TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

The Garden of Forking Paths: Sophisticated APTs diversify toolsets

【概要】■攻撃組織 Turla / Snake / Uroburos / Venomous Bear / Krypton HoneyMyte / Mustang Panda / TEMP.Hex ■マルウェア Topinambour 【ブログ】 ◆The Garden of Forking Paths: Sophisticated APTs diversify toolsets (Kaspersky, 2019/10/16) [分岐路の庭。洗練されたAPTがツールセットを多様…

北朝鮮ハッカー集団、次の標的は「アップル社macOS」?

【ニュース】 ◆北朝鮮ハッカー集団、次の標的は「アップル社macOS」? (幻冬舎, 2019/10/15) https://gentosha-go.com/articles/-/23664 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

北朝鮮の仮想通貨ハッカー集団、macOSを標的にした新たなマルウェア作成か

…か (CoinPost, 2019/10/15) https://coinpost.jp/?p=112413 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea

中国関与の「APT10」、マレーシアやベトナムの医療関連に攻撃展開

【ニュース】 ◆中国関与の「APT10」、マレーシアやベトナムの医療関連に攻撃展開 (Security NEXT, 2019/10/11) http://www.security-next.com/108894 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT10 / MenuPass (まとめ) https://malware-log.hatenablog.com/entry/APT10

中国のサイバー犯罪組織「APT10」、今度はベトナムやマレーシアの医療関連施設を標的に

…or (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT10 / MenuPass (まとめ) https://malware-log.hatenablog.com/entry/APT10 ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆PlugX (まとめ) https://malware-log.hatenablog.com/entry/PlugX ◆業種 (まとめ) ◆業種: 医療 (まとめ) https://malwar…

PKPLUG (まとめ)

…nablog.com/entry/2019/10/08/000000_4 【図表】 出典: https://unit42.paloaltonetworks.jp/pkplug_chinese_cyber_espionage_group_attacking_asia/ 関連情報 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

PKPLUG: 東南アジアを狙い続ける中国の攻撃グループの追跡

…プの追跡 (Paloalto, 2019/10/08 20:25) https://unit42.paloaltonetworks.jp/pkplug_chinese_cyber_espionage_group_attacking_asia/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆PKPLUG (まとめ) https://malware-log.hatenablog.com/entry/PKPLUG

北朝鮮攻撃グループ「Lazarus」の新ツールを発見 - 現在も攻撃に使用

… ◆北朝鮮攻撃グループ「Lazarus」の新ツールを発見 - 現在も攻撃に使用 (Security NEXT, 2019/10/01) http://www.security-next.com/108592 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆バンキングマルウェア (まとめ) ◆Dtrack (まとめ) https://malware-log.hatenablog.com/entry/Dtrack

北朝鮮のハッカーグループ、インドのATMがターゲットのマルウェア開発

…019/09/25/000000_1 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆バンキングマルウェア (まとめ) ◆Dtrack (まとめ) https://malware-log.hatenablog.com/entry/Dtrack

2019年上半期の標的型攻撃は2687件 - 圧縮ファイル悪用が急増

【ニュース】 ◆2019年上半期の標的型攻撃は2687件 - 圧縮ファイル悪用が急増 (Security NEXT, 2019/09/27) http://www.security-next.com/108489

Researchers Discover Banking Malware ‘ATMDtrack’ Targeting Indian Banks

…/2019/09/28/000000 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆バンキングマルウェア (まとめ) ◆Dtrack (まとめ) https://malware-log.hatenablog.com/entry/Dtrack

Busy North Korean hackers have new malware to target ATMs

…:30) https://www.zaikei.co.jp/article/20190928/532871.html ⇒ https://malware-log.hatenablog.com/entry/2019/09/28/000000 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

Lilith

…com/entry/2019/11/29/000000_7 【IoC情報】 ◆Lilith (IoC (TT Malware Log)) https://ioc.hatenablog.com/entry/2019/11/29/000000_1 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Lilith (まとめ) https://malware-log.hatenablog.com/entry/Lilith

Lilith (まとめ)

…tenablog.com/entry/2019/11/29/000000_7 【IoC情報】 ◆Lilith (IoC (TT Malware Log)) https://ioc.hatenablog.com/entry/2019/11/29/000000_1 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware

DNS トンネリング (まとめ)

…000000_5 ◆標的型攻撃で使われたマルウェアを解析して C2 サーバを作った。そのマルウェアは DNSトンネリングを行う珍しいものだった。 (@shutingrz, 2017/05/25) http://shutingrz.hatenablog.com/entry/2017/05/25/225636 ⇒ https://malware-log.hatenablog.com/entry/2017/05/25/000000_5 【ブログ】 ◆DNSトンネリング: 攻撃者はD…

CrowdStrike Blog:FANCY BEAR( APT28 )、ファンシーベアとは何者か?

