Supabase Security

HackTricks ์ง€์›ํ•˜๊ธฐ

๊ธฐ๋ณธ ์ •๋ณด

๊ทธ๋“ค์˜ ๋žœ๋”ฉ ํŽ˜์ด์ง€์— ๋”ฐ๋ฅด๋ฉด: Supabase๋Š” ์˜คํ”ˆ ์†Œ์Šค Firebase ๋Œ€์•ˆ์ž…๋‹ˆ๋‹ค. Postgres ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค, ์ธ์ฆ, ์ฆ‰์‹œ API, ์—ฃ์ง€ ํ•จ์ˆ˜, ์‹ค์‹œ๊ฐ„ ๊ตฌ๋…, ์Šคํ† ๋ฆฌ์ง€ ๋ฐ ๋ฒกํ„ฐ ์ž„๋ฒ ๋”ฉ์œผ๋กœ ํ”„๋กœ์ ํŠธ๋ฅผ ์‹œ์ž‘ํ•˜์„ธ์š”.

์„œ๋ธŒ๋„๋ฉ”์ธ

๊ธฐ๋ณธ์ ์œผ๋กœ ํ”„๋กœ์ ํŠธ๊ฐ€ ์ƒ์„ฑ๋˜๋ฉด ์‚ฌ์šฉ์ž๋Š” **jnanozjdybtpqgcwhdiz.supabase.co**์™€ ๊ฐ™์€ supabase.co ์„œ๋ธŒ๋„๋ฉ”์ธ์„ ๋ฐ›๊ฒŒ ๋ฉ๋‹ˆ๋‹ค.

๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ๊ตฌ์„ฑ

์ด ๋ฐ์ดํ„ฐ๋Š” https://supabase.com/dashboard/project/<project-id>/settings/database์™€ ๊ฐ™์€ ๋งํฌ์—์„œ ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์ด ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค๋Š” ์ผ๋ถ€ AWS ๋ฆฌ์ „์—์„œ ๋ฐฐํฌ๋˜๋ฉฐ, ์—ฐ๊ฒฐํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์ด ์—ฐ๊ฒฐํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค: postgres://postgres.jnanozjdybtpqgcwhdiz:[YOUR-PASSWORD]@aws-0-us-west-1.pooler.supabase.com:5432/postgres (์ด๊ฒƒ์€ us-west-1์—์„œ ์ƒ์„ฑ๋˜์—ˆ์Šต๋‹ˆ๋‹ค). ๋น„๋ฐ€๋ฒˆํ˜ธ๋Š” ์‚ฌ์šฉ์ž๊ฐ€ ์ด์ „์— ์„ค์ •ํ•œ ๋น„๋ฐ€๋ฒˆํ˜ธ์ž…๋‹ˆ๋‹ค.

๋”ฐ๋ผ์„œ ์„œ๋ธŒ๋„๋ฉ”์ธ์ด ์•Œ๋ ค์ง„ ๊ฒƒ์ด๊ณ  ์‚ฌ์šฉ์ž ์ด๋ฆ„์œผ๋กœ ์‚ฌ์šฉ๋˜๋ฉฐ AWS ๋ฆฌ์ „์ด ์ œํ•œ์ ์ด๊ธฐ ๋•Œ๋ฌธ์— ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ๋ฌด์ž‘์œ„ ๋Œ€์ž… ๊ณต๊ฒฉํ•  ๊ฐ€๋Šฅ์„ฑ์ด ์žˆ์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์ด ์„น์…˜์—๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์€ ์˜ต์…˜๋„ ํฌํ•จ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค:

  • ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ๋น„๋ฐ€๋ฒˆํ˜ธ ์žฌ์„ค์ •

  • ์—ฐ๊ฒฐ ํ’€ ๊ตฌ์„ฑ

  • SSL ๊ตฌ์„ฑ: ํ‰๋ฌธ ์—ฐ๊ฒฐ ๊ฑฐ๋ถ€ (๊ธฐ๋ณธ์ ์œผ๋กœ ํ™œ์„ฑํ™”๋จ)

  • ๋””์Šคํฌ ํฌ๊ธฐ ๊ตฌ์„ฑ

  • ๋„คํŠธ์›Œํฌ ์ œํ•œ ๋ฐ ์ฐจ๋‹จ ์ ์šฉ

API ๊ตฌ์„ฑ

์ด ๋ฐ์ดํ„ฐ๋Š” https://supabase.com/dashboard/project/<project-id>/settings/api์™€ ๊ฐ™์€ ๋งํฌ์—์„œ ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

