Foreword Sir Jeremy Heywood: Cabinet Secretary and Chair of the Official Committee on Security (SO) As Cabinet Secretary, I have a good overview of the many excellent services the Civil Service is responsible for, and of course the wide range of challenges that we need to manage to deliver them. The right security, appropriately tailored to take proper account of the very wide range of different j
ZDNet Japan ãã¸ãã¹ã»ããã¼ï¼èªè¨¼ã»ãã¥ãªã㣠éå¬æ¥æï¼2014å¹´9æ25æ¥ï¼æ¨ï¼13:00ï½ä¼å ´ï¼ãã«ãµã¼ã«ç¥ä¿çºã¢ããã¯ã¹ Tweet ãã°ã¤ã³èªè¨¼ãé»å証ææ¸ããããã¯ã¼ã¯èªè¨¼ãèªè¨¼åºç¤ --æ±ãããããæ°ããªå©ç¨è ä¿è·ã®ããæ¹ã¨ã¯--ï¼ ãã¯ãæ§æ¥ã®IDã¨ãã¹ã¯ã¼ãã«ããèªè¨¼ã¯éçã«éããæ ¼å¥½ã ã ä¾ãã°ãå½åã¯ä¿¡é ¼æ§ã¯ä¸å ¨ã¨è¬³ããã¦ããã¤ã³ã¿ã¼ããããã³ãã³ã°ã«ããã¦ããã¹ã¯ã¼ããçã¿åãå·§å¦ãªä¸æ£ééäºä»¶ã横è¡ãéè¡ãã¯ããã¨ããå種éèæ©é¢ã¯ãã¾ãã¦ã§ããµã¤ãã§å¤§ã çãªæ³¨æåèµ·ããã¦ããããæ ¹æ¬çãªå¯¾çãè¦ãã ããªãç·è¿«æãåå®æããéã«ä¼ãã£ã¦ããç¶æ³ã¨ãªã£ã¦ããã ããããç¾ç¶ã¯ãç¬ç«è¡æ¿æ³äºº æ å ±å¦çæ¨é²æ©æ§ãã2014å¹´ã®ã»ãã¥ãªãã£10大è å¨ãã«ããã¦ãç·æ¥åº¦ã®é«ãè å¨ã¨ãã¦è¦åãã¦ãããéèæ©é¢ã«éããããã¯ãSNSãå種ã¦ã§ããµã¼ãã¹ã®ã¢ã«ã¦ã³ãä¹
ä¸æ£ãªè¨¼ææ¸ã¯Microsoftã®ã«ã¼ã証ææ¸ããã°ã©ã ã§èªå®ãããInternet Explorerï¼IEï¼ãChromeãªã©Windowsåãããã°ã©ã ã®å¤§å¤æ°ã§ä¿¡é ¼ã§ãã証ææ¸ã¨ãã¦æ±ããã¦ããã¨ããã ç±³Googleã¯7æ8æ¥ãGoogleãã¡ã¤ã³ç¨ã®ä¸æ£ãªãã¸ã¿ã«è¨¼ææ¸ãçºè¡ããã¦ãããã¨ãåãããåé¡ã®è¨¼ææ¸ã失å¹ãããæªç½®ãåã£ãã¨çºè¡¨ããã å社ã®ããã°ã«ããã¨ãä¸æ£ãªè¨¼ææ¸ã¯ã¤ã³ãã®å½å±ãæ¿èªããNational