…られる国家主導の犯罪者グループは、知られる限り2008年から活動しており、世界中のさまざまな組織にとって脅威となっています。 https://scan.netsecurity.ne.jp/article/2019/09/18/42951.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT28 (まとめ) https://malware-log.hatenablog.com/entry/APT28

米、北朝鮮ハッカー集団を制裁指定=世界規模でサイバー攻撃

…int&utm_source=top&utm_medium=topics&utm_campaign=edit 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea

米政府、北朝鮮傘下のハッカー3団体を制裁対象に…世界中でサイバー攻撃

…) https://www.yomiuri.co.jp/world/20190914-OYT1T50000/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea

ElectricFish (まとめ)

…ntry/2019/09/09/000000_1 関連情報 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT38 (まとめ) https://malware-log.hatenablog.com/entry/APT38

9 年経過した今も脅威であり続ける China Chopper

…per (CISCO, 2019/09/10) https://gblogs.cisco.com/jp/2019/09/talos-china-chopper-still-active-9-years-later/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆China Chopper (まとめ) https://malware-log.hatenablog.com/entry/China_Chopper

北朝鮮関与「HIDDEN COBRA」のツールに新亜種 - 米政府が情報公開

… NEXT, 2019/09/10) http://www.security-next.com/108040 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus ◆ 北朝鮮 (まとめ) https://malware-log.hatenablog.com/entry/North_Korea

アンチアナリシス機能 (まとめ)

…品すらも回避、最新の標的型攻撃事情 (ASCII.jp, 2015/08/05 14:00) http://ascii.jp/elem/000/001/035/1035988/ ⇒ https://malware-log.hatenablog.com/entry/2015/08/05/000000_2 ◆利用者が気付かないサイバー攻撃が急増 (NHK, 2015/09/02) http://www3.nhk.or.jp/news/html/20150902/k10010213…

Red October / Cloud Atlas (まとめ)

…_1 ◆IoCによる標的型攻撃対策に限界 - Kasperskyが事例挙げて指摘 (Security NEXT, 2019/09/04) http://www.security-next.com/107571 ⇒ https://malware-log.hatenablog.com/entry/2019/09/04/000000_6 ◆Recent Cloud Atlas activity (Kaspersky, 2019/08/12 10:00) https://secur…

IoCによる標的型攻撃対策に限界 - Kasperskyが事例挙げて指摘

…になり、IoCによる標的型攻撃対策に限界 【概要】■事例(Cloud Atlas) 感染フロー HTMLベースのアプリ VBShower PowerShower 他 偽装手法 ポリモーフィック 毎回コードが異なる ハッシュ値による検出が不可能 【ニュース】 ◆IoCによる標的型攻撃対策に限界 - Kasperskyが事例挙げて指摘 (Security NEXT, 2019/09/04) http://www.security-next.com/107571 【関連まとめ記事】…

攻撃グループBlackTechが侵入後に使用するマルウエア

…or (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆BlackTech (まとめ) https://malware-log.hatenablog.com/entry/BlackTech ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆PLEAD / TSCookie (まとめ) http://malware-log.hatenablog.com/entry/PLEAD 【インディケータ情報】■ハッシュ情報(Sha256) - TS…

イランの核燃料施設へのサイバー攻撃は「オランダのスパイ」を潜入させて実行されたという詳細

…ne.net/news/20190903-stuxnet-cyberattack-on-iran/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Stuxnet (まとめ) https://malware-log.hatenablog.com/entry/Stuxnet ◆諜報機関 (まとめ) ◆AIVD (まとめ) https://malware-log.hatenablog.com/entry/AIVD

McAfee Labs Threat Report (まとめ)

…パイ活動を目的とした標的型攻撃 https://www.mcafee.com/enterprise/ja-jp/assets/reports/rp-quarterly-threats-dec-2018.pdf ⇒ https://malware-log.hatenablog.com/entry/2018/12/31/000000_8 ◆McAfee Labs 脅威レポート (2018年9月) (McAfee, 2018/09) ロックされたWindows 10デバイスに侵入で…

国内着弾標的型攻撃の解析情報をYARAルールで - マクニカネット

【ニュース】 ◆国内着弾標的型攻撃の解析情報をYARAルールで - マクニカネット (Security NEXT, 2019/08/29) http://www.security-next.com/107729

標的型攻撃とは何か? 被害事例や対策方法、最新の攻撃手法まで徹底解説

【ニュース】 ◆標的型攻撃とは何か? 被害事例や対策方法、最新の攻撃手法まで徹底解説 (ビジネス+IT, 2019/08/29) https://www.sbbit.jp/article/cont1/36818

Beyond Compliance:Cyber Threats and Healthcare

…ttps://japan.zdnet.com/article/35141754/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Winnti / APT41 (まとめ) https://malware-log.hatenablog.com/entry/Winnti ◆業種 (まとめ) ◆業種: 医療 (まとめ) https://malware-log.hatenablog.com/entry/Medical


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023