WordPress¥µ¥¤¥È¤«¤éµ¶¤ÎChrome¥¢¥Ã¥×¥Ç¡¼¥ÈÇÛ¿®¡¢341¤ÎWeb¥µ¥¤¥È¤¬¿¯³²
Sucuri¤Ï6·î5Æü(Êƹñ»þ´Ö)¡¢¡ÖHundreds of Websites Targeted by Fake Google Chrome Update Pop-Ups¡×¤Ë¤ª¤¤¤Æ¡¢WordPress¥µ¥¤¥È¤ò¿¯³²¤·¤Æµ¶¤ÎGoolge Chrome¥¢¥Ã¥×¥Ç¡¼¥È¤òÇÛ¿®¤¹¤ë¥¥ã¥ó¥Ú¡¼¥ó¤ò³Îǧ¤·¤¿¤È¤·¤Æ¡¢Ãí°Õ¤ò¸Æ¤Ó¤«¤±¤¿¡£¤³¤Î¹¶·â¤Ï4·î²¼½Ü¤«¤é³Îǧ¤µ¤ì¡¢¾¯¤Ê¤¯¤È¤â341¤ÎWeb¥µ¥¤¥È¤¬±Æ¶Á¤ò¼õ¤±¤¿¤È¤ß¤é¤ì¤Æ¤¤¤ë¡£
Hundreds of Websites Targeted by Fake Google Chrome Update Pop-Ups
¡ûµ¶¤ÎGoolge Chrome¥¢¥Ã¥×¥Ç¡¼¥È
Sucuri¤Ë¤è¤ë¤È¡¢º£²ó³Îǧ¤µ¤ì¤¿¥¥ã¥ó¥Ú¡¼¥ó¤Ç¤Ï¡¢µ¶¤ÎGoogle Chrome¥¢¥Ã¥×¥Ç¡¼¥È¤Î¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤òÄ̤¸¤Æ°°Õ¤Î¤¢¤ë¡ÖGoogleChrome-x86.msix¡×¤ò¥À¥¦¥ó¥í¡¼¥É¤µ¤»¤ë¤È¤¤¤¦¡£Sucuri¤Ï¤³¤Î¥Õ¥¡¥¤¥ë¤Î¾ÜºÙ¤Ë¿¨¤ì¤Æ¤¤¤Ê¤¤¤¬¡¢Ä̾µ¶¤ÎWeb¥Ö¥é¥¦¥¶¥¢¥Ã¥×¥Ç¡¼¥È¤«¤é¤Ï¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¤ä±ó³ÖÁàºî·¿¥È¥í¥¤¤ÎÌÚÇÏ(RAT: Remote Administration Trojan)¤¬ÇÛÉÛ¤µ¤ì¤ë¡£
µ¶¤ÎGoogle Chrome¥¢¥Ã¥×¥Ç¡¼¥È¤òÄÌÃΤ¹¤ë¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ÎÎã¡¡°úÍÑ¡§Sucuri
¸½ºß¡¢¤³¤Î¥¥ã¥ó¥Ú¡¼¥ó¤Ç»ÈÍѤµ¤ì¤¿¥À¥¦¥ó¥í¡¼¥É¥µ¡¼¥Ð¤Ïµ¡Ç½¤·¤Æ¤ª¤é¤º¡¢¤³¤Î¥Õ¥¡¥¤¥ë¤ò¼èÆÀ¤¹¤ë¤³¤È¤Ï¤Ç¤¤Ê¤¤¡£¤·¤«¤·¤Ê¤¬¤é¡¢¿¯³²¤µ¤ì¤¿WordPress¥µ¥¤¥È¤Ï¾¯¤Ê¤¯¤È¤â341·ï¸ºß¤¹¤ë¤³¤È¤¬³Îǧ¤µ¤ì¤Æ¤¤¤ë¡£Sucuri¤ÏWordPress¥µ¥¤¥È¤Î±¿±Ä¼Ô¤ËÂФ·¡¢Web¥µ¥¤¥È¥»¥¥å¥ê¥Æ¥£¥Á¥§¥Ã¥«¡¼¡ÖWebsite Security Checker | Malware Scan | Sucuri SiteCheck¡×¤ò»ÈÍѤ·¤Æ¿¯³²¤ÎÍ̵¤ò³Îǧ¤¹¤ë¤è¤¦¤Ë¿ä¾©¤·¤Æ¤¤¤ë¡£
