TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

Winnti Umbrella Chinese threat group.

… threat group. (CyberWire, 2018/06/09) https://thecyberwire.com/podcasts/cw-podcasts-rs-2018-06-09.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Winnti Umbrella (まとめ) https://malware-log.hatenablog.com/entry/Winnti_Umbrella

Patchwork APT Group Targets US Think Tanks

…7) [パッチワークAPTグループ、米シンクタンクを標的に] https://www.volexity.com/blog/2018/06/07/patchwork-apt-group-targets-us-think-tanks/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Patchwork (まとめ) https://malware-log.hatenablog.com/entry/Patchwork

On reported APT trends

…/06/05) https://threatintel.eu/2018/06/05/on-reported-apt-trends/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT0 (まとめ) https://malware-log.hatenablog.com/entry/APT0 ◆APT36 (まとめ) https://malware-log.hatenablog.com/entry/APT36

APT0 (まとめ)

…ntel, 2018/06/05) https://threatintel.eu/2018/06/05/on-reported-apt-trends/ ⇒ https://malware-log.hatenablog.com/entry/2018/06/05/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

覆された常識、CSVファイルでウイルス感染

【概要】 "="を使用 【ニュース】 ◆覆された常識、CSVファイルでウイルス感染 (日経XTECH, 2018/05/30 05:00) http://tech.nikkeibp.co.jp/atcl/nxt/column/18/00001/00535/ 【関連情報】 ◆「CSVファイルは安全」という先入観につけ込む標的型攻撃 (Security NEXT, 2018/05/02) http://www.security-next.com/092914

企業3割、標的型攻撃メールを受信 - 17%がマルウェア感染

出典: http://www.security-next.com/093784 【ニュース】 ◆企業3割、標的型攻撃メールを受信 - 17%がマルウェア感染 (Security NEXT, 2018/05/29) http://www.security-next.com/093784

攻撃グループBlackTechが使うマルウエアPLEADダウンローダ

…html 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆PLEAD / TSCookie (まとめ) http://malware-log.hatenablog.com/entry/PLEAD ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆BlackTech (まとめ) https://malware-log.hatenablog.com/entry/BlackTech

The destruction of APT3

… of APT3 (Intrusiontruth, 2018/05/22) https://intrusiontruth.wordpress.com/2018/05/22/the-destruction-of-apt3/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT3 / Gothic Panda (まとめ) https://malware-log.hatenablog.com/entry/APT3

APT攻撃者グループ menuPass(APT10) による新たな攻撃を確認

…re (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆PowerShell Empire (まとめ) https://malware-log.hatenablog.com/entry/PowerShell_Empire ◆ANEL (まとめ) http://malware-log.hatenablog.com/entry/ANEL ◆RedLeaves (まとめ) http://malware-log.hatenablog.com/entry/RedLeaves ◆Quas…

年金情報流出、捜査終結=時効成立、容疑者不詳で送検-警視庁

…ュース】 ◆年金情報流出、捜査終結=時効成立、容疑者不詳で送検-警視庁 (時事通信, 2018/05/21 13:32) https://www.jiji.com/jc/article?k=2018052100102&g=soc 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆インシデント: 日本年金機構 (まとめ) https://malware-log.hatenablog.com/entry/Nenkin_Kikou

Emissary Panda – A potential new malicious tool Introduction

…8) https://www.nccgroup.trust/uk/about-us/newsroom-and-events/blogs/2018/may/emissary-panda-a-potential-new-malicious-tool/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT27 (まとめ) https://malware-log.hatenablog.com/entry/APT27

Report: Chinese Actors Steal Code-Signing Certificates

…18/05/07) https://www.bankinfosecurity.com/report-chinese-actors-seek-code-signing-certificates-a-10980 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Winnti Umbrella (まとめ) https://malware-log.hatenablog.com/entry/Winnti_Umbrella

Chinese government reportedly linked to decade-long series of hacks

… https://www.techspot.com/news/74487-chinese-government-reportedly-linked-decade-long-series-hacks.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Winnti Umbrella (まとめ) https://malware-log.hatenablog.com/entry/Winnti_Umbrella

Burning Umbrella: An Intelligence Report on the Winnti Umbrella and Associated State-Sponsored Attackers

…or (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Winnti Umbrella (まとめ) https://malware-log.hatenablog.com/entry/Winnti_Umbrella 【インディケータ情報】■ハッシュ情報(Sha1) 512509787e4da7aaf71b89d25698a9e9d43501fd bd3abf19f065d102503e9186c152e529d3e33143 df7826303b98004afd1102f…

「CSVファイルは安全」という先入観につけ込む標的型攻撃

【ニュース】 ◆「CSVファイルは安全」という先入観につけ込む標的型攻撃 (Security NEXT, 2018/05/02) http://www.security-next.com/092914 【関連情報】 ◆覆された常識、CSVファイルでウイルス感染 (日経XTECH, 2018/05/30 05:00) http://tech.nikkeibp.co.jp/atcl/nxt/column/18/00001/00535/

Orangeworm Hackers Infect X-Ray and MRI Machines In Their Quest for Patient Data

….bleepingcomputer.com/news/security/orangeworm-hackers-infect-x-ray-and-mri-machines-in-their-quest-for-patient-data/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Kwampirs (まとめ) https://malware-log.hatenablog.com/entry/Kwampirs

