2024ǯ7·î¡¢¥¦¥§¥Ö¥µ¥¤¥È¹½ÃÛ¡¦¥Û¥¹¥Æ¥£¥ó¥°¥µ¡¼¥Ó¥¹¤ä¥É¥á¥¤¥óÅÐÏ¿¥µ¡¼¥Ó¥¹¤òÄ󶡤¹¤ëSquarespace¤Î¥É¥á¥¤¥ó¤òɸŪ¤È¤·¤Æ¡¢ÁÈ¿¥Åª¤Ê¥É¥á¥¤¥ó¥Í¡¼¥à¥·¥¹¥Æ¥à(DNS)¥Ï¥¤¥¸¥ã¥Ã¥¯¹¶·â¤¬¹Ô¤ï¤ì¤Þ¤·¤¿¡£¼ç¤Ë²¾ÁÛÄ̲ߥӥ¸¥Í¥¹¤òɸŪ¤È¤·¤¿º£²ó¤Î¹¶·â¤Ï¡¢2023ǯ¤ËSquarespace¤ÎÇã¼ý¤Ë¤è¤Ã¤ÆGoogle Domains¤«¤é°Ü´É¤µ¤ì¤¿¥É¥á¥¤¥ó¤Ë´ØÏ¢¤·¤Æ¤¤¤ë¤È¤Î¤³¤È¤Ç¤¹¡£

DNS hijacks target crypto platforms registered with Squarespace

https://www.bleepingcomputer.com/news/security/dns-hijacks-target-crypto-platforms-registered-with-squarespace/

Researchers: Weak Security Defaults Enabled Squarespace Domains Hijacks - Krebs on Security

https://krebsonsecurity.com/2024/07/researchers-weak-security-defaults-enabled-squarespace-domains-hijacks/

DNS¥Ï¥¤¥¸¥ã¥Ã¥¯¹¶·â¤È¤Ï¡¢¹¶·â¼Ô¤¬¥¿¡¼¥²¥Ã¥È¤ÎDNS¥ì¥³¡¼¥É¤òÊѹ¹¤·¤Æ¡¢ÀµÅö¤Ê¥¦¥§¥Ö¥µ¥¤¥È¤«¤é¥Õ¥£¥Ã¥·¥ó¥°¥Ú¡¼¥¸¤Ê¤É¤Î°­¼Á¤Ê¥¦¥§¥Ö¥µ¥¤¥È¤Ë¥ê¥À¥¤¥ì¥¯¥È¤¹¤ë¹¶·â¤Ç¤¹¡£°ìÈÌŪ¤Ë¤³¤ì¤é¤Î¹¶·â¤Ï¡¢DNS¥µ¡¼¥Ð¡¼¤¢¤ë¤¤¤Ï¥¿¡¼¥²¥Ã¥È¤¬»ý¤ÄDNS¥µ¡¼¥Ó¥¹¥×¥í¥Ð¥¤¥À¡¼¤Î¥¢¥«¥¦¥ó¥È¤ò¿¯³²¤¹¤ë¤³¤È¤Ç¼Â¹Ô¤µ¤ì¤Þ¤¹¡£

2024ǯ7·î¡¢¥Ö¥í¥Ã¥¯¥Á¥§¡¼¥óµ»½Ñ¤òÍѤ¤¤¿¶âÍ»¥µ¡¼¥Ó¥¹¤òÄ󶡤¹¤ëÊ£¿ô¤ÎDeFi¥×¥é¥Ã¥È¥Õ¥©¡¼¥à¤¬¡¢¼«¼Ò¤Î¥¦¥§¥Ö¥µ¥¤¥È¤Î¥É¥á¥¤¥ó¤¬¥Õ¥£¥Ã¥·¥ó¥°¥µ¥¤¥È¤Ë¥ê¥À¥¤¥ì¥¯¥È¤µ¤ì¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤ë¤È·Ù¹ð¤·¤Þ¤·¤¿¡£¥ê¥À¥¤¥ì¥¯¥È¤µ¤ì¤ë¥Õ¥£¥Ã¥·¥ó¥°¥µ¥¤¥È¤Ï¡¢Àܳ¤µ¤ì¤¿²¾ÁÛÄ̲ߥ¦¥©¥ì¥Ã¥È¤«¤é²¾ÁÛÄ̲ߤäNFT¤òÅð¤à¤è¤¦¤ËÀ߷פµ¤ì¤Æ¤¤¤¿¤È¤Î¤³¤È¡£

