2æäžæ¬ããããã«ãŒããã€ã³ãã®ãªãµãŒãã£ãŒã¯ããšãŒãããã«ãããã¢ãã€ã«ç«¯æ«åããã«ãŠã§ã¢é ä¿¡ã®è©Šè¡åæ°ã500%æ¥å¢ããããšãæ€åºããŸãããããã¯ãé廿°å¹Žã«ããããæ»æè ãã¹ããã·ã³ã°ïŒSMS/ããã¹ãããŒã¹ã®ãã£ãã·ã³ã°ïŒãã¢ãã€ã«ç«¯æ«ãžã®ãã«ãŠã§ã¢éä¿¡ã®è©Šã¿ã匷åããã¢ãã€ã«ã¡ãã»ãŒãžã³ã°ã®äžæ£äœ¿çšãçå®ã«å¢å ããŠããããšã確èªããåŸåãšäžèŽãããã®ã§ãã2021幎ã ãã§ããäžçäžã§æ°çš®é¡ã®ã¢ãã€ã«ãã«ãŠã§ã¢ãæ€åºãããŸããã2021幎æ«ã«ã¯æ°éãæ¿æžããŸãããã2022幎ã«ã¯åŸ©æŽ»ããŠããŸãã

å³1ïŒã¢ãã€ã«ãã«ãŠã§ã¢ã®å ±åã¯ã2022幎2æã«èããæ¥å¢ããŠãã
仿¥ã®ã¢ãã€ã«ç«¯æ«åããã«ãŠã§ã¢ã¯ãåã«èªèšŒæ å ±ãçãã ãã§ãªããæ§ã ãªæ©èœãåããŠããŸããæè¿æ€åºããããã«ãŠã§ã¢ã¯ãé»è©±ãé»è©±ä»¥å€ã®é³å£°ã»æ åã®é²é³ãäœçœ®æ å ±ã®è¿œè·¡ãã³ã³ãã³ããããŒã¿ã®ç Žå£ã»æ¶å»ãªã©ã®æ©èœãåããŠããŸãã
ããã§ã¯ããŠãŒã¶ãŒãçŽé¢ããæãäžè¬çãªã¢ãã€ã«ç«¯æ«åããã«ãŠã§ã¢ã«ã€ããŠãç°¡åãªå¯Ÿçãã玹ä»ããŸãã
Android vs Apple
ã¢ãã€ã«ãã«ãŠã§ã¢ã®å€ãã¯ãçŸåšã§ãã¢ããªã¹ãã¢ããããŠã³ããŒããããŠããŸãããããããã1幎ã»ã©ã®éã«ãSMS/ã¢ãã€ã«ã¡ãã»ãŒãžã³ã°ãé ä¿¡ã¡ã«ããºã ãšããŠäœ¿çšãããã£ã³ããŒã³ãå¢å ããŠããŸããã¹ããŒããã©ã³ã®2倧ãã©ãããã©ãŒã ã§ããApple iOSãšAndroidã®ãã¡ãAndroidããµã€ããŒç¯çœªè ã®ã¿ãŒã²ãããšããŠã¯ããã«äººæ°ããããŸãã
ããã¯ãAppleã®App Storeã¯å質管çãå³ããããã§ãããããŠiOSã¯ããµãŒãããŒãã£ã®ã¢ããªã±ãŒã·ã§ã³ã¹ãã¢ããã¢ããªã±ãŒã·ã§ã³ãã€ã³ã¹ããŒã«ããããããã€ã¹ã«çŽæ¥ããŠã³ããŒãããããããµã€ãããŒããèš±å¯ããŠããŸããã
è¯ããæªãããAndroidã¯ãããªãŒãã³ãªã¢ãããŒããåã£ãŠããŸãããã®ãã©ãããã©ãŒã ã¯ãè€æ°ã®ã¢ããªã¹ãã¢ã«éãããŠããŸãããŸãããŠãŒã¶ãŒã¯ã€ã³ã¿ãŒãããäžã®ã©ãããã§ãç°¡åã«ã¢ããªããµã€ãããŒãããããšãã§ããŸãããã®æåŸã®ç¹åŸŽããAndroidæºåž¯ãããããªæé ã§å±éºã«ãããããããšãç¥ã£ãŠããæªè³ªæ¥è ã«ãšã£ãŠããã®ãã©ãããã©ãŒã ã人æ°ã®ãããã®ã«ããŠããã®ã§ãã
ã¢ãã€ã«ãã«ãŠã§ã¢ã®çŸç¶