¡ûWordPress¥µ¥¤¥È¤Î¿¯³²
¤³¤Î¥¥ã¥ó¥Ú¡¼¥ó¤Ç¤ÏÀȼå¤ÊWordPress¥µ¥¤¥È¤ò¿¯³²¤·¡¢¥×¥é¥°¥¤¥ó¡ÖHustle - Email Marketing, Lead Generation, Optins, Popups - WordPress plugin | WordPress.org¡×¤ò¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤³¤È¤¬³Îǧ¤µ¤ì¤Æ¤¤¤ë¡£¤³¤Î¥×¥é¥°¥¤¥ó¤Ë¤ÏWeb¥µ¥¤¥È¤Ë¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ä¥ª¥×¥È¥¤¥ó¥Õ¥©¡¼¥à¤òÄɲ乤뵡ǽ¤¬¤¢¤ê¡¢¤³¤Î¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ò»È¤¦¤¿¤á¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¡£
¤Ê¤ª¡¢Sucuri¤Ïº£²ó¤Î¹¶·â¤Ç»ÈÍѤµ¤ì¤¿WordPress¥µ¥¤¥È¤Ø¤Î¿¯ÆþÊýË¡¤ò¸ø³«¤·¤Æ¤¤¤Ê¤¤¡£¤·¤«¤·¤Ê¤¬¤é¡¢²áµî¤ÎƱÍͤι¶·â¤Ë¤ª¤¤¤Æ¤ÏÀȼå¤Ê¥Ñ¥¹¥ï¡¼¥É¤òÀßÄꤷ¤Æ¤¤¤ëWeb¥µ¥¤¥È¤ËÂФ·¡¢¥Ñ¥¹¥ï¡¼¥É¥¹¥×¥ì¡¼¹¶·â¤Ê¤É¤ò»ÈÍѤ·¤Æ¿¯Æþ¤·¤¿¥±¡¼¥¹¤¬Êó¹ð¤µ¤ì¤Æ¤ª¤ê¡¢º£²ó¤âƱÍͤÎÊýË¡¤¬»ÈÍѤµ¤ì¤¿¤È¿ä¬¤µ¤ì¤ë¡£
¡ûWeb¥µ¥¤¥È¤ÎËɸæºö
Sucuri¤Ï¤³¤Î¤è¤¦¤Ê¹¶·â¤«¤éWordPress¥µ¥¤¥È¤òÊݸ¤ë¤¿¤á¡¢¼¡¤Î¤è¤¦¤ÊËɸæºö¤Î¼Â»Ü¤ò¿ä¾©¤·¤Æ¤¤¤ë¡£
¤¹¤Ù¤Æ¤Î¥×¥é¥°¥¤¥ó¤òÄê´üŪ¤Ë³Îǧ¤·¡¢Æ°ºî¤·¤Æ¤¤¤Ê¤¤¥³¥ó¥Ý¡¼¥Í¥ó¥È¤ä¥¤¥ó¥¹¥È¡¼¥ë¤·¤¿³Ð¤¨¤Î¤Ê¤¤¥³¥ó¥Ý¡¼¥Í¥ó¥È¤òºï½ü¤¹¤ë
