SMSï¼ã·ã§ã¼ãã¡ãã»ã¼ã¸ãµã¼ãã¹ï¼ã使ã£ããã£ãã·ã³ã°è©æ¬ºãã¹ããã·ã³ã°ãã®è¢«å®³ãå³è©ä¸ããã§å¢ãã¦ããââNTTãã³ã¢ã9æ1æ¥ã«ä¸»å¬ããéä¿¡äºæ¥è åãã®ã¤ãã³ãã§ãã»ãã¥ãªãã£è£½åãææãããã¯ãã«ãããã¯ã¼ã¯ã¹ãè¦éãé³´ããããã»ãã¥ãªãã£å¯¾çãã»ã¼ãªãSMSã®å¼±ã¿ã¨ãã«ã¦ã§ã¢ãªã©ã«ããæ»æãçµã¿åããããæå£ãå·§å¦åãã¦ããã¨ããã ã¹ããã·ã³ã°ã¨ã¯ãé»è©±çªå·ã ãã§æç« ãç»åãéåä¿¡ã§ããSMSãæªç¨ããééä¼ç¤¾ãéè¡ãæºå¸¯ãã£ãªã¢ãªã©ãè£ ã£ã¦å人ã«ã¡ãã»ã¼ã¸ãéã£ã¦ãã£ãã·ã³ã°è©æ¬ºãåãæ»æææ³ã®ãã¨ã æ»æè ã¯ããè·ç©ã®ãå±ãã«ä¸ããã¾ãããä¸å¨ã®ããæã¡å¸°ãã¾ããããå©ç¨æéã®ç¢ºèªãåãã¦ãã¾ãããã¨ãã£ãã¡ãã»ã¼ã¸ã¨ã¨ãã«ãã£ãã·ã³ã°ãµã¤ãã¸ã®URLãé»è©±çªå·ãè¨è¼ããã¡ãã»ã¼ã¸ãæ»æ対象ã«éä¿¡ãå人æ å ±ãçªåããããã¹ãã¼ããã©ã³ã«ãã«ã¦ã§ã¢ãã¤ã³ã¹ãã¼ã«ããããããã
å® é ã®ä¸å¨éç¥ã«è¦ãããããã£ãã·ã³ã°ãµã¤ãã¸èªå°ãããã¹ããã·ã³ã°æ»æãã®å ±åãå¢å ãã¦ããã¨ãã¦ãã£ãã·ã³ã°å¯¾çåè°ä¼ã注æãå¼ã³ãããã æºå¸¯é»è©±ã¸ä¸å¨éç¥ã«è¦ããããã·ã§ã¼ãã¡ãã»ã¼ã¸ï¼SMSï¼ãéãã¤ããè¨è¼ããURLããå½ãµã¤ãã¸èªå°ãããã£ãã·ã³ã°æ»æã®å ±åãå¢å ãã¦ããã¨ãã¦æ³¨æãå¼ã³ããããã®ã ååè°ä¼ã確èªããã±ã¼ã¹ã§ã¯ããè·ç©ãå±ãããä¸å¨ã®ããæã¡å¸°ã£ãããªã©ã¨ãã¦URLãè¨è¼ãèªå°å ã¯éèæ©é¢ã®å½ãµã¤ãã§ãã¢ã«ã¦ã³ãæ å ±ãæ証çªå·ãªã©ãã ã¾ãåããã¨ãã¦ããã Android端æ«ã§éãã¨ããã©ã¦ã¶ãChromeãã®ã¢ãããã¼ãã«è¦ããããä¸æ£ãªã¢ããªãã¤ã³ã¹ãã¼ã«ããããã¨ããã±ã¼ã¹ããã£ãã¨ãããã¾ãä¸é¨æ»æã§ã¯ãèªå°å ã®ãã¡ã¤ã³ã«ãã¤ãããã¯DNSãµã¼ãã¹ãæªç¨ããã¦ããã ååè°ä¼ã§ã¯ã7æ9æ¥ã®æç¹ã§ãã£ãã·ã³ã°ãµã¤ãã®ç¨¼åã確èªãã¦ãããééã«åãã¦J
