<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>eveses · Security Field Notes</title><description>Cloud roots. Offensive mindset.</description><link>https://eveses.pages.dev/</link><language>ko</language><item><title>Azure 보안 기본 구조: Entra ID부터 네트워크·데이터 보호까지</title><link>https://eveses.pages.dev/notes/azure-az-500/azure-104/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/azure-az-500/azure-104/</guid><description>Azure의 리소스 계층, Entra ID와 RBAC, 네트워크·컴퓨팅·스토리지·데이터베이스 보안을 AZ-500 관점에서 연결해 정리합니다.</description><pubDate>Sat, 18 Apr 2026 00:00:00 GMT</pubDate></item><item><title>AWS Certified Security – Specialty 취득 및 SCS-C03 핵심 정리</title><link>https://eveses.pages.dev/notes/aws-scs/scs-certification/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-scs/scs-certification/</guid><description>AWS Security Specialty 취득 기록과 함께 SCS-C03의 도메인별 출제 비중, 서비스 연결 관계, 실전 판단 기준을 정리합니다.</description><pubDate>Fri, 17 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Amazon S3: 보안, 스토리지 클래스, 복제와 성능</title><link>https://eveses.pages.dev/notes/aws-saa/s3/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-saa/s3/</guid><description>S3의 객체 구조, 버전 관리, 복제, 스토리지 클래스, 접근 제어와 암호화를 안전한 설계 기준으로 정리합니다.</description><pubDate>Mon, 22 Dec 2025 00:00:00 GMT</pubDate></item><item><title>Elastic Load Balancing과 Route 53 설계 비교</title><link>https://eveses.pages.dev/notes/aws-saa/loadbalancer-route53/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-saa/loadbalancer-route53/</guid><description>ALB·NLB·Gateway Load Balancer의 역할과 Route 53 레코드·라우팅 정책을 요구사항별 선택 기준으로 비교합니다.</description><pubDate>Sat, 13 Dec 2025 00:00:00 GMT</pubDate></item><item><title>RDS와 Aurora: 고가용성, 확장, 백업 설계</title><link>https://eveses.pages.dev/notes/aws-saa/rds/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-saa/rds/</guid><description>RDS Multi-AZ와 읽기 전용 복제본의 차이, Aurora 구조, 백업·암호화·프록시까지 관계형 데이터베이스 설계 포인트를 정리합니다.</description><pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate></item><item><title>EC2 이미지·네트워크·스토리지: AMI, ENI, EBS, EFS</title><link>https://eveses.pages.dev/notes/aws-saa/eni-ami/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-saa/eni-ami/</guid><description>AMI와 ENI의 범위부터 EBS 볼륨·스냅샷, Instance Store, EFS까지 EC2 주변 자원의 차이와 선택 기준을 비교합니다.</description><pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate></item><item><title>EC2 핵심 정리: 인스턴스, 구매 옵션, 배치와 접속</title><link>https://eveses.pages.dev/notes/aws-saa/ec2-basic/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/aws-saa/ec2-basic/</guid><description>EC2 인스턴스 유형부터 보안 그룹, 접속 방식, 구매 옵션, 배치 그룹과 최대 절전까지 설계 기준 중심으로 정리합니다.</description><pubDate>Sat, 29 Nov 2025 00:00:00 GMT</pubDate></item><item><title>[HackTheBox] walkthrough: Active (Active Directory)</title><link>https://eveses.pages.dev/notes/hackthebox/active/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/hackthebox/active/</guid><description>SMB null session에서 GPP 자격 증명을 발견하고 Kerberoasting을 통해 관리자 권한으로 확장합니다.</description><pubDate>Sat, 15 Nov 2025 00:00:00 GMT</pubDate></item><item><title>[HackTheBox] walkthrough: Sauna (Active Directory)</title><link>https://eveses.pages.dev/notes/hackthebox/sauna/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/hackthebox/sauna/</guid><description>사용자 열거와 AS-REP Roasting으로 진입하고 내부 자격 증명 수집과 권한 관계 분석을 거쳐 권한을 상승합니다.</description><pubDate>Sat, 11 Oct 2025 00:00:00 GMT</pubDate></item><item><title>How to abuse GenericAll / WriteDacl permission on Active Directory</title><link>https://eveses.pages.dev/notes/cheatsheet/daclabuse/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/cheatsheet/daclabuse/</guid><description>GenericAll과 WriteDACL 권한을 그룹 제어 및 DCSync까지 연결하는 Active Directory 공격 흐름입니다.