¥Ñ¥¹¥ï¡¼¥É´ÉÍý¥¢¥×¥ê¡ÖKeePass¡×¤Îµ¶¥µ¥¤¥È¤¬Google¹¹ð¤Ë¤è¤Ã¤Æ¸¡º÷·ë²Ì¤Î¥È¥Ã¥×¤Ëɽ¼¨¤µ¤ì¤ë»öÂÖ¤¬È¯À¸
¥æ¡¼¥¶¡¼¤ò¤À¤Þ¤¹¤¿¤á¤Ë¿Íµ¤¤Î¹â¤¤¥¦¥§¥Ö¥µ¥¤¥È¤Ë¤Ê¤ê¤¹¤Þ¤¹¥±¡¼¥¹¤¬¤¢¤ê¤Þ¤¹¤¬¡¢¤³¤ì¤È¥Þ¥ë¥Ð¥¿¥¤¥¸¥ó¥°¤òÁȤ߹ç¤ï¤»¤¿¹¶·â¤¬³Îǧ¤µ¤ì¤Æ¤¤¤Þ¤¹¡£¹¶·â¼Ô¤Ï¥ª¡¼¥×¥ó¥½¡¼¥¹¤Î¥Ñ¥¹¥ï¡¼¥É¥Þ¥Í¡¼¥¸¥ã¡¼¥¢¥×¥ê¤Ç¤¢¤ëKeePass¤Îµ¶¥µ¥¤¥È¤òºîÀ®¤·¡¢¤³¤ì¤òGoogle¹¹ð¤ÇÇÛ¿®¤·¤Æ¤¤¤¿ÌÏÍͤǤ¹¡£
Clever malvertising attack uses Punycode to look like KeePass's official website
°°Õ¤Î¤¢¤ë¹¶·â¼Ô¤Ï¡¢Æüì¤Êʸ»ú¥¨¥ó¥³¡¼¥Ç¥£¥ó¥°¤Ç¤¢¤ëPunycode¤ò»ÈÍѤ·¤Æ¡¢KeePass¤Î¸ø¼°¥µ¥¤¥È¤òÌÏÊ路¤¿µ¶¥µ¥¤¥È¤òºîÀ®¤·¤Þ¤·¤¿¡£ËÜʪ¤Èµ¶Êª¤Î»ë³ÐŪ¤Êº¹¤Ï¤Û¤È¤ó¤É¤Ê¤¯¡¢¸«¤¿Ìܤ«¤é¤Ï¡Ö´Ö°ã¤¤¤Ê¤¯Â¿¤¯¤Î¿Í¤¬¤À¤Þ¤µ¤ì¤ë¤Ç¤¢¤í¤¦¤â¤Î¤Ë¤Ê¤Ã¤Æ¤¤¤¿¡×¤È¡¢¥»¥¥å¥ê¥Æ¥£¥½¥Õ¥È¥¦¥§¥¢¤ò³«È¯¤¹¤ëMalwarebytes¤Ï»ØŦ¤·¤Æ¤¤¤Þ¤¹¡£
¹¶·â¼Ô¤Ï¤³¤Îµ¶¥µ¥¤¥È¤òGoogle¹¹ð¤ò»È¤Ã¤ÆÀëÅÁ¤·¤Æ¤¤¤ë¤¿¤á¡¢Google¸¡º÷¤Ç¡ÖKeePass¡×¤È¸¡º÷¤¹¤ë¤È¡¢¸¡º÷·ë²Ì²èÌ̤κǾåÉô¤Ë°°Õ¤Î¤¢¤ë¹¹ð¤¬É½¼¨¤µ¤ì¤Æ¤·¤Þ¤¦ÌÏÍÍ¡£ÀÖÏȤǰϤï¤ì¤¿Éôʬ¤¬°°Õ¤Î¤¢¤ë¹¹ð¤Ç¡¢KeePass¤Î¥í¥´¤ÈURL¤ò»ÈÍѤ·¤Æ¤¤¤ë¤¿¤á¡¢°ì¸«ÌäÂê¤Î¤Ê¤¤¥ê¥ó¥¯¤Ë¸«¤¨¤Þ¤¹¡£¤·¤«¤·¡¢ËÜʪ¤Î¸ø¼°¥µ¥¤¥È¤Ø¤Î¥ê¥ó¥¯¤Ï°°Õ¤Î¤¢¤ë¹¹ð¤Î²¼¤Ëɽ¼¨¤µ¤ì¤Æ¤¤¤ë¤â¤Î¤Ç¤¹¡£
