ç®æ¬¡
ã¹ãã¢ãã£ãã·ã³ã°ïŒSpear PhishingïŒã®æå³
ã¹ãã¢ãã£ãã·ã³ã°ãšã¯ãéåžžã®ãã£ãã·ã³ã°ãšåæ§ã«ãåä¿¡è ãã ãŸããŠã¢ã«ãŠã³ãæ å ±ãªã©ã®æ©å¯æ å ±ãæ»æè ã«æäŸãããããšããè©æ¬ºã®ããšã§ãããŸãããªã³ã¯ãæ·»ä»ãã¡ã€ã«ã«ãã£ãŠãåä¿¡è ã«æ°ã¥ãããã«ãã«ãŠã§ã¢ãããŠã³ããŒããããæ»æè ããŠãŒã¶ãŒã®ã³ã³ãã¥ãŒã¿ãŒã·ã¹ãã ããã®ä»ã®æ©å¯æ å ±ã«ã¢ã¯ã»ã¹ã§ããããã«ä»åããããšããããŸããã¹ãã¢ãã£ãã·ã³ã°ãäžè¬çãªãã£ãã·ã³ã°ãšç°ãªãã®ã¯ãæšçåã§ãããšããç¹ã§ãã
ã¹ãã¢ãã£ãã·ã³ã°ã®ã¡ãã»ãŒãžã¯ãéåžžãæ»æè ãåä¿¡è ã«ã€ããŠèŠã€ããå ¬éæ å ±ã«åºã¥ããŠããŒãœãã©ã€ãºãããŠããŸããããã«ã¯ãåä¿¡è ã®å°éåéã«é¢ãããããã¯ããçµç¹å ã®åœ¹å²ãé¢å¿äºãå ¬è¡šãããŠããäœå± ããã³çšéã®æ å ±ããã®ä»æ»æè ããœãŒã·ã£ã«ãããã¯ãŒã¯ããåéã§ããããããæ å ±ãå«ãŸããŠããŸãããããã®å ·äœçãªæ å ±ã¯ãã¡ãŒã«ãããæ£åœãªãã®ã«èŠããåä¿¡è ããªã³ã¯ãã¯ãªãã¯ããããæ·»ä»ãã¡ã€ã«ãããŠã³ããŒããããããå¯èœæ§ãé«ããŸãã
ç¡æãã©ã€ã¢ã«
ç¡æãã©ã€ã¢ã«ã®ãç³ãèŸŒã¿æé
- åŒç€Ÿã®ãµã€ããŒã»ãã¥ãªã㣠ãšãã¹ããŒãã貎瀟ã«äŒºããã»ãã¥ãªãã£ç°å¢ãè©äŸ¡ããŠãè åšãªã¹ã¯ã蚺æããŸãã
- 24 æé以å ã«æå°éã®æ§æã§ã30 æ¥éãå©çšããã ãããã«ãŒããã€ã³ãã®ãœãªã¥ãŒã·ã§ã³ãå°å ¥ããŸãã
- ãã«ãŒããã€ã³ãã®ãã¯ãããžãŒãå®éã«ãäœéšããã ããŸãã
- çµç¹ãæã€ã»ãã¥ãªãã£ã®è匱æ§ã«é¢ããã¬ããŒãããæäŸããŸãããã®ã¬ããŒãã¯ããµã€ããŒã»ãã¥ãªãã£æ»æã®å¯Ÿå¿ã«çŽã¡ã«ã掻çšããã ãããšãã§ããŸãã
ãã©ãŒã ã«å¿ èŠäºé ããå ¥åã®äžããç³èŸŒã¿ãã ããã远ã£ãŠãæ åœè ãããé£çµ¡ãããŠããã ããŸãã
Proofpointã®æ åœè ããŸããªããé£çµ¡ããããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã®ä»çµã¿
ã¹ãã¢ãã£ãã·ã³ã°ã¯ããã£ãã·ã³ã°ãããæšçãçµã£ããµã€ããŒæ»æã§ããé»åã¡ãŒã«ã¯ãæšçã®è¢«å®³è ã«åãããŠããŒãœãã©ã€ãºãããŠããŸããäŸãã°ãæ»æè ã¯ã被害è ãç¥ã£ãŠãã人ç©ã«ãªãããŸããªã©ããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ã®æè¡ãé§äœ¿ããŠã被害è ã®ä¿¡é ŒãåŸãããšããããšããããŸãã