</description><pubDate>Fri, 03 Oct 2025 00:00:00 GMT</pubDate></item><item><title>[HackTheBox] walkthrough: Forest (Active Directory)</title><link>https://eveses.pages.dev/notes/hackthebox/forest/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/hackthebox/forest/</guid><description>AS-REP Roasting으로 진입한 뒤 BloodHound로 권한 관계를 분석하고 DACL abuse와 DCSync로 확장합니다.</description><pubDate>Fri, 03 Oct 2025 00:00:00 GMT</pubDate></item><item><title>[TryHackMe] walkthrough: Soupedecode 01 (Active Directory)</title><link>https://eveses.pages.dev/notes/tryhackme/soupedecode-01/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/tryhackme/soupedecode-01/</guid><description>Kerberos·SMB 열거, password spraying과 Pass-the-Hash를 연결해 도메인 컨트롤러를 공략합니다.</description><pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate></item><item><title>[TryHackMe] walkthrough: Ice (Windows, Metasploit)</title><link>https://eveses.pages.dev/notes/tryhackme/ice/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/tryhackme/ice/</guid><description>취약한 Icecast 서비스와 Metasploit의 post-exploitation 기능을 활용하는 Windows 실습입니다.</description><pubDate>Fri, 19 Sep 2025 00:00:00 GMT</pubDate></item><item><title>[TryHackMe] walkthrough: Pickle Rick (Linux)</title><link>https://eveses.pages.dev/notes/tryhackme/picklerick/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/tryhackme/picklerick/</guid><description>웹 페이지 단서로 인증 정보를 찾고 명령 실행과 reverse shell을 거쳐 root 권한을 확보합니다.</description><pubDate>Sun, 23 Feb 2025 00:00:00 GMT</pubDate></item><item><title>Network services password attack (ssh, ftp, smb ..)</title><link>https://eveses.pages.dev/notes/cheatsheet/network-services/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/cheatsheet/network-services/</guid><description>SSH, FTP, SMB, RDP, WinRM 등 네트워크 서비스별 비밀번호 공격과 인증 명령을 정리합니다.</description><pubDate>Sat, 22 Feb 2025 00:00:00 GMT</pubDate></item><item><title>Password cracking (johntheripper, hashcat ..)</title><link>https://eveses.pages.dev/notes/cheatsheet/password-cracking/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/cheatsheet/password-cracking/</guid><description>Hashcat, John the Ripper, CeWL의 자주 쓰는 모드와 명령을 빠르게 찾을 수 있는 참고 노트입니다.</description><pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate></item><item><title>[TryHackMe] walkthrough: Mr Robot (Linux)</title><link>https://eveses.pages.dev/notes/tryhackme/mrrobot/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/tryhackme/mrrobot/</guid><description>WordPress 사용자·비밀번호 공격으로 reverse shell을 확보하고 SUID 바이너리를 이용해 root로 상승합니다.</description><pubDate>Fri, 14 Feb 2025 00:00:00 GMT</pubDate></item><item><title>[TryHackMe] walkthrough: Basic Pentesting (Linux)</title><link>https://eveses.pages.dev/notes/tryhackme/basicpentesting/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/tryhackme/basicpentesting/</guid><description>서비스 열거, SMB 사용자 식별, SSH brute force와 로컬 권한 상승을 순서대로 다룹니다.</description><pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate></item><item><title>[HackTheBox] walkthrough: Cap (Linux)</title><link>https://eveses.pages.dev/notes/hackthebox/cap/</link><guid isPermaLink="true">https://eveses.pages.dev/notes/hackthebox/cap/</guid><description>PCAP에서 노출된 자격 증명을 찾고 Linux capabilities를 이용해 root 권한을 획득합니다.</description><pubDate>Thu, 30 Jan 2025 00:00:00 GMT</pubDate></item></channel></rss>