ããã§ãã¯ã»ãã¤ã³ãã»ã½ããã¦ã§ã¢ã»ãã¯ããã¸ã¼ãºï¼ä»¥ä¸ããã§ãã¯ã»ãã¤ã³ãï¼ã®è å¨ã¤ã³ããªã¸ã§ã³ã¹é¨éã§ãããã§ãã¯ã»ãã¤ã³ãã»ãªãµã¼ãï¼ä»¥ä¸ãCPRï¼ã¯ã2024å¹´11æã®ææ°çGlobal Threat Indexï¼ä¸çè å¨ã¤ã³ããã¯ã¹ï¼ãçºè¡¨ããã
ãä»åã®èª¿æ»ã§ãç¾å¨ãã«ã¦ã§ã¢ã©ã³ãã³ã°ã®é¦ä½ã«ç«ã¤Androxgh0stããIoTããã¤ã¹ãWebãµã¼ããªã©ãéè¦ã¤ã³ãã©ã®åºå¹¹ã¨ãªãé¨åãå«ããè¤æ°ã®ãã©ãããã©ã¼ã ã®èå¼±æ§ãæªç¨ãã¦ããã¨å¤æããã¨ãããMoziã®æ¦è¡ãæ¡ç¨ãããªã¢ã¼ãã³ã¼ãå®è¡ã¨èªè¨¼æ å ±ã®çªåã«ãããã·ã¹ãã ã¸ã®æç¶çãªã¢ã¯ã»ã¹ãç¶æããªãããDDoSæ»æããã¼ã¿çªåã¨ãã£ãæ´»åãè¡ã£ã¦ããã¨ã®ãã¨ã ããããã®æ»æã¯ãç£æ¥çå ¨ä½ã«é£éçãªå½±é¿ãåã¼ãã¦ãããã¤ã³ãã©ã«ä¾åããæ¿åºãä¼æ¥ãå人ã«ã¨ã£ã¦ãªã¹ã¯ã¨ãªãã¨ããã
ã詳細ã¯ä»¥ä¸ã®ã¨ããã
å½å ã§æ´»çºãªä¸ä½ã®ãã«ã¦ã§ã¢ãã¡ããªã¼
1ä½. Androxgh0stï¼3.20ï¼ ï¼
ãAndroxgh0stã¯ãWindowsãMacãLinuxã®ãã©ãããã©ã¼ã ãã¿ã¼ã²ããã¨ãããããããããåæã®ææã§è¤æ°ã®èå¼±æ§ãæªç¨ããç¹ã«PHPUnitãLaravel Frameworkã Apache Web Serverãæ¨çã«ããã¨ãããåãã«ã¦ã§ã¢ã¯ãTwilioã®ã¢ã«ã¦ã³ãæ å ±ãSMTPèªè¨¼æ å ±ãAWSãã¼ãªã©ã®æ©å¯æ å ±ãçã¿åããLaravelã®ãã¡ã¤ã«ã使ç¨ãã¦å¿ è¦ãªæ å ±ãåéãç°ãªãæ å ±ãã¹ãã£ã³ããããã®æ§ã ãªäºç¨®ãåå¨ãã¦ããã¨ã®ãã¨ã ã
2ä½. BMANAGERï¼1.60ï¼ ï¼
ãBMANAGERã¯ãBoolkaã¨ãã¦ç¥ãããè å¨è¡çºè ã«èµ·å ããã¢ã¸ã¥ã¼ã«åããã¤ã®æ¨é¦¬ã2022年以éãBoolkaã¯åç´ãªã¹ã¯ãªããæ»æã®å±éãããBMANAGERããã¤ã®æ¨é¦¬ãå«ããã«ã¦ã§ã¢é ä¿¡ã·ã¹ãã ã®ä½¿ç¨ã¸ã¨é²åãã¦ããã¨ãããåãã«ã¦ã§ã¢ã¯ãã¹ãã«ã¹çãªãã¼ã¿æµåºã¨ãã¼ãã®ã³ã°ãç®çã¨ãã¦è¨è¨ããããæ§ã ãªã³ã³ãã¼ãã³ããå«ãã¹ã¤ã¼ãã®ä¸é¨ã主ã«ãã¦ã§ããµã¤ãã¸ã®SQLã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æã«ãã£ã¦é å¸ãããèå¼±æ§ãæªç¨ãã¦ã¦ã¼ã¶ã¼å ¥åãååãããã¼ã¿ãçã¿åºãã¨ãã¦ããã
åç2ä½. FakeUpdatesï¼1.60ï¼ ï¼