ã¤ã³ã¿ã¼ããããã³ãã³ã°ã®å©ç¨è ã®å£åº§ãããé éãä¸æ£ã«ééããã被害ãæ¥å¢ãã¦ãããè¦å¯åºã«ããã¨ãï¼ï½ï¼ï¼æã®ï¼ãæéã®è¢«å®³ã¯æ¨å¹´ï¼å¹´éã®ï¼å以ä¸ã¨ãªãï¼ï¼ï¼ï¼ä»¶ï¼è¢«å®³ç·é¡ç´ï¼ï¼åï¼ï¼ï¼ä¸åï¼ãåéè¡ãå°å ¥ãã¦ããå®å ¨æ§ãé«ãã¨ããããï¼æ®µéèªè¨¼ããçªç ´ããæå£ã横è¡ãã¦ãããè¦å¯å½å±ã¯è¦æãå¼·ãã¦ããã â æ å ±å³æã«ææ¡ åéè¡ã¯ä¸æ£ã¢ã¯ã»ã¹ãé²ããããå©ç¨è ã«å¯¾ãã¦é常ã®ï¼©ï¼¤ã¨ãã¹ã¯ã¼ãã«å ããæ¬äººç¢ºèªã®ããä¸æçã«çºè¡ã»éç¥ãããã¯ã³ã¿ã¤ã ãã¹ã¯ã¼ãããå ¥åãã¦ãããï¼æ®µéèªè¨¼ãåãå ¥ãã¦ããã è¦å¯åºã«ããã¨ãè©æ¬ºã°ã«ã¼ãã¯ãå©ç¨è ã®ã¹ãã¼ããã©ã³ã«éè¡ãæºå¸¯é»è©±ä¼ç¤¾ãªã©ãè£ ã£ãï¼³ï¼ï¼³ï¼ã·ã§ã¼ãã¡ãã»ã¼ã¸ãµã¼ãã¹ï¼ã§ã¡ãã»ã¼ã¸ãéãã¤ããæ¬ç©ã«ä¼¼ãå½ãµã¤ãã¸èªå°ãIDããã¹ã¯ã¼ãã®ã»ããå©ç¨è ã®å ã«å±ãããã¯ã³ã¿ã¤ã ãã¹ã¯ã¼ãããå½ãµã¤ãã«å ¥åããã¦çã¿åããæ£è¦ã®ãµã¤ãããé
FireEyeã«ããã¨ãéä¿¡äºæ¥è ã®ãã©ãã£ãã¯ãååãã¦ãç¹å®ã®ã¡ãã»ã¼ã¸ãé»è©±çªå·ãªã©ã®æ å ±ãçããã¨ããæ°æã®ãã«ã¦ã§ã¢ãè¦ã¤ãã£ãã
ããªãã¯ãå½ã¡ã¼ã«ãããå½ãµã¤ããã§é¨ããããã«ãªã£ããã¨ãããã ãããï¼ ãããªäººã¯ä¸å±¤æ³¨æããªããã°ãªããªãå·§å¦ãªæå£ãæè¿å¢å ãã¦ããã¨ããã ããã¯SMSã«ãããå½ã¡ãã»ã¼ã¸ãã æ¬ç©ã®ã¡ãã»ã¼ã¸ã«ç´ãã¦éããã¨ãå¯è½ãªãããè¦åãããã¨ã¯é£ããã¨ããã ä¸å¤®ã ãããå½ã¡ãã»ã¼ã¸ã åºå ¸ï¼ãã¬ã³ããã¤ã¯ã ãã®è¨äºã®ç»åï¼7æï¼ ãæ¬ç©ã«ç´ãããã¨ã¯ï¼ SMSã¨ã¯short message serviceã®ç¥ã§ãiPhoneãAndroidãªã©ã®ã¹ãã¼ããã©ã³ã§ã¯ä¸»ã«ãã¡ãã»ã¼ã¸ãã¨ããã¢ããªã使ããç¸æã¨æç« ã®ããã¨ãããããªããã®ã ã¡ã¼ã«ã¢ãã¬ã¹ã§ã¯ãªããç¹å®å人ã®é»è©±çªå·ã«å¯¾ãã¦æç« ãéãããããäºæ®µéèªè¨¼ãæ¬äººç¢ºèªã«ã使ããããã¨ã¯å¤ãã®äººããåãã ããã SMSã¯ãLINEããã£ããã®ããã«ãåãç¸æã¨ã®ããã¨ãã¯åãç»é¢ã«è¡¨ç¤ºãããã®ã ãããå½ã¡ãã»ã¼ã¸ãã¯ãã®æ¬ç©ã®
