YAPC::Hakodate 2024ã§ã®çºè¡¨å 容ã§ãã https://yapcjapan.org/2024hakodate/
2023 å¹´ã¯æå¥ãªãããã¹ãã¼å å¹´ãã«ãªãã¾ãããé常ã«ããããã®ãµã¼ãã¹ããã¹ãã¼ã«å¯¾å¿ãã2024 å¹´ã¯ãããããã¹ãã¼æ®åã®å¹´ã«ãªãããã§ãã æ¬è¨äºã§ã¯ããã¹ãã¼ã®åºæ¬ãæ¯ãè¿ã£ãããã§ããã¹ãã¼ã§ã¿ãªãããåéãããããç¹ã«ã¤ãã¦è§£èª¬ãã¾ãã 2023 å¹´ã¯æ¬å½ã«ããããã®ã¦ã§ããµã¤ãããã¹ãã¼ã«å¯¾å¿ãã¾ãããä¾ãæãã¾ã: Adobe Amazon Apple eBay GitHub Google KDDI Mercari Mixi MoneyForward Nintendo NTT Docomo PayPal Shopify Toyota Uber Yahoo! JAPAN ãã¡ãããã®ãªã¹ãã§ãã¹ã¦ã§ã¯ãªãã§ããããããã ãã§ããä¸ç人å£ã®ããªããã«ãã¼ã§ããã¯ãã§ãã¾ãã«å¤§èºé²ã¨è¨ãã¾ããããã¾ã ãã¹ãã¼ãä½é¨ãã¦ããªãã¨ããæ¹ããããããã²ãã®æ©ä¼ã«ã試ããã ããã
ã¿ã飯çãã§ITç³»ã³ãã¥ããã£ã®ã¤ãã³ããªã©ã«å ¥ãè¾¼ã人ãã¡ããããã¨ãããã¨ãå°ãåãã話é¡ã«ãªã£ã¦ããä¸ã§ãå®éã«ä¸å¯©è ãã¤ãã³ãã«å ¥ãè¾¼ããã¨ããäºæ¡ãã¾ãæããã«ãªãã¾ããã 12æ11æ¥ã¨12æ¥ã®2æ¥éãé½å ã§éå¬ãããã³ãã¥ããã£ä¸»å¬ã®æè¡ç³»ã«ã³ãã¡ã¬ã³ã¹ã§ãããããã¯ç¡æã®é£äºãç®å½ã¦ã«ããä¸å¯©ãªäººç©ããä¾µå ¥ãããã¨ããåºæ¥äºãçºçãã¦ãããã¨ãã¤ãã³ãã®å½äºè ã®çºè¨ã§ç¤ºããã¦ãã¾ãã ã¹ã¿ããã¨ãã¦ä¸å¯©è ã«å¯¾å¿ããä¸äººã§ããé島ç人æ°ã¯ããåå¼·ä¼åå è ãéå¶ã«å±å®³ãåã¶ã»ã©ã®è å¨ã§ãããå¿ è¦ãªã®ã¯ä¸å¯©è 対çãã®ãã®ã ã¨èªèãæ¹ãããã¨ãããåã¯ãããããæãã£ããã¨ãã¹ãããä»åã®äºæ ã®å¤§ãããåé²ãã¾ããï¼é島æ°ã¯ä»¥åãç¿æ³³ç¤¾ã§Developers Summitï¼é称ãããµãï¼ã®ãªã¼ã¬ãã¤ã¶ã¼ãå¤ãããã¨ããããã¤ãã³ããã³ãã¥ããã£ã®éå¶ã«é¢ãã¦ååãªç¥è¦ãåãã人ç©ã§
