
Quasar (โปรแกรมรีโมทคอมพิวเตอร์ เบา เร็ว เสถียร ฟรี) : โปรแกรม Quasar เป็นโปรแกรมประเภท Remote Administration Tool ที่ถูกออกแบบมาเพื่อใช้บริหารจัดการ และควบคุมระบบคอมพิวเตอร์ ระบบปฏิบัติการ (OS) วินโดวส์ (Windows) จากระยะไกล พัฒนาขึ้นโดยใช้ ภาษา C# บนระบบ แม้ว่าโปรแกรมนี้ทางผู้พัฒนาไม่มีการปล่อยอัปเดตแล้วตั้งแต่ปี ค.ศ. 2024 (พ.ศ. 2567) แต่ โค้ดต้นฉบับ (Source-Code) ยังคงเปิดให้เข้าถึงเพื่อประโยชน์ทางการศึกษา และการวิจัยด้านความปลอดภัยไซเบอร์
โครงสร้างการทำงานของโปรแกรม Quasar ใช้สถาปัตยกรรมแบบ ไคลเอนต์ (Client)-เซิร์ฟเวอร์ (Server) อย่างชัดเจน โดยแบ่งออกเป็นสองส่วนหลักคือ Quasar Server ที่ทำหน้าที่เป็นส่วนควบคุมหลักสำหรับผู้ดูแลระบบ และ Quasar Client ซึ่งเป็นส่วนโปรแกรมที่ถูกนำไปติดตั้งบนเครื่องปลายทางที่ต้องการควบคุม ในด้านการสื่อสาร Quasar ใช้ โปรโตคอล (Protocol) TCP Network Stream ที่รองรับทั้ง IPv4 และ IPv6 โดยเลือกใช้ Protocol Buffers ในการแปลงข้อมูลเพื่อลดขนาด และเพิ่มความเร็วในการส่งผ่านข้อมูลบนเครือข่าย พร้อมทั้งมีการเข้ารหัสช่องทางการสื่อสารด้วย Transport Layer Security (TLS) เพื่อป้องกันการดักอ่านข้อมูล รวมถึงมีระบบ Universal Plug and Play (UPnP) ช่วยตั้งค่าการเชื่อมต่อเครือข่ายให้อัตโนมัติ
คุณสมบัติภายในของโปรแกรม Quasar มีความครอบคลุมระบบปฏิบัติการในเชิงลึก ตั้งแต่การควบคุมหน้าจอเดสก์ท็อประยะไกลแบบเรียลไทม์, การส่งคำสั่งผ่าน ส่วนติดต่อผู้ใช้แบบบรรทัดคำสั่ง (CLI), การตรวจสอบ และจัดการกระบวนการทำงานในระบบ, การแก้ไขค่ารีจิสตรี, การบริหารจัดการไฟล์ และโปรแกรมที่เริ่มต้นพร้อมระบบ ไปจนถึงการสั่งการพลังงานของเครื่อง นอกเหนือจากฟังก์ชันบริหารจัดการพื้นฐานแล้ว ตัวโปรแกรมยังมีความสามารถในการดึงข้อมูลรหัสผ่านที่บันทึกอยู่ใน เว็บเบราว์เซอร์ (Web Browser) และโปรแกรมจัดการไฟล์, การดักจับการพิมพ์ผ่าน คีย์บอร์ด (Keyboard), การรันไฟล์โปรแกรมภายนอกทางไกล และการเปิดใช้งานระบบ Reverse Proxy เพื่อใช้เครื่องปลายทางเป็นทางผ่านเครือข่าย
แม้ว่าเจตนาเดิมของผู้พัฒนาคือ การสร้างเครื่องมือให้ผู้ดูแลระบบใช้ในการอำนวยความสะดวก และสนับสนุนผู้ใช้งาน แต่ด้วยความสามารถที่เข้าถึงระบบได้อย่างสมบูรณ์แบบ ซอฟต์แวร์นี้จึงมักถูกผู้ไม่หวังดีนำซอร์สโค้ดไปปรับแต่งเพื่อใช้เป็น มัลแวร์ (Malware) ในการควบคุมเครื่องเหยื่อโดยไม่ได้รับอนุญาต ส่งผลให้ระบบรักษาความปลอดภัย และ โปรแกรมแอนตี้มัลแวร์ (Antimalware) ส่วนใหญ่จัดประเภทให้ โปรแกรม Quasar เป็นภัยคุกคามความเสี่ยงสูงประเภท Remote Access Trojan (RAT) ทำให้การใช้งานในปัจจุบันจำกัดอยู่ในกลุ่มผู้ศึกษาวิจัยด้านความปลอดภัยไซเบอร์และการทดสอบเจาะระบบในสภาพแวดล้อมที่ได้รับอนุญาตเท่านั้น
โปรแกรม Quasar เป็นซอฟต์แวร์ ฟรี (Free) ที่พัฒนาแบบ โอเพ่นซอร์ส (Open-Source) ที่อยู่ภายใต้เงื่อนไขการใช้งานแบบ MIT License ซึ่งหมายความว่าผู้ใช้สามารถใช้งาน, ดัดแปลง, แจกจ่าย และเข้าถึง โค้ดต้นฉบับ (Source Code) ได้อย่างเสรี ภายใต้เงื่อนไขที่กำหนด
หากต้องการค้นหาข้อมูลเพิ่มเติม สามารถติดต่อกับทางผู้พัฒนาโปรแกรมนี้ได้ผ่านทางช่องทางเว็บไซต์ (Website) : https://github.com/quasar/Quasar (ภาษาอังกฤษ) ได้เลย
Quasar is a Remote Administration Tool designed for the remote management and control of Windows operating systems, developed using the C# programming language. Although the developer stopped releasing updates for the program in 2024, its source code remains accessible for educational purposes and cybersecurity research. The program operates on a clear Client-Server architecture, divided into two main components: the Quasar Server, which serves as the primary control interface for system administrators, and the Quasar Client, which is installed on the target machine to be controlled. For communication, Quasar uses TCP Network Streams supporting both IPv4 and IPv6, leveraging Protocol Buffers for data serialization to minimize payload size and increase network transfer speeds. It also encrypts communication channels using Transport Layer Security (TLS) to prevent eavesdropping and features Universal Plug and Play (UPnP) to automatically configure network connections.
The built-in capabilities of Quasar comprehensively cover deep operating system functions, ranging from real-time remote desktop control, executing commands via a command-line interface (CLI), monitoring and managing system processes, and editing registry values, to managing files, startup programs, and system power commands. Beyond these basic administrative functions, the program can extract saved passwords from web browsers and file management software, capture keyboard inputs, execute external program files remotely, and enable a reverse proxy to route network traffic through the target machine.
Although the developer's original intention was to build a tool for system administrators to facilitate user support, its capability to gain full system access has frequently led malicious actors to modify the source code for use as malware to gain unauthorized control over victim machines. Consequently, most security systems and antimalware software classify Quasar as a high-risk Remote Access Trojan (RAT), restricting its current usage primarily to cybersecurity researchers and penetration testing within authorized environments.
คำสำคัญ