ํ”„๋กœ์ ํŠธ์—์„œ supabase API์— ์ ‘๊ทผํ•˜๋Š” URL์€ ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค: https://jnanozjdybtpqgcwhdiz.supabase.co.

anon API ํ‚ค

๋˜ํ•œ anon API ํ‚ค(role: "anon")๋ฅผ ์ƒ์„ฑํ•ฉ๋‹ˆ๋‹ค, ์˜ˆ: eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6ImFub24iLCJpYXQiOjE3MTQ5OTI3MTksImV4cCI6MjAzMDU2ODcxOX0.sRN0iMGM5J741pXav7UxeChyqBE9_Z-T0tLA9Zehvqk ์ด ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์ด API ํ‚ค์— ์ ‘๊ทผํ•˜๊ธฐ ์œ„ํ•ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค.

์ด API์— ์—ฐ๋ฝํ•˜๊ธฐ ์œ„ํ•œ API REST๋Š” ๋ฌธ์„œ์—์„œ ์ฐพ์„ ์ˆ˜ ์žˆ์ง€๋งŒ, ๊ฐ€์žฅ ํฅ๋ฏธ๋กœ์šด ์—”๋“œํฌ์ธํŠธ๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค:

๊ฐ€์ž… (/auth/v1/signup)

``` POST /auth/v1/signup HTTP/2 Host: id.io.net Content-Length: 90 X-Client-Info: supabase-js-web/2.39.2 Sec-Ch-Ua: "Not-A.Brand";v="99", "Chromium";v="124" Sec-Ch-Ua-Mobile: ?0 Authorization: Bearer eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6ImFub24iLCJpYXQiOjE3MTQ5OTI3MTksImV4cCI6MjAzMDU2ODcxOX0.sRN0iMGM5J741pXav7UxeChyqBE9_Z-T0tLA9Zehvqk User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.6367.60 Safari/537.36 Content-Type: application/json;charset=UTF-8 Apikey: eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6ImFub24iLCJpYXQiOjE3MTQ5OTI3MTksImV4cCI6MjAzMDU2ODcxOX0.sRN0iMGM5J741pXav7UxeChyqBE9_Z-T0tLA9Zehvqk Sec-Ch-Ua-Platform: "macOS" Accept: */* Origin: https://cloud.io.net Sec-Fetch-Site: same-site Sec-Fetch-Mode: cors Sec-Fetch-Dest: empty Referer: https://cloud.io.net/ Accept-Encoding: gzip, deflate, br Accept-Language: en-GB,en-US;q=0.9,en;q=0.8 Priority: u=1, i

{"email":"test@exmaple.com","password":"SomeCOmplexPwd239."}

</details>

<details>

<summary>๋กœ๊ทธ์ธ (/auth/v1/token?grant_type=password)</summary>