次ã ã¨ç·¨ã¿åºããããããè©æ¬ºã®æ°æå£ãæ»æè ã¯æãæ¿ãåãæ¿ãã¦ã¦ã¼ã¶ã¼ãã ã¾ããã¨ããããã®ä¸ã§ã2018年以éçå¨ãæ¯ãã£ã¦ããã®ããä¸å¨éç¥ãªã©ãè£ ãå½ã®SMSâ¼ï¼ä¸å¨éç¥SMSï¼ã§ãããçè ã«ãéããã¦ãããå®ä¾ãåºã«ãã®æå£ã解説ããã SMSã ããå¹æç ä¸å¨éç¥SMSã使ãæå£ã¨ãã¦åºãç¥ããã¦ããã®ã¯ãä½å·æ¥ä¾¿ãåä¹ãæå£ã ããã客æ§å®ã«ãè·ç©ã®ãå±ãã«ãããã¾ãããä¸å¨ã®çºæã¡å¸°ãã¾ãããã¨ãã£ã1æã¨URLï¼ãªã³ã¯ï¼ãSMSã§éããã¦ãããã¡ã¼ã«ã§ã¯ãªãSMSãªã®ããã¤ã³ãã ã SMSãªãé»è©±çªå·ãåããã°éãããå® é 便ãéãéã«ã¯ãéãå ã®é»è©±çªå·ãä¼ç¥¨ã«æ¸ãã®ã§ãå® é æ¥è ããSMSãéããã¦ãä¸æè°ã¯ãªããããé常ã®ã¡ã¼ã«ã§éããã¦ãããããç¥ãããè¦ãã¯ãªãã®ã«ããªãã¡ã¼ã«ã¢ãã¬ã¹ãç¥ã£ã¦ãããã ããããã¨ã¦ã¼ã¶ã¼ã¯çåã«æãã®ã§ãã¯ãªãã¯çãä¸ããã ããã ä½å·
Googleã¯ç±³å½æé2æ22æ¥ãä¼æ¥ã®é¡§å®¢åãã¡ãã»ã¼ã¸ã«ãRich Communication Serviceãï¼RCSï¼ãå©ç¨ããããã®ã¢ã¼ãªã¼ã¢ã¯ã»ã¹ããã°ã©ã ãæ¡å¤§ããæ°è¦ä¼æ¥ãå ãã£ãã¨å社ããã°ã§çºè¡¨ããã ãã®æ¡å¤§ã«ãããç±³å½ã¨ã¡ãã·ã³ã«ãããé£åãæ è¡ãå°å£²ããé éã¨ãã£ãæ¥çã®ä¸é¨ä¼æ¥ããå¾æ¥ã®SMSã«ããã¡ãã»ã¼ã¸ãRCSã«ãã£ã¦ã¢ããã°ã¬ã¼ããããããã«ãããã©ã³ãã£ã³ã°ãå¼·åããã¨ã¨ãã«ããªãããªã¡ãã£ã¢ãåãæ±ãã対話æ§ãåä¸ãããã¢ããªãã£ã¯ã¹æ©è½ãæã«ã§ããããã«ãªããRCSã¡ãã»ã¼ã¸ã³ã°ã®ç®çã¯ãä¼æ¥ãé»è©±çªå·ã§éä¿¡ããSMSã®ããã¹ãã¡ãã»ã¼ã¸ãããåªããã¨ã¯ã¹ããªã¨ã³ã¹ãæä¾ããã¨ãããã®ã ã Googleã¯æ¢ã«ç±³å½ã§Sprintã¨ææºããã³ã³ã¿ã¯ãã¬ã³ãºå°å£²ãæ¥ã®1-800 Contactsããè±ãã°ã«ã¡ãã¼ãã®ã®ãããæããã1-800-Flowe
