TT Malware Log

マルウェア / サイバー攻撃 / 解析技術 / 攻撃組織 / 攻撃技術 に関する「個人」の調査・研究

標的型攻撃 の検索結果:

サイバー攻撃 中国共産党員の男ら警視庁事情聴取も その後出国

…中国共産党員の男ら警視庁事情聴取も その後出国 (NHK, 2021/04/20 18:58) https://www3.nhk.or.jp/news/html/20210420/k10012986251000.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Tick / Bronze Butler (まとめ) http://malware-log.hatenablog.com/entry/Tick

中国共産党員を書類送検へ JAXAにサイバー攻撃

…E5%9B%BD%E7%B1%8D%E3%81%AE%E7%94%B7%E6%80%A7%E3%82%92%E6%9B%B8%E9%A1%9E%E9%80%81%E6%A4%9C%E3%81%B8/ar-BB1fPxFO 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Tick / Bronze Butler (まとめ) http://malware-log.hatenablog.com/entry/Tick

Lazarus APT conceals malicious code within BMP image to drop its RAT

…://blog.malwarebytes.com/malwarebytes-news/2021/04/lazarus-apt-conceals-malicious-code-within-bmp-file-to-drop-its-rat/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

SolarWinds製品に対する攻撃、ロシアの諜報機関が背後に--米英が公に非難

….zdnet.com/article/35169463/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT29 / CozyDuke (まとめ) https://malware-log.hatenablog.com/entry/CozyDuke ◆アプリ (まとめ) ◆SolarWinds (まとめ) https://malware-log.hatenablog.com/entry/SolarWinds

同業者装いセキュ研究者に忍び寄るサイバー攻撃者 - 解析情報にワナも

【ニュース】 ◆同業者装いセキュ研究者に忍び寄るサイバー攻撃者 - 解析情報にワナも (Security NEXT, 2021/04/15) https://www.security-next.com/125277 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

FBI、「Exchange Server」攻撃を受けた未対策サーバのWebシェル削除を“代行”

…行” (ITmedia, 2021/04/14 11:06) https://www.itmedia.co.jp/news/articles/2104/14/news069.html 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

APT27 continues targeting the gambling industry. New APT34 activity. Malicious code in APKPure app store.

…://thecyberwire.com/newsletters/research-briefing/3/15 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆APT27 (まとめ) https://malware-log.hatenablog.com/entry/APT27 ◆APT34 / OilRig (まとめ) https://malware-log.hatenablog.com/entry/APT34

FBIに「ハッキングされた全米のコンピューターにアクセスしてWebシェルを削除すること」が認められる

…/04/14 11:20) https://gigazine.net/news/20210414-fbi-removes-web-shells-microsoft-exchange/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

日本の製造業が標的 見つかりにくいAPT攻撃がステルス性を高めて継続中

…dia.co.jp/enterprise/articles/2104/01/news133.html 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆A41APT (まとめ) https://malware-log.hatenablog.com/entry/A41APT ◆APT10 / MenuPass (まとめ) https://malware-log.hatenablog.com/entry/APT10

2021年3月のインシデント (まとめ)

…000000_2 【標的型攻撃】 ◆サイバー攻撃グループ「Lazarus」が、新たに防衛産業を攻撃対象に (All About News, 2021/03/03) https://news.allabout.co.jp/articles/p/000000234.000011471/ ⇒ https://malware-log.hatenablog.com/entry/2021/03/03/000000_1 ◆中ロ、EU機関にサイバー攻撃か (共同通信, 2021/03/07 …

APT10: sophisticated multi-layered loader Ecipekac discovered in A41APT campaign

…021/03/30) https://securelist.com/apt10-sophisticated-multi-layered-loader-ecipekac-discovered-in-a41apt-campaign/101519/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆A41APT (まとめ) https://malware-log.hatenablog.com/entry/A41APT

RedEcho group parks domains after public exposure

…Record, 2021/03/29) [RedEchoグループ、公開後にドメインを停止] https://therecord.media/redecho-group-parks-domains-after-public-exposure 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆RedEcho (まとめ) https://malware-log.hatenablog.com/entry/RedEcho

「Exchange Server」攻撃対策、92%以上が適用 まだ3万以上のインスタンスが不適用

…適用 (ITmedia, 2021/03/29 10:00) https://www.itmedia.co.jp/news/articles/2103/29/news064.html 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

中国の脅威アクターたちは新たなマルウェアで欧米の組織を狙う

…Pulsejump 【ニュース】 ◆中国の脅威アクターたちは新たなマルウェアで欧米の組織を狙う (IoT OT Security News, 2021/03/28) https://iototsecnews.jp/tag/unc2630/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆UNC2717 (まとめ) https://malware-log.hatenablog.com/entry/UNC2717

日本の組織を狙うLazarusが使うマルウェアに注意

…ps://blogs.jpcert.or.jp/ja/2021/03/Lazarus_malware3.html ⇒ https://malware-log.hatenablog.com/entry/2021/03/22/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