POST /auth/v1/token?grant_type=password HTTP/2 Host: hypzbtgspjkludjcnjxl.supabase.co Content-Length: 80 X-Client-Info: supabase-js-web/2.39.2 Sec-Ch-Ua: "Not-A.Brand";v="99", "Chromium";v="124" Sec-Ch-Ua-Mobile: ?0 Authorization: Bearer eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6ImFub24iLCJpYXQiOjE3MTQ5OTI3MTksImV4cCI6MjAzMDU2ODcxOX0.sRN0iMGM5J741pXav7UxeChyqBE9_Z-T0tLA9Zehvqk User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.6367.60 Safari/537.36 Content-Type: application/json;charset=UTF-8 Apikey: eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6ImFub24iLCJpYXQiOjE3MTQ5OTI3MTksImV4cCI6MjAzMDU2ODcxOX0.sRN0iMGM5J741pXav7UxeChyqBE9_Z-T0tLA9Zehvqk Sec-Ch-Ua-Platform: "macOS" Accept: / Origin: https://cloud.io.net Sec-Fetch-Site: same-site Sec-Fetch-Mode: cors Sec-Fetch-Dest: empty Referer: https://cloud.io.net/ Accept-Encoding: gzip, deflate, br Accept-Language: en-GB,en-US;q=0.9,en;q=0.8 Priority: u=1, i

{"email":"test@exmaple.com","password":"SomeCOmplexPwd239."}

</details>

๊ทธ๋ž˜์„œ, ํด๋ผ์ด์–ธํŠธ๊ฐ€ ๋ถ€์—ฌ๋ฐ›์€ ์„œ๋ธŒ๋„๋ฉ”์ธ์œผ๋กœ supabase๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ๊ฒƒ์„ ๋ฐœ๊ฒฌํ•  ๋•Œ๋งˆ๋‹ค (ํšŒ์‚ฌ์˜ ์„œ๋ธŒ๋„๋ฉ”์ธ์ด ๊ทธ๋“ค์˜ supabase ์„œ๋ธŒ๋„๋ฉ”์ธ์— CNAME์„ ๊ฐ€์งˆ ๊ฐ€๋Šฅ์„ฑ์ด ์žˆ์Œ), **supabase API๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ํ”Œ๋žซํผ์— ์ƒˆ ๊ณ„์ •์„ ์ƒ์„ฑํ•ด ๋ณด์‹ญ์‹œ์˜ค**.

### ๋น„๋ฐ€ / ์„œ๋น„์Šค\_์—ญํ•  API ํ‚ค

**`role: "service_role"`**๋กœ ๋น„๋ฐ€ API ํ‚ค๋„ ์ƒ์„ฑ๋ฉ๋‹ˆ๋‹ค. ์ด API ํ‚ค๋Š” **Row Level Security**๋ฅผ ์šฐํšŒํ•  ์ˆ˜ ์žˆ๊ธฐ ๋•Œ๋ฌธ์— ๋น„๋ฐ€์ด์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

API ํ‚ค๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค: `eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJzdXBhYmFzZSIsInJlZiI6ImpuYW5vemRyb2J0cHFnY3doZGl6Iiwicm9sZSI6InNlcnZpY2Vfcm9sZSIsImlhdCI6MTcxNDk5MjcxOSwiZXhwIjoyMDMwNTY4NzE5fQ.0a8fHGp3N_GiPq0y0dwfs06ywd-zhTwsm486Tha7354`

### JWT ๋น„๋ฐ€

**JWT ๋น„๋ฐ€**๋„ ์ƒ์„ฑ๋˜์–ด ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์ด **์‚ฌ์šฉ์ž ์ •์˜ JWT ํ† ํฐ์„ ์ƒ์„ฑํ•˜๊ณ  ์„œ๋ช…**ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

## ์ธ์ฆ

### ๊ฐ€์ž…

<div data-gb-custom-block data-tag="hint" data-style='success'>

๊ธฐ๋ณธ์ ์œผ๋กœ supabase๋Š” **์ƒˆ ์‚ฌ์šฉ์ž๊ฐ€ ํ”„๋กœ์ ํŠธ์— ๊ณ„์ •์„ ์ƒ์„ฑ**ํ•  ์ˆ˜ ์žˆ๋„๋ก ์ด์ „์— ์–ธ๊ธ‰ํ•œ API ์—”๋“œํฌ์ธํŠธ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

