TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

ElectroRAT malware stealing digital currencies through fake apps

…デジタル通貨を盗むマルウェア「ElectroRAT] https://coingeek.com/electrorat-malware-stealing-digital-currencies-through-fake-apps/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ElectroRAT (まとめ) https://malware-log.hatenablog.com/entry/ElectroRAT

「Sunburst」/ SolarWindsハッキングに関して現段階で明らかになっている事実

…re (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst 【インディケータ情報】■ハッシュ情報(Sha256) -- d130bd75645c2433f88ac03e73395fba172ef676 76640508b1e7759e548771a5359eaed353bf1eec 2f1a5a7411d015d01aaee4…

A Global Perspective of the SideWinder APT

…(AT&T Alien Labs, 2021/01/13) https://cdn-cybersecurity.att.com/docs/global-perspective-of-the-sidewinder-apt.pdf 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆SideWinder (まとめ) https://malware-log.hatenablog.com/entry/SideWinder

SolarWindsのビルド中にSunburstを混入させた手口の詳細が明らかに

…es/2101/13/news167.html 【関連まとめ記事】◆全体まとめ ◆アプリ (まとめ) ◆SolarWinds (まとめ) https://malware-log.hatenablog.com/entry/SolarWinds ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst

SolarWinds製品のハッキングは2019年9月から--調査で判明

…◆SolarWinds製品のハッキングは2019年9月から--調査で判明 (ZDNet, 2021/01/12 13:23) https://japan.zdnet.com/article/35164919/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst

ElectroRAT (まとめ)

…21/01/05) https://www.intezer.com/blog/research/operation-electrorat-attacker-creates-fake-companies-to-drain-your-crypto-wallets/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware

仮想通貨ユーザーを狙ったマルウェア、1年間にわたって数千人が被害か

…年間にわたって数千人が被害か (Investing.com, 2021/01/09 16:40) https://jp.investing.com/news/cryptocurrency-news/article-391260 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ElectroRAT (まとめ) https://malware-log.hatenablog.com/entry/ElectroRAT

Supernovaマルウェアを検出: SolarWindsの続き

…plunk, 2021/01/08) https://www.splunk.com/ja_jp/blog/security/detecting-supernova-malware-solarwinds-continued.html 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆SuperNova (まとめ) https://malware-log.hatenablog.com/entry/SuperNova

約6500人が感染、1年間秘密裏に動き続けたRAT「ElectroRAT」

…続けたRAT「ElectroRAT」 (ITmedia, 2021/01/06 18:01) https://www.itmedia.co.jp/enterprise/articles/2101/06/news118.html 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ElectroRAT (まとめ) https://malware-log.hatenablog.com/entry/ElectroRAT

Hackers target cryptocurrency users with new ElectroRAT malware

… 2021/01/05 23:00) https://www.zdnet.com/article/hackers-target-cryptocurrency-users-with-new-electrorat-malware/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ElectroRAT (まとめ) https://malware-log.hatenablog.com/entry/ElectroRAT

Operation ElectroRAT: Attacker Creates Fake Companies to Drain Your Crypto Wallets

…/www.intezer.com/blog/research/operation-electrorat-attacker-creates-fake-companies-to-drain-your-crypto-wallets/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ElectroRAT (まとめ) https://malware-log.hatenablog.com/entry/ElectroRAT

China's APT hackers move to ransomware attacks

…36) [中国のAPTハッカーがランサムウェア攻撃に動く] https://www.bleepingcomputer.com/news/security/chinas-apt-hackers-move-to-ransomware-attacks/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT27 (まとめ) https://malware-log.hatenablog.com/entry/APT27

ロシア政府の支援を受けるハッキンググループによるアメリカ政府機関へのサイバー攻撃「Solorigate」は当初の予想以上の被害規模の可能性

…og.hatenablog.com/entry/SolarWinds ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/CozyDuke ◆攻撃手法 (まとめ) ◆サプライチェーン攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Supply_Chain_Attack

川崎重工に不正アクセス、一部情報流出の恐れ 「痕跡がなく、高度な手口によるもの」

…5.html 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆インシデント: 川崎重工 (まとめ) https://malware-log.hatenablog.com/entry/Incident_KawasakiJukou ◆2020年のインシデント (まとめ) ◆2020年12月のインシデント (まとめ) https://malware-log.hatenablog.com/entry/Incident_202012

川崎重工 ハッカー攻撃の被害 大量データ流出か

…49526/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆インシデント: 川崎重工 (まとめ) https://malware-log.hatenablog.com/entry/Incident_KawasakiJukou ◆2020年のインシデント (まとめ) ◆2020年12月のインシデント (まとめ) https://malware-log.hatenablog.com/entry/Incident_202012

SUPERNOVA: 斬新な .NET Webシェル

…re (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆SuperNova (まとめ) https://malware-log.hatenablog.com/entry/SuperNova 【インディケータ情報】■ハッシュ情報(Sha256) - SuperNova - c15abaf51e78ca56c0376522d699c978217bf041a3bd3c71d09193efa5717c71 (以上は UNIT42(Paloalto) の情報: 引用元は https:/…