A41APT:日本企業を標的とする情報窃取活動

…1/03/23) 日本企業を狙う、非常にステルス性の高い標的型攻撃「A41APT」とは。 https://blog.kaspersky.co.jp/a41apt-threat-for-japanese-organizations/30219/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆A41APT (まとめ) https://malware-log.hatenablog.com/entry/A41APT

日本の組織を狙った攻撃グループLazarusによる攻撃オペレーション

… 06:14) https://news.mynavi.jp/article/20210324-1827540/ ⇒ https://malware-log.hatenablog.com/entry/2021/03/24/000000_1 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆Lazarus (まとめ) https://malware-log.hatenablog.com/entry/Lazarus

2021年03月のマルウェア (まとめ)

…r」を利用した最近の標的型攻撃事例を解説 (Trendmicro, 2021/03/11) https://blog.trendmicro.co.jp/archives/27354 ⇒ https://malware-log.hatenablog.com/entry/2021/03/11/000000_15 ◆「Exchange Server」攻撃で悪用された「China Chopper」の解析情報 (Security NEXT, 2021/03/15) https://ww…

通信会社を狙うサイバースパイ活動の詳細と報告

…を狙うサイバースパイ活動の詳細と報告 (McAfee, 2021/03/17 18:00) https://ascii.jp/elem/000/004/047/4047841/ 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) ◆HoneyMyte / Mustang Panda / TEMP.Hex (まとめ) https://malware-log.hatenablog.com/entry/HoneyMyte

China Chopper (まとめ)

【要点】 ◎サイズが4KBほどのWeb Shell。2012から使用されている 【目次】 概要 【辞書】 【最新情報】 記事 【ニュース】 【ブログ】 【公開情報】 関連情報 【関連まとめ記事】 概要 【辞書】 ◆China Chopper (Wikipedia) https://en.wikipedia.org/wiki/China_Chopper 【最新情報】 ◆「Exchange Server」攻撃で悪用された「China Chopper」の解析情報 (Security…

「Exchange Server」攻撃で悪用された「China Chopper」の解析情報

…change Server」攻撃で悪用された「China Chopper」の解析情報 (Security NEXT, 2021/03/15) https://www.security-next.com/124157 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) ◆China Chopper (まとめ) https://malware-log.hatenablog.com/entry/China_Chopper

Exploits on Organizations Worldwide Grow Tenfold after Microsoft’s Revelation of Four Zero-days

…21/03/15 05:30) https://blog.checkpoint.com/2021/03/11/exploits-on-organizations-worldwide/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

New PoC for Microsoft Exchange bugs puts attacks in reach of anyone

…ty/new-poc-for-microsoft-exchange-bugs-puts-attacks-in-reach-of-anyone/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103 ◆攻撃組織 / Actor (まとめ)

Microsoft、ハッキング巡り「情報共有プログラム」調査

…ラム」調査 (日経新聞, 2021/03/13 07:33) https://www.nikkei.com/article/DGXZQOGN1303G0T10C21A3000000/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

RedXOR (まとめ)

…inux-backdoor-redxor-likely-operated-by-chinese-nation-state-actor/ ⇒ https://malware-log.hatenablog.com/entry/2021/03/10/000000_6 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆標的型攻撃マルウェア (まとめ) https://malware-log.hatenablog.com/entry/APT_Malware

Mikroceen (まとめ)

…w.welivesecurity.com/2021/03/10/exchange-servers-under-siege-10-apt-groups/ ⇒ https://malware-log.hatenablog.com/entry/2021/03/10/000000_3 【関連まとめ記事】◆全体まとめ ◆攻撃組織 / Actor (まとめ) ◆標的型攻撃組織 / APT (まとめ) https://malware-log.hatenablog.com/entry/APT

BitSight Observations Into HAFNIUM Attacks, Part Two: Unpatched Exchange Servers Remain Vulnerable

…適用されていないExchangeサーバーには依然として脆弱性が残る] https://www.bitsight.com/blog/hafnium-observations-part2 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

Linuxに新バックドア「RedXOR」発見、増え続けるLinux標的マルウェアの脅威

….co.jp/enterprise/articles/2103/12/news149.html 【関連まとめ記事】◆全体まとめ ◆マルウェア / Malware (まとめ) ◆Linux マルウェア (まとめ) https://malware-log.hatenablog.com/entry/Linux_Malware ◆標的型攻撃マルウェア (まとめ) ◆RedXOR (まとめ) https://malware-log.hatenablog.com/entry/RedXOR

A hacking group is hijacking Microsoft Exchange web shells

…/03/12) https://therecord.media/a-hacking-group-is-hijacking-microsoft-exchange-web-shells/ 【関連まとめ記事】◆全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103

Ransomware Operators Start Targeting Microsoft Exchange Vulnerabilities

…全体まとめ ◆インシデント (まとめ) ◆標的型攻撃のインシデント (まとめ) ◆Exchange Server への大規模サイバー攻撃 (まとめ) https://malware-log.hatenablog.com/entry/Exchange_Server_202103 ◆マルウェア / Malware (まとめ) ◆ランサムウェア (まとめ) ◆DearCry (まとめ) https://malware-log.hatenablog.com/entry/DearCry


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 1997 - 2023