2019幎ãåæé®®ãšé£æºãããµã€ããŒç¯çœªã°ã«ãŒããThaliumããã50以äžã®ãŠã§ããã¡ã€ã³ãå©çšããŠã¹ãã¢ãã£ãã·ã³ã°æ»æãè¡ã£ããšå ±åãããŸãããThaliumã®æšçã¯ãæ¿åºè·å¡ãã·ã³ã¯ã¿ã³ã¯ã倧åŠè·å¡ãäžçå¹³åãšäººæš©ã«çŠç¹ãåœãŠãçµç¹ã®ã¡ã³ããŒãæ žæ¡æ£åé¡ã«åãçµã人ã ãªã©ã§ãããã»ãšãã©ã®ã¿ãŒã²ããã¯ãæ¥æ¬ãéåœãç±³åœã«æ ç¹ã眮ããŠããŸããã[1] Thaliumã®æ»æè ã¯ãæ žå µåšã®æ¡æ£ã黿¢ããããã®åªåãæ¯æŽããããšã«ãã£ãŠãã¿ãŒã²ããã«æ ãããããšããŠããŸããã
ã¹ãã¢ãã£ãã·ã³ã°ã®äŸãšããŠã¯ãããŠã§ã€ããããä»å¹Žã®åæã®èµ€ã¯ã€ã³ãã奜ããšã®ããšã§ãããããããã奜ããªãã¡ãŒããã¬ãã£ã»ã³ãïŒãªãããŸãããŸãã¯äŸµå®³ãããWebãµã€ãïŒã蚪åããããšãããããããŸãããªã³ã©ã€ã³ã¹ãã¢ããã§ãã¯ããŠã¿ãŠãã ãããããã®ã¹ãã¢ãã£ãã·ã³ã°ã®äŸã§ã¯ããŠã§ã€ãã®å ¬éæ å ±ãã圌ãã¯ã€ã³æå¥œå®¶ã§ãããåããã¯ã€ã³æå¥œå®¶ã®ããã®å人ã§ããããšããããããªãããŸãã¡ãŒã«ãéããŠFacebookã³ãã¯ã·ã§ã³ããã¡ãŒã«ãçºä¿¡ãããå Žåãéåžžã«å¹æçã§ãã
äžèšã®äŸã§ã¯ãæ»æè ã¯ã¿ãŒã²ãããšãªã被害è ã®èå³ãæ§æ Œã«åãããŠã¡ãŒã«ãã«ã¹ã¿ãã€ãºããŠããããšã«æ³šç®ããŠãã ããããã®ã«ã¹ã¿ãã€ãºããã¹ãã¢ãã£ãã·ã³ã°ãšéåžžã®ãã£ãã·ã³ã°ã®éãã§ãããã®å·®å¥åã«ãã£ãŠãã¹ãã¢ãã£ãã·ã³ã°ã¯æ»æè ã«ãšã£ãŠããæéãããããã®ã§ããããã®åéåžžã«å¹æçã§ãã
ã¹ãã¢ãã£ãã·ã³ã°ãšãã£ãã·ã³ã°ã®éã
ã¹ãã¢ãã£ãã·ã³ã°ãšéåžžã®ãã£ãã·ã³ã°ã«ã¯ãå ±éç¹ãããäžæ¹ã§ãæç¢ºãªéãããããŸããã©ã¡ããæšçã®ãŠãŒã¶ãŒãéšããŠæ©å¯æ å ±ãæµåºããããšããç¹ã§å ±éããŠããŸãããã¹ãã¢ãã£ãã·ã³ã°ã¯æ»æè ã«ããå€ãã®åŽåãå¿ èŠãšããŸããã¹ãã¢ãã£ãã·ã³ã°ã§ã¯ãã¿ãŒã²ãããšãªããŠãŒã¶ãŒãåµå¯ããçè§£ããäžã§ãæ£èŠã®éä¿¡è ããã®ã¡ãŒã«ã§ãããã®ããã«èŠããããããã«ãååãªæ å ±ãå«ãã¡ãŒã«ãéããªããã°ãªããŸããã
ãŸããéãã確èªããããã«ãæšæºçãªãã£ãã·ã³ã°ã«ã€ããŠèª¬æããŸããäžè¬çã«ããã£ãã·ã³ã°ãã£ã³ããŒã³ã«ã¯ç¹å®ã®ã¿ãŒã²ãããååšããŸãããäŸãã°ãæ»æè ã¯ãPayPalã®ããŽã䜿çšããPayPalã®æ£èŠã®æ åœè ã®ãããªå 容ã®ã¡ãŒã«ãäœæããããšããããŸããéåžžããã®ã¡ãŒã«ã«ã¯ãŠãŒã¶ãŒã®ååã¯å«ãŸãããæ»æè ã¯åä¿¡è ãPayPalã®ã¢ã«ãŠã³ããæã£ãŠãããã©ããããç¥ããŸããããã®ã¡ãã»ãŒãžã¯ãæšçã®ãŠãŒã¶ãŒã«è¿ä¿¡ãæ±ããããæªæã®ããWebãµã€ããžã®ãªã³ã¯ãã¯ãªãã¯ããããããã ããããããŸããã
