ææ°çã¯ãã¡ã â http://www.slideshare.net/nekoruri/20161126-cloud-security-aomori 2016-11-06 ã»ãã¥ãªãã£ã»ãããã£ã³ã in åæµ·é 2016 #seccamp

ææ°çã¯ãã¡ã â http://www.slideshare.net/nekoruri/20161126-cloud-security-aomori 2016-11-06 ã»ãã¥ãªãã£ã»ãããã£ã³ã in åæµ·é 2016 #seccamp
2016å¹´12æ5æ¥ãããAmazonãDash Buttonã§å©ç¨ã§ããããã«ãªãã¾ãããããã¯ããã¿ã³ãæ¼ãã ãã§Amazonããä¸é¨ã®åå(天ç¶æ°´, ã²ããããªã©)ãè³¼å ¥ã§ããããã«ãªãã¨ãã端æ«ã§ãã ä»åã¯ãã®Amazon Dash Button(⻠以éãã¿ã³ã¨å¼ã³ã¾ã)ããæ¼ãããHTTPãªã¯ã¨ã¹ããé£ã¶ãã¿ã³ã¨ãã¦å©ç¨ããããã¡ããã¯ãªã©ã§å©ç¨ã§ããããã«ãã¦ããã¾ãã ã¨ãããããã¿ã³ãæ¼ãããSlackã«Wehbooké£ã°ããããã¾ã§ããã¾ããã ãã¿ã³ã®ä»çµã¿ ãã¿ã³ã¯é»æºããªãããã¦ããã®ã§ã以ä¸ã®ãããªé åºã§åãã¾ãã é»æºON åæã«è¨å®ãããWi-Fiãããã¯ã¼ã¯ã«æ¥ç¶ IPéè¤æ¤ç¥ã®ããã«ARPããã¼ãéä¿¡ IPãéè¤ãã¦ãããIPåè¨å®?(èªä¿¡ãªã) Amazonã¸è³¼å ¥å¦çã®å®è¡(HTTP???) åè : How I Hacked Amazonâs $5
2019/11/6è¿½è¨ æ¢ã«Amazonã®Appä¸ããè¨å®é ç®ãåé¤ããã¦ãã¾ã£ãé¢ä¿ä¸ãDashButtonã®ã»ããã¢ããæ段ããªãã®ã§ãã¡ãã®ææ³ã使ãã®ã¯ããªãå³ãããã¨æãã¾ãã 代æ¿ã®ã»ããã¢ããææ³ãããã°è¯ããã§ãããAmazonå´ããªã»ããã³ãã³ãè¿ãããããã®ã§å¤åé¢åãããªãã§ãã ãããã«ãã¦ãå®ãã§ãã¿ã³ãè²·ãã以å¤ã«ã¯ã¡ãªããããªãã®ã§ãçé»åãªã¯ã¤ã¤ã¬ã¹ãã¿ã³ãã»ããã£ã¦ãã¼ãºãæºãããªããå²é«ã§ã¯ããã¾ããAWS IoTã¨ã³ã¿ã¼ãã©ã¤ãºãã¿ã³ããããæ¤è¨ããã»ããè¯ããã¨æãã¾ãã å°ãªãã¨ãä½æ¶è²»é»åã¨ããç¹ã¯DashButtonåæ§ã§ããããã¼ã«ã«ã§ç£è¦æããªãã¦ãè¯ãã®ã§ã¹ãã¼ãã§ãã 話é¡ã®Amazon Dash Buttonãè²·ã£ã¦ã¿ã¾ãããæ¼éãã«è²·ãã°19æã«ã¯å±ããã®ã§Amazonããããªã¨ã ããã¯ãã¦ããã4åãè²·ã£ãçç±ã¯500åã¨ããå¤