DeFi¥×¥é¥Ã¥È¥Õ¥©¡¼¥à¤ÎCompound Labs¤Ï7·î11Æü¤ÎX(µìTwitter)¤Ø¤ÎÅê¹Æ¤Ç¡¢¥á¥¤¥ó¥É¥á¥¤¥ó¤¬¾è¤Ã¼è¤é¤ì¤¿¤ÈÊó¹ð¤·¤Æ¥æ¡¼¥¶¡¼¤Ë¥¢¥¯¥»¥¹¤·¤Ê¤¤¤è¤¦¸Æ¤Ó¤«¤±¤Þ¤·¤¿¡£



¤Þ¤¿¡¢¥Ö¥í¥Ã¥¯¥Á¥§¡¼¥ó¥¢¥×¥ê¤Î¥¹¥±¡¼¥ê¥ó¥°¥½¥ê¥å¡¼¥·¥ç¥ó¤òÄ󶡤¹¤ëCelerNetwork¤Ï¡¢DNS¥Ï¥¤¥¸¥ã¥Ã¥¯¤ÎɸŪ¤Ë¤Ê¤Ã¤¿¤â¤Î¤Î¡¢»öÁ°¤Ë»¡ÃΤ·¤Æ¤¹¤Ù¤Æ¤ÎDNS¥ì¥³¡¼¥É¤ò²óÉü¤µ¤»¤¿¤ÈÊó¹ð¡£



¥È¡¼¥¯¥ó¤ÎÍø²ó¤ê¤ò¼è°ú¤¹¤ë¤¿¤á¤ÎDeFi¥×¥í¥È¥³¥ë¤Ç¤¢¤ëPendle¤âƱÍͤÎÈï³²¤ò¼õ¤±¡¢¥¢¥É¥ì¥¹¥Ð¡¼¤Î³Îǧ¤ä¥Ö¥é¥¦¥¶¤Î¥­¥ã¥Ã¥·¥å¥¯¥ê¥¢¤Ê¤É¤ÎÂкö¤ò¸Æ¤Ó¤«¤±¤Þ¤·¤¿¡£



º£²óÈï³²¤ò¼õ¤±¤¿°ìÏ¢¤Î¥É¥á¥¤¥ó¤Ï¤¹¤Ù¤Æ¡¢Squarespace¤È¤¤¤¦¶¦Ä̤Υ쥸¥¹¥È¥é¤ò»ÈÍѤ·¤Æ¤¤¤Þ¤·¤¿¡£¥ì¥¸¥¹¥È¥é¤È¤Ï¥æ¡¼¥¶¡¼¤«¤é¤Î¥É¥á¥¤¥óÅÐÏ¿¿½ÀÁ¤ò¼õ¤±ÉÕ¤±¤Æ¡¢ÅÐÏ¿¥Ç¡¼¥¿¤ò¥ì¥¸¥¹¥È¥ê¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ËÅÐÏ¿¤¹¤ëµ¡´Ø¤Ç¤¹¡£

Squarespace¤Ï¤â¤È¤â¤È¥¦¥§¥Ö¥µ¥¤¥È¹½ÃÛ¡¦¥Û¥¹¥Æ¥£¥ó¥°¥µ¡¼¥Ó¥¹¤òÄ󶡤¹¤ë´ë¶È¤Ç¤·¤¿¤¬¡¢2023ǯ¤ËGoogle¤Î¥É¥á¥¤¥óÅÐÏ¿¥µ¡¼¥Ó¥¹¤À¤Ã¤¿Google Domains¤òÇã¼ý¤·¤Þ¤·¤¿¡£¤³¤ì¤Ë¤è¤ê¡¢Google Domains¤¬¥Û¥¹¥È¤·¤Æ¤¤¤¿Ìó1000Ëü·ï¤â¤Î¥É¥á¥¤¥ó¤¬Squarespace¤Ë°Ü¹Ô¤µ¤ì¤ë¤³¤È¤È¤Ê¤ê¤Þ¤·¤¿¡£

Google¤¬¥É¥á¥¤¥óÅÐÏ¿¥µ¡¼¥Ó¥¹¡ÖGoogle Domains¡×¤òSquarespace¤ËÇäµÑ¤·¤Æ¥æ¡¼¥¶¡¼´Ý¤´¤È°Ü´ÉͽÄê¡¢´û¤Ë¥É¥á¥¤¥ó¤ò¹ØÆþ¤·¤Æ¤¤¤ë¥æ¡¼¥¶¡¼¤Ï¤É¤¦¤Ê¤ë¤Î¤«¡© - GIGAZINE