ãFakeUpdatesï¼å¥åãSocGholishï¼ã¯ãJavaScriptã§æ¸ããããã¦ã³ãã¼ãã¼ããã¤ãã¼ããå®è¡ãããåã«ããã£ã¹ã¯ã«ãã¤ãã¼ããæ¸ãè¾¼ã¿ãGootLoaderãDridexãNetSupportãDoppelPaymerãAZORultãªã©ãä»ã®å¤ãã®ãã«ã¦ã§ã¢ã«ãã侵害ãå¼ãèµ·ããã¨ã®ãã¨ã ã
åç2ä½. AgentTeslaï¼1.60%ï¼
ãAgentTeslaã¯ããã¼ãã¬ã¼ã¨ã¤ã³ãã©ã¹ãã£ã¼ã©ã¼ã¨ãã¦ã®æ©è½ãæããRATã被害è ã®ãã¼ãã¼ãå ¥åããã·ã¹ãã ãã¼ãã¼ãã®ç£è¦ã¨ãã¼ã¿åéãã¹ã¯ãªã¼ã³ã·ã§ããã®æ®å½±ã被害è ã®ããã¤ã¹ã«ã¤ã³ã¹ãã¼ã«ããã¦ããæ§ã ãªã½ããã¦ã§ã¢ï¼Google ChromeãMozilla FirefoxãMicrosoft Outlookãªã©ï¼ãéãã¦èªè¨¼æ å ±ãæ½åºããã¨ããã
åç2ä½. Remcosï¼1.60ï¼ ï¼
ãRemcosã¯ãªã¢ã¼ãã¢ã¯ã»ã¹åããã¤ã®æ¨é¦¬ï¼RATï¼ãã¹ãã ã¡ã¼ã«ã«æ·»ä»ãããæªæã®ããMicrosoft Officeããã¥ã¡ã³ããéãã¦å±éããã¨ãããWindowsã®UACã»ãã¥ãªãã£ãåé¿ãã管çè 権éã§ãã«ã¦ã§ã¢ãå®è¡ããããã«è¨è¨ããã¦ããã¨ã®ãã¨ã ã
æªç¨ãããèå¼±æ§ã®ããã
- HTTPã¸ã®ã³ãã³ãã¤ã³ã¸ã§ã¯ã·ã§ã³ï¼CVE-2021-43936ãCVE-2022-24086ï¼ï¼ãªã¢ã¼ãã®æ»æè ã¯ãç¹å¥ã«ä½æããä¸æ£ãªã¯ã¨ã¹ãã被害è ã«éä¿¡ãããã¨ã§ãã®èå¼±æ§ãæªç¨ãããã«æåããã¨ãæ»æè ã¯æ¨çã®ããã¤ã¹ä¸ã§ä»»æã®ã³ã¼ããå®è¡ã§ããããã«ãªã
- Webãµã¼ãã¼å ¬éåGit ãªãã¸ããªã®æ å ±æ¼ããï¼ãã®èå¼±æ§ãæªç¨ãããã¨ãã¢ã«ã¦ã³ãã®æ å ±ãæå³ããæ¼ããããå¯è½æ§ããã
- ZMapã»ãã¥ãªãã£ã¹ãã£ãã¼ï¼CVE-2024-3378ï¼ï¼ZMapã¯èå¼±æ§ãã¹ãã£ã³ããã½ããã¦ã§ã¢ãæ»æè ã¯é éã§ZMapã使ç¨ããã¿ã¼ã²ããã®ãµã¼ãã¼ã®èå¼±æ§ãæ¤åºãããã¨ãå¯è½
ã¢ãã¤ã«ãã«ã¦ã§ã¢ã®ããã
- Jokerï¼Google Playã¹ãã¢å ã®ã¢ããªã«æ½ä¼ããAndroid端æ«åãã¹ãã¤ã¦ã§ã¢ã§ãSMSã¡ãã»ã¼ã¸ãé£çµ¡å ãªã¹ããããã¤ã¹æ å ±ã®çªåãç®çã«è¨è¨ã被害è ã«èªèããããã¨ãªãææã®ãã¬ãã¢ã ãµã¼ãã¹ã«ç»é²ãããã¨ãå¯è½
- Anubisï¼Androidããã¤ã¹ãæ¨çã¨ãã¦è¨è¨ããããã³ãã³ã°åããã¤ã®æ¨é¦¬ããªã¢ã¼ãã¢ã¯ã»ã¹åããã¤ã®æ¨é¦¬ï¼RATï¼ã¨ãã¦ã®æ©è½ããã¼ãã¬ã¼ãé³å£°é²é³ãã©ã³ãµã ã¦ã§ã¢ãæã¤æ§ã ãªæ©è½ãªã©ãå¤ãã®æ©è½ã追å ããã¦ãããGoogleã¹ãã¢ä¸ã§å ¬éããã¦ããæ°ç¾ç¨®é¡ã®ã¢ããªããæ¤åº
