å æçºçããâBadRabbitâããè¦ããæ¨ä»ã®ãµã¤ãã¼æ»æã®è¤éåã«ã¤ãã¦
ãã®ããã°ã§ã¯ãä½åº¦ãèå¼±æ§æ å ±ã«ã¤ãã¦è¨äºãæ¸ãã¦ããã
ä¾ãã°ãå æã¯Wifiã®WPA2ãã³ãã·ã§ã¤ã¯ã«é¢ããèå¼±æ§ãã¨ã¯ã¹ããã¤ãããKRACKSã«é¢ãã¦è¨äºã«ã¾ã¨ããã
éå»ã¯ããã£ã1ã¤ã®èå¼±æ§ãã¨ã¯ã¹ããã¤ãããæ§ãªãµã¤ãã¼æ»æãçºçãã¦ããã®ã ããæè¿ã¯ãã®ããã«âãã£ã1ã¤âã®èå¼±æ§ãã¨ã¯ã¹ããã¤ããããããªæ»æã¯æ¸ã£ã¦ããã
ãã®çç±ã¯ã主ã«ä»¥ä¸ã®2ã¤ãèããããã
- ããã·ã¹ãã ã«ãããã¼ããã¤èå¼±æ§ãæãã¿ã«åºãã¨ãã¦ãããã³ãã®ãããå½ã¦ãè¿ éã«è¡ããã¦ããã
- CVEçã§èå¼±æ§ã®æ å ±å ±æãå½å¢ãã¾ããã§çãã«è¡ãããããã«ãªã£ãã
以ä¸ã®ç¶æ³ãããâã¹ã¯ãªããããã£âã¨å¼ã°ããã¢ããã¥ã¢ã»ããã«ã¼ãæ»æãä»æãã¦æåããäºä¾ã¯è¦ãªããªã£ãã¨è¨ããã ããã
ãã®æµãã¨ã¨ãã«ãæ¨ä»ã®ãµã¤ãã¼æ»æã¯ãããå½ã®æ¿åºãããã¯ã«ã¤ãããµã¤ãã¼æ»æã°ã«ã¼ãã«ããããµã¤ãã¼æ»æã®ææ³ããè¤éåããã¦ãã¦ããã
ããã§ããã®è¨äºã§ã¯ãå æçºçããBadRabbitã¨ããã©ã³ãµã ã¦ã§ã¢ãæ¡æ£ãããã©ã³ãµã ã¦ã§ã¢ã»ãã£ã³ãã¼ã³ã®ä¾ã使ã£ã¦ããµã¤ãã¼æ»æãè¤éåãã¦ããäºã示ãã¦ããã
BadRabbitã«é¢ãã¦ã®ãããã
å½ããã°ã§ãåãä¸ããããBadRabbitã¯ããã·ã¢ã¨ã¦ã¯ã©ã¤ãã«æ ç¹ãç½®ããããã200ã®ä¼æ¥ãå£ä½ã®ãããã¯ã¼ã¯ã«ãã端æ«ãæå·åãã被害ãåã¼ããã
BadRabbitã¯ããµã¤ãã¼æ»æéå£âShadowBrokersâãNSAããæµåºããããã«ã¦ã§ã¢ã®ã³ã¼ãã使ç¨ãã¦ãã¦ãããCVE-2017-0145ã§CVEç»é²ããã¦ããWindowsãµã¼ãã¼ã«é¢ããèå¼±æ§ãã¨ã¯ã¹ããã¤ãããæ»æã ã£ãã
ã¡ãªã¿ã«ãCVE-2017-0145ãã¨ã¯ã¹ããã¤ãããã¨ãæ»æè ã¯ææããWindowsPCéã§ãã¼ã¿ã®è»¢éããããã¨ãåºæ¥ãããã«ãªããé éããç´°å·¥ãããã³ã¼ããå®è¡ãããã¨ãåºæ¥ãã