ååã§ãã ä»åã¯ãWindows OSãå®ãã»ãã¥ãªãã£æ©è½ã®ä¸ã§ãéè¦ãªå½¹å²ãæ ããã¢ã¯ã»ã¹å¶å¾¡ã«é¢ãã話é¡ã解説ãã¾ãã UnixãLinuxã§ã¯ãEverything is a fileãã¨è¨ããã¦ãã¾ãããWindows OSã§ã¯ãã¡ã¤ã«ãããã»ã¹ãã¯ããã¨ããå ¨ã¦ã®ãã®ããªãã¸ã§ã¯ãã¨ãã¦ç®¡çããã¦ãããããããã ACLï¼Access Control Listï¼ã¢ã¯ã»ã¹å¶å¾¡ãªã¹ãï¼ ã«ããã¢ã¯ã»ã¹å¶å¾¡ããã¦ãã¾ãã ACLã¯ãã¢ã«ã¦ã³ãã«ä¸ãã¦ããã¢ã¯ã»ã¹æ¨©éãåå¥ã«å®ç¾©ãã ACEï¼Access Control Entryï¼ã¢ã¯ã»ã¹å¶å¾¡ã¨ã³ããªï¼ ã¨å¼ã°ããæ å ±ã®ãªã¹ãã§ãã ä¾ãã°ãWindows OSã§ãã¡ã¤ã«ã®ããããã£ãéãã¨ã以ä¸ã®å³ã®ããã«ACLãè¦è¦çã«ç¢ºèªã§ãã¾ãã DACLã®ç¢ºèªä¾ ãã¡ã¤ã«ããã£ã¬ã¯ããªãªã©ã§ã¯ãWindows OSæ¨æºã®æ©è½ã§ãã®ããã«
ããã«ã¡ã¯ãå¾è¤ã§ããä»åã¯AWSæ§æã«ãããè¸ã¿å°ã«ã¤ãã¦ã®è¨äºã§ãã ãã¼ã¿ãã¼ã¹ãªã©ã®ã¤ã³ã¿ã¼ãããã«ç¹ããããªããªã½ã¼ã¹ã«è¸ã¿å°ãªã½ã¼ã¹çµç±ã§ã¢ã¯ã»ã¹ããããã¨ã¯ãã»ãã¥ãªãã£è¨è¨ã¨ãã¦ããããæ§æã ã¨æãã¾ãã ä»åã¯ãã®è¸ã¿å°ãªã½ã¼ã¹ã«ãã¦ã¼ã¶ã¼ãã°ã¤ã³æç¡ãæ¤ç¥ãã¦èªååæ¢ããããã¸ãã¯ãçµã¿è¾¼ãã æ¹æ³ãå ±æãã¾ãã ã¾ããä¸è¬çã«ããç¨ããããã®ã¯EC2ã ã¨æãã¾ãããä»åã¯ECS on Fargate(以éã¯Fargateã¨ç¥)ã使ãã¾ãããããèªååæ¢ãã¸ãã¯ã«Lambdaã使ãã¾ããï¼ï¼ã³ã³ããã®ä¸ã§å®çµããã¾ãã è¸ã¿å°ãè¨è¨ããæã«æ°ã«ãªãã㨠ããããè¸ã¿å°ã«ã¤ãã¦è¨è¨ããéã«ä½ãæ°ã«ãªãã®ã§ãããããããã¯OS管çè² æ ã¨èªååæ¢ã§ãã è¸ã¿å°ã«EC2ãç¨ããã¨OSãããé©ç¨ãªã©ã®éç¨ã³ã¹ããçºçãã¾ããæ¥åç³»ãµã¼ãã§ãªãã®ã«å¿å´ãéãªãã®ã¯ãªãã¹ãé¿ãããã¨ã
Sansan æè¡æ¬é¨ æ å ±ã»ãã¥ãªãã£é¨ CSIRT ã°ã«ã¼ãã®å·å£ã§ãã 2023å¹´4æããã»ãã¥ãªãã£ã¨ã³ã¸ãã¢ã§æ°åã¨ãã¦ãSansan ã«å ¥ç¤¾ãã¾ããã ç¾å¨ã¯ ãã°åºç¤ï¼SIEMï¼ã®ãã°ã®åãè¾¼ã¿é¨åã®æ©è½ä¿®æ£ãåãåãã対å¿ãã¤ã³ã·ãã³ã対å¿ãªã©ã®æ¥åã«åãçµãã§ãã¾ãã ä»åã¯å å®è