¤³¤Î°°Õ¤Î¤¢¤ë¹¹ð¤ò¥¯¥ê¥Ã¥¯¤¹¤ë¤È¡¢¥¯¥í¡¼¥¥ó¥°¥µ¡¼¥Ó¥¹·Ðͳ¤ÇÊ£¿ô²ó¤Ë¤ï¤¿¤Ã¤Æ¥ê¥À¥¤¥ì¥¯¥È¤µ¤ì¤Þ¤¹¡£¹¶·â¼Ô¤ÏºÇ½ªÅª¤Ê°¸Àè¤Ø¤Î¾ò·ïÉÕ¤¥ê¥À¥¤¥ì¥¯¥È¤ò¼Â¹Ô¤¹¤ë°ì»þ¥É¥á¥¤¥ó¤ò¡Ökeepasstacking.site¡×¤Ë¥»¥Ã¥È¥¢¥Ã¥×¤·¤Æ¤¤¤ëÌÏÍÍ¡£
¥Í¥Ã¥È¥ï¡¼¥¯¤Î¥È¥é¥Õ¥£¥Ã¥¯¥í¥´¤ò¸«¤ë¤È¡¢¥¦¥§¥Ö¥µ¥¤¥È¤¬Unicodeʸ»ú¤òASCII¤ËÊÑ´¹¤¹¤ë¤¿¤á¤ÎPunycode¤ò»ÈÍѤ·¤Æ¤¤¤ë¤³¤È¤¬¤ï¤«¤ë¤½¤¦¤Ç¤¹¡£¤³¤ì¤Ë¤è¤ê¡¢¥Ö¥é¥¦¥¶¤Î¸¡º÷¥Ð¡¼Éôʬ¤Ë¤Ï¡Ökeepass.info¡×¤È¤¤¤¦KeePass¤Î¸ø¼°¥µ¥¤¥È¤ÈƱ¤¸URL¤¬É½¼¨¤µ¤ì¤Æ¤¤¤ë¤è¤¦¤Ë¸«¤¨¤ë¤ï¤±¤Ç¤¹¡£¤½¤Î¤¿¤á¡¢Malwarebytes¤Ï¡Ö¼«Ê¬¤¬Àµ¤·¤¤¥¦¥§¥Ö¥µ¥¤¥È¤Ë¥¢¥¯¥»¥¹¤·¤Æ¤¤¤ë¤³¤È¤ò³Îǧ¤·¤¿¤¤¥æ¡¼¥¶¡¼¤Ë¤È¤Ã¤Æ¤³¤Îµ½â֤ϴ°àú¤Ç¤¹¡×¤È»ØŦ¡£¤¿¤À¤·¡¢¤è¤¯¸«¤Æ¤ß¤ë¤Èµ¶¥µ¥¤¥È¤ÎURL¤Î¡Ök¡×Éôʬ¤Ë¤Ï¡¢¾®¤µ¤ÊÅÀ¤¬¤¢¤ê¡¢Ä̾ï¤Î¡Ök¡×¤Ç¤Ï¤Ê¤¯¡Öķ¡×¤Ç¤¢¤ë¤³¤È¤¬¤ï¤«¤ê¤Þ¤¹¡£
¤³¤Î¡Öķeepass.info¡×¤òUnicode¤ËÊÑ´¹¤¹¤ë¤È¡¢¼ÂºÝ¤ÎURL¤¬¡Öxn--eepass-vbb.info¡×¤Ç¤¢¤ë¤³¤È¤¬¤ï¤«¤ë¤½¤¦¤Ç¤¹¡£
°Ê²¼¤Î²èÁü¤Îº¸¤¬KeePass¤Î¸ø¼°¥µ¥¤¥È¤Ç¡¢±¦¤¬°°Õ¤Î¤¢¤ë¹¶·â¼Ô¤¬ºîÀ®¤·¤¿µ¶¥µ¥¤¥È¡£KeePass¤Î¸ø¼°¥µ¥¤¥È¤ò¸«´·¤ì¤¿¿Í°Ê³°¤Ê¤é´Êñ¤Ë¤À¤Þ¤»¤Æ¤·¤Þ¤¤¤½¤¦¤Ê¸«¤¿ÌܤǤ¹¡£
¤³¤Îµ¶¥µ¥¤¥È¤«¤éKeePass¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤è¤¦¤È¤¹¤ë¤È¡¢¥Ç¥¸¥¿¥ë½ð̾¤µ¤ì¤¿¥Þ¥ë¥¦¥§¥¢¤Î¥¤¥ó¥¹¥È¡¼¥é¡¼¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¤·¤Þ¤¤¤Þ¤¹¡£
