을 받을 계좌의 은행 식별 코드를 입력합니다. 한국 은행의 SWIFT 코드는 제공된 표를 참고하세요.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;계좌 번호: 수익금을 받을 계좌번호를 입력합니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;계좌 번호 재입력: 수익금을 받을 계좌번호를 다시 입력합니다.&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&amp;nbsp;중개 은행, FFC 또는 FBO: 선택사항이며 입력하지 않아도 됩니다.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;h4 style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size20&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SWIFT 은행 식별 코드(BIC)&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/h4&gt;
&lt;table style=&quot;color: #666666; text-align: center; border-collapse: collapse; width: 100%;&quot; border=&quot;1&quot; data-ke-align=&quot;alignLeft&quot; data-ke-style=&quot;style13&quot;&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;은행명&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;은행 영문명&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SWIFT Code(BIC)&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;한국은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;BANK&amp;nbsp;OF&amp;nbsp;KOREA&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;BOKRKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KDB산업은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KOREA&amp;nbsp;DEVELOPMENT&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KODBKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;기업은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;INDUSTRIAL&amp;nbsp;BANK&amp;nbsp;OF&amp;nbsp;KOREA&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;IBKOKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;국민은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KOOKMIN&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;CZNBKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;수협은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SUHYUP&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;NFFCKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;농협은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;NATIONAL&amp;nbsp;AGRICULTURAL&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;NACFKRSEXXX&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;우리은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;WOORI&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;HVBKKRSEXXX&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SC제일은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;STANDARD&amp;nbsp;CHARTERED&amp;nbsp;FIRST&amp;nbsp;BANK&amp;nbsp;KOREA&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SCBLKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;씨티은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;CITIBANK&amp;nbsp;KOREA&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;CITIKRSX&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;대구은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;DAEGU&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;DAEBKR22&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;부산은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;BUSAN&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;PUSBKR2P&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;광주은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KWANGJU&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KWABKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;제주은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;JEJU&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;JJBKKR22&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;전북은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;JEONBUK&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;JEONKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;경남은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KYONGNAM&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KYNAKR22XXX&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;우체국은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KOREA&amp;nbsp;POST&amp;nbsp;OFFICE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SHBKKRSEPO&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;하나은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KEB&amp;nbsp;HANA&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KOEXKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;신한은행&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SHINHAN&amp;nbsp;BANK&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;SHBKKRSE&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;카카오뱅크&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KAKAOBANK&amp;nbsp;OF&amp;nbsp;KOREA&amp;nbsp;CORP&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;&lt;b&gt;&lt;span style=&quot;color: #000000;&quot;&gt;KAKOKR22&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p style=&quot;color: #555555; text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;hr contenteditable=&quot;false&quot; data-ke-type=&quot;horizontalRule&quot; data-ke-style=&quot;style6&quot; /&gt;
&lt;p style=&quot;text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&lt;span style=&quot;font-family: 'Noto Serif KR';&quot;&gt;이 간단한 단계들을 따라가면 Google AdSense 계정에 결제 수단을 추가할 수 있으며, 은행 송금을 통해 손쉽게 수익을 받을 수 있습니다. 또한, 수표로 지급받기를 원하신다면 결제 수단 설정 과정에서 해당 옵션을 선택하실 수 있습니다. 결제 수단을 등록하면 여러분의 노고와 열정으로 만든 온라인 콘텐츠의 보상을 즐길 준비가 됩니다. 행운을 빕니다!&lt;/span&gt;&lt;/p&gt;
&lt;p style=&quot;text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;
&lt;p style=&quot;text-align: left;&quot; data-ke-size=&quot;size16&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
      <category>space</category>
      <category>ADSense</category>
      <category>Google</category>
      <category>결제 수단 관리</category>
      <category>결제 수단 추가</category>
      <category>결제 정보</category>
      <category>결제 정보 추가</category>
      <category>구글</category>
      <category>구글 애드센스</category>
      <category>애드센스</category>
      <category>티스토리 애드센스 결제 수단</category>
      <author>카고형</author>
      <guid isPermaLink="true">https://cago-young.tistory.com/163</guid>
      <comments>https://cago-young.tistory.com/163#entry163comment</comments>
      <pubDate>Fri, 28 Jul 2023 22:38:55 +0900</pubDate>
    </item>
  </channel>
</rss>