ã¤ã³ã¿ã¼ã³ã·ããã§éçºãããèªå® ã«ã¼ã¿ã®èå¼±æ§æ¤ç¥ã·ã¹ãã ã«ã¤ãã¦ç´¹ä»ãã¾ãã ç®æ¬¡ã¯ä»¥ä¸ã®éãã¨ãªãã¾ãã éçºã«è³ã£ãçµç·¯ ä½æããã·ã¹ãã æè¡çãªè©± EDR ãã¼ãã¹ãã£ã³ ãã±ããã·ã¹ãã ã¸ã®èµ·ç¥¨ SOAR ã¾ã¨ãã¨ä»å¾ã®èª²é¡ éçºã«è³ã£ãçµç·¯ æ°åã³ããã¦ã¤ã«ã¹ã®æµè¡ã«ä¼´ãããªã¢ã¼ãã¯ã¼ã¯ã¨ããè¨èãããè³ã«ããããã«ãªã£ãã¨æãã¾ãã å¼ç¤¾ã§ãç·æ¥äºæ 宣è¨ä¸ã«ããã¦ã¯ãååãªã¢ã¼ãã¯ã¼ã¯ã¨ãªããç¾å¨ã¯ãªã³ã©ã¤ã³ã»ãªãã©ã¤ã³ãä½µç¨ããåãæ¹ããã¦ãã¾ãã ããã§åé¡ã¨ãªã£ã¦ããã®ãèª
é·è°·å·é½ä»(ã¯ããããããã) ï½ ã»ãã¥ãªãã£ã»ãã£ã³ãåè°ä¼ä»£è¡¨çäº ï½ ï¼æ ªï¼ã»ãã¥ã¢ã¹ã«ã¤ã»ãã¯ããã¸ã¼ åç· å½¹CTO ï½ åèå¤§å¦ é常å¤è¬å¸« ï½ OWASP Kansai ãã¼ãã¡ã³ãã¼ ï½ OWASP Japan ãã¼ãã¡ã³ãã¼ ï½ CODE BLUEã«ã³ãã¡ã¬ã³ã¹ ã¬ãã¥ã¼ãã¼ãã¡ ã³ãã¼ Webãã©ã¦ã¶ã¼ãWebã¢ããªã±ã¼ã·ã§ã³ã« é¢ããå¤æ°ã®èå¼±æ§ãçºè¦ã Black Hat Japan 2008ãéå½POC 2008ã2010ãOWASP AppSec APAC 2014ä»è¬æ¼ãè¨äºå·çãå¤æ°ã https://utf-8.jp/ Vulsç¥ã#8 #vulsjp https://utf-8.jp/
ããã«ã¡ã¯ãã»ãã¥ãªãã£ç«ã§ãã ä¹ ãã¶ãã«ï¼ãã³ãã«ä¹ ãã¶ãã«ï¼ä½ããæ¸ããã欲ãåºã¦ããã®ã§ãèªåã§ã使ãæ¹ã®æ´çã»æ©è½ã®ç¢ºèªã®æå³ãè¾¼ãã¦ãã¼ã«ã®ä½¿ãæ¹ãæ±ããã¨ã«ãã¾ããã ä»åã¯ã調æ»ã§ä¾¿å©ãªãã¼ã«ãGreyNoiseãã«ã¤ãã¦ç´¹ä»ãã¦ãããã¨æãã¾ãã GreyNoise ã¯ããã« ã注æäºé ã GreyNoiseã¨ã¯ï¼ æ©è½ IPã«ãã¯ã¢ãã GREYNOISEã¯ã¨ãªè¨èª (GNQL) ã¿ã°ãã¬ã³ã ãã®ä»ã®æ©è½ 主ãªä½¿ãæ¹ ã¾ã¨ã ã¯ããã« ã注æäºé ã æ¬è¨äºå ã§ãGreyNoiseã®ä½¿ãæ¹ã調æ»æ¹æ³ã«ã¤ãã¦è¨è¼ãã¦ãã¾ããæ¬å 容ã¯è å¨ããå®ãããã«å©ç¨ãã¦ãããã®ã§ããã決ãã¦æªç¨ãããã¨ã¯ããªãã§ãã ããã GreyNoiseãå©ç¨ãããã¨ã§å¤é¨çµç¹ã®æ å ±ãå¾ããã¨ãã§ãã¾ããããããªãããããã§å¾ãããæ å ±ããã¨ã«ã¢ã¯ã»ã¹ã¯è¡ããªãã§ãã ãããã¢ã¯ã»ã¹ãè¡ãå ´åã¯èª
