# ãã£ãã·ã³ã°ã¦ã§ããµã¤ãã¯ããã«æ¤ç´¢é¤ã対çããã¦ããã®ã 5 min read... æ¬ç¨¿ã§ã¯å®éã®ãã£ãã·ã³ã°ã¦ã§ããµã¤ããæ¡ç¨ãã¦ããæ¤ç´¢é¤ã(ã¯ãã¼ã©ã¼å¯¾ç)ææ³ã«ã¤ãã¦ç´¹ä»ãã¾ãã # .htaccess ã«ãã対ç ã¾ã㯠.htaccess (opens new window) ã«ãã対çã§ãã # allow / deny ã«ããã¢ã¯ã»ã¹å¶å¾¡ ç¹å®ã® IP ããã®ã¢ã¯ã»ã¹ããããã¯ããããã®ãã©ãã¯ãªã¹ãã¨ãã¦ã.htaccess ã使ç¨ãããã¿ã¼ã³ãããã¾ãã 以ä¸ã¯ AOL / Gmail / Dropbox / etc. ã®ã¦ã¼ã¶ã¼ãã¿ã¼ã²ããã«ãããã£ãã·ã³ã°ã¦ã§ããµã¤ãã§å®æ½ã«ä½¿ç¨ããã¦ãã .htaccess ãã¡ã¤ã«ã®ä¸é¨ã§ãã <Files ~ "^.(htaccess|htpasswd)$"> deny from all </Files> order
# å® é 便æ¥è /éèæ©é¢ãè£ ã£ãSMS Phishingã«ã¤ã㦠æ¥æ¬ã®å® é 便æ¥è /éèæ©é¢ãè£ ã£ãSMS phishingãè¡ã3ã¤ã®Androidãã«ã¦ã§ã¢ãåå¨ãã¦ãã¾ãã FakeSpy FakeCop(XiGhost) MoqHao(XLoader) 3ã¤ã¨ãã«ãã®æ°å¹´éã«ããã£ã¦æ¥æ¬ã®ãã©ã³ããã¿ã¼ã²ããã«ããSMS phsihingãè¡ã£ã¦ãã¾ãã ãã®è¨äºã«ã§ã¯ãããããã®ç¹å¾´ã¨æè¿ã®å¤æ´ç¹ã«ã¤ãã¦è§£èª¬ãã¾ãã 3ã¤ç¨®é¡ãããã«ãé¢ãããããã®åºå¥ãææ§ãªã¾ã¾è°è«ãè¡ããã¦ããå ´é¢ãå æ¥è¦ããã¾ããããã®è¨äºãããæ¥æ¬ãã¿ã¼ã²ããã«ããSMS Phishingã®ç¾ç¶ã«ã¤ãã¦ç解ãæ·±ã¾ããã¨ãæå¾ ãã¾ãã # FakeSpy FakeSpyã¯æ¥æ¬éµä¾¿ã«å½è£ ããAndroidãã«ã¦ã§ã¢ã§ãã æ¥æ¬ä»¥å¤ã®å½ã§ã¯ãLa Poste(ð«ð·)ãRoyal Mail(ð¬ð§)ãªã©ã«
OpenCTI ã¨ã¯ âOpenCTI ã¯ãLuatix ãéçºãã¦ãã Open Cyber Threat Intelligence Platform. Luatix ã¯ANSSI/CERT-FR, CERT-EUã founder members ã«ãªã£ã¦ããéå¶å©çµç¹ãTainum ã Thales ãã¹ãã³ãµã¼ããã¦ããã STIX2.1 ããã¼ã¹ã«ãã Threat Intelligence ã®ãã¬ãã¸ç®¡çãè¡ããã¨ãã§ããã (Source: OpenCTI Introduction to the platform & next steps) ã¢ã¼ããã¯ã㣠â (Source: OpenCTI Introduction to the platform & next steps) ã¦ã¼ã¹ã±ã¼ã¹ âCERT-EU â (Source: OpenCTI Introduction t
# Shodan search 101 1 min read... # æ¤ç´¢ã¯ã¨ãªã¼ã®åºæ¬ Shodan ã®æ¤ç´¢ã¯ã¨ãªã¼ã¯filtername:valueã¨ããå½¢å¼ã§è¨è¿°ãã¾ãã ä¾ãã°ãæ¥æ¬ã«åå¨ãããã¹ãã調ã¹ããå ´åã®ã¯ã¨ãªã¼ã¯ä»¥ä¸ã«ãªãã¾ãã country:jp (opens new window) 使ç¨ã§ãããã£ã«ã¿ã¼ã®è©³ç´°ã«ã¤ãã¦ã¯ãå ¬å¼ã® API ããã¥ã¡ã³ã (opens new window)ãããã¯JavierOlmedo/shodan-filters (opens new window)ãåç §ãã¦ãã ããã valueã®å¤ã ,ã§åºåã£ã¦æå®ãããã¨ã§ãè¤æ°ã®å¤ãåæã«æ¤ç´¢ãããã¨ãã§ãã¾ãã country:jp,kr (opens new window) ãã£ã«ã¿ã¼ã¯åæã«è¤æ°æå®ãããã¨ãã§ãã¾ããåºæ¬çã«ã¯è¤æ°ã®ãã£ã«ã¿ã¼ã®ANDãã¨ã£ãæ¤ç´¢çµæãè¿ã£ã¦ãã¾
# IoC æ½åºã®ããã®ãã¯ããã¯ã¨ãã¼ã« 5 min read... # åæ IoC(Indicator of Compromise)ã¨ã¯ãã»ãã¥ãªãã£ã¤ã³ã·ãã³ãã«é¢é£ããã¤ã³ãã£ã±ã¼ã¿ã¼ã®ãã¨ã§ããå ·ä½çã«ã¯ããã«ã¦ã§ã¢ã®ããã·ã¥å¤(MD5, SHA256, sssdeep, etc.)ããã®éä¿¡å ã® IP ã¢ãã¬ã¹ãURL çãããã«è©²å½ãã¾ãã ä¸è¬çã«ãIoC ã¯ãã©ãã¯ãªã¹ãã¸ã®é©ç¨ãæ å ±å ±æã®ããã«ç¨ãããã¾ãã # IoC æ½åºãå¿ è¦ã¨ãããèæ¯ ã»ãã¥ãªãã£ãã³ãã¼ããæä¾ãããã¬ãã¼ãã®ä¸ã«ãIoC ãå«ã¾ãã¦ãããã¨ãããã¾ãããæ§é åããããã¼ã¿ã¨ãã¦æä¾ããã¦ããªãå ´åãã»ã¨ãã©ã§ãã(ä¾ãã°ãæä¸ã«ãã¡ã¤ã³åã IP ã¢ãã¬ã¹ãè¨è¼ããã¦ããã ãç) ãããã£ãã¬ãã¼ããããIoC ãæ§é åããããã¼ã¿ã¨ãã¦æ½åºãããã¨ã§ããã©ãã¯ãªã¹ãã¸ã®é©ç¨ãæ å ±å ±æã®
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}