WordPress´ØÏ¢¤Î¤¹¤Ù¤Æ¤Î¥¢¥«¥¦¥ó¥È(¥·¥¹¥Æ¥à¡¢FTP¡¢¥Ç¡¼¥¿¥Ù¡¼¥¹¥¢¥«¥¦¥ó¥È¤ò´Þ¤à)¤Ë°ì°Õ¤Ç¶¯ÎϤʥѥ¹¥ï¡¼¥É¤òÀßÄꤹ¤ë¡£¤Þ¤¿¡¢ºîÀ®¤·¤¿³Ð¤¨¤Î¤Ê¤¤ÉÔÍפʥ¢¥«¥¦¥ó¥È¤¬Â¸ºß¤¹¤ë¾ì¹ç¤Ïºï½ü¤¹¤ë
Web¥µ¥¤¥È¤òÄê´üŪ¤Ë´Æ»ë¤·¡¢ÉÔ¿³¤Ê³èÆ°¤¬¤Ê¤¤¤«¤É¤¦¤«³Îǧ¤¹¤ë
WordPress¤Î¥í¥°¥¤¥ó¥Ú¡¼¥¸¤Ë¥¢¥¯¥»¥¹À©¸Â¤ò¤«¤±¤ë¡£¤Þ¤¿¡¢¥í¥°¥¤¥ó¤Ë¿Í×ÁÇǧ¾Ú(MFA: Multi-Factor Authentication)¤òƳÆþ¤¹¤ë
WordPress¡¢¥×¥é¥°¥¤¥ó¡¢¥Æ¡¼¥Þ¡¢¤½¤Î¾¥³¥ó¥Ý¡¼¥Í¥ó¥È¤ò¾ï¤ËºÇ¿·¤Î¾õÂÖ¤ËÊݤÄ
Web¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë(WAF: Web Application Firewall)¤òƳÆþ¤¹¤ë
¤Þ¤¿¡¢¾åµ°Ê³°¤Ë¤âÄê´üŪ¤ËWeb¥µ¥¤¥È¤Î¥¤¥ß¥å¡¼¥¿¥Ö¥ë¥Ð¥Ã¥¯¥¢¥Ã¥×¤òºîÀ®¤·¡¢¿¯³²»þ¤Ë®¤ä¤«¤ËÉüµì¤Ç¤¤ë¤è¤¦½àÈ÷¤¹¤ë¤³¤È¤¬¿ä¾©¤µ¤ì¤ë¡£¤â¤·¡¢Web¥µ¥¤¥È¤¬¿¯³²¤µ¤ì¤¿¾ì¹ç¤Ï¡¢Èï³²¤Î³ÈÂçËɻߡ¢¿¯Æþ·ÐÏ©¤ª¤è¤Ó¿¯³²¤Î¾ÜºÙ¤òÆÃÄê¡¢ºÇ¸å¤Ë¥Ð¥Ã¥¯¥¢¥Ã¥×¤«¤éWeb¥µ¥¤¥È¤òÉü¸µ¤·¤Æ¿¯Æþ·ÐÏ©¤òºÉ¤°Âкö¤ò¼Â»Ü¤¹¤ë¡£¥Ð¥Ã¥¯¥¢¥Ã¥×¤¬¤Ê¤¤¾ì¹ç¤Þ¤¿¤ÏŬÀÚ¤ÊÂкöÊýË¡¤¬¤ï¤«¤é¤Ê¤¤¾ì¹ç¤Ï¡¢Â®¤ä¤«¤ËÀìÌç²È¤Þ¤¿¤Ï¥»¥¥å¥ê¥Æ¥£´ë¶È¤ËÁêÃ̤¹¤ë¤³¤È¤¬Ë¾¤Þ¤ì¤Æ¤¤¤ë¡£
¡ûµ¶¤ÎGoolge Chrome¥¢¥Ã¥×¥Ç¡¼¥È
Sucuri¤Ë¤è¤ë¤È¡¢º£²ó³Îǧ¤µ¤ì¤¿¥¥ã¥ó¥Ú¡¼¥ó¤Ç¤Ï¡¢µ¶¤ÎGoogle Chrome¥¢¥Ã¥×¥Ç¡¼¥È¤Î¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤òÄ̤¸¤Æ°°Õ¤Î¤¢¤ë¡ÖGoogleChrome-x86.msix¡×¤ò¥À¥¦¥ó¥í¡¼¥É¤µ¤»¤ë¤È¤¤¤¦¡£Sucuri¤Ï¤³¤Î¥Õ¥¡¥¤¥ë¤Î¾ÜºÙ¤Ë¿¨¤ì¤Æ¤¤¤Ê¤¤¤¬¡¢Ä̾µ¶¤ÎWeb¥Ö¥é¥¦¥¶¥¢¥Ã¥×¥Ç¡¼¥È¤«¤é¤Ï¾ðÊóÀà¼è¥Þ¥ë¥¦¥§¥¢¤ä±ó³ÖÁàºî·¿¥È¥í¥¤¤ÎÌÚÇÏ(RAT: Remote Administration Trojan)¤¬ÇÛÉÛ¤µ¤ì¤ë¡£
