3. FTP서비스를 운영하는 서버에 공격 징후가 발견 되었다. 시스템 관리자는 해당 FTP서버에서 다음과 같은 현상이 확인하였다. 어떤 유형의 공격인가?
# netstat -na Active Internet connections (servers and established) Proto Recv-Q Send-Q Local Address Foreign Address State tcp 0 0 0.0.0.0:21 0.0.0.0:* LISTEN tcp 0 0 192.168.0.10:80 211.xxx.xxx.xxx:2452 ESTABLISHED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2534 SYN-RECEIVED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2535 SYN-RECEIVED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2536 SYN-RECEIVED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2537 SYN-RECEIVED tcp 0 0 192.168.0.10:80 218.xxx.xx.xx:2531 ESTABLISHED tcp 0 0 192.168.0.10:443 207.xx.xx.xx:1353 CLOSE_WAIT tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2538 SYN-RECEIVED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2539 SYN-RECEIVED tcp 0 0 192.168.0.10:21 211.xxx.xx.x:2530 SYN-RECEIVED
정답 확인 | 맞췄어요 O | 틀렸어요 X |