æ±äº¬ãªãªã³ããã¯ã»ãã©ãªã³ããã¯ã¾ã§ã«ãªãã¨ã
âãååãæ±äº¬ãªãªã³ããã¯ã»ãã©ãªã³ããã¯ã®è©±ãã§ã¾ããããé¢ä¿ãããã§ããï¼
é´æ¨ããããã¿ããªãã¿ããªãæ±äº¬ãªãªã³ããã¯ã»ãã©ãªã³ããã¯ã®è©±ãããã¦ãããããªãã§ãããä¸ççãªã¤ãã³ããªã®ã§ãå½ç¶ãªãããããããªäººãã¿ã¼ã²ããã«ãããã ãããªã¨ã
âããµã¤ãã¼ããã®ã¿ã¼ã²ããã«ã
é´æ¨ããããå¤ãã®é¢ä¿è ãã¿ãªãã2020å¹´ã¾ã§ã«ããããµã¤ãã¼æ»æã®å¯¾çãããã°ã¨è¨ã£ã¦ãã¾ãããããããªãã¨ããããå±æ©æèã¯ãããã©ãããã¾ãå ·ä½æ¡ã«ãªã£ã¦ããªããããªæ°ããã¾ããç®çã«å¿ããçµç¹ã¥ããã¨ãããã権éã®æ´çãç£ç£ã®å¼·åã®é¨åã§ããããããã¯ãæ¢åã®å½¹æã®çµç¹ã権éã«ã¤ãã¦ã¯ãã»ã³ã·ãã£ããªè©±é¡ã§ããããåé¡æèµ·ãå¼±ããªãã¾ãããã
âãæ¢åã®å½¹æã®çµç¹ã権éâ¦â¦å ¨å¡ãã¤ããã¦ãã¾ããããªè©±é¡ã§ãã
é´æ¨ãä»åã®æ¥æ¬å¹´éæ©æ§ã®å人æ å ±æ¼ããäºä»¶ã«ã¤ãã¦ã¯ãæ¥æ¬å¹´éæ©æ§ãç¬ç«è¡æ¿æ³äººãªã®ã§ããç¬ç«è¡æ¿æ³äººã®ä¿æããå人æ å ±ã®ä¿è·ã«é¢ããæ³å¾ããé©ç¨ããã¾ããããã主管ãã¦ããã®ã¯ãç·åçè¡æ¿ç®¡çå±ã«ãªãã¾ããã§ããå¹´éæ¥åãæ管ãã¦ããã®ã¯åçå´åçã§ãç®ä¸ãæ¹å¤ã®ç¢é¢ã«ç«ã£ã¦ãã¾ããããããµã¤ãã¼ç¯ç½ªã¨ãããã¨ã«ãªãã°è¦è¦åºãå½å¤ããã®æ»æã¨ãªãã°é²è¡çãé¢ä¿ãããã§ããã
ãä»åã®æ¼ããåé¡ã®åå 究æã対çã«ã¤ãã¦ã¯ã主ã«NISCï¼*å é£ãµã¤ãã¼ã»ãã¥ãªãã£ã»ã³ã¿ã¼ï¼ã対å¿ãã¦ããããã§ããã©ããçµå±ãå¤ããè¦ãã¨ãæ確ãªè²¬ä»»ã権éããªãNISCãã¡ã¤ã³ã«ãªã£ã¦ããã®ã§ã¯ãªããã¨ãç·åçã¯å示ãåºãã¦çµãããªã®ããåå´çã¯ITåé¡ã«è¸ã¿è¾¼ã¾ãªãã®ãã¨ãæ¯åãããªè»¸ãããããªããããããªããããªå½¹å²åæ ã§å¤§ä¸å¤«ãªã®ãã¨ä¸å®ã«ãªãã¾ããã
âãNISCã®ã»ãã«ãITããã£ã¦ããã¤ããªãã®ãã¨ãããã§å¤§ä¸å¤«ãªã®ãã¨ã
é´æ¨ããããä¸å¤®çåºéã®å®å®ååä½å¶ã ã£ã¦ããããç¶æ³ãªã®ã«ã2000ååé¡ã¨ãã¦ææãã¦ããã¨ããã®ã¡ã¤ã³ã¯ãå°æ¹èªæ²»ä½ã§ãããããç¹ã«å°ããªå¸åºçºæã¬ãã«ã§ãã®åé¡ãèµ·ãããã©ããªãã¾ããããããããç¬ç«ãã¦ãèªå¾çã«åãçµã¾ãã°ãªããªã建åã«ãªã£ã¦ãã¾ããå人æ å ±ä¿è·æ¡ä¾ã®ä¸ã§å人æ å ±ãå®ç¾©ããå®å ¨ç®¡ç義åãå®ããæ å ±ã»ãã¥ãªãã£åºæºãèªãçå®ãããã¨ã«ãªã£ã¦ãã¾ããããããã®çµç¹å ã§ãCSIRTï¼Computer Security Incident Response Teamï¼ãSOCï¼Security Operation Centerï¼ãç«ã¡ä¸ãã¦ãç¬èªã«ã¹ãã«ããIT人æãè²æç»ç¨ãã¦ããã®ã§ããããã