NTTãã³ã¢ã¨KDDIï¼auï¼ãã½ãããã³ã¯ã®æºå¸¯å¤§æ3社ã¯ã¹ãã¼ããã©ã³ã®ã·ã§ã¼ãã¡ãã»ã¼ã¸ãµã¼ãã¹ï¼SMSï¼ã®æ©è½ãå·æ°ããæ°ãã«åç»ãé·æãªã©ãéããããã«ãããå¹´å ã«ãæ°ãµã¼ãã¹ãæå ¥ããæ¹åã§æçµèª¿æ´ãé²ãã¦ãããã¨ãæ¥çµã³ã³ãã¥ã¼ã¿ã®åæã§åãã£ãããLINEããªã©å è¡ããã¡ãã»ã¼ã¸ã³ã°ã¢ããªã«å¯¾æããé³æ¥½é ä¿¡ãéèªã®èªã¿æ¾é¡ã¨ãã£ãèªç¤¾ã®ææãµã¼ãã¹ã®å©ç¨å¢ã«ã¤ãªããã
Facebookãäºæ®µéèªè¨¼ã«ä¾¿ä¹ãã¦ã¹ãã ãéããã°ãçºè¦2018.02.19 11:305,214 ç¦ç°ãã ã»ãã¥ãªãã£æ©è½ããã£ã¨ããã売ãè¾¼ã¿ã«ä½¿ã£ã¡ãã£ã¦ãã Recodeã«ããã°ãFacebookã§ã¯2017å¹´ãç±³å½ã®25æ³ä»¥ä¸ã®ã¦ã¼ã¶ã¼ã280ä¸äººã»ã©æ¸ã£ãã¨æ¨å®ããã¦ãã¾ããæ¸ã£ã¦ããã¦ã¼ã¶ã¼ãã¤ãªãæ¢ãããã¨å¿ æ»ã«ãªã£ã¦ãããããªã®ããããã¾ããããFacebookã¯ã¦ã¼ã¶ã¼ãã»ãã¥ãªãã£åä¸ã®ããã«ç»é²ããé»è©±çªå·ããã¦ã¼ã¶ã¼ã®å©ç¨ä¿é²ç®çã«æµç¨ãã¦ãã¾ã£ã¦ãããã§ããå ·ä½çã«ã¯ãäºæ®µéèªè¨¼ç¨ã³ã¼ãã®éä¿¡å ã«è¨å®ãããçªå·ã«SMSãéãä»ããåã ã¡ã®è¿æ³ã¢ãããã¼ããéç¥ããããã¦ããã§ãã So I signed up for 2 factor auth on Facebook and they used it as an opportunity to spam m
æ¬ãéç¥ãã¯ãã¹ãã¼ããã©ã³ã®ããã¹ãã¡ãã»ã¼ã¸ï¼ã·ã§ã¼ãã¡ãã»ã¼ã¸ãµã¼ã¸ãï¼SMSï¼ã¨ãã¦éããã¦ãããã®ã§ãå® é è·ç©ã®ä¸å¨éç¥ãå½è£ ãã¦åä¿¡è ã®æ°ãå¼ããç¹å®ã® URL ã«èªå°ããã¨ããæ»æã¹ã¿ã¤ã«ã«ãªã£ã¦ããã ä¸å¯©ã¡ã¼ã«ãè¿·æã¡ã¼ã«ã®å¸¸å¥æ段ã§ãããã¦ã¼ã¶ã¼ã®èª¤èªã»èª¤è§£ã«ããæªæã®ãããµã¤ãã¸ã®èªå°ã¨ããæ段ã使ããã¦ãã¦ããã®ãããªå® é ç©ã®ä¸å¨éç¥ãé éäºå®éç¥ã®å½è£ ã¯å®çªã¨ãªã£ã¦ããããä»å¾ããµã¤ãã¼ç¯ç½ªè ã®å¸¸å¥æ段ã¨ãã¦ç¶ç¶ãããã¨ãã¦ããã ã¦ã¼ã¶ã¼ããã®ãéç¥ãã§èª¤èªãã¦ã¡ãã»ã¼ã¸ä¸ã®URLãªã³ã¯ã«ã¢ã¯ã»ã¹ãã¦ãã¾ãã¨ãå®å¨ã®é éæ¥è ãå½è£ ãã Web ãã¼ã¸ãéããAndroidãiOSã«å¿ããæåã§ããã¯ãã¢åã®ä¸æ£ã¢ããªã®ãã¦ã³ãã¼ãã¸ã¨èªå°ããã
