<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns:foaf="http://xmlns.com/foaf/0.1/" xmlns:dct="http://purl.org/dc/terms/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dcat="http://www.w3.org/ns/dcat#" xmlns:vcard="http://www.w3.org/2006/vcard/ns#">
    <dcat:Catalog>
        <dcat:dataset>
            <dcat:Dataset>
                <dct:description xml:lang="kr">해킹진단도구 활용 사례(노출된 SMB 파일 서버를 통한 AD 환경 장악)는 실제 침해사고 사례를 기반으로 SMB 파일 서버 취약점을 악용한 Active Directory(AD) 환경 장악 공격 사례를 다루고 있습니다. 먼저, 해당 공격 사례에 대한 시나리오 구축 및 설명을 통한 해당 사례의 발생 가능성과 해킹진단도구의 필요성을 설명합니다. 이후 해킹진단도구를 통한 진단 보고서를 기반으로 탐지룰에 대한 명료한 설명을 제공하고 검출된 결과의 해석을 돕고 있으며, 탐지결과에 따른 대응방안을 제시하여 피해업체의 대응 및 조치를 제시하고 있습니다. 이 보고서는 노출된 서버를 통한 AD 환경 장악 관련 침해사고에 대한 진단도구 활용법과 대응방안을 체계적으로 제시하고 있습니다.</dct:description>
                <dct:description xml:lang="en">Hacking Diagnostic Tool Utilization Case (AD Environment Takeover via Exposed SMB File Server) is based on an actual breach incident and covers an Active Directory (AD) environment takeover attack that exploited an SMB file server vulnerability. First, it explains the likelihood of this attack and the necessity of a hacking diagnostic tool by establishing and describing the attack scenario. Then, based on the diagnostic report generated by the hacking diagnostic tool, it provides a clear explanation of the detection rules, assists in the interpretation of the detected results, and suggests response measures based on the detection results, suggesting responses and measures for the affected company. This report systematically presents diagnostic tool utilization and response measures for a breach incident involving AD environment takeover via an exposed server.</dct:description>
                <dct:title xml:lang="kr">한국인터넷진흥원_해킹진단도구 활용 사례(노출된 SMB 파일 서버를 통한 AD 환경 장악)</dct:title>
                <dct:title xml:lang="en">Korea Internet &amp; Security Agency_Hacking Diagnostic Tool Utilization Case (Controlling AD Environments Through Exposed SMB File Servers)</dct:title>
                <dct:issued rdf:datatype="http://www.w3.org/2001/XMLSchema#date">2025-12-17</dct:issued>
                <dct:modified rdf:datatype="http://www.w3.org/2001/XMLSchema#date">2025-12-17</dct:modified>
                <dct:publisher>
                    <foaf:Organization>
                        <foaf:name>한국인터넷진흥원</foaf:name>
                        
                    </foaf:Organization>
                </dct:publisher>
                <dcat:contactPoint>
                    <vcard:Organization>
                        <vcard:organization-unit>포렌식분석팀</vcard:organization-unit>
                        <vcard:hasTelephone rdf:resource="02-405-4849"/>
                    </vcard:Organization>
                </dcat:contactPoint>
                <dct:conformsTo ></dct:conformsTo>
                <dcat:theme>과학기술 - 과학기술진흥</dcat:theme>
                <dcat:keyword xml:lang="kr">침해사고,해킹진단도구,서버보안,계정탈취,AD환경보안관리</dcat:keyword>
                <dcat:keyword xml:lang="en">infringement incident,Hacking Diagnostic Tool,Server Security,Account hijacking,AD Environment Security Management</dcat:keyword>
                <dct:rights>이용허락범위 제한 없음</dct:rights>
                <dct:accrualPeriodicity>수시</dct:accrualPeriodicity>
                
                <dcat:landingPage rdf:resource="https://www.data.go.kr/data/15156665/fileData.do"/>
                
                <dct:spatial></dct:spatial>
                <dct:temporal></dct:temporal>
            </dcat:Dataset>
        </dcat:dataset>

        <dcat:service>
            <dcat:DataService>
                <dcat:contactPoint>
                    <vcard:Organization>
                        <vcard:organization-unit>포렌식분석팀</vcard:organization-unit>
                        <vcard:hasTelephone/>
                    </vcard:Organization>
                </dcat:contactPoint>
                <dct:description>해킹진단도구 활용 사례(노출된 SMB 파일 서버를 통한 AD 환경 장악)는 실제 침해사고 사례를 기반으로 SMB 파일 서버 취약점을 악용한 Active Directory(AD) 환경 장악 공격 사례를 다루고 있습니다. 먼저, 해당 공격 사례에 대한 시나리오 구축 및 설명을 통한 해당 사례의 발생 가능성과 해킹진단도구의 필요성을 설명합니다. 이후 해킹진단도구를 통한 진단 보고서를 기반으로 탐지룰에 대한 명료한 설명을 제공하고 검출된 결과의 해석을 돕고 있으며, 탐지결과에 따른 대응방안을 제시하여 피해업체의 대응 및 조치를 제시하고 있습니다. 이 보고서는 노출된 서버를 통한 AD 환경 장악 관련 침해사고에 대한 진단도구 활용법과 대응방안을 체계적으로 제시하고 있습니다.</dct:description>
                <dct:title>한국인터넷진흥원_해킹진단도구 활용 사례(노출된 SMB 파일 서버를 통한 AD 환경 장악)</dct:title>
                <dct:issued rdf:datatype="http://www.w3.org/2001/XMLSchema#date">2025-12-17</dct:issued>
                <dct:modified rdf:datatype="http://www.w3.org/2001/XMLSchema#date">2025-12-17</dct:modified>
                <dct:publisher>
                    <foaf:Organization>
                        <foaf:name>한국인터넷진흥원</foaf:name>
                    </foaf:Organization>
                </dct:publisher>
                <dcat:format></dcat:format>
                <dcat:theme>과학기술 - 과학기술진흥</dcat:theme>
                <dcat:keyword>침해사고,해킹진단도구,서버보안,계정탈취,AD환경보안관리</dcat:keyword>
                <dcat:keyword>infringement incident,Hacking Diagnostic Tool,Server Security,Account hijacking,AD Environment Security Management</dcat:keyword>
                <dct:rights >이용허락범위 제한 없음</dct:rights>
                <dcat:landingPage rdf:resource="https://www.data.go.kr/data/15156665/openapi.do"/>
                <dcat:endpointURL/>
                <dcat:accessURL/>
                <dct:spatial></dct:spatial>
                <dct:temporal></dct:temporal>
            </dcat:DataService>
        </dcat:service>
    </dcat:Catalog>
</rdf:RDF>