BadRabbitã«ããæ»æãæåã«ç¢ºèªãããæãBadRabbitã«ããææçµè·¯ã¯ã«é¢ãã¦ã¯ã主ã«ãã·ã¢ç³»ãã¹ã¡ãã£ã¢ã®ã¦ã§ããµã¤ãã ã£ãã¨ããã¦ããã
被害ã«éã£ãã¦ã§ããµã¤ããã訪åè ã®ç«¯æ«ã«ãæ»æè ãç´°å·¥ããå½ã®AdobeFlashPlayerããã¦ã³ãã¼ãããã¦ããã®ã ãï¼âãã©ã¤ããã¤ãã¦ã³ãã¼ãï¼
BadRabbitã®æ¬å½ã®ç®çã¯âæ¨çåã¡ã¼ã«æ»æâ
å®ã¯ãæè¿ã®èª¿æ»ã§ã¯ãå æçºçããBadRabbitã®æ¬å½ã®ç®çã¯ãæ¨çåã¡ã¼ã«ã ã£ãäºãå ±åããã¦ããã
ã¦ã¯ã©ã¤ãæ¿åºç´è½ã®ãµã¤ãã¼ç¯ç½ªãåãç· ã¾ãæ³å·è¡æ©é¢ã®ããã¼ã¸ã£ã¼ã§ããSerhiy Demedyukæ°ã«ããã°ãBadRabbitã®ææãæ¡å¤§ãã¦ããã®ã¨åææã«ãã¦ã¯ã©ã¤ãå½å ã§æ¨çåã¡ã¼ã«æ»æã®è¢«å®³ã«çºçãã¦ããã¨ããã®ã ã
Demedyukæ°ã¯ããã¤ã¿ã¼éä¿¡ã®ã¤ã³ã¿ãã¥ã¼ã§ä»¥ä¸ã®ããã«çãã¦ããã
ï¼BadRabbitã«ããæ»æã®æä¸ï¼ç§ãã¡ã¯é常ã«å¼·åãªæ¨çåã¡ã¼ã«æ»æããéèæ©é¢ããã®ä»å人æ å ±ãåãæ±ãä¼æ¥ã«å¯¾ãã¦çºçãã¦ããã®ã確èªããã
Demedyukæ°ã¯ãBadRabbitã¯ãã©ã³ãµã ã¦ã§ã¢ã¨æ¨çåã¡ã¼ã«æ»æã®âãã¤ããªãããªâãµã¤ãã¼æ»æã ã£ãã¨çµè«ãã¦ããã
æ¦å½æ代ã®æ ç»ãè¦ã¦ããã¨ç å¹ã使ç¨ãã¦ç¸æã®ç®ãããã¾ããã·ã¼ã³ãããããBadRabbitã«ããã¦ã¯ãã©ã³ãµã ã¦ã§ã¢æææ¡å¤§ãç å¹ã¨ãã¦æ©è½ããã
å æã¦ã¯ã©ã¤ãã§çºçãããµã¤ãã¼æ»æã¯ãå¤ãã®äººã®æ³¨æãã©ã³ãµã ã¦ã§ã¢ã«åãããã¦ãæ¨çåã¡ã¼ã«æ»æãæ¬æ¥ã®ç®çã ã£ãã®ã ã
ãµã¤ãã¼æ»æãéãã¦âè¤éåâ BadRabbitã®ä¾ãããå¦ã¹ãéããæè¿ã®ãµã¤ãã¼æ»æã¯åä½ã§è¡ããããè¤æ°ã®æ»æãåæã«è¡ã£ã¦æå確çãé«ãã¦ããã¨è¨ããã ããã ã»ãã¥ãªãã£ä¼æ¥ã»ObsidianSecurityã®CTOã§ããBen Johnsonæ°ã¯ããèªã£ã¦ããã
æ»æè ã®æè¡ãã©ãã©ãå·§å¦ã«ãªã£ã¦ããã®ã«ä¼´ãããµã¤ãã¼æ»æãçºçããæã¯è¡¨å±¤ã ããè¦ãã®ã§ã¯ãªããè£ã§ä½ãèµ·ãã£ã¦ããã®ãã»æ¬å½ã®ç®çã¯ä½ããèããã¹ãã§ããã