å°å·ãã ã¡ã¼ã«ã§éã ããã¹ã HTML é»åæ¸ç± PDF ãã¦ã³ãã¼ã ããã¹ã é»åæ¸ç± PDF ã¯ãªããããè¨äºãMyãã¼ã¸ããèªããã¨ãã§ãã¾ã ãSMSã§ã·ã¼ã¯ã¬ããã³ã¼ããéä¿¡ããã®ã¯ããã¦ãã ãããå®å ¨ã§ã¯ããã¾ãããââãããã¯ãç±³å½ç«æ¨æºæè¡ç 究æï¼NISTï¼ã2016å¹´ã®å¤åã«çºä¿¡ããã¡ãã»ã¼ã¸ã®å 容ã§ããããã®ä»¶ã«ã¤ãã¦ãã¾ãã¾ãªæè¦ãçåãæ¸æãã®å£°ããããã¾ããããã®ä»¶ã«é¢ããåé¡ãæ´çãã¦ã¿ããã¨æãã¾ãã ã¾ããäºã®çµç·¯ã«ã¤ãã¦ã§ãããNISTã¯ãDigital Authentication Guidelineãï¼ãã¸ã¿ã«èªè¨¼ã¬ã¤ãã©ã¤ã³ï¼ã®èæ¡ãå ¬éããä¸è¬ããã®æè¦ãåéãã¾ããããã®ã¬ã¤ãã©ã¤ã³ã®æçµçã¯2017å¹´9æã«çºè¡ã®äºå®ã§ãã ã¬ã¤ãã©ã¤ã³ã®ãSection 5.1.3.2ãã§ã¯ãOut-of-Band verifiersãï¼å¸¯åå¤æ¤è¨¼è ï¼ã«
iPhone5sã5cãNexus5ãªã©ãä»å¹´ã¯ãã¾ãã¾ãªSIMããªã¼ç«¯æ«ãçºå£²ããã¾ãããããã¦ããããªãªãæ¬ ãããªãã®ãMVNO SIMãããããæ ¼å®SIMé¸ã³ãä»åã¯ä»æ°ã«ãªãææ°æ ¼å®SIMãé¸ãã§ã¿ã¾ããã ããããåæè²»ç¨ãæé¡åºæ¬æããã¼ã¿éä¿¡ã®å¶éãå¶éå¾ä¸ãé度ã対å¿éä¿¡ãSMS対å¿ã®æç¡ãåæãã¦ãã¾ãã BIGLOBE LTEã»3G ã¨ã³ããªã¼ãã©ã³ âããã°ãã¼ãï¼å¤é¨ãµã¤ãï¼ åæè²»ç¨3150åãæ980å æ1GBã¾ã§ãå¶éå¾ä¸ãé度128Kbps ãã¼ã¿ã®ã¿ãSMSéå¯¾å¿ ã¾ããç´¹ä»ãããã®ãããã¡ãã®ããã°ãã¼ãã®æ ¼å®SIMããªãã¨ãã£ã¦ãã980åã¨ããä¾¡æ ¼ãç¶æãã¤ã¤æ1GBãé«ééä¿¡ãå¯è½ãããã«Wi2ã®å ¬è¡ç¡ç·LANãµã¼ãã¹ãã¤ãã¦ããã®ã§ãé§ ããã¡ã¼ã¹ããã¼ãåºãªã©ã§ã¯WiFiã使ã£ã¦ã¢ãã¤ã«ãããã¯ã¼ã¯ã®æé容éãç¯ç´ãããã¨ãã§ãã¾ãã BB.e
