TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

Storm-0324 (まとめ)

…//twitter.com/hashtag/Storm-0324 https://twitter.com/hashtag/DEV-0324 https://twitter.com/hashtag/TA543 https://twitter.com/hashtag/Sagrid 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

Red Menshen (まとめ)

…Dev%2018https://twitter.com/hashtag/Red%20Menshen https://twitter.com/hashtag/DecisiveArchitect https://twitter.com/hashtag/Red%20Dev%2018 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

Microsoft Teams チャットを通じてフィッシングルアーを配信するStorm―0324

…1%A6%E3%83%95%E3%82%A3%E3%83%83%E3%82%B7%E3%83%B3%E3%82%B0%E3%83%AB%E3%82%A2%E3%83%BC%E3%82%92%E9%85%8D%E4%BF%A1/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Storm-0324 (まとめ) https://malware-log.hatenablog.com/entry/Storm-0324

BPFフィルタを不正利用するバックドア型マルウェア「BPFDoor」の亜種を発見

…め記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆バックドア / Backdoor / RAT (まとめ) ◆BPFDoor (まとめ) https://malware-log.hatenablog.com/entry/BPFDoor ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Red Menshen (まとめ) https://malware-log.hatenablog.com/entry/Red_Menshen

TAG-74 (まとめ)

…earch?q=TAG-74 https://www.bing.com/news/search?q=TAG-74 ■Twitterhttps://twitter.com/search?q=%23TAG-74 https://twitter.com/hashtag/TAG-74 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

ShroudedSnooper (まとめ)

…/news/search?q=ShroudedSnooper ■Twitterhttps://twitter.com/search?q=%23ShroudedSnooper https://twitter.com/hashtag/ShroudedSnooper 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware

SprySOCKS

…る。 【ニュース】 ◆SprySOCKS (ほぼこもセキュリティニュース, 2023/09/19) https://constella-sec.jp/blog/hobokomo-securitynews/tips-614/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Earth Lusca (まとめ) https://malware-log.hatenablog.com/entry/Earth_Lusca

New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel Implants

…のShroudedSnooper、斬新なインプラントで中東の通信会社を狙う] https://blog.talosintelligence.com/introducing-shrouded-snooper/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ShroudedSnooper (まとめ) https://malware-log.hatenablog.com/entry/ShroudedSnooper

Multi-year Chinese APT Campaign Targets South Korean Academic, Government, and Political Entities

…dfuture.com/multi-year-chinese-apt-campaign-targets-south-korean-academic-government-political-entities 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆ShroudedSnooper (まとめ) https://malware-log.hatenablog.com/entry/ShroudedSnooper

攻撃組織: APT33 (まとめ)

【要点】 ◎イランの標的型攻撃組織 【目次】 概要 【ATT&CK ID】 【辞書】 【別名】 【最新情報】 記事 【ニュース】 【ブログ】 【図表】 関連情報 【関連まとめ記事】 概要 【ATT&CK ID】 ID(ATT&CK) 備考 G0064 APT33 【辞書】 ◆APT33 (APTMap) https://aptmap.netlify.com/#APT33 ◆Elfin Team (Wikipedia) https://en.wikipedia.org/wiki…

VPN (まとめ)

…rks製VPN機器、標的型攻撃の対象に - 侵害状況の確認を (Security NEXT, 2023/09/14) https://www.security-next.com/149480 ⇒ https://malware-log.hatenablog.com/entry/2023/09/14/000000 ■2024年 ◆Ivanti製VPNに対する脆弱性攻撃の被害が拡大 - 少なくとも1700件の侵害 (Security NEXT, 2024/01/17) https…

Iranian hackers breach defense orgs in password spray attacks

…tacks/ 【関連まとめ記事】◆全体まとめ ◆攻撃手法 (まとめ) ◆パスワードスプレー攻撃 / Password Spray Attack (まとめ) http://malware-log.hatenablog.com/entry/Password_Spray_Attack ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT33 (まとめ) https://malware-log.hatenablog.com/entry/APT33

Array Networks製VPN機器、標的型攻撃の対象に - 侵害状況の確認を

【ニュース】 ◆Array Networks製VPN機器、標的型攻撃の対象に - 侵害状況の確認を (Security NEXT, 2023/09/14) https://www.security-next.com/149480 【関連まとめ記事】◆全体まとめ ◆VPN (まとめ) https://malware-log.hatenablog.com/entry/VPN

Iranian hackers backdoor 34 orgs with new Sponsor malware

…34の組織をバックドア感染させる] https://www.bleepingcomputer.com/news/security/iranian-hackers-backdoor-34-orgs-with-new-sponsor-malware/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT42 (まとめ) https://malware-log.hatenablog.com/entry/APT42

ロシアのサイバースパイFancy Bearがウクライナのエネルギー施設にフィッシング攻撃

…イバースパイFancy Bearがウクライナのエネルギー施設にフィッシング攻撃 (Codebook, 2023/09/08 01:36) https://codebook.machinarecord.com/threatreport/29588/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT28 (まとめ) https://malware-log.hatenablog.com/entry/APT28

中国系ハッカーが署名キーをWindowsのクラッシュダンプから盗み出していたことが判明

…ラッシュダンプから盗み出していたことが判明 (Gigazine, 2023/09/07 13:08) https://gigazine.net/news/20230907-msa-key-windows-crash-dump/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Storm-0558 (まとめ) https://malware-log.hatenablog.com/entry/Storm-0558

