Sophos¤Ï8·î22Æü(±Ñ¹ñ»þ´Ö)¡¢¡ÖQilin ransomware caught stealing credentials stored in Google Chrome - Sophos News¡×¤Ë¤ª¤¤¤Æ¡¢¥é¥ó¥µ¥à¥¦¥§¥¢¡ÖQilin¡×¤Ë¤è¤ë¿¯³²¤òÄ´ºº¤¹¤ëÃæ¤Ç¡¢Google Chrome¤ËÊݸ¤µ¤ì¤¿Ç§¾Ú¾ðÊó¤òÂçÎ̤ËÀà¼è¤¹¤ë¹¶·â¤ò³Îǧ¤·¤¿¤ÈÅÁ¤¨¤¿¡£2024ǯ7·î¤Ë³Îǧ¤µ¤ì¤¿¤³¤Î»ö°Æ¤Ç¤Ï¡¢Active Directory¤Î¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤«¤é¥°¥ë¡¼¥×¥Ý¥ê¥·¡¼¥ª¥Ö¥¸¥§¥¯¥È(GPO: Group Policy Object)¤ò»ÈÍѤ·¤Æ°­°Õ¤Î¤¢¤ë¥¹¥¯¥ê¥×¥È¤ò¥É¥á¥¤¥ó»²²ÃüËö¤¹¤Ù¤Æ¤ËÇÛÉÛ¤·¤Æ¼Â¹Ô¤·¤¿¤È¤µ¤ì¤ë¡£

Qilin ransomware caught stealing credentials stored in Google Chrome - Sophos News

¡û¿¯³²·ÐÏ©

½é´ü¥¢¥¯¥»¥¹·ÐÏ©¤ÏÀȼå¤ÊVPN¥µ¡¼¥Ð¤È¤ß¤é¤ì¤Æ¤¤¤ë¡£Â¿Í×ÁÇǧ¾Ú(MFA: Multi-Factor Authentication)¤òÀßÄꤷ¤Æ¤¤¤Ê¤¤VPN¥µ¡¼¥Ð¤«¤é¿¯Æþ¤·¤¿¹¶·â¼Ô¤Ï¡¢¿¯³²¤µ¤ì¤¿»ñ³Ê¾ðÊó¤ò°­ÍѤ·¤Æ¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤Ë¿¯Æþ¡£¥Ç¥Õ¥©¥ë¥È¤Î¥É¥á¥¤¥ó¥Ý¥ê¥·¡¼¤òÊÔ½¸¤·¤Æ°­°Õ¤Î¤¢¤ë¥¹¥¯¥ê¥×¥È¤òÇÛÉÛ¤·¤¿¡£

ÇÛÉÛ¤µ¤ì¤¿¥¹¥¯¥ê¥×¥È¤Ï¡ÖIPScanner.ps1¡×¤È¡Ölogon.bat¡×¤Î2¤Ä¤È¤µ¤ì¤ë¡£IPScanner.ps1¤ÏPowerShell¥¹¥¯¥ê¥×¥È¤Ç¡¢Chrome¤ËÊݸ¤µ¤ì¤¿Ç§¾Ú¾ðÊó¤ò¼ý½¸¤¹¤ëµ¡Ç½¤ò»ý¤Ä¡£logon.bat¤Ï¥æ¡¼¥¶¡¼¤¬Ã¼Ëö¤Ë¥í¥°¥ª¥ó¤¹¤ë¤¿¤Ó¤Ë¼Â¹Ô¤µ¤ì¤ë¥Ð¥Ã¥Á¥¹¥¯¥ê¥×¥È¤Ç¡¢IPScanner.ps1¤ò¼Â¹Ô¤¹¤ë¡£

üËö¤Ë¥æ¡¼¥¶¡¼¤¬¥í¥°¥ª¥ó¤¹¤ë¤È¤³¤ì¤é¥¹¥¯¥ê¥×¥È¤¬¼Â¹Ô¤µ¤ì¡¢Chrome¤Îǧ¾Ú¾ðÊ󤬼ý½¸¤µ¤ì¤ë¡£Sophos¤ÎÄ´ºº¤Ë¤è¤ë¤È¡¢¤³¤Î¥¹¥¯¥ê¥×¥È¤Ï3Æü´Ö°Ê¾åÍ­¸ú¤À¤Ã¤¿¤È¤¤¤¦¡£