<åç·¨> ã»ãã¡ã¤ã³ã»ãããã¯ã¼ã¯å¸¯ã調æ»ããææ³ ã»ãã¡ã¤ã³ã®èª¿æ» ã»JPRS whois ã»ICANN Registry Listings ã»ãããã¯ã¼ã¯å¸¯ï¼IPã¢ãã¬ã¹ï¼ã®èª¿æ» ã»JPNIC whois Gateway ã»BGP Tool kit ã»ãã®ä»ã®èª¿æ» ã»æ¤ç´¢ã¨ã³ã¸ã³ã使ã£ãèª¿æ» ã»Webãµã¤ãã®ã¯ãã¼ãªã³ã° ã»Google AdSense ã»å ¬çãã¼ã¿ãã¼ã¹ã®æ´»ç¨ ã»gBizINFO ã»å ¬éæ å ±èª¿æ»ï¼Passiveåã®æ¤ç´¢ãµã¼ãã¹ï¼ ã»Robtex ã»PassiveDNS ã»viewdns.info ã»Microsoft Defender Threat Intelligence ã»éãTLDã試ã ã»RDAP ãµããã¡ã¤ã³ã調æ»ããæ¹æ³ æ§ã ãªææ³ã§åéããããã¡ã¤ã³ã¨IPã¢ãã¬ã¹æ å ±ããã¨ã«ãµããã¡ã¤ã³ãåæãããã§ã¼ãºã§ãããã¡ã¤ã³/ãããã¯ã¼ã¯å¸¯ï¼IPã¢ãã¬ã¹ï¼èª¿æ»
æ°ãã¤ãããæ°å¹´ã¶ãã®Blogæ稿ã§ããããææããã«ãé¡ããã¾ãã ãã¦ãä»ååãä¸ããã®ã¯ããã¡ã¤ã³ããµããã¡ã¤ã³ãä¿æãããã¯ã¼ã¯ã調æ»ããææ³ï¼ç¸ææ¹ã«å½±é¿ãä¸ããªãç¸ãã§ãï¼ãæãã¤ãã¾ã¾ã«ç´¹ä»ãã¦ããã¾ããããã¥ã¡ã³ãã¨ãã¦çºã¾ã£ã¦ãããã®ããã¾ãè¦ãããªãã£ãã®ã§ãéãè °ãä¸ãã¦æ¸ãã¦ã¿ã¾ããããã®ä»ã«ããããªæ¹æ³ãããï¼ãªã©ãã£ã¼ãããã¯ãé ããã°ã¨ã¦ãåã³ã¾ãã®ã§ãæ¯éãããããé¡ããã¾ãã ç®æ¬¡ <å¾ç·¨> ã»ãµããã¡ã¤ã³ã調æ»ããæ¹æ³ ã»IPã¢ãã¬ã¹ãèµ·ç¹ã«ãµããã¡ã¤ã³ãæ¢ã ã»å ¬éãã¼ãã¸ã®ã¢ã¯ã»ã¹ï¼Webãã¼ãï¼ ã»ï¼é常ã³ã³ãã³ãã®è¿å´ï¼ ã»ï¼ã¨ã©ã¼ãã¼ã¸ã®è¿å´ï¼ ã»ï¼ãªãã¤ã¬ã¯ãï¼ ã»å ¬éãã¼ãã¸ã®ã¢ã¯ã»ã¹ï¼Webãã¼ã以å¤ï¼ ã»è¨¼ææ¸ã®ç¢ºèª ã»ï¼Webãµã¼ãã®å ´åï¼ ã»ï¼SSL/TLSã§ä¿è·ããããããã³ã«ã®å ´åï¼ ã»ï¼ãããã³ã«å ã§æå·å(STARTTLS)