Hackers stole Microsoft signing key from Windows crash dump

…stole-microsoft-signing-key-from-windows-crash-dump/ ⇒ https://incidents.hatenablog.com/entry/2023/09/06/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Storm-0558 (まとめ) https://malware-log.hatenablog.com/entry/Storm-0558

Results of Major Technical Investigations for Storm-0558 Key Acquisition

…https://msrc.microsoft.com/blog/2023/09/results-of-major-technical-investigations-for-storm-0558-key-acquisition/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Storm-0558 (まとめ) https://malware-log.hatenablog.com/entry/Storm-0558

2023年8月のマルウェア (まとめ)

… 【ランキング】 【標的型攻撃】 【ランサムウェア】 【ルートキット】 【バックドア】 【インフォスティーラー / スパイウェア】 【不正ソフト】 【ツール】 【サイバー攻撃】 【不正アクセス】 【サイバー犯罪】 【攻撃手法】 【その他】 【脆弱性】 【逮捕・裁判・テイクダウン】 【AI】 【その他】 関連情報 【関連情報】 【関連まとめ記事】 概要 公開日 マルウェア名 種別 備考 トピックス ■ 標的型攻撃 組織名 国 内容 APT29 ロシア APT31 中国 Cold…

インシデント: NISC (まとめ)

…関係の攻撃組織による標的型攻撃と考えられる。攻撃期間は 2022/10上旬~2023/06/13 ◎状況からBarracuda ESG の脆弱性(ゼロディ脆弱性)が使用された可能性が高い incidents.hatenablog.com 【ニュース】 ◆NISCにサイバー攻撃、メールデータ5千人分流出か 気象庁も被害 (朝日新聞, 2023/08/05 13:30) https://digital.asahi.com/articles/ASR8545P7R84ULZU009.…

日本の内閣サイバーセキュリティセンターが受けたサイバー攻撃の背後には中国政府がいるという報道

…う報道 (Gigazine, 2023/08/31 12:17) https://gigazine.net/news/20230831-japan-cyber-security-agency-months-long-breach/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆インシデント: NISC (まとめ) https://malware-log.hatenablog.com/entry/Incident_NISC

Japan’s cybersecurity agency breached by suspected Chinese hackers: report

… 2023/08/29) [日本のサイバーセキュリティ機関が中国のハッカーに侵入される:報告書] https://therecord.media/japan-cybersecurity-agency-breached-report 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆インシデント: NISC (まとめ) https://malware-log.hatenablog.com/entry/Incident_NISC

ネットワークに長期間潜む中国の脅威グループFlax Typhoon、Microsoft警告

…ax Typhoon、Microsoft警告 (マイナビニュース, 2023/08/29 09:26) https://news.mynavi.jp/techplus/article/20230829-2759424/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Flax Typhoon (まとめ) https://malware-log.hatenablog.com/entry/Flax_Typhoon

Microsoftの“ずさんなセキュリティ対策”に非難集中 おわびのログ機能無料提供へ

…機能を無償で提供する予定だ。同社はこの件について連邦政府や競合他社から厳しい批判を受けている https://www.itmedia.co.jp/enterprise/articles/2308/20/news002.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Storm-0558 (まとめ) https://malware-log.hatenablog.com/entry/Storm-0558

RedEcho (まとめ)

【要点】 ◎中国の標的型攻撃組織 【辞書】 ◆RedEcho (Malpedia) https://malpedia.caad.fkie.fraunhofer.de/actor/redecho 【ニュース】■2021年◇2021年2月 ◆China-linked Group RedEcho Targets the Indian Power Sector Amid Heightened Border Tensions (Recorded Future, 2021/02/28) …

防衛機密にも侵入 進化する中国のサイバー攻撃能力

【ニュース】 ◆防衛機密にも侵入 進化する中国のサイバー攻撃能力 (Wedge ONLINE, 2023/08/18) https://wedge.ismedia.jp/articles/-/31182?page=3&layout=b 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆RedEcho (まとめ) https://malware-log.hatenablog.com/entry/RedEcho

Underground Ransomware deployed by Storm-0978 that exploited CVE-2023- 36884

…悪用したStorm-0978によるUnderground Ransomwareの配備] https://resources.securityscorecard.com/research/underground-ransomware 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆攻撃組織: RomCom (まとめ) https://malware-log.hatenablog.com/entry/RomCom

Researchers Shed Light on APT31's Advanced Backdoors and Data Exfiltration Tactics

…ws, 2023/08/11) [APT31の高度なバックドアとデータ流出手口に光を当てた研究者たち] https://thehackernews.com/2023/08/researchers-shed-light-on-apt31s.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT31 (まとめ) https://malware-log.hatenablog.com/entry/APT31

Focus on DroxiDat/SystemBC

…。重要インフラを狙う標的型攻撃の一端として注目される 【ブログ】 ◆Focus on DroxiDat/SystemBC (SecureList, 2023/08/10) [DroxiDat/SystemBCに焦点を当てる] https://securelist.com/focus-on-droxidat-systembc/110302/ 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆バックドア / Backdoor (まとめ) ◆Syste…

RedHotel Checks in as Dominant China-Backed Cyberspy Group

…経済スパイの王座に君臨している] https://www.darkreading.com/threat-intelligence/redhotel-dominant-china-backed-cyber-spy-group 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Earth Lusca (まとめ) https://malware-log.hatenablog.com/entry/Earth_Lusca


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023