¼ý½¸¤µ¤ì¤¿Ç§¾Ú¾ðÊó¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¹½Â¤¡¡°úÍÑ¡§Sophos

¹¶·â¼Ô¤Ï¼ý½¸¤·¤¿Ç§¾Ú¾ðÊó¤òÀà¼è¤¹¤ë¤È¡¢´ØÏ¢¥Õ¥¡¥¤¥ë¤ò¤¹¤Ù¤Æºï½ü¤·¡¢¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤È¥É¥á¥¤¥ó»²²ÃüËö¤ÎξÊý¤Î¥¤¥Ù¥ó¥È¥í¥°¤òºï½ü¡£¤½¤Î¸å¡¢¥é¥ó¥µ¥à¥¦¥§¥¢¤òŸ³«¤·¤Æ¥Õ¥¡¥¤¥ë¤ò°Å¹æ²½¤·¡¢¿ÈÂå¶â¤òÍ׵ᤷ¤Æ¤¤¤ë¡£

¹¶·â¼Ô¤¬»Ä¤·¤¿¿ÈÂå¶â¥á¥â¡¡°úÍÑ¡§Sophos

¡û±Æ¶Á¤ÈÂкö

¤³¤Î¹¶·â¤Ï¿¯³²¤µ¤ì¤¿¥É¥á¥¤¥ó»²²ÃüËö¤Ë¥í¥°¥ª¥ó¤·¤¿¤¹¤Ù¤Æ¤Î½¾¶È°÷¤Ë±Æ¶Á¤òµÚ¤Ü¤¹¡£½¾¶È°÷¤¬Chrome¤Ëǧ¾Ú¾ðÊó¤òÊݸ¤·¤Æ¤¤¤¿¾ì¹ç¤Ï¡¢¤¹¤Ù¤Æ¤Îǧ¾Ú¾ðÊó¤ò¹¹¿·¤¹¤ëɬÍפ¬¤¢¤ë¡£

¥Ñ¥¹¥ï¡¼¥É¥Þ¥Í¡¼¥¸¥ã¡¼¡ÖNordPass¡×¤ÎÄ´ºº¤Ë¤è¤ë¤È¡¢½¾¶È°÷°ì¿ÍÅö¤¿¤ê¤ÎÊ¿¶Ñ¶È̳´ØÏ¢¥Ñ¥¹¥ï¡¼¥É¿ô¤Ï87¸Ä¡¢¸Ä¿ÍÍѥѥ¹¥ï¡¼¥É¤Ï168¸Ä¤È¤µ¤ì¤ë(»²¹Í¡§¡ÖHow many passwords does the average person have? | NordPass¡×)¡£¤½¤Î¤¿¤á¡¢Æ±ÍͤÎÈï³²¤ËÁø¤¦¤È½¾¶È°÷¤Ï¿¯³²¤µ¤ì¤¿Active Directory¤Î¥Ñ¥¹¥ï¡¼¥É¤Ë²Ã¤¨¡¢¿ôÉ´¤Î¥Ñ¥¹¥ï¡¼¥É¤ò¤¹¤Ù¤Æ¹¹¿·¤»¤¶¤ë¤òÆÀ¤Ê¤¤¤³¤È¤Ë¤Ê¤ë¡£

¤³¤Î¤è¤¦¤ÊÈï³²¤ò²óÈò¤¹¤ë¤¿¤á¡¢Sophos¤ÏWeb¥Ö¥é¥¦¥¶¤ËÅëºÜ¤µ¤ì¤¿¥Ñ¥¹¥ï¡¼¥É¥Þ¥Í¡¼¥¸¥ã¡¼¤Î»ÈÍѤòÃæ»ß¤·¡¢¿®Íê¤Ç¤­¤ë¥µ¡¼¥É¥Ñ¡¼¥Æ¥£¡¼À½¥Ñ¥¹¥ï¡¼¥É¥Þ¥Í¡¼¥¸¥ã¡¼¤Î»ÈÍѤò¿ä¾©¤·¤Æ¤¤¤ë¡£¤Þ¤¿º£²ó¡¢Àȼå¤ÊVPN¥µ¡¼¥Ð¤¬¿¯³²¤µ¤ì¤Æ¤ª¤ê¡¢´ë¶È¤Î¥µ¡¼¥Ð´ÉÍý¼Ô¤Ë¤Ï¿Í×ÁÇǧ¾Ú¤ÎƳÆþ¤¬¿ä¾©¤µ¤ì¤Æ¤¤¤ë¡£