TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

ハッカー集団「Ghostwriter」の活動は、ある“独裁国家”が支援している? 調査結果から見えてきたこと

…きたこと (Wired, 2021/11/19 13:00) https://wired.jp/2021/11/19/ghostwriter-hackers-belarus-russia-misinformation/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Ghostwriter (まとめ) https://malware-log.hatenablog.com/entry/Ghostwriter_1

HTMLスマグリング (まとめ)

…キング・マルウェアや標的型攻撃で使用されるケースが増加] https://www.microsoft.com/security/blog/2021/11/11/html-smuggling-surges-highly-evasive-loader-technique-increasingly-used-in-banking-malware-targeted-attacks/ ⇒ https://malware-log.hatenablog.com/entry/2021/11/…

HTML smuggling surges: Highly evasive loader technique increasingly used in banking malware, targeted attacks

…キング・マルウェアや標的型攻撃で使用されるケースが増加] https://www.microsoft.com/security/blog/2021/11/11/html-smuggling-surges-highly-evasive-loader-technique-increasingly-used-in-banking-malware-targeted-attacks/ 【関連まとめ記事】◆全体まとめ ◆攻撃手法 (まとめ) ◆HTMLスマグリング (まとめ) https…

North Korean hackers target the South's think tanks through blog posts

…ループの足元にあるとされています。] https://www.zdnet.com/article/north-korean-hackers-target-the-souths-think-tanks-through-blog-posts/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Kimsuky (まとめ) https://malware-log.hatenablog.com/entry/Kimsuky

Lazarus hackers target researchers with trojanized IDA Pro

… Proで研究者を狙う] https://www.bleepingcomputer.com/news/security/lazarus-hackers-target-researchers-with-trojanized-ida-pro/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

Dharma (まとめ)

…特定ユーザーを狙った標的型攻撃が登場、Sophosの2019年版脅威レポート (@IT, 2018/12/26 18:30) http://www.atmarkit.co.jp/ait/articles/1812/26/news107.html ⇒ http://malware-log.hatenablog.com/entry/2018/12/26/000000 ■2019年 ◆「Dharmaのコードを大体カット&ペースト」したPhobosランサムウェア--被害を拡大 (ZD…

Snake malware biting hard on 50 apps for only $25

…omputer, 2021/10/29 12:20) https://www.bleepingcomputer.com/news/security/snake-malware-biting-hard-on-50-apps-for-only-25/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Turla (まとめ) https://malware-log.hatenablog.com/entry/Turla

APT-C-23 (まとめ)

…APT-C-23 https://www.bing.com/news/search?q=APT-C-23 ■Twitterhttps://twitter.com/search?q=%23APT-C-23 https://twitter.com/hashtag/APT-C-23 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

Android spyware apps target Israel in three-year-long campaign

…ーンを展開] https://www.bleepingcomputer.com/news/security/android-spyware-apps-target-israel-in-three-year-long-campaign/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT-C-23 (まとめ) https://malware-log.hatenablog.com/entry/APT-C-23

North Korean state hackers start targeting the IT supply chain

…ンを狙い始める] https://www.bleepingcomputer.com/news/security/north-korean-state-hackers-start-targeting-the-it-supply-chain/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

SolarWinds攻撃関与のロシアNobeliumによる新たな攻撃--マイクロソフトが注意喚起

…rWinds攻撃関与のロシアNobeliumによる新たな攻撃--マイクロソフトが注意喚起 (ZDNet, 2021/10/26 14:11) https://japan.zdnet.com/article/35178561/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/APT29

ロシアのハッカー集団、IT関連140社攻撃 Microsoft調査

…ー集団、IT関連140社攻撃 Microsoft調査 (日経新聞, 2021/10/26 04:34) https://www.nikkei.com/article/DGXZQOGN25CYT0V21C21A0000000/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/APT29

メモリ解析 (まとめ)

…分析」により企業への標的型攻撃を検出 (NetSecurity, 2014/05/21 09:15) http://scan.netsecurity.ne.jp/article/2014/05/21/34222.html ⇒ https://malware-log.hatenablog.com/entry/2014/05/21/000000_5 【ブログ】 ◆Windowsサーバの完全メモリダンプ取得 (一人前のSEになるための勉強日記, 2015/09/06) http:/…

Ransomware attackers down shift to 'Mid-Game' hunting in Q3 2021

【図表】 身代金の平均支払額 ランサムウェアの攻撃戦略 アタックベクター ランサムウェア組織が使用した脆弱性 組織規模とアタックベクター トップ3が使用するアタックベクター ランサムウェアの被害者規模の分布 出典: https://www.coveware.com/blog/2021/10/20/ransomware-attacks-continue-as-pressure-mounts 【公開情報】 ◆Ransomware attackers down shift to '…

DBatLoader: Abusing Discord to Deliver Warzone RAT

…oader: Discord を悪用して Warzone RAT を配信する] https://www.netskope.com/blog/dbatloader-abusing-discord-to-deliver-warzone-rat 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆Warzone (まとめ) https://malware-log.hatenablog.com/entry/Warzone