ãæ¥æ¬å¹´éæ©æ§ã®åé¡ã¯æ°·å±±ã®ä¸è§ã§ãããã¨ã¯èª°ããããã£ã¦ããã¯ãã§ããæ¨çåã¡ã¼ã«ã¯å½å ã®å¤ãã®çµç¹ã«æã¡è¾¼ã¾ãã¦ããã¯ãã§ããããã«éãããã¾ãã¾ãªè å¨ã«ããããã¦ããã¯ãã§ãããæ¼ããçã®ã¤ã³ã·ãã³ããçºçãã¦ããèªè¦ãããªãå ´åãå¤ãã§ãããããäºæ ããã£ã¦ãç¹ã«å ±åãå ¬è¡¨ããã¦ããªããã¨ãå°ãªããªãã§ãããã
âã対å¿ã©ããããä½ãèµ·ããã®ãããããããªãå¯è½æ§ããããã¨ã
é´æ¨ãå é²çãªå°æ¹èªæ²»ä½ã®ããã¤ãã¯å¯¾å¿ãã¦ããã§ãããããå¤ãã¯ããã¶ããã¼ã¬ã¼ãæ¦æ³ã§ãããã¹ãã«ããªããã°ãéããªããã¾ãã«ãªãè¡ãªããæ¨çã«ãããã¾ã¾ã¨ããã¨ããã¯ããã§ãããããã®ããããæ¾ç½®ãã¦æ±äº¬ãªãªã³ããã¯ã»ãã©ãªã³ããã¯ãè¿ãããã¨ã«ãªãããã§ããçµç¹ã権éã«æãå ¥ããã¨ããã¾ã§è¸ã¿è¾¼ã¾ãã«æ¬å½ã«å¤§ä¸å¤«ãã¨æãããã§ãã
âãæ±äº¬ãªãªã³ããã¯ã»ãã©ãªã³ããã¯ã®å¾ãä¸çã¯ç¶ãã¾ãããã
é´æ¨ããã¡ãããã¾ãã¯5ã«å¹´è¨ç»ã¨ãããã¨ã§æ±äº¬ãªãªã³ããã¯ãã¿ã¼ã²ããã«é²ããã®ã¯è¯ããã¨ã§ã¯ãªãããªã¨æãã¾ãããã®å¾ã次ã®5ã«å¹´è¨ç»ã§å¯¾å¿ãã¦ããã°ããã¨æãã¾ãã財æ¿ã¯å¹´ã å³ãããªãã¨ã¯æãã¾ããã
ããããããã¯ã¤ãããã«ã¼ãæ°éããéããè¨ç»ãããããã§ãããç¾ç¶ã®å ±é ¬ã§åªç§ãªäººãå¿ è¦ãªäººæ°æãããã¨ãã§ããã®ããä¸è¬ã®æ°éä¼æ¥ããããã«ãã©ãã¯ãã¼ã±ããã®æ¹ãããã®æ°åæãã§ãããããã¡ããå ±é ¬é¡ãå ¨ã¦ã§ã¯ããã¾ããããå¾æ¥ã®äººäºãçµç¹ä½å¶ã®ã¾ã¾ã§ã¯éçãããã§ãããã
ãå½ã®çåºåä½ã§ãã対å¿ããã®ãå°é£ãªæã«ãã¾ãã¦ãå°æ¹èªæ²»ä½ãããã¦ç¬ç«è¡æ¿æ³äººçãã©ãããã¨ããã®ããå½¹æã«éãããã¦ã対å¿ã«åªããã¨æªãé£ã°ããããã説æãåãã¦ããããªãã¨ããããããªãã¨ããã®ããæãããã¨ããã®ãã竹æ§ã¨ããã®ãã
âã竹æ§â¦â¦2000ååé¡ãå«ãã人äºãçµç¹ã®åé¡ã§ããã¨ã
é´æ¨ãããã¸ãã¦å®ä¿æ³å¶ã®è©±ãå§ã¾ã£ãããã«ãå½éæ å¢ã¨ãã¦ã¯ç·è¿«ãã¦ããã£ã¦ãããã¨ã®ããã§ãããå¶çºçå±å°çãªãããã¦ã©ã¼ã®ãªã¹ã¯ããããã¨ãªãããããããã¯ãã£ã±ããµã¤ãã¼ã¦ã©ã¼ã®ãªã¹ã¯ãé«ãããã¨ãå½å¤ããã®ãµã¤ãã¼æ»æãå¢ãã¦ããã§ããããã¨ã¯ãã ãããã¿ããªãå¯ãã¦ããã¨ããã§ãã
âãæ å ±ã»ãã¥ãªãã£ã£ã¦ããã¨æ¥æ¬ã ã¨ãã¨ãããã°ãã¸ãã¹ã¬ã¤ã¤ã¼ã®è©±ã«ãªããã¡ã§ããããã
é´æ¨ããããæ å ±ã»ãã¥ãªãã£ã®åé¡ã£ã¦ããã£ã±ããã·ã§ãã«ã»ãã¥ãªãã£ã®åé¡ã®ä¸ã«ç©ã¿éãªã£ã¦ããä¸ä½ã¬ã¤ã¤ã¼ã«ãããã ãããªãã¨ããã¸ãã¹é¢ã°ããã«éãã¦è¦ã¦ããããæ代ã§ã¯ãªããªã£ã¦ãããªã¨ã²ãã²ãã¨æãã¦ããã¨ããã§ãã