Informatics Centreï¼NICï¼åä¸ã®ä¸éèªè¨¼å±ããçºè¡ããã¦ãããMicrosoftã®ã«ã¼ã証ææ¸ããã°ã©ã ã§èªå®ãããInternet Explorerï¼IEï¼ãChromeãªã©Windowsåãããã°ã©ã ã®å¤§å¤æ°ã§ä¿¡é ¼ã§ãã証ææ¸ã¨ãã¦æ±ããã¦ããã¨ããã ä¸æ¹ãFirefoxã使ã£ã¦ããç¬èªã®ã«ã¼ã証æã§ã¯åé¡ã®è¨¼ææ¸ãèªå®ãã¦ããªãããã
Flash Playeræ´æ°çã§ã¯JSONPã³ã¼ã«ããã¯APIã®èå¼±æ§ã«èµ·å ããåé¡ãªã©ã3件ã®èå¼±æ§ãä¿®æ£ããã ç±³Adobe Systemsã¯7æ8æ¥ãAdobe Flash Playerã®æ·±å»ãªèå¼±æ§ã«å¯¾å¦ããæ´æ°çãå ¬éããã å社ã®ã»ãã¥ãªãã£æ å ±ã«ããã¨ãä»åã®ã¢ãããã¼ãã§ã¯JSONPã³ã¼ã«ããã¯APIã®èå¼±æ§ã«èµ·å ããåé¡ãªã©ã3件ã®èå¼±æ§ãä¿®æ£ãããæªç¨ãããå ´åãã·ã¹ãã ãå¶å¾¡ãããæãããããã¦ã¼ã¶ã¼ã«å¯¾ãã¦ææ°çã«æ´æ°ããããå¼ã³æãã¦ããã èå¼±æ§ã¯ãFlash Playerææ°çã®14.0.0.145ï¼Windowsã¨Macåãï¼ã11.2.202.394ï¼Linuxåãï¼ã§ããããä¿®æ£ããããææ°çã«æ´æ°ã§ããªãã¦ã¼ã¶ã¼ã®ããã«13.0.0.231ï¼Windowsã¨Macåãï¼ããªãªã¼ã¹ãã¦ããã Google Chromeã¨Microsoftã®Interne
è¦å¯åºã¯ãå¾æ¥ã¨ç°ãªãææ³ã§ãã«ç®¡çã·ã¹ãã ãæ¢ç´¢ããä¸å¯©ãã±ããã®å¢å ã観測ããã¨ãã¦ãã·ã¹ãã 管çè ã¸æ³¨æãå¼ã³ããã¦ããã ããã¾ã§ãååºã§ã¯ããã«å¶å¾¡ã®éä¿¡ãããã³ã«ãBACnetãã§ä½¿ç¨ãã47808çªãã¼ãã¸ã®ã¢ã¯ã»ã¹ãæç¶çã«è¦³æ¸¬ãã¦ããã注æãå¼ã³ããã¦ãããã6æ26æ¥ã¨7æ1æ¥ã«å¢å ã確èªããä¸å¯©ãã±ããã¯ãå¾æ¥ã¨ã¯ç°ãªãææ³ãç¨ããæ¢ç´¢æ´»åã ã£ãã¨ããã å ·ä½çã«ã¯ã3æå¾åãã確èªããã¦ããæ å ±åéãç®çã¨ãããReadPropertyãã®ãã±ããã§ã¯ãªããä»åã®ã¢ã¯ã»ã¹å¢å ã¯ãæ¥ç¶ãããè¤æ°æ©å¨ã®æ å ±ã1度ã«ç¢ºèªã§ãããReadPropertyMultipleãã«ãããã®ã§ãååºãè¨ç½®ããè¤æ°ã®ã»ã³ãµã¼ã§ç¢ºèªããã ååºã§ã¯ããBACnetãã«éããããã«ç®¡çã·ã¹ãã ã対象ã¨ãã調æ»ãæ»æãè¡ãããå¯è½æ§ãããã¨ãã¦ã製åã®ã¢ãããã¼ããå®æ½ããä¸ç¨æã«ã·ã¹ãã ã
