Palo Alto Networks¤Ï7·î20Æü¡ÊÊƹñ»þ´Ö¡Ë¡¢¡ÖThreat Group Assessment: Mallox Ransomware¡×¤Ë¤ª¤¤¤ÆMicrosoft Windows¤òɸŪ¤È¤¹¤ëMallox¥é¥ó¥µ¥à¥¦¥§¥¢¤Î³èÆ°¤¬Áý²Ã¤·¤Æ¤¤¤ë¤È¤·¤Æ¡¢Ãí°Õ¤ò¸Æ¤Ó³Ý¤±¤¿¡£

Threat Group Assessment: Mallox Ransomware

Palo Alto Networks Unit42¤Î¸¦µæ¼Ô¤Ï¡¢Mallox(ÊÌ̾TargetCompany¡¢FARGO¡¢Tohnichi)¥é¥ó¥µ¥à¥¦¥§¥¢¤Î³èÆ°¤¬Á°Ç¯¤ÈÈæ³Ó¤·¤Æ¤Û¤Ü174%Áý²Ã¤·¤¿¤³¤È¤ò³Îǧ¤·¤¿¤ÈÊ󤸤¿¡£

Mallox¤Ï2021ǯ6·î¤Ë³èÆ°¤¬³Îǧ¤µ¤ì¤Æ¤ª¤ê¡¢¹¶·âÂоݤؤο¯Æþ·ÐÏ©¤È¤·¤ÆÀȼå¤ÊMicrosoft SQL Server¤ò°­ÍѤ¹¤ë¤³¤È¤¬ÃΤé¤ì¤Æ¤¤¤ë¡£Mallox¤Ï2021ǯ¤Î½Ð¸½°ÊÍ衢Ʊ¤¸¹¶·â¼êË¡¤¬¼è¤é¤ì¤Æ¤ª¤ê¡¢¥»¥­¥å¥ê¥Æ¥£¤ÇÊݸ¤ì¤Æ¤¤¤Ê¤¤Microsoft SQL Server¤Ø¥Ö¥ë¡¼¥È¥Õ¥©¡¼¥¹¥¢¥¿¥Ã¥¯¤Ë¤Æ¿¯Æþ¤·¡¢¥ê¥â¡¼¥È¤«¤éMallox¥é¥ó¥µ¥à¥¦¥§¥¢¥Ú¥¤¥í¡¼¥É¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¼Â¹Ô¤¹¤ë¡£

Mallox¤Ë´¶À÷¤·¤¿¥·¥¹¥Æ¥à¤Ï¡¢¥Ç¡¼¥¿¤ÎÀà¼è¤ª¤è¤Ó¥Ç¡¼¥¿¤Î°Å¹æ²½¤¬¹Ô¤ï¤ì¿ÈÂå¶â¤¬Í׵ᤵ¤ì¤ë¡£

Mallox¤Î³«È¯¥°¥ë¡¼¥×¤ÏÈæ³ÓŪ¾®µ¬ÌϤǤ¢¤ë¤È¤µ¤ì¤Æ¤¤¤ë¤¬¡¢¥é¥ó¥µ¥à¥¦¥§¥¢¡¦¥¢¥º¡¦¥¢¡¦¥µ¡¼¥Ó¥¹(RaaS: Ransomware-as-a-Service)¤ÎÄ󶡤ȥ¢¥Õ¥£¥ê¥¨¥¤¥È(¹¶·â¼Ô)¤òÊ罸¤·¤ÆÁÈ¿¥¤Î³ÈÂç¤ò·×¤Ã¤Æ¤ª¤ê¡¢º£¸å¥¢¥Õ¥£¥ê¥¨¥¤¥È¤ÎÊ罸¤ËÀ®¸ù¤·¤¿¾ì¹ç¤Ï¤è¤ê¿¤¯¤ÎÁÈ¿¥¤¬¹¶·â¤µ¤ì¤ë¤È¤ß¤é¤ì¤Æ¤¤¤ë¡£

Palo Alto Networks Unit42¤Ï¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ËÀܳ¤¹¤ë¤¹¤Ù¤Æ¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤òŬÀÚ¤ËÀßÄꤷ¡¢¤¹¤Ù¤Æ¤Î¥·¥¹¥Æ¥à¤òºÇ¿·¤Î¾õÂÖ¤ËÊݤĤ³¤È¤ò¿ä¾©¤·¤Æ¤¤¤ë¡£¤³¤ì¤éÂкö¤Ë¤è¤ê¥¢¥¿¥Ã¥¯¥µ¡¼¥Õ¥§¥¹¤ò¸º¾¯¤µ¤»¹¶·â¼êË¡¤òÀ©¸Â¤Ç¤­¤ë¤ÈÀâÌÀ¤·¤Æ¤¤¤ë¡£