æ»æè ã¯ãé»åã¡ãŒã«ã®é£çµ¡å ãªã¹ãã«äœåéãã®ãã£ãã·ã³ã°ã¡ãŒã«ãéä¿¡ããå¯èœæ§ããããŸããæ»æã«ãã£ãŠã¯ãæªæã®ããã¡ãã»ãŒãžãéä¿¡ããããã«äœ¿çšããããã¡ã€ã³åããå ¬åŒã®ãã®ãšé¡äŒŒããŠããå ŽåããããŸããäŸãã°ãæ»æè ã¯ãpayypal.comããšãããã¡ã€ã³ãç»é²ããéä¿¡è ãå ¬åŒã«èŠãããããããããŸãããããã²ãšã€ã®ãã£ãã·ã³ã°è©æ¬ºã®æå£ã¯ããªãããŸãã¡ãŒã«ãå©çšãããã®ã§ããã¹ããŒãã£ã³ã°ïŒãªãããŸãïŒãšã¯ããªãŒãã³ãªã¡ãŒã«ãµãŒããŒãå©çšããŠãå®éã«ã¯PayPalã®æ£èŠç€Ÿå¡ããã®ã¡ãã»ãŒãžã§ãªãã«ãããããããéä¿¡è ãã¡ã€ã³ããpaypal.comãã«æäœããããšã§ããDMARCïŒDomain-based Message Authentication Reporting and ConformanceïŒã¯ããªãããŸãã¡ãŒã«ãæ€ç¥ããŠãããã¯ããæ°ãããµã€ããŒã»ãã¥ãªãã£æŠç¥ã§ãåä¿¡åŽã®ã¡ãŒã«ãµãŒããŒãDMARCã䜿çšããŠããã°ããªãããŸãã¯ä»¥åã®ãããªè åšã§ã¯ãããŸããã
ã¡ãã»ãŒãžã®èšå®ãšåä¿¡è ã®ãªã¹ããããã°ãæ»æè ã¯æªæã®ããã¡ãã»ãŒãžãéä¿¡ããããšãã§ããŸããæ»æè ã¯ãäžéšã®ã¡ãã»ãŒãžãå±ããªãããšãæ¿ç¥ããŠããŸãããµã€ããŒã»ãã¥ãªãã£ãã£ã«ã¿ãŒãåä¿¡è ã®ã¡ãŒã«ãµãŒããŒäžã§ä»ã®ã¡ãã»ãŒãžããããã¯ããã¿ãŒã²ãããšãªããŠãŒã¶ãŒããã®ã¡ãã»ãŒãžããã£ãã·ã³ã°ã§ããããšã«æ°ã¥ãã°ãããã€ãã®ã¡ãã»ãŒãžã¯èªåçã«åé€ãããŸãããããããã£ãã·ã³ã°ã¡ãŒã«ãåãåããæ»æè ã«æ©å¯æ å ±ãéä¿¡ããŠããŸããŠãŒã¶ãŒãååšããŸããæ»æè ã¯ãäœå人ãã®åä¿¡è ã被害è ã«ãªãããšãç¥ã£ãŠããã®ã§ãäœå人ãã®ãŠãŒã¶ãŒã察象ã«ããã¡ãŒã«é ä¿¡ã§ã¯ãç¹å®ã®ã¿ãŒã²ããã¯å¿ èŠãããŸããã
éåžžã®ãã£ãã·ã³ã°ãå°é¡ã®å ±é ¬ã«æå¹ãªã®ã«å¯Ÿããã¹ãã¢ãã£ãã·ã³ã°ã¯ãã倧ããªå ±é ¬ãåŸãããã«ãããã¿ãŒã²ãããçµã£ãã¢ãããŒãããšããŸããéåžžãäŒèšå£«ãäººäºæ åœè ãçµå¶å¹¹éšãªã©ãçµç¹å ã®é«æš©éã®ãŠãŒã¶ãŒãã¿ãŒã²ããã«ããŸãããã®ãããªæ»æãè¡ãã«ã¯ãã¿ãŒã²ãããšãªãçµç¹ã«ã€ããŠãã詳ãã調æ»ããã©ã®ãããªã¡ãã»ãŒãžã广çã§ããããçè§£ããå¿ èŠããããŸãããŸããã¹ãã¢ãã£ãã·ã³ã°ã¯ããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ãšçµã¿åãããããšã§ããã广çã«å©çšããããšãã§ããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã¯ãéåžžã®æ»æãããã¯ããã«èª¬åŸåã®ããã¡ãã»ãŒãžã䜿çšããŸããäŸãã°ãCEOãåä¹ãæ»æè ã¯ãè²¡åæ åœãšã°ãŒã¯ãã£ããéšããŠãèªåã®éè¡å£åº§ã«ééãããããšãã§ããŸãããŸããåœã®è«æ±æžã䜿ã£ãŠãè²·æéã®æ åœè ãéšããæ»æè ã«ééãããããšãå¯èœã§ããèªèšŒæ å ±ãçãããã«ãæ»æè ã¯ãITéšéãæ å ±ãæ±ããŠããããã«èŠããã¡ãã»ãŒãžãäœæãããããããŸããããŠãŒã¶ãŒã欺ãã«ã¯ãåä¿¡è ãç¥ã£ãŠããæ£åœãªäººç©ããã®ã¡ãã»ãŒãžã§ãããã®ããã«èŠããããå¿ èŠãããããããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ã䜿çšãããããšããããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã¯æšçåæ»æã§ãããããã¡ãã»ãŒãžãåãåããŠãŒã¶ãŒã®æ°ã¯å°ãªããªããŸããæ»æè ã¯çµç¹ã調æ»ããã¿ãŒã²ãããšããŠéžã°ããå°æ°ã®é«ç¹æš©ãŠãŒã¶ãŒåãã®ã¡ãã»ãŒãžãäœæããŸãããŠãŒã¶ãŒã¯ãéåžžãçµç¹ã®ãŠã§ããµã€ãã®çµç¹å³ããããŸãã¯åµå¯ã®ããã«LinkedInã䜿çšããŠéžã°ããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ãå©çšããæ»æè ã¯ãçµç¹ãéšããŠæµ·å€ã®éè¡å£åº§ã«æ°çŸäžãã«ãééãããããéèŠãªãããã¯ãŒã¯èªèšŒæ å ±ãéä¿¡ããããããããšããããŸããæ»æè ã管çããéè¡å£åº§ãžã®ééã¯å£æ» çãªè¢«å®³ããããããŸãããçãŸãããããã¯ãŒã¯èªèšŒæ å ±ã¯ããã«å€§ããªè¢«å®³ãããããå¯èœæ§ããããŸããäºèŠçŽ èªèšŒãšäŸµå ¥æ€ç¥ã·ã¹ãã ã¯ããã£ãã·ã³ã°æ»ææååŸã®è¢«å®³æ¡å€§ãé²ãã®ã«åœ¹ç«ã¡ãŸãããè åšã¢ã¯ã¿ãŒã¯éåžžãããŒã¿ãçãããã«ä»ã®æ¹æ³ãçšããŸãããããã¯ãŒã¯ã«ãã«ãŠã§ã¢ãæ³šå ¥ããããçãã èªèšŒæ å ±ã䜿ã£ãŠããŒã¿æŒæŽ©ããããããããšããããŸãã
çãŸããèªèšŒæ å ±ã«ãããæ»æè ã¯çºèŠããããŸã§ã®æ°ã¶æéã被害è ã®ãããã¯ãŒã¯äžã«ååšãç¶ããããšãã§ããŸãããã®éã«ãæ»æè ã¯æ°ãã©ãã€ãã®ããŒã¿ãæ€åºãããã«æµåºããããããããŸãããæ€åºãããå Žåãçµç¹ã¯è åšãå°ã蟌ãã䟵害ã®åå ãšãªã£ãè匱æ§ãç¹å®ããªããã°ãªããŸããã
ã¹ãã¢ãã£ãã·ã³ã°ãšããšãŒãªã³ã°ã®éã
ã¹ãã¢ãã£ãã·ã³ã°ã¯ç¹å®ã®äººãçãæ»æã§ããããããšãŒãªã³ã°ããšã¯ãæ»æè ã1人ãŸãã¯æ°äººã®Cã¬ãã«ã®ãšã°ãŒã¯ãã£ããã¿ãŒã²ããã«ããå ŽåãæããŸããCã¬ãã«ãšã°ãŒã¯ãã£ããšã¯ããããã¯ãŒã¯äžã®é«æš©éã®ã¢ã«ãŠã³ãã財åã¢ã«ãŠã³ããžã®ã¢ã¯ã»ã¹æš©ãæã€ãšã°ãŒã¯ãã£ããæããŸããã¹ãã¢ãã£ãã·ã³ã°ã®è¢«å®³ã«éãå¯èœæ§ãé«ãã®ã¯çµå¶å¹¹éšã§ããããã培åºçãªåµå¯ãè¡ãè åšã¢ã¯ã¿ãŒã«ãšã£ãŠã¯æçãªææ©ãšãããŸãã