米国、ヨーロッパ、アジアの医療業界を狙う新しい攻撃グループ「Orangeworm」を確認

…その関連業界を狙った標的型攻撃でバックドア Kwampirs を拡散していることを、シマンテックは確認しました。 https://www.symantec.com/connect/ja/blogs/orangeworm ◆New Orangeworm attack group targets the healthcare sector in the U.S., Europe, and Asia (Symantec, 2018/04/23) https://www.symant…

エンドポイント多層防御が、3度に渡って、「ChessMaster」の攻撃キャンペーンを検知・防御

…ter-attack-campaign-for-3times.htm 【関連まとめ記事】 ◆APT10 / MenuPass (まとめ) http://malware-log.hatenablog.com/entry/APT10 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ANEL / Uppercut (まとめ) https://malware-log.hatenablog.com/entry/ANEL

Energetic Bear / Crouching Yeti: attacks on servers

…https://ics-cert.kaspersky.com/reports/2018/04/23/energetic-bear-crouching-yeti-attacks-on-servers/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Dragonfly / Energetic Bear (まとめ) https://malware-log.hatenablog.com/entry/Sandworm

Orangeworm (まとめ)

…その関連業界を狙った標的型攻撃でバックドア Kwampirs を拡散していることを、シマンテックは確認しました。 https://www.symantec.com/connect/ja/blogs/orangeworm ◆New Orangeworm attack group targets the healthcare sector in the U.S., Europe, and Asia (Symantec, 2018/04/23) https://www.symant…

PC最適化ツール「CCleaner」を踏み台にした標的型攻撃のマルウェア混入ルートが判明

【ニュース】 ◆PC最適化ツール「CCleaner」を踏み台にした標的型攻撃のマルウェア混入ルートが判明 (Gigazine, 2018/04/19 16:06) https://gigazine.net/news/20180419-ccleaner-attack-timeline/

CCleaner (まとめ)

…」のマルウェア混入は標的型攻撃か--ソニーなどが対象リストに (ZDNet, 2017/09/21 15:02) https://japan.zdnet.com/article/35107587/ ◆人気のPC最適化ソフト「CCleaner」にマルウエア混入、正規のデジタル署名で配布 (ITPro, 2017/09/21) http://itpro.nikkeibp.co.jp/atcl/news/17/092102292/?rt=nocnt ◆CCleanerマルウェア汚染…

インシデント: NetSarang (まとめ)

…◇2018年4月 ◆標的型攻撃に使われたCCleaner、マルウェアの混入経緯が判明--Avast (ZDNet, 2018/04/18 17:21) https://japan.zdnet.com/article/35117973/ ⇒ https://malware-log.hatenablog.com/entry/2018/04/18/000000_5 【ブログ】 ■2017年◇2017年8月□2017年8月15日(火) ◆ShadowPad in corporate …

標的型攻撃に使われたCCleaner、マルウェアの混入経緯が判明--Avast

…1 【ニュース】 ◆標的型攻撃に使われたCCleaner、マルウェアの混入経緯が判明--Avast (ZDNet, 2018/04/18 17:21) https://japan.zdnet.com/article/35117973/ 【関連情報】 ◆韓NetSarang製サーバ管理ツールのアップデートにバックドア - 「PlugX」との類似点も (Security NEXT, 2017/08/18) http://www.security-next.com/084904 【…

Decoding network data from a Gh0st RAT variant

…or (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT27 (まとめ) https://malware-log.hatenablog.com/entry/APT27 【インディケータ情報】■ハッシュ情報(Sha256) SHA-256 Filename EE04B324F7E25B59D3412232A79D1878632D6817C3BB49500B214BF19AFA4E2C Mozilla.exe 0BA49FEB7784E6D33D821B36C5C66…

シマンテック、標的型攻撃調査にAIインテリジェンスを提供する新機能

出典: https://japan.zdnet.com/article/35117907/ 【ニュース】 ◆シマンテック、標的型攻撃調査にAIインテリジェンスを提供する新機能 (ZDnet, 2018/04/17 16:40) https://japan.zdnet.com/article/35117907/

Meet CrowdStrike’s Adversary of the Month for April: STARDUST CHOLLIMA

…dStrike, 2018/04/06) https://www.crowdstrike.com/blog/meet-crowdstrikes-adversary-of-the-month-for-april-stardust-chollima/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT38 (まとめ) https://malware-log.hatenablog.com/entry/APT38

平昌オリンピックを襲った「Olympic Destroyer」、真の目的は?

…yeongchang_Olympic ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Olympic Destroyer (まとめ) https://malware-log.hatenablog.com/entry/OlympicDestroyer ◆詐欺 (まとめ) ◆フェイクニュース / 偽情報 / デマ / 噂 / 偽旗作戦 (まとめ) https://malware-log.hatenablog.com/entry/Fakenews

日韓両国で展開されるターゲット型攻撃の実態

…3&curPage=3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Tick / Bronze Butler (まとめ) http://malware-log.hatenablog.com/entry/Tick ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆XXMM (まとめ) https://malware-log.hatenablog.com/entry/XXMM

Bisodown (まとめ)

…Ahnlab, 2018/04/04) https://mjp.ahnlab.com/site/securitycenter/securitycenterboard/securityInsightView.do?seq=2463&curPage=3 関連情報 【関連まとめ記事】 ◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023