ã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ãããã®æ žå¿ã¯ãã¹ã¯ããã端æ«åãäžæ£ããã°ã©ã ãšåãã§ããã¢ãã€ã«ç«¯æ«ã«ã€ã³ã¹ããŒã«ãããäžæ£ãœãããŠã§ã¢ã¯ãæ»æè ãã·ã¹ãã ãã³ã³ãããŒã«ã§ããããã«ããæ©å¯æ å ±ãã¢ã«ãŠã³ãæ å ±ãçã¿åºãå¯èœæ§ããããŸããã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ãšã®éãã¯ãäž»ã«é ä¿¡ã®ä»çµã¿ãšãœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°æŠç¥ã§ãã
ããããããå€ããã€ã€ãããŸããã¢ãã€ã«ç«¯æ«åãã®äžæ£ããã°ã©ã ãé«åºŠåããã«ã€ããæ°ããçš®é¡ã®ããŒã¿ãçãŸãããã®åœ±é¿ã¯ããã«æ¡å€§ããå¯èœæ§ããããŸããããã«ã¯ä»¥äžãå«ãŸããŸãã
- é»è©±ããã³é»è©±ä»¥å€ã®äŒè©±ã®èšé²
- 端æ«ã®é³å£°ã»æ åã®é²é³
- ã³ã³ãã³ãããã³ããŒã¿ã®ç Žå£ãŸãã¯æ¶å»
ãã£ãã·ã³ã°ãã¹ããã·ã³ã°ã®ãªã³ã¯ã¯ããŠãŒã¶ãŒãéšããŠãã»ãŒãªã¢ã«ã¿ã€ã ã§åœã®ãã°ã€ã³ããŒãžã«èªèšŒæ å ±ãå ¥åãããããšãããã®ã§ããããã«å¯Ÿããã¢ãã€ã«ãã³ãã³ã°åãäžæ£ããã°ã©ã ã¯ããŠãŒã¶ãéèé¢é£ã¢ããªãèµ·åãããŸã§åŸ æ©ããŸãããããŠããã®æç¹ã§ãã«ãŠã§ã¢ãä»å ¥ããèªèšŒæ å ±ãŸãã¯æ å ±ãçã¿åºãã®ã§ãããã®éã被害è ã¯ãããã€ã¹ã«ã€ã³ã¹ããŒã«ãããŠããæ¬ç©ã®ãã³ãã³ã°ã»ã¢ããªãå®å šã«æäœããŠãããšæã蟌ãã§ããŸãã
äžè¬çãªã¢ãã€ã«ãã«ãŠã§ã¢
ã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ã¯ãç¹å®ã®å°åãèšèªã«éå®ããããã®ã§ã¯ãããŸããã
ãã®ãããæ»æè ã¯ãæ§ã ãªèšèªãå°åãããã€ã¹ã«å¯Ÿå¿ãããã£ã³ããŒã³ãå±éããŸãã

å³2ïŒã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ã®çš®é¡ãæ©èœãããã³å°åçãªåºããã«é¢ãããããªã¯ã¹
ãã«ãŒããã€ã³ã瀟ã®Cloudmark Mobile è åšãªãµãŒãã§ã¯ãäžçäžã®å°åããæ»æãçºçããå€ãã®æ»æãã¯ãã«ã䜿ã£ãŠæšçã®ããã€ã¹ã«ãã«ãŠã§ã¢ãéã蟌ãã§ããããšã確èªãããŠããŸãããããã®æ»æã¯äžçäžã®ãŠãŒã¶ã«åœ±é¿ãäžãããã®ç¯å²ãšèœåã¯æéãšãšãã«å¢å€§ããŠããŸãã以äžã§ã¯ãSMSãè åšã®ãã¯ãã«ãšããŠå©çšããèåãªãã«ãŠã§ã¢ãã¡ããªãŒã®ããã€ãã玹ä»ããŸãã
FluBot
ãã®æŽç·Žãããã¯ãŒã åãã«ãŠã§ã¢ã¯ã2020幎11æã«åããŠèŠ³æž¬ããŸãããæåã®æ€åºã¯ã¹ãã€ã³ã§ããã®åŸãè±åœããã€ããªã©ä»ã®åœã«ãåºãããŸããã