pictBLandã¨pictSQUAREã«å¯¾ããä¸æ£ã¢ã¯ã»ã¹ãããããã¹ã¯ã¼ããã½ã«ããªãã®MD5ããã·ã¥ã§ä¿åããã¦ãããã¨ã話é¡ã«ãªã£ã¦ãã¾ãã 2023å¹´8æ16æ¥ã«å¤é¨ã®ãã©ã¼ã©ã ã«pictSQUAREããçªåããæ å ±ã¨ä¸»å¼µãããã¼ã¿è²©å£²ã®åå¼ãæã¡æããæ稿ãè¡ãããï¼ä¸ç¥ï¼ãã¹ã¯ã¼ãã¯MD5ã«ããããã·ã¥åã¯è¡ããã¦ãããã®ã®ã½ã«ãä»ä¸ã¯è¡ããã¦ããªãã£ããããåç´ãªãã¹ã¯ã¼ãã使ç¨ããã¦ãã29ä¸4512件ã¯å ã®æååãå¤æãã¦ããã¨æ稿ãï¼ãã以å¤ã®26ä¸8172件ã¯ã¾ã MD5ããã·ã¥åãããã¾ã¾ã¨èª¬æãï¼ ä¸æ£ã¢ã¯ã»ã¹ã«ããpictBLandãpictSQUAREã®æ å ±æµåºã®å¯è½æ§ã«ã¤ãã¦ã¾ã¨ãã¦ã¿ã - piyolog ããå¼ç¨ ããã«é¢é£ãã¦MD5ããã·ã¥ãã½ã«ãã«é¢ãããã¤ã¼ã(post)ã観å¯ããã¨ãããã©ããã½ã«ãã®ç解ãééã£ã¦ããæ¹ãå¤ããããªæ°ããã¾ããã
åº æè¿ãå®æã«å»ºã¦ãããå±éºãªãµã¼ãã¼ãå¢ãã¦ããããããµã¼ãã¼ã»ãã¥ãªãã£ãéã¿ãåºæ¬çãªè¨å®ãæ§æã¯ã©ããããã®ãã¨ãã話ãããã æ¬è¨äºã§ã¯å ·ä½çãªè¨å®ãæ§ç¯ã説æããããç°å¢ãåæãç¨éãªã©ãããããããããçä¼¼ããã°å®å ¨ã¨ãããã¨ã§ã¯ãªãã ã»ãã¥ãªãã£ã¯éã®å¼¾ä¸¸ãããããã§ã¯ãªããå ¨ã¦ã®è¦ç´ ãåããã¦èããã¢ä¸ã§ã®æé©ãå°ããã°ãªããªãããããã»ãã¥ãªãã£ã®é£ããã¨ããã§ãããã æ¬è¨äºã¯ã»ãã¥ãªãã£ãæªçã ã¨èªèªãã人ã«ã¨ã£ã¦ã¯åèã«ãªãå 容ã ã¨æãããã©ã¡ããã¨ããã¨ãæ¬è¨äºã®å 容ãå½ããåã«ããã§ã«ç解ã§ãã¦ããå 容ãã«ãªã£ã¦ããªã人ã¯ããµã¼ãã¼ã建ã¦ãã¹ãã§ã¯ãªã(å±éºãªæªçã®æ®µéã§ãã)ã¨ãããã¨ãéè¦ã§ãããåã ãèªèº«ã®æéã測ãææ¨ã¨ãã¦ä½¿ã£ã¦ããããã°ã¨æãã 宣èªã®å ããµã¼ãã¼ãç ´ãããã¨ãããã¨ã¯ãããªãã¡ç¯ç½ªã«å æ ããã¨ãããã¨ã§ããã ãã®è¨èããã£