äžå°äŒæ¥ãå€§äŒæ¥ã¯ãè åšã¢ã¯ã¿ãŒãã¹ãã¢ãã£ãã·ã³ã°ã®ã¿ãŒã²ããã«ãªãå¯èœæ§ããããŸãããŸããããšãŒãªã³ã°ã§ã¯ãå€§èŠæš¡ãªæ»æã«ãããŠãœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ãè¡ãããŸããäŸãã°ãæ»æè ã¯ãæšçãšãªããŠãŒã¶ãŒã«ãšã£ãŠè åšããã説åŸåã®ãããã®ã«ãªãããããšã°ãŒã¯ãã£ããšæ¥è§ŠããããŒãããŒãšååããããšããããŸããHome DepotãAnthemãTargetãJP Morganã¯ãã¹ãŠãããšãŒãªã³ã°ãšã¹ãã¢ãã£ãã·ã³ã°ã®æšçã«ãªã£ãŠããŸããEpsilonã¯ãã¡ãŒã«ãããã€ããæšçãšããã¹ãã¢ãã£ãã·ã³ã°æ»æã«ãã40åãã«ã倱ããŸããããã®è¢«å®³ã¯ç倧ã§ã被害å埩ã®ããã®è²»çšãšèšŽèšãªã©ã§ããããŸã§ã§æå€§èŠæš¡ã®ãµã€ããŒæ»æã«ããæ¯æããšãªããŸããã
ã¹ãã¢ãã£ãã·ã³ã°ã®äºäŸ
ã¹ãã¢ãã£ãã·ã³ã°æ»æã®äºäŸãæäŸããããšã§ããŠãŒã¶ãŒãæè²ããããªãã®çµç¹ãã¿ãŒã²ããã«ãªã£ããšãã«ãã¹ãã¢ãã£ãã·ã³ã°ãç¹å®ããããšãã§ããŸããçµç¹ãå°ããããæšçã«ãªãããªããšæ±ºãã€ããªãã§ãã ãããæ»æè ã¯ãäžå°äŒæ¥ã¯å€§äŒæ¥ã«æ¯ã¹ãŠãµã€ããŒã»ãã¥ãªãã£ã®ãªãœãŒã¹ãå°ãªãããšãç¥ã£ãŠããã®ã§ãäžå°äŒæ¥ãã¿ãŒã²ããã«ãªããŸããã©ã®ãããªèŠæš¡ã®äŒæ¥ã§ããããšãŒã«ãã£ãã·ã³ã°ãã¹ãã¢ãã£ãã·ã³ã°ã®æšçã«ãªãå¯èœæ§ããããŸãã
è åšã¢ã¯ã¿ãŒã¯ãæå確çãé«ããã¿ãŒã²ãããŠãŒã¶ãŒã«ä¿¡é Œæãäžããããã«ããã°ãã°æåäŒæ¥ã®ååã䜿çšããŸããPayPalãAmazonãGoogleãMicrosoftã¯ãã¹ãã¢ãã£ãã·ã³ã°ã§äœ¿çšããã4ã€ã®å€§èŠæš¡ãªå®¶åºçšãã©ã³ãã§ãããããã®ãã©ã³ãã¯ããŠãŒã¶ãŒã«ä¿¡é Œæãäžããã¡ãŒã«å ã®ãªã³ã¯ãã¯ãªãã¯ããããã«éšãããå¯èœæ§ã®ããæ°çŸäžäººã®é¡§å®¢ãæ±ããŠããŸãã
ãã£ãã·ã³ã°ã®ããäžã€ã®äŸã¯ãGoogleãšMicrosoftãå©çšããŠããŠãŒã¶ãŒãéšããæ»æè ã®éè¡å£åº§ã«ééããããšãããã®ã§ãããã®ã¡ãŒã«ã§ã¯ããŠãŒã¶ãŒãGoogleãŸãã¯Microsoftããã®è³éãåœéžããåœéžéãåãåãã«ã¯ãã¿ãŒã²ãããšãªã£ããŠãŒã¶ãŒãéµéè²»ãšããŠå°é¡ã®ææ°æãéãå¿ èŠããããšäž»åŒµããŸããGmailã¯ãã®ãããªã¡ãã»ãŒãžã®ãã£ã«ã¿ãªã³ã°ã«åªããŠããŸããããŠãŒã¶ãŒã¯è¿·æã¡ãŒã«ãã©ã«ãã§ãã®ã¡ãã»ãŒãžãèŠã€ããŠè¿ä¿¡ããŠããŸããŸãããããã®ã¡ãã»ãŒãžã¯ãããžãã¹ç°å¢ã§ã¯æšçã®åä¿¡è ã«æ±ºããŠå±ãã¹ãã§ã¯ãªããè¿·æã¡ãŒã«ãã©ã«ãã«å±ã代ããã«éé¢ãããã¹ãã§ãã
ã¹ãã¢ãã£ãã·ã³ã°ã®äºäŸ:
- ã¡ãŒã«ã®éä¿¡è ã¯ã顧客ãåä¹ããæè¿è³Œå ¥ããååã«ã€ããŠã¯ã¬ãŒã ãã€ããŠããŸããæ»æè ã¯ãæšçãšãªã£ãåŸæ¥å¡ãèªèšŒãä¿ãããå ¬åŒããŒãžãæš¡ããWebãµã€ãã«ãŠãŒã¶ãŒãç¹ããŸãã