ãã®åŸããªãŒã¹ãã©ãªã¢ããã¥ãŒãžãŒã©ã³ããã¹ãã€ã³ããªãŒã¹ããªã¢ãã¹ã€ã¹ãªã©ã§ãå ±åãããŠããŸãã
FluBotã¯ãææãã端æ«ã®é£çµ¡å ãªã¹ããã¢ãã¬ã¹åž³ã«ã¢ã¯ã»ã¹ãããã®æ å ±ãã³ãã³ãïŒã³ã³ãããŒã«ïŒC&CïŒãµãŒããŒã«éãè¿ãããšã§ææãæ¡å€§ãããŸããC&CãµãŒããŒã¯ãããã€ã¹ã«å¯Ÿãããªã¹ãäžã®çªå·ã«æ°ããªææã¡ãã»ãŒãžãéä¿¡ããããæç€ºããŸãã
FluBotã¯èªå·±å¢æ®ãã以å€ã«ãã以äžã®ãããªããšãã§ããŸãã
- ã€ã³ã¿ãŒããããžã®ã¢ã¯ã»ã¹
- ã¡ãã»ãŒãžã®é²èЧã»éä¿¡
- éç¥ã®é²èЧ
- é³å£°é話
- ã€ã³ã¹ããŒã«ãããŠããä»ã®ã¢ããªã±ãŒã·ã§ã³ã®åé€
æšçãšããã¢ããªã䜿çšããããšãFluBotã¯éè¡ã蚌åžäŒç€Ÿãªã©ãããŠãŒã¶ãŒåããã¹ã¯ãŒããçãããã®ç»é¢ããªãŒããŒã¬ã€è¡šç€ºããŸãã

å³3ïŒFluBotã®é åžã«äœ¿çšãããåœã®ãã€ã¹ã¡ãŒã«ã»ã¡ãã»ãŒãž
TeaBot
ã€ã¿ãªã¢ã§æåã«èŠ³æž¬ãããTeaBotã¯ãèªèšŒæ å ±ãã¡ãã»ãŒãžãçãã ãã§ãªããææããããã€ã¹ã®ç»é¢ã®å å®¹ãæ»æè ã«ã¹ããªãŒãã³ã°ããããšãã§ãã倿©èœãªããã€ã®æšéЬã§ãã60以äžã®ãšãŒãããã®éè¡ã®ã¢ããªãéããŠèªèšŒæ å ±ãçãããã«ãããããèšå®ãããŠãããè€æ°ã®èšèªããµããŒãããŠããŸããã¹ãã€ã³ãšãã€ãã®éèæ©é¢ãæšçãšããŠããŸãã
TeaBot ã¯ãFluBot ãšåæ§ã® SMS ã¡ãã»ãŒãžã䜿ã£ãŠæ¡æ£ããŸããTeaBotã¯ãããŒãã®ã³ã°ãå€çšããGoogle Authenticatorã®ã³ãŒããååããããšãã§ããŸãããã®2ã€ã®æ©èœã«ãããã¢ã«ãŠã³ãã䟵害ãã被害è ããè³éãçãããã®åŒ·åãªããŒã«ãšãªã£ãŠããŸãã

å³4ïŒTeaBotã®é åžã«äœ¿çšãããäžæ£ãªãã€ã¹ã¡ãŒã«ã®ããŠã³ããŒãããŒãž
TangleBot
2021幎ã«ProofpointãšCloudmarkã®ç ç©¶è ã«ãã£ãŠçºèŠãããTangleBotã¯ã匷åã§ããæ€ç¥ãé£ãããã«ãŠã§ã¢ã§ãäž»ã«åœã®ããã±ãŒãžé ééç¥ã«ãã£ãŠæ¡æ£ããŸããTangleBotã¯ãããšããšåç±³ã§æ€åºãããæè¿ã§ã¯ãã«ã³ã§åºçŸããŠããŸãã
çŸåšããã®ãã«ãŠã§ã¢ã¯ãTangleBotãšFluBotã«é¢é£ããæ»æè ã®ååã«ãã£ãŠæ¡æ£ããŠããå¯èœæ§ããããŸããã©ã¡ãã®å Žåãããã«ãŠã§ã¢ã¯ãé¡äŒŒããé åžæ¹æ³ãã©ã³ãã£ã³ã°ããŒãžãèšèªãSMSã«ããèªãæå¥ã䜿çšããŠããŸããTangleBotã䜿çšããããšãç¥ãããŠããé åçãªèªãæå¥ã®1ã€ã¯ããœãããŠã§ã¢ã®æŽæ°éç¥ã§ãã