ã¯ããã« Domain Name Systemï¼DNSï¼ã¯ã¤ã³ã¿ã¼ããããµã¼ãã¹ã使ç¨ããä¸ã§æ¬ ãããªãåºå¹¹ãµã¼ãã¹ã§ãããDNSãé¢é£ããã»ãã¥ãªãã£ã¤ã³ã·ãã³ãã¸ã®å¯¾å¦ã¯ãå¥å ¨ãªã¤ã³ã¿ã¼ããããç¶æããããã«éè¦ã§ããæ¬ããã°ã§ã¯ãJPCERT/CCãã¡ã³ãã¼ã¨ãã¦åå ãã¦ããFIRSTã®DNS Abuse SIGãã2023å¹´2æã«å ¬éããDNS Abuse Techniques Matrixã«ã¤ãã¦ããã®æ¥æ¬èªçãJPCERT/CCã主ä½ã¨ãªãä½æããã³å ¬éããã®ã§ç´¹ä»ãã¾ãã 2023å¹´2æãFIRSTã®DNS Abuse SIGãå ¬éããDNS Abuse Techniques Matrix - DNS Abuse Techniques Matrix https://www.first.org/global/sigs/dns/DNS-Abuse-Techniques-Matri
ã´ã¼ã«ãã³ã¦ã£ã¼ã¯ã®ã¯ããï¼4æ29æ¥ï¼ã«æ稿ããã以ä¸ã®ãã¤ã¼ãã§ããã5æ7æ¥20æã«ããã¦ã1,938.8ä¸ä»¶ã®è¡¨ç¤ºã¨ãããã¨ã§ãé常ã«æ³¨ç®ããã¦ãããã¨ãåããã¾ãã æãåã¯ã¢ã·ã¿ã«ï¼ã¹ã¿ãã®FreeWi-Fiã使ããªããä¼ç¤¾ã®æ©å¯æ å ±ãæ±ãä»äºããã¦ããå ¨é¨æããããã©ãããã°ããï¼ pic.twitter.com/e26L1Bj32Z â ã¹ã¿ãã§Macãéãã¨ã³ã¸ã㢠(@MacopeninSUTABA) April 29, 2023 ããã«å¯¾ãã¦ãç§ã¯ä»¥ä¸ã®ããã«ãã¤ã¼ããã¾ãããã ããå ¥ç¤¾è©¦é¨ã®åé¡ã«ãããããªããã¹ã¿ãã®FreeWi-Fiã使ããªããä¼ç¤¾ã®æ©å¯æ å ±ãæ±ãä»äºããã¦ããå ¨é¨æããããã¨è¨ãäºè±¡ã«è³ãç¾å®çã«ããããè å¨ã説æãããçµæ§é£ããã¨æãã¾ããã https://t.co/LH21zphCTV â 徳丸 浩 (@ockeghem) April
ã¯ããã« Wi-Fiã«ã¼ã¿ã®ã»ãã¥ãªãã£ã«ã¤ãã¦ã2023å¹´4æ5æ¥ã«è¦è¦åºããã家åºç¨ã«ã¼ã¿ã¼ã®ä¸æ£å©ç¨ã«é¢ãã注æåèµ·ããè¡ããã¾ããããã®ä¸ã§å¯¾çã¨ãã¦ã次ã®4ã¤ãæãããã¦ãã¾ãã åæè¨å®ã®åç´ãª ID ããã¹ã¯ã¼ãã¯å¤æ´ããã 常ã«ææ°ã®ãã¡ã¼ã ã¦ã§ã¢ã使ç¨ããã ãµãã¼ããçµäºããã«ã¼ã¿ã¼ã¯è²·æããæ¤è¨ããã è¦è¦ãã®ãªãè¨å®å¤æ´ããªããã¦ããªããå®æçã«ç¢ºèªããã å®æçãªè¨å®ç¢ºèªãç¾å®çã«å¯è½ãªã®ãçåã¯ããã¾ããããã¯ãã¦ãããä»åã¯ï¼çªç®ã®ãµãã¼ãçµäºã«ã¤ãã¦ã§ãã ãã¨ãã°Windowsã§ããã°ãã¤ãµãã¼ããçµäºããã®ãããã¶ãåã«åç¥ãããã¾ãããä»ã®ã½ããã¦ã§ã¢è£½åã«ã¤ãã¦ãLTS(Long Term Support)ã®è¨å®ããããã®ã¯è¨ç»çã«ã¢ããã°ã¬ã¼ããè¡ãã¾ããä¸æ¹ã§å®¶åºç¨ã®Wi-Fiã«ã¼ã¿ã¼ã«ã¤ãã¦ããã¤ãµãã¼ããçµäºããã®ãããããªãã¾ã¾è²·ã£ã¦ãã¾ã