å¾æ¥å決æ¸ãã¹ãã¼ã決æ¸ã®ãããã«ã¨ã£ã¦ããä¸æ£ééãä¸æ£æ±ºæ¸å¯¾çã¯å«ç·ã®èª²é¡ã ãåé¡è§£æ±ºã®è¿éã¯ã決æ¸ããæ¬äººãèå¥ããèªè¨¼ã»ãã¥ãªãã£ã¼ã®å¼·åã ãéè¡ã決æ¸äºæ¥è ã¯ãæ§æ¥ã®èªè¨¼ãè¦åã£ã¦æ°æè¡ã®å°å ¥ã«è¸ã¿åºãããå©ä¾¿æ§ã¨å®å ¨æ§ã両ç«ããèªè¨¼ã·ã¹ãã ã®å 端äºä¾ã¨ãã¦åèã«ãªãç¹ãå¤ããå®å ¨ãªæ±ºæ¸ãæ¯ããèªè¨¼ã»ãã¥ãªãã£ã¼ã«ãç¸æ¬¡ãã»ããã³ãè¦ã¤ãã£ã¦ããããããå¦å®ã«ç¤ºããã®ãã2014å¹´3
ç¡æã¡ãã»ã¢ããªLINEã®ã¢ã«ã¦ã³ãä¹ã£åããæè¿åé¡ã¨ãªã£ã¦ãã¾ããã¦ã¼ã¶ã¼ãä¹ã£åã被害ãé²ãããã«ã¯ãLINEã®ãã¹ã¯ã¼ãå¤æ´ãæå¹ã§ãã LINEã¯7æ3æ¥ãããã¹ã¯ã¼ããå¤æ´ãã人ã対象ã«ãLINEãã£ã©ã®ç¹è£½ã¹ã¿ã³ããç¡æã§ãã¬ã¼ã³ããããã£ã³ãã¼ã³ãéå§ãã¾ããã ãã¹ã¯ã¼ãã®å¤æ´ãããã«ã¯ãã¡ãã¥ã¼ã®âè¨å®âââã¢ã«ã¦ã³ãâââã¡ã¼ã«ã¢ãã¬ã¹å¤æ´âââãã¹ã¯ã¼ãå¤æ´âã¨é¸æãã¦ããã¾ãã LINEã®ã¢ã«ã¦ã³ãä¹ã£åãã¯LINEããå人æ å ±ãæµåºãã¦ããããã§ã¯ãªããLINEã¦ã¼ã¶ã¼ãã»ãã®ãµã¼ãã¹ã¨åãã¡ã¼ã«ã¢ãã¬ã¹ã¨ãã¹ã¯ã¼ãã®çµã¿åãããå©ç¨ãã¦ããå ´åã«ãã»ãã®ãµã¼ãã¹ããã®æ å ±æµåºã«ããã¢ã«ã¦ã³ããè ãããã¦ããã¨ãããã®ã ãã¹ã¯ã¼ããå¤æ´ãããã¨ã§ãä¹ã£åã被害ãæªç¶ã«é²ããã¨ãå¯è½ã§ããã¹ã¿ã³ããã£ã³ãã¼ã³ã§å¤ãã®ã¦ã¼ã¶ã¼ã対çãã¨ãã°ä¹ã£åã被害ã¯æ¿æ¸ããã
å°å·ãã ã¡ã¼ã«ã§éã ããã¹ã HTML é»åæ¸ç± PDF ãã¦ã³ãã¼ã ããã¹ã é»åæ¸ç± PDF ã¯ãªããããè¨äºãMyãã¼ã¸ããèªããã¨ãã§ãã¾ã Googleã¯å é±æ«ãOpenSSLã®ã³ã¼ããã¼ã¹ããã©ã¼ã¯ãããBoringSSLãã¨ããå称ã®ããã¸ã§ã¯ããæ°ãã«ç«ã¡ä¸ããã¨çºè¡¨ããã å社ã¯ããã¾ã§ãOpenSSLã®ã³ã¼ãã«å¯¾ããã«ã¹ã¿ã ããããOpenSSLã®ãªãªã¼ã¹ãã¨ã«ãªãã¼ã¹ãã¦ããããä»å¾å社ã®ãããã¯BoringSSLã«ãã¼ããããOpenSSLã®ã¢ãããã¼ãã¨ã¨ãã«BoringSSLã®ã³ã¼ããã¼ã¹ã«çµ±åããã¦ãããã¨ã«ãªãã Googleã®ã·ãã¢ã½ããã¦ã§ã¢ã¨ã³ã¸ãã¢Adam Langleyæ°ã¯ããã°ã¸ã®æ稿ã§ãããããã¯ä½å¹´ã«ãããã£ã¦OpenSSLã«å¯¾ãã¦ããããé©ç¨ãã¦ããããããã®ä¸ã«ã¯OpenSSLã®ãªãã¸ããªã«åãè¾¼ã¾ãããã®ãããããå¤ãã¯OpenS