- ããã¹ãã¡ãã»ãŒãžãŸãã¯é»åã¡ãŒã«ã«ãããéè¡å£åº§ã䟵害ãããããšãéç¥ãããèªèšŒãä¿ãããŒãžã«ç¹ããããŸãã
- ã¡ãŒã«éä¿¡è ã¯ãæ£èŠã®ãã³ããŒãåä¹ããå£åº§ã®æå¹æéãè¿«ã£ãŠãããããåä¿¡è ã¯ãªã³ã¯ãã¯ãªãã¯ããŠèªèšŒããå¿ èŠããããšäŒããŸãã
- ç¹å®ã®å£äœãžã®å¯ä»ãééãèŠæ±ããŠããå Žåã¯ãéåžžãã¹ãã¢ãã£ãã·ã³ã°ã®ã¿ãŒã²ããã§ããããšã瀺ããŠããŸãã
- è«æ±æžãæ¯æãåã«å¿ ãæ€èšŒããŸããããæ»æè ã¯ãçµç¹ãéšãããã«ãåœã®ãã³ããŒãšå®éã®ãã³ããŒã䜿ãåããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã®å®äŸ
ã¹ãã¢ãã£ãã·ã³ã°ã®å€ãããæ»æè ã¯è²¡åéšéãã¿ãŒã²ããã«ããŠããŸããäŸãã°ãæ»æè ã¯Ubiquiti Networksãšããç±³åœã®ãããã¯ãŒã¯æè¡äŒç€Ÿãæšçã«ããã¹ãã¢ãã£ãã·ã³ã°ã䜿ã£ãŠ4670äžãã«ãçã¿åºãããšã«æåããŸãããæ»æè ã¯å¹¹éšã«ãªãããŸãã財åéšéã«ãªãã·ã§ã¢ã®éè¡å£åº§ãžééããããã«èª¬åŸããŸããã
ãµã€ããŒã»ãã¥ãªãã£ã®ãã€ãªãã¢ã ãããšãã£ãŠãã¹ãã¢ãã£ãã·ã³ã°ã«å¯Ÿããèæ§ãããããã§ã¯ãããŸãããRSAã»ãã¥ãªãã£ã¯ãåŸæ¥å¡ãAdobe Flashãªããžã§ã¯ããåã蟌ãŸããExcelã¹ãã¬ããã·ãŒããéããéã«ãã¹ãã¢ãã£ãã·ã³ã°æ»æã®è¢«å®³ã«éããŸããããã®æªæã®ããFlashãªããžã§ã¯ãã¯ããŒããã€Flashã®è匱æ§ãå©çšããããŒã«ã«ã³ã³ãã¥ãŒã¿ã«ããã¯ãã¢ãã€ã³ã¹ããŒã«ããŸããããã®ããã¯ãã¢ã«ãã£ãŠæ»æè ã¯èªèšŒæ å ±ã«ã¢ã¯ã»ã¹ã§ããããã«ãªããããããŒãã»ããŒãã£ã³ãããŒã¹ãããã»ã°ã©ãã³ãªã©ã®é²è¡å¥çŽã®ã»ãã¥ãªãã£ãè ããããŸããã
ã¹ãã¢ãã£ãã·ã³ã°ã®çµ±èš
2020幎以éããã£ãã·ã³ã°ãã¹ãã¢ãã£ãã·ã³ã°ã®å ±åãå€§å¹ ã«å¢ããŠããŸãããã©ã€ãŸã³ã®2021幎ããŒã¿äŸµå®³èª¿æ»å ±åæžïŒDBIRïŒã«ãããšãç±³åœã®çµç¹ã®74ïŒ ããã£ãã·ã³ã°æ»æãçµéšããŠããŸãããããã®æ»æã®96ïŒ ã¯é»åã¡ãŒã«çµç±ã§è¡ãããŠãããé»åã¡ãŒã«ã¯ã¹ãã¢ãã£ãã·ã³ã°ã®æãäžè¬çãªæ¹æ³ãšãªã£ãŠããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã¯ããæšçãçµã£ãŠè¡ããããããæŽ»çºãªæ»æè ã°ã«ãŒãã¯ãèªèšŒæ å ±ã®çé£ãã©ã³ãµã ãŠã§ã¢ããã®ä»ã®ééçãªå©çãåŸãããã«å©çšããŠããŸãããããã®ã°ã«ãŒãã¯ã65ïŒ ã®ç¢ºçã§ã¹ãã¢ãã£ãã·ã³ã°ãå©çšããŠããŸããä»ã®å ±åæžã«ãããšãã¹ãã¢ãã£ãã·ã³ã°ã¯éåžžã®ãã£ãã·ã³ã°ãããæ¥éã«æ®åããŠããŸããProofpointã®ã¬ããŒãã«ãããšã64ïŒ ã®ã»ãã¥ãªãã£å°éå®¶ãš88ïŒ ã®çµç¹ããé«åºŠãªã¹ãã¢ãã£ãã·ã³ã°æ»æãçµéšããŠããããšã倿ããŠããŸãããããã®æ»æã®å€ãã¯ãã¢ã«ãŠã³ãã®äŸµå®³ããã«ãŠã§ã¢ïŒã©ã³ãµã ãŠã§ã¢ãªã©ïŒãããŒã¿ã®çé£ãçã£ããã®ã§ããã