ã¯ããã« æ¥å¸¸çãªã¤ã³ã·ãã³ã調æ»ãå¹çåããããã«ãèªååã«ããåæã¯ããã£ãã·ã³ã°è©æ¬ºã®åæè ã«ã¨ã£ã¦éè¦ãªèª²é¡ã¨ãªã£ã¦ãã¾ãã ã¯ã©ã¦ããã¼ã¹ã®æè¡ã¯ãå¹ççã«ãã£ãã·ã³ã°è©æ¬ºã®åæãèªååããããã®è¯ã解決çã§ãã ä»åã¯ãã¯ã©ã¦ããµã¼ãã¹ä¸ã§ã®ãã£ãã·ã³ã°è©æ¬ºåæã¨Google Safe Browsing(GSB)ãæ´»ç¨ããèªåãã¤ã¯ãã¦ã³ã®æ¹æ³ã«ã¤ãã¦è§£èª¬ãã¦ããã¾ãã ãã£ãã·ã³ã°ãããã®è§£æçµæã«ã¤ãã¦ãã¡ãã§æ´ã«è©³ãã解説ãã¦ãã¾ãã 対象èªè ã¤ã³ãã©ç®¡çè DevOpsã¨ã³ã¸ã㢠è å¨ãã³ã¿ã¼ ãã£ãã·ã³ã°æ»æã®æµã ãããããã£ãã·ã³ã°è©æ¬ºã®æµãã以ä¸ã«ç¤ºãã¾ãã æ»æè ã¯ãã¹ãã£ã³ã°ãµã¼ãã¼ãè³¼å ¥ãã è³¼å ¥ãããµã¼ãã«ãã£ãã·ã³ã°ããããã¢ãããã¼ããã»ããã¢ãããã åä½ç¢ºèªãå®äºãããæ»æè ã¯æ½å¨çãªè¢«å®³è ã«å¤§éã®ãã£ãã·ã³ã°ã¡ã¼ã«ãéä¿¡ãã 被害è ã¯ãã£ãã³
è¿å¹´ããµã¤ãã¼æ»æãè¤éé«åº¦åãã¦ããããµã¤ãã¼æ»æãäºæ¥ç¶ç¶ã«åã¼ããªã¹ã¯ã¯ã©ããªä¼æ¥ã§ãã£ã¦ãè¦éããã¨ã¯ã§ãã¾ãããã¾ããä¼æ¥ãæ°ããªä¾¡å¤åµåºããã競äºåªä½æ§ãé«ããããã«ã¯DX(ãã¸ã¿ã«ãã©ã³ã¹ãã©ã¼ã¡ã¼ã·ã§ã³)ã®æ¨é²ãæ¬ ããã¾ããã ãããã®èª²é¡ã«åãçµãä¸ã§ãä¼æ¥ã®ã»ãã¥ãªãã£å¯¾çã¯ä¸å¯æ¬ ã§ãããå®éã«èªç¤¾ã«ã»ãã¥ãªãã£è£½åããµã¼ãã¹ãå°å ¥ããããã«ã¯ã社å äºç®ã確ä¿ããå¿ è¦ãããã¾ãã ããããäºç®æ¨©éãæããçµå¶è ã¯å¿ ãããæ å ±ã·ã¹ãã (IT)ãå¶å¾¡ã·ã¹ãã (OT)ã®ã»ãã¥ãªãã£åéã«é¢ããç¥è¦ãããããã§ã¯ããã¾ããã ãã®ãããä¼æ¥ã®ã»ãã¥ãªãã£æ å½è ã«ã¯ã»ãã¥ãªãã£å¯¾çãçµå¶è ãç解ã§ãããããªè¨èã§èª¬æãããã¨ã«è¦æ©ããèªç¤¾ã®ã»ãã¥ãªãã£å¯¾çãéè¡ããããã®äºç®ç¢ºä¿ã«è¦å´ããæ¹ãå¤ãã¨èãã¦ããã¾ãã ã»ãã¥ãªãã£å¯¾çãéè¡ããããã®äºç®ãä¸æã確ä¿ã§ããªãåå ã¨ã