µ¶¤ÎGoogle Chrome¥¢¥Ã¥×¥Ç¡¼¥È¤òÄÌÃΤ¹¤ë¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ÎÎã¡¡°úÍÑ¡§Sucuri
¸½ºß¡¢¤³¤Î¥¥ã¥ó¥Ú¡¼¥ó¤Ç»ÈÍѤµ¤ì¤¿¥À¥¦¥ó¥í¡¼¥É¥µ¡¼¥Ð¤Ïµ¡Ç½¤·¤Æ¤ª¤é¤º¡¢¤³¤Î¥Õ¥¡¥¤¥ë¤ò¼èÆÀ¤¹¤ë¤³¤È¤Ï¤Ç¤¤Ê¤¤¡£¤·¤«¤·¤Ê¤¬¤é¡¢¿¯³²¤µ¤ì¤¿WordPress¥µ¥¤¥È¤Ï¾¯¤Ê¤¯¤È¤â341·ï¸ºß¤¹¤ë¤³¤È¤¬³Îǧ¤µ¤ì¤Æ¤¤¤ë¡£Sucuri¤ÏWordPress¥µ¥¤¥È¤Î±¿±Ä¼Ô¤ËÂФ·¡¢Web¥µ¥¤¥È¥»¥¥å¥ê¥Æ¥£¥Á¥§¥Ã¥«¡¼¡ÖWebsite Security Checker | Malware Scan | Sucuri SiteCheck¡×¤ò»ÈÍѤ·¤Æ¿¯³²¤ÎÍ̵¤ò³Îǧ¤¹¤ë¤è¤¦¤Ë¿ä¾©¤·¤Æ¤¤¤ë¡£
¡ûWordPress¥µ¥¤¥È¤Î¿¯³²
¤³¤Î¥¥ã¥ó¥Ú¡¼¥ó¤Ç¤ÏÀȼå¤ÊWordPress¥µ¥¤¥È¤ò¿¯³²¤·¡¢¥×¥é¥°¥¤¥ó¡ÖHustle - Email Marketing, Lead Generation, Optins, Popups - WordPress plugin | WordPress.org¡×¤ò¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤³¤È¤¬³Îǧ¤µ¤ì¤Æ¤¤¤ë¡£¤³¤Î¥×¥é¥°¥¤¥ó¤Ë¤ÏWeb¥µ¥¤¥È¤Ë¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ä¥ª¥×¥È¥¤¥ó¥Õ¥©¡¼¥à¤òÄɲ乤뵡ǽ¤¬¤¢¤ê¡¢¤³¤Î¥Ý¥Ã¥×¥¢¥Ã¥×ɽ¼¨¤ò»È¤¦¤¿¤á¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¡£
¤Ê¤ª¡¢Sucuri¤Ïº£²ó¤Î¹¶·â¤Ç»ÈÍѤµ¤ì¤¿WordPress¥µ¥¤¥È¤Ø¤Î¿¯ÆþÊýË¡¤ò¸ø³«¤·¤Æ¤¤¤Ê¤¤¡£¤·¤«¤·¤Ê¤¬¤é¡¢²áµî¤ÎƱÍͤι¶·â¤Ë¤ª¤¤¤Æ¤ÏÀȼå¤Ê¥Ñ¥¹¥ï¡¼¥É¤òÀßÄꤷ¤Æ¤¤¤ëWeb¥µ¥¤¥È¤ËÂФ·¡¢¥Ñ¥¹¥ï¡¼¥É¥¹¥×¥ì¡¼¹¶·â¤Ê¤É¤ò»ÈÍѤ·¤Æ¿¯Æþ¤·¤¿¥±¡¼¥¹¤¬Êó¹ð¤µ¤ì¤Æ¤ª¤ê¡¢º£²ó¤âƱÍͤÎÊýË¡¤¬»ÈÍѤµ¤ì¤¿¤È¿ä¬¤µ¤ì¤ë¡£