Countering threats from Iran

…azine.net/news/20211015-google-countering-threats-from-iran/ ⇒ https://malware-log.hatenablog.com/entry/2021/10/15/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT35 (まとめ) https://malware-log.hatenablog.com/entry/APT35

Googleがイラン政府系ハッカー組織について公式警告を発表

…//blog.google/threat-analysis-group/countering-threats-iran/ ⇒ https://malware-log.hatenablog.com/entry/2021/10/15/000000_4 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT35 (まとめ) https://malware-log.hatenablog.com/entry/APT35

標的型攻撃グループBlackTechが使用するマルウェアFlagproについて

【ブログ】 ◆標的型攻撃グループBlackTechが使用するマルウェアFlagproについて (NTT Secure, 2021/10/08) https://insight-jp.nttsecurity.com/post/102h7vx/blacktechflagpro

ChamelGang (まとめ)

…e/new-apt-group-chamelgang/ ⇒ https://malware-log.hatenablog.com/entry/2021/09/30/000000_10 【検索】google: ChamelGang google:news: ChamelGang 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

2021年9月のインシデント (まとめ)

…】 インシデント 【標的型攻撃 / APT】 【サイバー攻撃 / 不正アクセス】 【ランサムウェア】 【DoS攻撃】 【サイバー戦争】 【情報漏えい】 その他 【TOKYO2020】 【障害】 【資料】 【図表】 関連情報 まとめ記事 【大規模インシデント】 ◆インシデント: JVCケンウッド (まとめ) https://malware-log.hatenablog.com/entry/JVCKenwood ◆インシデント: オリエンタルコンサルタンツ (まとめ) https…

ChamelGang Hackers Target Energy, Aviation, and Government Sectors

…がエネルギー、航空、政府機関を標的に] https://www.securityweek.com/chamelgang-hackers-target-energy-aviation-and-government-sectors 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆ChamelGang (まとめ) https://malware-log.hatenablog.com/entry/ChamelGang

New APT ChamelGang Targets Russian Energy, Aviation Orgs

…Orgs (Threatpost, 2021/10/01 08:36) https://threatpost.com/apt-chamelgang-targets-russian-energy-aviation/175272/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆ChamelGang (まとめ) https://malware-log.hatenablog.com/entry/ChamelGang

Masters of Mimicry: new APT group ChamelGang and its arsenal

…gies, 2021/09/30) https://www.ptsecurity.com/ww-en/analytics/pt-esc-threat-intelligence/new-apt-group-chamelgang/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆ChamelGang (まとめ) https://malware-log.hatenablog.com/entry/ChamelGang

APT29 targets Active Directory Federation Services with stealthy backdoor

…www.csoonline.com/article/3635095/apt29-targets-active-directory-federation-services-with-stealthy-backdoor.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/APT29

FinSpy / FinFisher (まとめ)

…wsを狙った限定的な標的型攻撃が発生しているといい、最優先でアップデートを適用するよう促している http://www.itmedia.co.jp/enterprise/articles/1710/18/news138.html ⇒ https://malware-log.hatenablog.com/entry/2017/10/18/000000_4 ■2019年◇2019年7月 ◆広がる「民間製」スパイウェア、ミャンマーでも見つかる (ASCII.jp, 2019/07/…

サイバー攻撃「Ghostwriter」の背後にロシア政府がいると欧州連合が認定し強く非難

…シア政府がいると欧州連合が認定し強く非難 (Gigazine, 2021/09/27 17:07) https://gigazine.net/news/20210927-eu-denounce-ghostwriter/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Ghostwriter (まとめ) https://malware-log.hatenablog.com/entry/Ghostwriter_1

世界中のホテルを狙ったサイバー攻撃を確認、ESET

…mynavi.jp/article/20210925-1980914/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆FamousSparrow (まとめ) https://malware-log.hatenablog.com/entry/FamousSparrow ◆業種 (まとめ) ◆業種: ホテル (まとめ) https://malware-log.hatenablog.com/entry/Hotel

Researchers finger new APT group, FamousSparrow, for hotel attacks

…界や政府機関を襲った攻撃にはスパイ活動の動機があると言われています] https://www.theregister.com/2021/09/23/researchers_finger_new_apt_group/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆FamousSparrow (まとめ) https://malware-log.hatenablog.com/entry/FamousSparrow

Hacking group used ProxyLogon exploits to breach hotels worldwide

…or (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆FamousSparrow (まとめ) https://malware-log.hatenablog.com/entry/FamousSparrow ◆業種 (まとめ) ◆業種: ホテル (まとめ) https://malware-log.hatenablog.com/entry/Hotel ◆脅威情報 (まとめ) ◆Exploit Code / PoC (まとめ) https://malware-log.hate…

Russian state hackers use new TinyTurla malware as secondary backdoor

…して使用] https://www.bleepingcomputer.com/news/security/russian-state-hackers-use-new-tinyturla-malware-as-secondary-backdoor/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Turla (まとめ) https://malware-log.hatenablog.com/entry/Turla


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023