åæ¯ã å ¨å½ã®æå·ã使ãã¨ã³ã¸ãã¢ã®çããããã«ã¡ã¯ãä»æ¥ã¯æå·ç§»è¡ã¨RSAæå·ã®è©±ããããã¨æãã¾ããã¾ãæå·ãå©ç¨ãã¦ããçããã§ããã°CRYPTRECã®ãé»åæ¿åºæ¨å¥¨æå·ãªã¹ããã®ãã¨ã¯ãåãã§ãããï¼ï¼è¨ãåãwï¼ CRYPTRECãã2022å¹´7æï¼æ¨å¹´å¤ï¼ã«æå·å¼·åº¦è¦ä»¶ï¼ã¢ã«ã´ãªãºã åã³éµé·é¸æï¼ã«é¢ããè¨å®åºæºï¼PDFç´ãªã³ã¯ï¼ãå ¬éããã¾ããããã®ä¸ã§ã¯æå·ã®ã»ãã¥ãªãã£å¼·åº¦ã§å種æå·ã¨éµé·ãæ´çããã¦ãã¾ããã»ãã¥ãªãã£å¼·åº¦ã¯ãããã»ãã¥ãªãã£ã¨å¼ã°ããããããµã¤ãºï¼å ±ééµæå·ã®å ´åã®ãããé·ï¼ã§åºåããã¾ããæå·ã¢ã«ã´ãªãºã ãéã£ã¦ãã»ãã¥ãªãã£å¼·åº¦ã§æ¯è¼ãã§ããã¨ãããã¨ã§ãããä¾ãã°ç¾å¨ä¸è¬çã«è¯ã使ããã¦ããã»ãã¥ãªãã£å¼·åº¦ã¯112ãããã»ãã¥ãªãã£ãå¤ããããã«ã¯ãã¸ã¿ã«ç½²åã§ããã°RSAæå·ã®2048ããããECDSAã®P-224çãå«ã¾ãã¾ããä»æ¥ã¯å ¬ééµæ
ã¯ããã« å®éã«ä½ã£ããã® ããããå ãé·ããã¦é¢åã ã¨ããæ¹åã ãªãVMã®ã¹ãã£ã³ãå¿ è¦ãªã®ãï¼ å ¨ä½å Trivyã®èå¼±æ§æ¤ç¥ã«ã¤ã㦠éçºããä¸ã§ã®èª²é¡ ã¢ã¼ããã¯ã㣠Storage層 EBS Storage Virtual Machine Image層 Disk Partition層 Logical Volume層 Filesystem層 & File層 è¦å´ãããã¨&å¦ã³ å¦çãéãããåé¡ ä»æ§æ¸ã®è±èªãèªããªã ã¨ã«ãã人ã«é ¼ã 巨大ãªãã¤ããªãã¡ã¤ã«ãèªãã®ãè¾ã æè¬ã®å¿µï¼ä¸çªå¤§äºï¼ æå¾ã« ã¯ããã« 2022å¹´11æã«OSSã®ã³ã³ããèå¼±æ§æ¤ç¥ãã¼ã« Trivy ã« ä»®æ³ãã·ã³ã¤ã¡ã¼ã¸ï¼VMDKãVDIãªã©ï¼ã®èå¼±æ§æ¤ç¥æ©è½ã追å ãã¾ããã ä»åã¯ãã®æ©è½ã追å ããè¦å´è©±ãå ·ä½çãªæè¡ã«ã¤ãã¦è§£èª¬ãããã¨æãã¾ãã æè¡è©±ãæ¸ãã¨ãæ£ç´ã¯ã½é·æç« ã«ãªããã¨ã¯æç½ãªã®
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}