Why Trellix? Platform Services Partners Resources About
ãã¯ã·ã£ã¯6æ17æ¥ãSNSãmixiãã§ç¬¬ä¸è ã«ããä¸æ£ãã°ã¤ã³ããã£ãã¨çºè¡¨ããããªãã6æ2æ¥ã«æ»æãææ¡ãã¦ããå©ç¨è ã«å¯¾ãã¦æ³¨æåèµ·ãè¡ãªã£ã¦ããããæ»æã¯ä¾ç¶ã¨ãã¦ç¶ç¶ä¸ã ã¨ããã ä¸æ£ã«ãã°ã¤ã³ãåããã¢ã«ã¦ã³ãæ°ã¯16æ¥24ææç¹ã§26ä¸3596件ã§ãä¸æ£ãã°ã¤ã³ã®è©¦è¡åæ°ã¯ç´430ä¸åã«åãã ã å社ãäºæ ã確èªããã®ã¯6æ2æ¥ã§ãã¦ã¼ã¶ã¼ããã®åãåãããåãã¦è©³ç´°ãªèª¿æ»ãè¡ãªã£ãã¨ãããç¹å®ã®IPã¢ãã¬ã¹ããã®æ»æã5æ30æ¥ããç¶ãã¦ãããã¨ãããã£ãã¨ããã ãã®ä¸æ£ãã°ã¤ã³ã¯ããã¢ã«ã¦ã³ããªã¹ãåæ»æãã«ãããã®ã§ããã¯ã·ã£ã¯3æã«ãæ»æãåãã¦ããã»ããç´è¿ã§ã¯ãã³ãã³åç»ãæ»æ被害ãåãã¦ããããããã®ãµã¼ãã¹ãä»ç¤¾ãµã¼ãã¹ã®ID/ãã¹ã¯ã¼ãæµåºã«ãã被害ã ã ãªããç¾æç¹ã§èª²éãmixiãã¤ã³ãã®ä¸æ£å©ç¨ã¯ç¢ºèªããã¦ããããã¯ã¬ã¸ããã«ã¼ãæ å ±ã«ã¤
ä¸çæ大ã®èªç©ºã»å®å®æ©å¨ã¡ã¼ã«ã¼ã§ããç±³ãã¼ã¤ã³ã°ãäºæ¥ã®æ§æ ¼ä¸ãå社ã¯å¸¸ã«ãµã¤ãã¼æ»æãåãã¦ããããå ç¢ãªã»ãã¥ãªãã£ã·ã¹ãã ãæ§ç¯ããæ40ä¸ä»¶è¿ãã®ã³ã³ãã¥ã¼ã¿ã¼ã¦ã¤ã«ã¹ã®ä¾µå ¥ããããã¯ãã¦ããã¨ãããä¸çæé«æ°´æºã¨ãããã»ãã¥ãªãã£ã·ã¹ãã ã®æ§ç¯ã»éç¨ãã¦ãã¦ãçããããµã¤ãã¼ã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³äºæ¥ãææãããç±³å½ã§ã¯å½é²ç·çãã¯ããã¨ããæ¿åºæ©é¢ã«ãæ¥æ¬ã§ãå®å ¬åºã大ä¼æ¥ãªã©ã¸ã®ã½ãªã¥ã¼ã·ã§ã³æä¾å®ç¸¾ãããããã¼ã¤ã³ã°ã®ã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³äºæ¥ãçµ±æ¬ãããã¥ã¼ã¤ã»ããã¯æ°ã«äºæ¥ã®ç¶æ³ãèããã