- Necroï¼Androidåãã®ããã¤ã®æ¨é¦¬åããããã¼ãä»ã®ãã«ã¦ã§ã¢ããã¦ã³ãã¼ãããããè¿·æåºåã表示ããããææã®ãµãã¹ã¯ãªãã·ã§ã³ãµã¼ãã¹ã®æéãè«æ±ãééãçãã ããã
ä¸ççã«æ»æããã¦ããæ¥ç¨®ãæ¥ç
- æè²ã»ç 究
- éä¿¡
- æ¿åºã»è»é¢ä¿
æ´»çºãªã©ã³ãµã ã¦ã§ã¢ã°ã«ã¼ã
ããã®ãã¼ã¿ã¯ãäºéæååã©ã³ãµã ã¦ã§ã¢ã°ã«ã¼ãã被害è ã®æ å ±ãæ²è¼ããç®çã§éå¶ãã¦ãããªã¼ã¯ãµã¤ãï¼Shame Sitesï¼ããå¾ãããã¤ã³ãµã¤ãã«åºã¥ãã¦ããã¨ããã詳細ã¯ä»¥ä¸ã®ã¨ããã
1ä½. RansomHub
ãRansomHubã¯ãã©ã³ãµã ã¦ã§ã¢ã®ãªãã©ã³ãçã¨ãã¦ç»å ´ããRaaSï¼ãµã¼ãã¹ã¨ãã¦ã®ã©ã³ãµã ã¦ã§ã¢ï¼ãWindowsãmacOSãLinuxãVMware ESXiç°å¢ãªã©ãæ§ã ãªã·ã¹ãã ãæ¨çã«ããæ»æçãã£ã³ãã¼ã³ã«ãã£ã¦ãç¥å度ãä¸ããã¨å社ã¯è¿°ã¹ããé«åº¦ãªæå·åææ³ãç¨ãããã¨ã§ç¥ããã¦ããã¨ã®ãã¨ã ã
2ä½. Akira
ãWindowsã¨Linux両æ¹ã®ã·ã¹ãã ãæ¨çãAkiraã¯ããã¡ã¤ã«ã®æå·åã«CryptGenRandomã¨Chacha 2008ã使ã£ã対称æå·ãç¨ãã¦ãããã©ã³ãµã ã¦ã§ã¢ãã³ãããã¯ãæµåºããConti v2ã¨é¡ä¼¼ãã¦ããã¨ãããææããé»åã¡ã¼ã«ã®æ·»ä»ãã¡ã¤ã«ãVPNã¨ã³ããã¤ã³ãã®ã¨ã¯ã¹ããã¤ããªã©ãæ§ã ãªæ段ãéãã¦é å¸ãããã¨ã®ãã¨ã ãææããã¨ããã¼ã¿ã®æå·åãå§ã¾ãããã¡ã¤ã«åã«ã.akiraãã¨ããæ¡å¼µåã追å ãããããã®å¾ã復å·åã®ããã®æ¯æããè¦æ±ãã身代éã¡ã¢ãæ示ãããã¨ã®ãã¨ã ã
åç2ä½. KillSec3
ãKillSec3ã¯ã2023å¹´10æã«åºç¾ãããã·ã¢èªåã®ãµã¤ãã¼è å¨ã°ã«ã¼ããRaaSãã©ãããã©ã¼ã ãéå¶ãã¦ãããæ»æçãªãµã¤ãã¼ç¯ç½ªãµã¼ãã¹ãæä¾ãã¦ããã¨ããããã®ä¸ã«ã¯ãDDoSæ»æãããºãã¹ãã¬ã¼ã·ã§ã³ãã¹ãï¼ä¾µå ¥ãã¹ãï¼ãµã¼ãã¹ãã¨ç§°ããä¸æ£ãµã¼ãã¹ãå«ã¾ããã¨ã®ãã¨ã ã被害è ãªã¹ããåæããã¨ãåæ§ã®ã°ã«ã¼ãã¨æ¯è¼ãã¦ãã¤ã³ãã®è¢«å®³è ãå¤ããã¢ã¡ãªã«ã®è¢«å®³è ã®å²åãå°ãªãã主ãªæ»æ対象ã¯ãå»çæ©é¢ãæ¿åºæ©é¢ã ã¨ããã
ãé¢é£è¨äºã
ã»ããã¹ã¨ã®é¢é£ãæ¿åãªè
å¨ã°ã«ã¼ããWIRTEãã®ã¹ãã¤æ´»åã»ç ´å£å·¥ä½ãæ¡å¤§ââãã§ãã¯ã»ãã¤ã³ã
ã»ãã§ãã¯ã»ãã¤ã³ããAIã¨ã³ã¸ã³ã«ããã¼ããã¤è
å¨ã®ãããã¯ãªã©50以ä¸ã®æ°æ©è½ãçºè¡¨
ã»ãã§ãã¯ã»ãã¤ã³ããHarmony SASEä¸ã§çæAIã«ããã¢ã·ã¹ã¿ã³ãã®ãã¬ãã¥ã¼çãæä¾