¤³¤Î¥¤¥ó¥¹¥È¡¼¥é¡¼¤òʬÀϤ¹¤ë¤È¡¢¡ÖFakeBat¡×¤È¤¤¤¦¥Þ¥ë¥¦¥§¥¢¥Õ¥¡¥ß¥ê¡¼¤Ë°¤¹¤ë°°Õ¤Î¤¢¤ëPowerShell¥³¡¼¥É¤ò³Îǧ¤¹¤ë¤³¤È¤¬¤Ç¤¤ë¤½¤¦¤Ç¤¹¡£
¤³¤Î¥¹¥¯¥ê¥×¥È¤Ï¿Í´Ö¤Î¶¼°Ò¥¢¥¯¥¿¡¼¤Ë¤è¤ëÄ廡¤Î½àÈ÷¤òÀ°¤¨¤ë¤¿¤á¤Î¥Ú¥¤¥í¡¼¥É¤ò¥À¥¦¥ó¥í¡¼¥É¤¹¤ëÁ°¤Ë¡¢¥Þ¥ë¥¦¥§¥¢¤Î¥³¥Þ¥ó¥É¡õ¥³¥ó¥È¥í¡¼¥ë¥µ¡¼¥Ð¡¼¤ÈÄÌ¿®¤·¡¢¿·¤·¤¤Èï³²¼Ô¤ò¥¢¥É¥Ð¥¿¥¤¥º¤¹¤ëÌÏÍÍ¡£
Punycode¤Ï¥Ï¥Ã¥«¡¼¤Ê¤É¤Ë¤è¤êĹǯ°ÍѤµ¤ì¤Æ¤¤Æ¤ª¤ê¡¢º£²ó¤Î»öÎ㤫¤é¤â¡Ö¥Ö¥é¥ó¥É¤Î¤Ê¤ê¤¹¤Þ¤·¤ËPunycode¤¬¤¤¤«¤Ë͸ú¤«¤ò¼¨¤·¤Æ¤¤¤ë¡×¤ÈMalwarebytes¤Ï»ØŦ¡£Google¤Î¤è¤¦¤Ê¸¡º÷¥¨¥ó¥¸¥ó¤ò²ð¤·¤¿¥Þ¥ë¥Ð¥¿¥¤¥¸¥ó¥°¤Ï¤Þ¤¹¤Þ¤¹ÀöÎý²½¤·¤Æ¤ª¤ê¡¢¥¨¥ó¥É¥æ¡¼¥¶¡¼¤Ë¤È¤Ã¤Æ¥×¥í¥°¥é¥à¤ò¤É¤³¤«¤é¥À¥¦¥ó¥í¡¼¥É¤¹¤ë¤«¤Ï¡¢¤³¤ì¤Þ¤Ç°Ê¾å¤ËºÙ¿´¤ÎÃí°Õ¤òʧ¤¦É¬Íפ¬¤¢¤ë¤È¤â»ØŦ¤·¤Æ¤¤¤Þ¤¹¡£¤½¤Î¤¿¤á¡¢Malwarebytes¤Ï¡Ö¥Ó¥¸¥Í¥¹´Ä¶¤Ë¤ª¤¤¤Æ¤Ï¡¢½¾¶È°÷¤¬¥½¥Õ¥È¥¦¥§¥¢¥¤¥ó¥¹¥È¡¼¥é¡¼¤ò°ÂÁ´¤Ë¼èÆÀ¤Ç¤¤ëÆâÉô¥ê¥Ý¥¸¥È¥ê¤òÄ󶡤¹¤ë¤³¤È¤ò¤ª´«¤á¤·¤Þ¤¹¡×¤È½Ò¤Ù¤Þ¤·¤¿¡£
¤Ê¤ª¡¢Malwarebytes¤Ï¡Ö¤³¤Î¥¤¥ó¥·¥Ç¥ó¥È¤òGoogle¤ËÊó¹ð¤·¤Þ¤·¤¿¤¬¡¢ÌäÂê¤Î¹¹ð¤Ï2023ǯ10·î18Æü»þÅÀ¤Ç¤â·ÇºÜÃæ¤Ç¤¢¤ë¤³¤È¤ò³Îǧ¤·¤Æ¤¤¤ë¤¿¤á¡¢¥æ¡¼¥¶¡¼¤Ë·Ù¹ð¤·¤¿¤¤¤È»×¤¤¤Þ¤¹¡×¤Èµ¤·¤Æ¤¤¤Þ¤¹¡£