ãã¼ã¤ã³ã°ããµã¤ãã¼ã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³äºæ¥ã«ä¹ãåºããçç±ã¯ä½ã§ããã ããã¯ãææããäºæ¥ã®æ§æ ¼ä¸ãé常ã«æ©å¯æ§ã®é«ããã¼ã¿ãæ¥åã§æ±ã£ã¦ãã¾ãããã®ããæã ã¯ã社å ã«ä¸çæé«æ°´æºã®ã»ãã¥ãªãã£ã·ã¹ãã ãæ§ç¯ããéç¨ãã¦ãã¾ããããã§å¹ã£ããã¦ãã¦ã¯ãé«åº¦ãªã»ãã¥
--------------------------------------------------------------------- â ï¼ç·æ¥ï¼BIND 9.10.xã®èå¼±æ§ï¼DNSãµã¼ãã¹ã®åæ¢ï¼ã«ã¤ãã¦ï¼2014å¹´6æ12æ¥å ¬éï¼ - ãã£ãã·ã¥ï¼æ¨©å¨DNSãµã¼ãã¼ã®åæ¹ã対象ããã¼ã¸ã§ã³ã¢ãããå¼·ãæ¨å¥¨ - æ ªå¼ä¼ç¤¾æ¥æ¬ã¬ã¸ã¹ããªãµã¼ãã¹ï¼JPRSï¼ åçä½æ 2014/06/12ï¼Thuï¼ --------------------------------------------------------------------- â¼æ¦è¦ BIND 9.10.xã«ãããå®è£ ä¸ã®ä¸å ·åã«ãããnamedã«å¯¾ããå¤é¨ããã®ãµã¼ ãã¹ä¸è½ï¼DoSï¼æ»æãå¯è½ã¨ãªãèå¼±æ§ããéçºå ã®ISCããçºè¡¨ããã¾ã ããæ¬èå¼±æ§ã«ãããæä¾è ãæå³ããªããµã¼ãã¹ã®åæ¢ãçºçããå¯è½æ§ ãããã¾ãã
ãã¤ã¯ãã½ãããèªç¤¾ã®ç¤¾å ãããã¯ã¼ã¯ã§å®æ½ãã¦ããã»ãã¥ãªãã£å¯¾çã«ã¤ãã¦ãç´¹ä»ã»è§£èª¬ããä¸åã ããWindowsã®å ç¢æ§ãèªæ ¢ãããã¨ããæ¬ã§ã¯ãªãããã¾ãå ¬éããããã¨ã®ãªããã¦ã¼ã¶ã¼äºä¾ã¨ãã¦ã®ã»ãã¥ãªãã£å¯¾çã詳細ã«è§£èª¬ãã¦ããã ã¿ã¤ãã«ã®ããªããã¤ã¯ãã½ããã¯ãµã¤ãã¼æ»æã«å¼·ãã®ãï¼ããä¸è¨ã§çµè«ãã¾ã¨ãã¦ãã¾ãã¨ããä¸è²«ãã対çãå¾¹åºãããããã¨ããç¹ã«å°½ãããæ¬æ¸ã§ç´¹ä»ããã¦ãã対çã¯å¥ãã¦ãã£ããã®ã§ã¯ãªããéèªãWebãµã¤ãã§ä½å¹´ãåããç´¹ä»ããã¦ãããããªå¯¾çã°ããã ãã ããã¨ãã£ã¦ãç®æ°ãããçç¡ã¨ãããã¨ã¯ãªãã対çãå¾¹åºããããã®æ¹æ³è«ã¨ããã®ã¯ãã»ãã«é¡ãè¦ãªããã®ãããã æç§æ¸çãªå¯¾çãå¾¹åºããããã®æç§æ¸ãã¨ä½ç½®ä»ããã¨åãããããã ãããåºç¤ãã解説ãã¦ããã®ã§ããããã¯ã¼ã¯ç®¡çè 1ï½2å¹´çã§ãèªã¿ããªããã¯ãã ã