IIJã¯ãå社ã®ã¨ã³ã¸ãã¢ã«ãããã¼ã¯ã¤ãã³ããIIJmio meeting #1ããéå¬ãããIIJmioã®ã¤ãã³ãã¨ãã¦ã¯2012å¹´2æã«éå¬ããã端æ«æ¤è¨¼ä¼ä»¥æ¥ã¨ãªããä»åã¯æ°è£½åã§ããSMS対å¿SIMã«ã¼ãã®æä¾ã«é¢ãã話é¡ãä¸å¿ã«å±éãããã âSMS対å¿ã»é対å¿ã§ç°ãªãiPhoneã®æå ãã¼ã¯ã»ãã·ã§ã³ã®æåã飾ã£ãã®ã¯ãå社ã®æ³äººåããããã¯ã¼ã¯ãµã¼ãã¹ã®éçºãæ å½ããå®®æ¬å¤è±æ°ãâiOSåä½æ¤è¨¼ã¾ã¨ãâã¨ããã¿ã¤ãã«ã§ããã¼ã¿éä¿¡ã«ä½¿ãâãã±ãã交æâã¨SMSãé話ã«ä½¿ãããâåç·äº¤æâã®ãµãã¤ã®ãããã¯ã¼ã¯éä¿¡ã¢ãã«ã®è©±ãããSMS対å¿SIMã¨é対å¿SIMãã¨ã®åiPhoneã®æåã解説ã ææ°ã®æ¤è¨¼çµæã¯ããã°ãã¦ããããï¼å¤é¨ãµã¤ãï¼ã§æ²è¼ããã¦ãããããã®æ¤è¨¼ã®çµç·¯ãæ ¹æ ãªã©ãèªã£ããSMSæ©è½ã使ãã使ããªãã¨ãããã¨ã ãã§ãªããã¢ã³ãããã¯ãé表示ãä¸é¨ç«¯æ«ã§
ãã·ã¢ã®ã«ã¹ãã«ã¹ãã¼ã©ãã¯ã6æã«æ¥µãã¦é«åº¦ãªAndroidåãããã¤ã®æ¨é¦¬ãBackdoor.AndroidOS.Obad.aãã®æ¤åºãä¼ãããã以éã®èª¿æ»ã§å¤æãããã¨ãããã°ã§å ±åãããåãã«ã¦ã¨ã¢ã®ä½æè ã¯ãå¥ã®ã¢ãã¤ã«ãã«ã¦ã¨ã¢ã«ããããããããã使ã£ã¦æ¡æ£ããæ段ãç¯ãã¦ããã¨ããã ã«ã¹ãã«ã¹ãã¼ã©ãã¯ããã¾ã§ãåºæ¬çã«4éãã®æå£ã«ãã£ã¦ãã¾ãã¾ãªãã¼ã¸ã§ã³ã®Obad.aãé ä¿¡ãããã®ã確èªãã¦ããããæãé¢å¿ãæ±ãã¦ããã®ã¯ãéãã¢ãã¤ã«åãããã¤ã®æ¨é¦¬ãSMS.AndroidOS.Opfake.aããå©ç¨ãã¦æ¡æ£ããæ¹æ³ã ããã®æå£ã§ã¯ããMMSã¡ãã»ã¼ã¸ãå±ãã¾ãããã¡ãã»ã¼ã¸ãèªãã«ã¯www.otkroi.comã«ã¢ã¯ã»ã¹ãã¦ãã ãããã¨ããå 容ã®ããã¹ãã¡ãã»ã¼ã¸ãéä¿¡ãããã¦ã¼ã¶ã¼ããªã³ã¯ãã¯ãªãã¯ããã¨Opfake.aãä»è¾¼ã¾ãããmms.apkãã¨ããåå
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}