SunBurst: the next level of stealth

…e-next-level-of-stealth 【関連まとめ記事】◆全体まとめ ◆アプリ (まとめ) ◆SolarWinds (まとめ) https://malware-log.hatenablog.com/entry/SolarWinds ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst

世界中の政府機関や企業の機密情報を傍受したハッカーグループ「UCN2452」の手口が明らかに

…ーグループ「UCN2452」の手口が明らかに (Gigazine, 2020/12/15 12:30) https://gigazine.net/news/20201215-ucn2452-solarwinds-trojan-horse/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆UNC2452 (まとめ) https://malware-log.hatenablog.com/entry/UNC2452

脅威に関する情報: SolarStormとSUNBURSTからのお客様保護について

…ntry/SolarWinds ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆UNC2452 (まとめ) https://malware-log.hatenablog.com/entry/UNC2452 ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst

APT32 (まとめ)

…要点】 ◎ベトナムの標的型攻撃組織 【目次】 概要 【別名】 【使用マルウェア】 【辞書】 【最新記事】 記事 【ニュース】 【ブログ】 【公開情報】 【資料】 【図表】 関連情報 【関連まとめ記事】 概要 【別名】 攻撃組織名 命名組織 APT32 FireEye Ocean Lotus CyberReason Cobalt Kitty APT-C-00 SeaLotus Ocean Buffalo Bismuth Microsoft 【使用マルウェア】 マルウエア名 備考…

APT29と見られる組織が米財務省などのメールを傍受。アップデートを改ざんして侵入か

…edia.co.jp/news/articles/2012/14/news051.htmlひ ⇒ https://malware-log.hatenablog.com/entry/2020/12/14/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/CozyDuke

Facebook、有名ハッキング集団APT32とベトナム企業の関与を指摘

【ニュース】 ◆Facebook、有名ハッキング集団APT32とベトナム企業の関与を指摘 (ZDNet, 2020/12/14 12:48) https://japan.zdnet.com/article/35163787/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT32 (まとめ) https://malware-log.hatenablog.com/entry/APT32

Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor

…-sunburst-backdoor.html 【関連まとめ記事】◆全体まとめ ◆アプリ (まとめ) ◆SolarWinds (まとめ) https://malware-log.hatenablog.com/entry/SolarWinds ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Sunburst / Solorigate (まとめ) https://malware-log.hatenablog.com/entry/Sunburst

Quasar RAT (まとめ)

…uasar」を使った標的型攻撃 日本も対象に (ITmedia, 2020/12/11 12:22) https://www.itmedia.co.jp/enterprise/articles/2012/11/news071.html ⇒ https://malware-log.hatenablog.com/entry/2020/12/11/000000 【ブログ】 ◆DowneksおよびQuasar RATを使用した、政府機関に対する最近の標的型攻撃 (UNIT42(pal…

「Quasar」を使った標的型攻撃 日本も対象に

…uasar」を使った標的型攻撃 日本も対象に (ITmedia, 2020/12/11 12:22) https://www.itmedia.co.jp/enterprise/articles/2012/11/news071.html 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Quasar RAT (まとめ) https://malware-log.hatenablog.com/entry/Quasar…

SigLoader (まとめ)

…Loader」による標的型攻撃を緊急レポート (DreamNews, 2020/12/01 15:00) https://www.dreamnews.jp/press/0000227186/ ⇒ https://malware-log.hatenablog.com/entry/2020/12/01/000000_2 ◆正規署名で検知回避する「SigLoader」 - VPN経由の標的型攻撃で悪用 (Security NEXT, 2020/12/03) https://www.…

SideWinder APT Targets Nepal, Afghanistan in Wide-Ranging Spy Campaign

…paign (Threatpost, 2020/12/09 14:53) https://threatpost.com/sidewinder-apt-nepal-afghanistan-spy-campaign/162086/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆SideWinder (まとめ) https://malware-log.hatenablog.com/entry/SideWinder

先週のサイバー事件簿 - Microsoftの正規デジタル署名を悪用する「SigLoader」

…ynavi.jp/article/20201209-security/ 【関連まとめ記事】◆全体まとめ ◆資料・報告書 (まとめ) ◆先週のサイバー事件簿 (まとめ) http://malware-log.hatenablog.com/entry/Jikenbo ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆SigLoader (まとめ) https://malware-log.hatenablog.com/entry/SigLoader

Dropbox使うバックドア「Crutch」発見、EU加盟国の外務省で5年間も潜伏

…/enterprise/articles/2012/03/news119.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Turla (まとめ) https://malware-log.hatenablog.com/entry/Turla ◆サービス (まとめ) ◆サービス: Dropbox (まとめ) https://malware-log.hatenablog.com/entry/Dropbox

正規署名で検知回避する「SigLoader」 - VPN経由の標的型攻撃で悪用

…込む 【ニュース】 ◆正規署名で検知回避する「SigLoader」 - VPN経由の標的型攻撃で悪用 (Security NEXT, 2020/12/03) https://www.security-next.com/121275 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆SigLoader (まとめ) https://malware-log.hatenablog.com/entry/SigLoader


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023