å³5ïŒTangleBotã®é åžã«å©çšãããAdobe Flashã®äžæ£ãªã¢ããããŒãããŒãž
ãã®ãããªæè¿ã®å ±åã§ããTangleBotã«ããæ»æã¯ãŸã æ°ã¯å°ãªãã§ããããããããæ®åããã°ããã®å±éºæ§ã¯çžåœãªãã®ã«ãªãå¯èœæ§ããããŸããTangleBotã¯ãããã€ã¹ãå¶åŸ¡ããä»ã®ã¢ãã€ã«ã¢ããªããªãŒããŒã¬ã€ããèœåã«å ããŠãã«ã¡ã©ãšé³å£°ã®ååæ©èœã远å ããŠããŸãã
æ¬ããã°ã®å·çæç¹ã§ã¯ãTangleBotããªããã®ããã«å°éãã確èªãããŠããªãã®ãããªãµãŒãã£ãŒãšããŠã¯çç±ãäžæã§ãããã«ãŠã§ã¢ã¯æªæã®ããéçºè ã«ãã£ãŠäœæãããå®éã«æ»æãè¡ãä»ã®ç¯çœªè ã«ã©ã€ã»ã³ã¹äŸäžãããããšããããããŸããããããããšãæåã®æ€åºã¯ãæœåšçãªè³Œå ¥è ã«ãã«ãŠã§ã¢ã®æå¹æ§ã瀺ãããã®ãã¹ã段éã®äžéšã ã£ãã®ãããããŸããããããã¯ãããäžåãªããšã«ãå°æ¥çã«ããã«å€§èŠæš¡ãªãã£ã³ããŒã³ãè¡ãããã®ååšæŠã§ããå¯èœæ§ããããŸãã
Moqhao
Moqhaoã¯ãRoaming MantisãšããŠç¥ãããäžåœã«æ ç¹ãçœ®ãæ»æã°ã«ãŒãã«ãã£ãŠå±éãããSMSããŒã¹ã®ãã«ãŠã§ã¢ã§ããæ¥æ¬ãäžåœãã€ã³ãããã·ã¢ããããŠæè¿ã§ã¯ãã©ã³ã¹ãšãã€ããªã©ãè€æ°ã®åœã§æ€åºãããŠããŸãããããã®æ»æã¯å€èšèªã§è¡ããããŠã§ããµã€ãã®ã©ã³ãã£ã³ã°ããŒãžã¯ã¿ãŒã²ããã®åä¿¡è ã®èšèªã§äœæãããŸããMoqhaoã¯ãã¹ãã€è¡çºãæ å ±æµåºã®æ©èœãæã€ãæ©èœçãªãªã¢ãŒãã¢ã¯ã»ã¹ããã€ãžã£ã³ã§ããããã€ã¹ã®éä¿¡ãç£èŠããæ»æè ã«ããã€ã¹ãžã®ãªã¢ãŒãã¢ã¯ã»ã¹ãèš±å¯ããããšãã§ããŸãã
BRATA
ãã®ã¢ãã€ã«ãã³ãã³ã°ãã«ãŠã§ã¢ã¯ãã€ã¿ãªã¢ã®éè¡ã®é¡§å®¢ãã¿ãŒã²ããã«ãSMSãå©çšããŠåœã®ã»ãã¥ãªãã£ã¢ããªãããŠã³ããŒãããããšãããã®ã§ããã€ã³ã¹ããŒã«ããããšãBRATAïŒBrazilian Remote Access Tool, Androidã®ç¥ïŒã¯ãé»è©±ç»é¢ã®åäœãèšé²ããã¢ããªã®ãªãŒããŒã¬ã€ãæ¿å ¥ããŠèªèšŒæ å ±ãçã¿åºããŸããBRATAã¯ããŠãŒã¶ãŒããŒã¿ïŒãŠãŒã¶ãŒåããã¹ã¯ãŒããªã©ïŒãçãã ããå€èŠçŽ èªèšŒã®ãã¹ã³ãŒããååãããããããšãã§ããŸããä»å¹Žã«å ¥ã£ãŠããã¯ãGPS远跡æ©èœãããŒã¿çªååŸã«ç«¯æ«ãæ¶å»ããæ©èœã远å ãããŠããŸãã
TianySpy