¡ûWeb¥µ¥¤¥È¤ÎËɸæºö
Sucuri¤Ï¤³¤Î¤è¤¦¤Ê¹¶·â¤«¤éWordPress¥µ¥¤¥È¤òÊݸ¤ë¤¿¤á¡¢¼¡¤Î¤è¤¦¤ÊËɸæºö¤Î¼Â»Ü¤ò¿ä¾©¤·¤Æ¤¤¤ë¡£
¤¹¤Ù¤Æ¤Î¥×¥é¥°¥¤¥ó¤òÄê´üŪ¤Ë³Îǧ¤·¡¢Æ°ºî¤·¤Æ¤¤¤Ê¤¤¥³¥ó¥Ý¡¼¥Í¥ó¥È¤ä¥¤¥ó¥¹¥È¡¼¥ë¤·¤¿³Ð¤¨¤Î¤Ê¤¤¥³¥ó¥Ý¡¼¥Í¥ó¥È¤òºï½ü¤¹¤ë
WordPress´ØÏ¢¤Î¤¹¤Ù¤Æ¤Î¥¢¥«¥¦¥ó¥È(¥·¥¹¥Æ¥à¡¢FTP¡¢¥Ç¡¼¥¿¥Ù¡¼¥¹¥¢¥«¥¦¥ó¥È¤ò´Þ¤à)¤Ë°ì°Õ¤Ç¶¯ÎϤʥѥ¹¥ï¡¼¥É¤òÀßÄꤹ¤ë¡£¤Þ¤¿¡¢ºîÀ®¤·¤¿³Ð¤¨¤Î¤Ê¤¤ÉÔÍפʥ¢¥«¥¦¥ó¥È¤¬Â¸ºß¤¹¤ë¾ì¹ç¤Ïºï½ü¤¹¤ë
Web¥µ¥¤¥È¤òÄê´üŪ¤Ë´Æ»ë¤·¡¢ÉÔ¿³¤Ê³èÆ°¤¬¤Ê¤¤¤«¤É¤¦¤«³Îǧ¤¹¤ë
WordPress¤Î¥í¥°¥¤¥ó¥Ú¡¼¥¸¤Ë¥¢¥¯¥»¥¹À©¸Â¤ò¤«¤±¤ë¡£¤Þ¤¿¡¢¥í¥°¥¤¥ó¤Ë¿Í×ÁÇǧ¾Ú(MFA: Multi-Factor Authentication)¤òƳÆþ¤¹¤ë
WordPress¡¢¥×¥é¥°¥¤¥ó¡¢¥Æ¡¼¥Þ¡¢¤½¤Î¾¥³¥ó¥Ý¡¼¥Í¥ó¥È¤ò¾ï¤ËºÇ¿·¤Î¾õÂÖ¤ËÊݤÄ
Web¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë(WAF: Web Application Firewall)¤òƳÆþ¤¹¤ë
¤Þ¤¿¡¢¾åµ°Ê³°¤Ë¤âÄê´üŪ¤ËWeb¥µ¥¤¥È¤Î¥¤¥ß¥å¡¼¥¿¥Ö¥ë¥Ð¥Ã¥¯¥¢¥Ã¥×¤òºîÀ®¤·¡¢¿¯³²»þ¤Ë®¤ä¤«¤ËÉüµì¤Ç¤¤ë¤è¤¦½àÈ÷¤¹¤ë¤³¤È¤¬¿ä¾©¤µ¤ì¤ë¡£¤â¤·¡¢Web¥µ¥¤¥È¤¬¿¯³²¤µ¤ì¤¿¾ì¹ç¤Ï¡¢Èï³²¤Î³ÈÂçËɻߡ¢¿¯Æþ·ÐÏ©¤ª¤è¤Ó¿¯³²¤Î¾ÜºÙ¤òÆÃÄê¡¢ºÇ¸å¤Ë¥Ð¥Ã¥¯¥¢¥Ã¥×¤«¤éWeb¥µ¥¤¥È¤òÉü¸µ¤·¤Æ¿¯Æþ·ÐÏ©¤òºÉ¤°Âкö¤ò¼Â»Ü¤¹¤ë¡£¥Ð¥Ã¥¯¥¢¥Ã¥×¤¬¤Ê¤¤¾ì¹ç¤Þ¤¿¤ÏŬÀÚ¤ÊÂкöÊýË¡¤¬¤ï¤«¤é¤Ê¤¤¾ì¹ç¤Ï¡¢Â®¤ä¤«¤ËÀìÌç²È¤Þ¤¿¤Ï¥»¥¥å¥ê¥Æ¥£´ë¶È¤ËÁêÃ̤¹¤ë¤³¤È¤¬Ë¾¤Þ¤ì¤Æ¤¤¤ë¡£