</div>

๊ทธ๋Ÿฌ๋‚˜ ์ด๋Ÿฌํ•œ ์ƒˆ ๊ณ„์ •์€ ๊ธฐ๋ณธ์ ์œผ๋กœ **๋กœ๊ทธ์ธํ•˜๊ธฐ ์œ„ํ•ด ์ด๋ฉ”์ผ ์ฃผ์†Œ๋ฅผ ํ™•์ธํ•ด์•ผ** ํ•ฉ๋‹ˆ๋‹ค. ์ด๋ฉ”์ผ ์ฃผ์†Œ๋ฅผ ํ™•์ธํ•˜์ง€ ์•Š๊ณ ๋„ ๋กœ๊ทธ์ธํ•  ์ˆ˜ ์žˆ๋„๋ก **"์ต๋ช… ๋กœ๊ทธ์ธ ํ—ˆ์šฉ"**์„ ํ™œ์„ฑํ™”ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ด๋Š” **์˜ˆ์ƒ์น˜ ๋ชปํ•œ ๋ฐ์ดํ„ฐ**์— ๋Œ€ํ•œ ์ ‘๊ทผ์„ ํ—ˆ์šฉํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค (๊ทธ๋“ค์€ `public` ๋ฐ `authenticated` ์—ญํ• ์„ ๋ฐ›์Šต๋‹ˆ๋‹ค).\
์ด๋Š” supabase๊ฐ€ ํ™œ์„ฑ ์‚ฌ์šฉ์ž๋‹น ์š”๊ธˆ์„ ๋ถ€๊ณผํ•˜๊ธฐ ๋•Œ๋ฌธ์— ๋งค์šฐ ๋‚˜์œ ์•„์ด๋””์–ด์ž…๋‹ˆ๋‹ค. ์‚ฌ๋žŒ๋“ค์ด ์‚ฌ์šฉ์ž๋ฅผ ์ƒ์„ฑํ•˜๊ณ  ๋กœ๊ทธ์ธํ•  ์ˆ˜ ์žˆ์œผ๋ฉฐ supabase๋Š” ์ด์— ๋Œ€ํ•ด ์š”๊ธˆ์„ ๋ถ€๊ณผํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค:

<figure><img src="../.gitbook/assets/image (1) (1) (1).png" alt=""><figcaption></figcaption></figure>

### ๋น„๋ฐ€๋ฒˆํ˜ธ ๋ฐ ์„ธ์…˜

์ตœ์†Œ ๋น„๋ฐ€๋ฒˆํ˜ธ ๊ธธ์ด(๊ธฐ๋ณธ๊ฐ’), ์š”๊ตฌ ์‚ฌํ•ญ(๊ธฐ๋ณธ๊ฐ’ ์—†์Œ)์„ ์ง€์ •ํ•˜๊ณ  ์œ ์ถœ๋œ ๋น„๋ฐ€๋ฒˆํ˜ธ ์‚ฌ์šฉ์„ ๊ธˆ์ง€ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.\
๊ธฐ๋ณธ ์š”๊ตฌ ์‚ฌํ•ญ์ด ์•ฝํ•˜๋ฏ€๋กœ **์š”๊ตฌ ์‚ฌํ•ญ์„ ๊ฐœ์„ ํ•˜๋Š” ๊ฒƒ์ด ์ข‹์Šต๋‹ˆ๋‹ค**.

* ์‚ฌ์šฉ์ž ์„ธ์…˜: ์‚ฌ์šฉ์ž ์„ธ์…˜ ์ž‘๋™ ๋ฐฉ์‹์„ ๊ตฌ์„ฑํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค (ํƒ€์ž„์•„์›ƒ, ์‚ฌ์šฉ์ž๋‹น 1์„ธ์…˜...)
* ๋ด‡ ๋ฐ ๋‚จ์šฉ ๋ฐฉ์ง€: Captcha๋ฅผ ํ™œ์„ฑํ™”ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

### SMTP ์„ค์ •

์ด๋ฉ”์ผ์„ ๋ณด๋‚ด๊ธฐ ์œ„ํ•ด SMTP๋ฅผ ์„ค์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

### ๊ณ ๊ธ‰ ์„ค์ •

* ์•ก์„ธ์Šค ํ† ํฐ์˜ ๋งŒ๋ฃŒ ์‹œ๊ฐ„ ์„ค์ • (๊ธฐ๋ณธ๊ฐ’ 3600)
* ์ž ์žฌ์ ์œผ๋กœ ์†์ƒ๋œ ์ƒˆ๋กœ ๊ณ ์นจ ํ† ํฐ์„ ๊ฐ์ง€ํ•˜๊ณ  ์ทจ์†Œํ•˜๋Š” ์„ค์ • ๋ฐ ํƒ€์ž„์•„์›ƒ
* MFA: ์‚ฌ์šฉ์ž๋‹น ๋™์‹œ์— ๋“ฑ๋กํ•  ์ˆ˜ ์žˆ๋Š” MFA ์š”์†Œ ์ˆ˜๋ฅผ ์ง€์ • (๊ธฐ๋ณธ๊ฐ’ 10)
* ์ตœ๋Œ€ ์ง์ ‘ ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ์—ฐ๊ฒฐ: ์ธ์ฆ์— ์‚ฌ์šฉ๋˜๋Š” ์ตœ๋Œ€ ์—ฐ๊ฒฐ ์ˆ˜ (๊ธฐ๋ณธ๊ฐ’ 10)
* ์ตœ๋Œ€ ์š”์ฒญ ์ง€์† ์‹œ๊ฐ„: ์ธ์ฆ ์š”์ฒญ์ด ์ง€์†๋  ์ˆ˜ ์žˆ๋Š” ์ตœ๋Œ€ ์‹œ๊ฐ„ (๊ธฐ๋ณธ๊ฐ’ 10์ดˆ)

## ์ €์žฅ์†Œ

<div data-gb-custom-block data-tag="hint" data-style='success'>