æ¥æ¬ã®ãŠãŒã¶ãŒãã¿ãŒã²ããã«ãããã®ã¢ãã€ã«ãã«ãŠã§ã¢ã¯ã被害è ã®ã¢ãã€ã«ãããã¯ãŒã¯äºæ¥è ããã®ã¡ãã»ãŒãžã«ãªãããŸãããšã§æ¡æ£ããŸããTianySpyã¯ãiOSãšAndroidã®äž¡æ¹ã«ææããããšãã§ããç°ãªãã¡ã«ããºã ã§ã¯ãããŸãããæ±çšæ§ã®é«ãæ»æããŒã«ãšãªãçããç¹åŸŽãæã£ãŠããŸãã
Androidææã§ã¯ããKeepSpyããšåŒã°ãããã«ãŠã§ã¢ã远å ã§ãµã€ãããŒããããŸãããã®ã¹ãããã«ããããµã€ããŒç¯çœªè ã¯æ¬¡ã®ãããªèœåãåŸãããšãã§ããŸãã
- Wi-Fièšå®ã®å¶åŸ¡ãšç£èŠ
- æ å ±ã®çªå
- ãŠã§ããªãŒããŒã¬ã€ã®å®è¡
iOSãŠãŒã¶ãŒã®å Žåãæ»æã®ãã¯ãã«ã¯ç°ãªããŸãã䟵害ãããæ§æãããã¡ã€ã«ã䜿çšããŠãããã€ã¹ã®äžæã®ããã€ã¹èå¥åïŒUUIDïŒãæµåºãããã®ã§ããæ»æè ã¯ããã®UUIDãå©çšããŠãããããããããžã§ãã³ã°ã»ãããã¡ã€ã«ãçµç±ããŠãã«ãŠã§ã¢ãé åžããŸãã(ããããžã§ãã³ã°ã»ãããã¡ã€ã«ã¯ãéåžžãéçºè ããªãªãŒã¹åã«ã¢ãã€ã«ã¢ããªããã¹ãããããäŒæ¥ãåŸæ¥å¡ã«ç€Ÿå ã¢ããªãé åžããããã«äœ¿çšãããŸã)ã
èªåã®èº«ã¯èªåã§å®ã
ã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ã®åãã¯éããæ°ãããã¬ã€ã€ãŒãæ°ããæ©èœãåžžã«ç»å ŽããŠããŸããåæã«ãæ»æè ã䜿çšãããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ã®æå£ãåžžã«æ¹è¯ãããŠããŸããããããå€ãã®ãŠãŒã¶ã¯ãã¢ãã€ã«ç«¯æ«åãäžæ£ããã°ã©ã ãããããå±éºã®å€§ããã«ã€ããŠããŸã ååãªç¥èãæã£ãŠããŸããã
ããªãã®ããã€ã¹ãå®ãããã«ããªã³ã¯ãURLãããããçš®é¡ã®ããŒã¿ãèŠæ±ãããäºæããªãããŸãã¯èŠæ±ãããŠããªãã¡ãã»ãŒãžã«æ³šæããŠãã ããããŸãããã¹ã¯ããããã©ããããããšåæ§ã«ãä¿¡é Œã§ããæäŸå ã®ã¢ãã€ã«çšãŠã€ã«ã¹å¯Ÿçã¢ããªã±ãŒã·ã§ã³ã䜿çšããããšããå§ãããŸããSecurity.orgã®æè¿ã®èª¿æ»ã§ã¯ã76%ã®ãŠãŒã¶ãŒãã¹ããŒããã©ã³ã«ãŠã€ã«ã¹å¯Ÿçã¢ããªãã€ã³ã¹ããŒã«ããŠããªãããšã倿ããŠããŸãã
æåŸã«ãã¹ãã ãã¹ããã·ã³ã°ããã«ãŠã§ã¢ã®çãã®ããé ä¿¡ãã¹ãã å ±åãµãŒãã¹ã«å ±åããããšãå¿ããªãã§ãã ãããã䜿ãã®ã¡ãã»ãŒãžã³ã°ã¯ã©ã€ã¢ã³ãã«ã¹ãã å ±åæ©èœãããå Žåã¯ããã䜿çšããŠãã ããã
â»æ¬ããã°ã®æ å ±ã¯ãè±èªã«ããåæãMobile Malware is Surging in Europe: A Look at the Biggest Threatsãã®ç¿»èš³ã§ããè±èªåæãšã®éã§å 容ã®éœéœ¬ãããå Žåã«ã¯ãè±èªåæãåªå ããŸãã