ã¹ãã¢ãã£ãã·ã³ã°ãžã®ã»ãã¥ãªãã£å¯Ÿç
äžå¯©ãªé»åã¡ãŒã«ãæ€ç¥ããããã«åæã䜿çšããé»åã¡ãŒã«ä¿è·ãœãªã¥ãŒã·ã§ã³ãæ¢ããŠã¿ãŸãããããã«ãŠã§ã¢ã®åçè§£æã§ã¯ãéä¿¡å ã®Webãµã€ãã®æªæããåäœãè§£æããå®éã®ãŠãŒã¶ãŒã·ã¹ãã ãã·ãã¥ã¬ãŒãããŠãã«ãŠã§ã¢ã«çµã¿èŸŒãŸããåé¿æè¡ã«å¯Ÿæãããµã³ãããã¯ã¹ç°å¢äžã§ãã«ãŠã§ã¢ãæ£äœãçŸãããã«ä»åããããšãã§ããŸããäžå¯©ãªã¡ãŒã«ã®é ä¿¡æããŠãŒã¶ãŒãURLãã¯ãªãã¯ããæã«ãµã³ãããã¯ã¹åããããšã§ãããããæšçåæ»æã®è åšãããå€ãæ€ç¥ã§ããå¯èœæ§ããããŸãã
ã¹ãã¢ãã£ãã·ã³ã°ã®é²åŸ¡ã«ã¯ãã»ãã¥ãªãã£æèåäžãã¬ãŒãã³ã°ãåæ§ã«éèŠãªåœ¹å²ãæãããŸããOsterman Researchã®èª¿æ»ã«ãããšãã»ãšãã©ã®ã»ãã¥ãªãã£æ åœè ããè åšã®çš®é¡ã«ãã£ãŠç°ãªããã®ã®ãã»ãã¥ãªãã£æèåäžãã¬ãŒãã³ã°ãšãã¯ãããžãŒããŒã¹ã®ãœãªã¥ãŒã·ã§ã³ã®çµã¿åãããæšå¥šããŠããŸããã¹ãã¢ãã£ãã·ã³ã°ã§ã¯ã調æ»å¯Ÿè±¡è ã®37ïŒ ããã解決çã¯äž»ã«ãã¬ãŒãã³ã°ã ãããã¯ãããžãŒã®æ¹åãæå¹ããšåçãã44ïŒ ãããã¬ãŒãã³ã°ãšããã»ã¹ãåããããéèŠããšåçããŠããŸã[2]ã
ã©ã®ãããªçµã¿åããã§ãããæ¬åœã«éèŠãªã®ã¯ã人ãäžå¿ãšããã»ãã¥ãªãã£æ å¢ãæ¡çšããããšã§ããæ»æè ã¯ãäžçããããã¯ãŒã¯å³ã®ããã«èŠãŠããããã§ã¯ãããŸãããèª°ãæ»æãããŠããããã©ã®ããã«æ»æãããŠãããããããŠã¯ãªãã¯ãããã©ãããå¯èŠåã§ãããœãªã¥ãŒã·ã§ã³ãå°å ¥ããŠãã ãããåãŠãŒã¶ãŒãã©ã®ããã«çãããŠããããã©ã®ãããªããŒã¿ã«ã¢ã¯ã»ã¹ã§ããããæ»æã®å¯Ÿè±¡ã«ãªããããããªã©ãåã ã®ãªã¹ã¯ãèæ ®ããŸãããã
æªæã®ããã¡ãŒã«ãçºèŠããå ±åãããããŠãŒã¶ãŒãæè²ããŠãã ããã宿çãªãã¬ãŒãã³ã°ãšãã£ãã·ã³ã°æ»æã®ã·ãã¥ã¬ãŒã·ã§ã³ã«ãããå€ãã®æ»æã黿¢ããç¹ã«è匱ãªãŠãŒã¶ãŒãç¹å®ããããšãã§ããŸããæé«ã®ã·ãã¥ã¬ãŒã·ã§ã³ã¯ãå®éã®æ»æææ³ãæš¡å£ããŠããŸããçŸåšã®ãã¬ã³ããææ°ã®è åšæ å ±ãåæ ãããœãªã¥ãŒã·ã§ã³ãæ¢ããŸãããã
åæã«ããŠãŒã¶ãŒãæçµçã«äœããã®è åšãã¯ãªãã¯ããããšãæ³å®ããŠãã ãããæ»æè ã¯åžžã«äººéã®æ¬æ§ãå©çšããæ°ããæ¹æ³ãèŠã€ãåºããŸããããã§ãåŸæ¥å¡ãçãåä¿¡ã¡ãŒã«ã®è åšããåä¿¡ç®±ã«å±ãåã«çºèŠãããããã¯ãããœãªã¥ãŒã·ã§ã³ãå¿ èŠã§ãããŸããããªãã®äŒç€Ÿã®ãã¡ã€ã³ã䜿ã£ãŠé¡§å®¢ãããŒãããŒãçãã¹ãã¢ãã£ãã·ã³ã°æ»æãªã©ã®å€éšã®è åšã黿¢ããŸãããã