¥Ï¥Ã¥­¥ó¥°¤ÎÀµ³Î¤ÊÊýË¡¤ÏÉÔÌÀ¤Ç¤¹¤¬¡¢ÀìÌç²È¤é¤ÏGoogle Domains¤«¤éSquarespace¤Ø¤Î¥É¥á¥¤¥ó°Ü´É¤Ëȼ¤¦¥¢¥«¥¦¥ó¥È¤ÎºÆºîÀ®¼ê½ç¤Ë¡¢¥»¥­¥å¥ê¥Æ¥£¾å¤ÎÌäÂ꤬¤¢¤Ã¤¿²ÄǽÀ­¤¬¤¢¤ë¤È¹Í¤¨¤Æ¤¤¤Þ¤¹¡£

¥É¥á¥¤¥ó¤¬Google Domains¤«¤éSquarespace¤Ø°Ü´É¤µ¤ì¤¿¥æ¡¼¥¶¡¼¤Ï¡¢Squarespace¤Ç¿·¤¿¤Ê¥¢¥«¥¦¥ó¥È¤òºîÀ®¤¹¤ëºÝ¤ËGoogle¤äApple¤Î¥½¡¼¥·¥ã¥ë¥µ¥¤¥ó¥¢¥Ã¥×¥ª¥×¥·¥ç¥ó¤ò»È¤¦¤«¡¢¥á¡¼¥ë¥¢¥É¥ì¥¹¤ò»ÈÍѤ¹¤ë¤«¤òÁªÂò¤Ç¤­¤Þ¤·¤¿¡£¤³¤ÎºÝ¡¢¥É¥á¥¤¥ó¤ÈɳÉÕ¤±¤é¤ì¤¿¥á¡¼¥ë¥¢¥É¥ì¥¹¤òÁªÂò¤·¤Æ¥µ¥¤¥ó¥¢¥Ã¥×¤¹¤ë¤È¡¢¥Ñ¥¹¥ï¡¼¥Éǧ¾Ú¤Ê¤·¤ÇSquarespace¥¢¥«¥¦¥ó¥È¤òºîÀ®¤Ç¤­¤¿¤È¤Î¤³¤È¡£

¥Ï¥Ã¥«¡¼¤Ï¤³¤ÎÀȼå(¤¼¤¤¤¸¤ã¤¯)À­¤ò°­ÍѤ·¤Æ¡¢Àµ¼°¤Ê¥É¥á¥¤¥ó½êÍ­¼Ô¤è¤ê¤âÁ᤯Squarespace¤Î¥¢¥«¥¦¥ó¥È¤òºîÀ®¤·¡¢¥É¥á¥¤¥ó¤ò°­¼Á¤Ê¥¦¥§¥Ö¥µ¥¤¥È¤Ë¥ê¥À¥¤¥ì¥¯¥È¤·¤¿²ÄǽÀ­¤¬¹â¤¤¤È¤ß¤é¤ì¤Æ¤¤¤Þ¤¹¡£

¥»¥­¥å¥ê¥Æ¥£¸¦µæ¼Ô¤Î¥Æ¥¤¥é¡¼¡¦¥â¥Ê¥Ï¥ó»á¤Ï¡¢Squarespace¤Ç¤Ï°ìÉô¤Î¥¢¥¯¥·¥ç¥ó¤Ë¤Ä¤¤¤Æ¤Î¥á¡¼¥ëÄÌÃΤ¬ÆÏ¤«¤º¡¢¥É¥á¥¤¥ó¤ÎÀµÅö¤Ê½êÍ­¼Ô¤¬Squarespace¥¢¥«¥¦¥ó¥È¾å¤Ç²¿¤¬¹Ô¤ï¤ì¤Æ¤¤¤ë¤Î¤«´ÉÍý¤Ç¤­¤Ê¤«¤Ã¤¿¤È»ØÅ¦¡£¡ÖGoogle¤¬Ä󶡤¹¤ë¥³¥ó¥È¥í¡¼¥ë¤Ë´·¤ì¤Æ¤¤¤Æ¡¢¤½¤ì¤òSquarespace¤Ë¤â´üÂÔ¤·¤Æ¤¤¤ë¿Í¤Ë¤È¤Ã¤Æ¤Ï¡¢¤³¤ì¤Ï¤Þ¤Ã¤¿¤¯¤¢¤êÆÀ¤Ê¤¤¤â¤Î¤Ç¤¹¡×¤È¥â¥Ê¥Ï¥ó»á¤Ï½Ò¤Ù¤Þ¤·¤¿¡£