Supabase๋Š” **ํŒŒ์ผ์„ ์ €์žฅ**ํ•˜๊ณ  URL์„ ํ†ตํ•ด ์ ‘๊ทผํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•ฉ๋‹ˆ๋‹ค (S3 ๋ฒ„ํ‚ท์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค).

</div>

* ์—…๋กœ๋“œ ํŒŒ์ผ ํฌ๊ธฐ ์ œํ•œ ์„ค์ • (๊ธฐ๋ณธ๊ฐ’ 50MB)
* S3 ์—ฐ๊ฒฐ์€ ๋‹ค์Œ๊ณผ ๊ฐ™์€ URL๋กœ ์ œ๊ณต๋ฉ๋‹ˆ๋‹ค: `https://jnanozjdybtpqgcwhdiz.supabase.co/storage/v1/s3`
* `access key ID` (์˜ˆ: `a37d96544d82ba90057e0e06131d0a7b`)์™€ `secret access key` (์˜ˆ: `58420818223133077c2cec6712a4f909aec93b4daeedae205aa8e30d5a860628`)๋กœ ๊ตฌ์„ฑ๋œ **S3 ์•ก์„ธ์Šค ํ‚ค๋ฅผ ์š”์ฒญ**ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

## ์—ฃ์ง€ ํ•จ์ˆ˜

supabase์— **๋น„๋ฐ€์„ ์ €์žฅ**ํ•  ์ˆ˜ ์žˆ์œผ๋ฉฐ, ์ด๋Š” **์—ฃ์ง€ ํ•จ์ˆ˜์— ์˜ํ•ด ์ ‘๊ทผ ๊ฐ€๋Šฅ**ํ•ฉ๋‹ˆ๋‹ค (์›น์—์„œ ์ƒ์„ฑ ๋ฐ ์‚ญ์ œํ•  ์ˆ˜ ์žˆ์ง€๋งŒ, ๊ฐ’์— ์ง์ ‘ ์ ‘๊ทผํ•  ์ˆ˜๋Š” ์—†์Šต๋‹ˆ๋‹ค).

<div data-gb-custom-block data-tag="hint" data-style='success'>

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:<img src="../.gitbook/assets/image (1).png" alt="" data-size="line">[**HackTricks Training AWS Red Team Expert (ARTE)**](https://training.hacktricks.xyz/courses/arte)<img src="../.gitbook/assets/image (1).png" alt="" data-size="line">\
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: <img src="../.gitbook/assets/image (2).png" alt="" data-size="line">[**HackTricks Training GCP Red Team Expert (GRTE)**<img src="../.gitbook/assets/image (2).png" alt="" data-size="line">](https://training.hacktricks.xyz/courses/grte)

<details>

<summary>HackTricks ์ง€์›ํ•˜๊ธฐ</summary>

* [**๊ตฌ๋… ๊ณ„ํš**](https://github.com/sponsors/carlospolop) ํ™•์ธํ•˜๊ธฐ!
* **๐Ÿ’ฌ [**Discord ๊ทธ๋ฃน**](https://discord.gg/hRep4RUj7f) ๋˜๋Š” [**ํ…”๋ ˆ๊ทธ๋žจ ๊ทธ๋ฃน**](https://t.me/peass)์— ์ฐธ์—ฌํ•˜๊ฑฐ๋‚˜ **Twitter** ๐Ÿฆ [**@hacktricks\_live**](https://twitter.com/hacktricks\_live)**๋ฅผ ํŒ”๋กœ์šฐํ•˜์„ธ์š”.**
* **[**HackTricks**](https://github.com/carlospolop/hacktricks) ๋ฐ [**HackTricks Cloud**](https://github.com/carlospolop/hacktricks-cloud) ๊นƒํ—ˆ๋ธŒ ๋ฆฌํฌ์ง€ํ† ๋ฆฌ์— PR์„ ์ œ์ถœํ•˜์—ฌ ํ•ดํ‚น ํŒ์„ ๊ณต์œ ํ•˜์„ธ์š”.**

</details>

</div>

Last updated