ã¹ãã¢ãã£ãã·ã³ã°ãã身ãå®ãããã®ãã®ä»ã®æ¹æ³:
- 管çè ã®å Žåã¯ãã¡ãŒã«ãµãŒããŒã«DMARCã«ãŒã«ãèšå®ãããã£ãã·ã³ã°ã¡ãã»ãŒãžãæšçã®åä¿¡è ã«å±ããªãããã«ããã
- ééçãªååŒãèŠæ±ããã¡ãã»ãŒãžã¯ãããšãéä¿¡è ãæ£åœãªåŸæ¥å¡ããã³ããŒã®ããã«èŠããŠãã確èªããã
- ã¡ãŒã«ã«èšèŒãããŠãããªã³ã¯ãã¯ãªãã¯ããªãããã©ãŠã¶ã§ãã¡ã€ã³åãå ¥åããå ¬åŒãµã€ãããèªèšŒããã
- ã¢ã«ãŠã³ããæå¹ã«ä¿ã€ããã«ãåçãééçãªååŒãæ¥ããããããªã¡ãã»ãŒãžã«ã¯æ³šæããã
- ãã£ãã·ã³ã°ã®å åãèŠæ¥µãããã¬ãŒãã³ã°ã宿œããäžå¯©ãªã¡ãã»ãŒãžãåãåã£ãã管çè ã«éç¥ããã
- é»è©±ããããåŸã§ããã¡ãã»ãŒãžãæ£åœãªéä¿¡è ããã®ãã®ã§ããããšã確èªããããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ã¯ãããšãŒãªã³ã°ãã¹ãã¢ãã£ãã·ã³ã°ã§ãã䜿çšãããã
- é»è©±ã§ã¯æ±ºããŠèªèšŒæ å ±ãæäŸããªãããããŠãŒã¶ãŒãæè²ããããããã¯ãŒã¯ç®¡çè ã¯ãçµç¹å ã®ãããªãåŸæ¥å¡ã«å¯ŸããŠããæ±ºããŠãã¹ã¯ãŒããèŠæ±ããŠã¯ãªããªãã
ã¹ãã¢ãã£ãã·ã³ã°ã«å¯ŸããProofpointã®ãœãªã¥ãŒã·ã§ã³
Proofpointã¯ãã¹ãã¢ãã£ãã·ã³ã°ããã®ä»å€ãã®ã¡ãŒã«ããŒã¹ã®æ»æããããã¯ããçµ±ååã¡ãŒã«ã»ãã¥ãªãã£ãœãªã¥ãŒã·ã§ã³ãæäŸããŠããŸããProofpointã®ã¡ãŒã«ãœãªã¥ãŒã·ã§ã³ã¯ãåçŽãªãã©ãã¯ãªã¹ãã§ã¯ãªãããã¥ãŒãªã¹ãã£ãã¯ãšè¡åãã¿ãŒã³ãå©çšããŠæœåšçãªè åšãæ€åºããæå³ããåä¿¡è ã«å°éããªãããã«ãããã¯ããŸãã
Proofpoint ã¯ãã£ãã·ã³ã°æ»æããããã¯ããã ãã§ãªããå°éå®¶ãã»ãã¥ãªãã£æèåäžãã¬ãŒãã³ã°ãæäŸããå éšè åšã®ãªã¹ã¯ã軜æžããŸããèªååãããã€ã³ã·ãã³ãã¬ã¹ãã³ã¹ã«ãããè åšãå°ã蟌ãããŸã§ã®æéãççž®ãããŸããåœç€Ÿã®ã¢ãããã£ãã»ãã¥ãªãã£ã¯ããªã¹ã¯ã®é«ããŠãŒã¶ãŒã®è¡åãèªåçã«åæããåŸãã¡ãŒã«ã¡ãã»ãŒãžãšæœåšçãªè åšãåé¢ããŸãã
[1] Tom Burt, Microsoft. âMicrosoft takes court action against fourth nation-state cybercrime group.â
[2] âNew Methods for Solving Phishing, Business Email Compromise, Account Takeovers and Other Security Threats.â Osterman Research White Paper