2016 å¹´ 6 æ 14 æ¥ (ç«) ç波大å¦çºãã³ãã£ã¼ ã½ããã¤ã¼ãµæ ªå¼ä¼ç¤¾ 代表åç· å½¹ ç» å¤§é ãOPEN IPv6 ãã¤ããã㯠DNS for ãã¬ããã»å ãã¯ã¹ãããµã¼ãã¹ãå ¬é NTT æ±æ¥æ¬ã®ãã¬ããåç·é㧠VPN æ©å¨ã IoT æ©å¨å士ã®ãã¬ãã網å ã®é«éã»ä½é 延ã®ç´æ¥éä¿¡ãå®ç¾ ã½ããã¤ã¼ãµæ ªå¼ä¼ç¤¾ã¯ãæ¬æ¥ããOPEN IPv6 ãã¤ããã㯠DNS for ãã¬ããã»å ãã¯ã¹ãããµã¼ãã¹ (https://i.open.ad.jp/) ã®ãã¼ã¿çãæä¾éå§ãã¾ããã ãã®ç¡åã®ãã¤ããã㯠DNS (DDNS) ãµã¼ãã¹ãå©ç¨ããã¨ãNTT æ±æ¥æ¬ã®ãã¹ã¦ã®ã¨ãªã¢ã® 1,066 ä¸æ¬ã®ãã¹ã¦ã®ãã¬ããåç·ä¸ã§ãã¤ã³ã¿ã¼ããããã絶対ã«ä¸æ£ä¾µå ¥ããããããã®ãªãã大å¤é«éãã¤ä½é 延㪠VPN ããç°¡åã«æ§ç¯ã§ãã¾ã (注 1)ãã¾ããIoT æ©å¨ããã¬ãã網ã«ç´
IoTãé§ä½¿ãã¦ãã¤ã¬ã®å室空ãç¶æ³ãæ¤ç¥ãã¦WEBã§ç¢ºèªã§ããã¢ããªãä¼ç¤¾ã§éç¨ãã¦ã¿ã¾ããã å°åæ£å¤§ 2016å¹´2æ5æ¥ è¿½è¨ æ¬ã¨ã³ããªã®å 容ã«ã¤ãã¾ãã¦ä¸é¨ã®æ¹ãããææãããã ãã¾ããã ãªã¯ã«ã¼ãã©ã¤ãã¹ã¿ã¤ã«ã§ã¯æ¥åãåæ»ã«åãããã®æ½çã¨ãã¦åº§å¸ã®ã¬ã¤ã¢ã¦ãå¤æ´ããã³ããã«ä¼´ãå¾æ¥å¡ã®åºå ¥ããé »ç¹ã«çºçããã¾ãé¨ç½²ãããã¢ã«ããç·å¥³æ¯ããã¾ãã¾ã§ããã¨ããèæ¯ãããã¾ããããã«ä¼´ãããã¤ã¬ãã¼ã¹ ( å室 ) ã¨å¾æ¥å¡ã®å²åã¯å ¥å± ããã¢å ¨ä½ ( è¤æ°é ) ã®ãã¤ã¬ãã¼ã¹æ°ã¨å¾æ¥å¡æ°ã¨ã§ç®åºãã¦ããã¾ãã ããã«ããå¾æ¥å¡ã«å¯¾ãããã¤ã¬ãã¼ã¹æ°ã¯æ³ä»¤ä¸ã¯ãªã¢ããã¦ããã¨ã®èªèã§ãã èªè ã®çãã¾ãªãã³ã«é¢ä¿åä½ã«ãè¿·æããæããã¾ãããã¨ããè©«ã³ããã¨ã¨ãã«ãããã«è¨æ£ããã¦ããã ãã¾ãã ããã«ã¡ã¯ã2015年度æ°åããã³ãã¨ã³ãã¨ã³ã¸ãã¢ã®å°åæ£å¤§ã§ãã IoTã§ãã¤
ä»ã¹ã¿ã¼ãã¢ããä¼æ¥ã®Connected Cycleã¯ãCES2015ã«èªè»¢è»ç¨ããã«âConnecter Pedalâãåºå±ãããGPSã¢ã¸ã¥ã¼ã«ãå èµãã¦ãããèªè»¢è»ã移åãããéã«å³åº§ã«ã¹ããã«ããã·ã¥éç¥ã§ããã»ããèªè»¢è»ãç½®ããå ´æãæ¢ããã¨ãå¯è½ã èµ°è¡ä¸ã®ã«ã¼ããå¾æãé度ãªã©ã¯ãã¹ã¦ã¯ã©ã¦ãã¢ãããã¼ãã®ããã«ä¿åãããæ¨å®æ¶è²»ã«ããªã¼ãè¨æ¸¬å¯è½ã注ç®ç¹ã¯ãèªå·±å é»æ©è½ã«ããããããªã¼å é»ãä¸è¦ãªãã¨ãã¹ããã¬ã¹ã§ã使ããç¬ç«ããã¤ã¹ã¨ãã¦ã使ããããªããããã«ã®åãå¤ãã«ã¯ç¹å¥ãªã³ã¼ãåããããã¼ãè¦æ±ãããã å é»ã¯ãããããããã¤ãã¢ã¨ä¼¼ãæ¹å¼ãã¨æããããèµ°è¡æã®å転ãã¹ãé·æéèµ°è¡æã®å é»å¹çãé²æ°´æ§ãå ç¢æ§ãªã©ã«å°ã ä¸å®ããããããã¡ãã¡ãã³ãã«åãã«ã¹ãããã»ããããªãã¦ãæ°è»½ã«ä½¿ããGPSãã¬ã¼ã¨ãã¦é åçãè¡ä¹ãåãã ãã§ãªããã¯ãªããã¬ã¹ï¼åºå®ï¼å¯¾å¿ã¢ã
ã©ã³ãã³ã°
é害
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}