æ¦è¦ 2014å¹´4æãHeartbeatã¡ãã»ã¼ã¸ã®å¦çã«ããã¦å¢çãã§ãã¯ã®åé¡ãããOpenSSLãåä½ãã¦ãããã·ã³ã®ã¡ã¢ãªæ å ±ãåå¾å¯è½ãªç¶æ ã«ãã£ããã¨ãå ¬è¡¨ããã¾ãããæåã«ã¨ã³ãã°ãã¦ãã2å¹´ãçµéãã¦ãããã¨ãã¡ã¢ãªæ å ±ãçªåãããéã«ãã°ãæ®ããªããã¨ããæ©æ¥ãªå¯¾å¿ãå¿ è¦ã§ããã¨èªèããã¾ããã大éã«ã¡ã¢ãªã¢ã¯ã»ã¹ãããã¨ã§å®éã«ã¡ã¢ãªä¸ããç§å¯éµã復å ã§ãããã¨ãã³ã³ããã£ã·ã§ã³ã®éå¬ã«ããå®é¨çã«ç¤ºããããã¨ãããRSAéµãã¢ã®åä½æãæ¨å¥¨ãããå¤ãã®ãµã¼ã証ææ¸ã失å¹ã»åçºè¡ãããäºæ ã«ãªãã¾ããã æ¬çºè¡¨ã§ã¯ï¼ãã®äºä¾ãèµ·ç¹ã«ããã¤ãã®èå¯ãè¡ãªãã¾ããå©ç¨ãã¦ããã¢ããªã±ã¼ã·ã§ã³ããããã³ã«ã«ããããæ¯ããæè¡ã¯å®å ¨ãç¥è©±ã«ã¤ãã¦åãä¸ããå¾ãæå·ã¢ã«ã´ãªãºã å±æ®åã¨ç¾å¨ã®SSL/TLSã«ãããå©ç¨ç¶æ³ãããã«NSAã«ããéä¿¡ååã«é¢ããä¸é£ã®å ±éãã注ç®ãéã
ãã¯ã·ã£ãéå¶ããSNSãmixiãã«ããã¦ãä½è ãã«ãããä¸ç¹å®å¤æ°ãçã£ãä¸æ£ãªãã°ã¤ã³ã試ã¿ããã¦ãããã¨ãåæã«ããæããã¨ãªã£ãã ãã¯ã·ã£ã«ããã¨ã5æ31æ¥ããç¾å¨ã§ãè¡ããã¦ããã¨ãããä¸æ£ãã°ã¤ã³ãè¡ãããå¯è½æ§ã®ããã¢ã«ã¦ã³ãã¯ç´4ä¸ä»¶ãç¾æç¹ã§ã課éãã¢ã«ã¦ã³ãæ å ±ã®å¤æ´ãªã©ã®è¢«å®³ãåããã¨ããå ±åã¯åãã¦ããªãã¨ããããªããå®éã«ä¸æ£ã«ãã°ã¤ã³ããã件æ°ã¯èª¿æ»ä¸ã¨ã®ãã¨ã ã mixiéå¶äºåå±ã§ã¯ãä¸æ£ãã°ã¤ã³ãè¡ãããã¢ã«ã¦ã³ãã«å¯¾ããmixiå ã®ã¡ãã»ã¼ã¸æ©è½ã使ã£ã¦ãç»é²ã¡ã¼ã«ã¢ãã¬ã¹ã¨ãã¹ã¯ã¼ãã®åçºè¡ãä¿ãã¦ãããç¾å¨ã¯ä¸æ£ãã°ã¤ã³ã試ã¿ãããã¦ã¼ã¶ã¼ã«ã®ã¿éç¥ãã¦ããããä»å¾ãmixiããããã¼ã¸ã§ã注æåèµ·ããäºå®ã ã¨ããã ãã¯ã·ã£ã¯ããµã¼ãã«å¯¾ãã¦ä¸æ£ã¢ã¯ã»ã¹ããã£ãããã§ã¯ãªããã¨ãããµã¼ãããã¦ã¼ã¶ã¼æ å ±ãªã©ã奪ããã¦ããªããã¨ã強調ããã®ä¸é£
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}