Google¤Î¶¼°ÒʬÀÏ¥°¥ë¡¼¥×(TAG)¤¬¡¢2023ǯ11·î¤«¤é2024ǯ7·î¤Ë¤«¤±¤Æ¹Ô¤ï¤ì¤¿¥â¥ó¥´¥ëÀ¯ÉܤΥ¦¥§¥Ö¥µ¥¤¥È¤Ø¤Î¥µ¥¤¥Ð¡¼¹¶·â¤Ë´Ø¤¹¤ëÄ´ºº·ë²Ì¤òȯɽ¤·¤Þ¤·¤¿¡£TAG¤ÎÊó¹ð¤Ë¤è¤ë¤È¡¢¹¶·â¤ò¹Ô¤Ã¤¿¤Î¤Ï¥í¥·¥¢À¯Éܤλٱç¤ò¼õ¤±¤ë¥Ï¥Ã¥­¥ó¥°¥°¥ë¡¼¥×¡ÖAPT29¡×¤Ç¡¢¥¹¥Ñ¥¤¥¦¥§¥¢¥á¡¼¥«¡¼¤Î¡ÖIntellexa¡×¤È¡ÖNSO Group¡×¤¬²áµî¤Ë³«È¯¤·¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤ò°­ÍѤ·¤Æ¤¤¤¿¤È¤Î¤³¤È¤Ç¤¹¡£

State-backed attackers and commercial surveillance vendors repeatedly use the same exploits

https://blog.google/threat-analysis-group/state-backed-attackers-and-commercial-surveillance-vendors-repeatedly-use-the-same-exploits/



Russian government hackers found using exploits made by spyware companies NSO and Intellexa | TechCrunch

https://techcrunch.com/2024/08/29/russian-government-hackers-found-using-exploits-made-by-spyware-companies-nso-and-intellexa/

Commercial spyware vendor exploits used by Kremlin-backed hackers, Google says | Ars Technica

https://arstechnica.com/security/2024/08/commercial-spyware-vendor-exploits-used-by-kremlin-backed-hackers-google-says/

Russian APT29 hackers use iOS, Chrome exploits created by spyware vendors

https://www.bleepingcomputer.com/news/security/russian-apt29-hackers-use-ios-chrome-exploits-created-by-spyware-vendors/

¡ÖCozy Bear¡×¤È¤â¸Æ¤Ð¤ì¤ë¥Ï¥Ã¥«¡¼½¸ÃÄ¡ÖAPT29¡×¤Ï¡¢¥í¥·¥¢¤ÎÂг°¾ðÊ󵡴Ø(SVR)¤È¤Î´Ø·¸¤¬¿¼¤¤¤È¤ß¤é¤ì¤Æ¤¤¤ë¥°¥ë¡¼¥×¤Ç¡¢¤³¤ì¤Þ¤Ç¤Ë¥¢¥á¥ê¥«Ì±¼çÅÞÁ´¹ñ°Ñ°÷²ñ¤Î¥µ¡¼¥Ð¡¼¤Ø¤Î¿¯Æþ¤ä¡¢Microsoft¤Ø¤Î¹¶·â¤Ë¤è¤Ã¤Æ°ìÉô¤Î¥á¡¼¥ë¤Îή½Ð¤¬°ú¤­µ¯¤³¤µ¤ì¤¿¤³¤È¤Ê¤É¤ÇÃΤé¤ì¤Æ¤¤¤Þ¤¹¡£

Microsoft¤¬¡Ö¥í¥·¥¢¤Î¥Ï¥Ã¥­¥ó¥°¤Ç¥á¡¼¥ë¤¬Î®½Ð¤·¤¿¡×¤È¥Æ¥­¥µ¥¹½£¤ÎÀ¯Éܵ¡´Ø¤äÂç³Ø¤ËÅÁ¤¨¤ë - GIGAZINE



TAG¤Ï2024ǯ8·î29Æü¤Ë¡¢¥â¥ó¥´¥ë¤Î¿¤¯¤ÎÀ¯Éܵ¡´Ø¤¬APT29¤Ë¤è¤ë¹¶·â¤ò¼õ¤±¤¿¤³¤È¤òÊó¹ð¤·¤Þ¤·¤¿¡£

TAG¤Ë¤è¤ë¤È¡¢2023ǯ11·î¤«¤é2024ǯ7·î¤Î´Ö¤Ë¥â¥ó¥´¥ëÀ¯ÉܤΥ¦¥§¥Ö¥µ¥¤¥È¤ËËä¤á¹þ¤Þ¤ì¤Æ¤¤¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¥³¡¼¥É¤¬È¯¸«¤µ¤ì¤¿¤È¤Î¤³¤È¡£¤³¤Î´Ö¡¢iPhone¤äAndroid¥Ç¥Ð¥¤¥¹¤ò»ÈÍѤ·¤Æ¤³¤ì¤é¤Î¥µ¥¤¥È¤Ë¥¢¥¯¥»¥¹¤·¤¿¥æ¡¼¥¶¡¼¤Ïï¤Ç¤â¡¢¥¹¥Þ¡¼¥È¥Õ¥©¥ó¤Î¥Ï¥Ã¥­¥ó¥°¤ä¥Ñ¥¹¥ï¡¼¥É¤ò´Þ¤à¥Ç¡¼¥¿¤Îϳ¤¨¤¤¤Î¥ê¥¹¥¯¤¬¤¢¤Ã¤¿¤È¤µ¤ì¤Æ¤¤¤Þ¤¹¡£¤Ê¤ª¡¢Safari¤ÈChrome¤òɸŪ¤È¤·¤¿³ºÅö¤Î¥¨¥¯¥¹¥×¥í¥¤¥È¤Ï¤¹¤Ç¤Ë½¤ÀµºÑ¤ß¤Ç¤¹¤¬¡¢½¤Àµ¥Ñ¥Ã¥Á¤¬Å¬ÍѤµ¤ì¤Æ¤¤¤Ê¤¤¥Ç¥Ð¥¤¥¹¤Ç¤Ï°ÍÁ³¤È¤·¤Æ¿¯³²¤Î¥ê¥¹¥¯¤¬¹â¤Þ¤Ã¤Æ¤¤¤ë¤½¤¦¤Ç¤¹¡£

APT29¤Ï¡¢¥â¥ó¥´¥ëÀ¯ÉܤÎÊ£¿ô¤Î¥¦¥§¥Ö¥µ¥¤¥È¤Ë°­°Õ¤Î¤¢¤ë¥³¡¼¥É¤ò»Å¹þ¤ß¡¢¥µ¥¤¥È¤òˬ¤ì¤¿¥æ¡¼¥¶¡¼¤Î¥Ç¥Ð¥¤¥¹¤Ë¿¯Æþ¤¹¤ë¡Ö¿å°û¤ß¾ì·¿¡×¤È¸Æ¤Ð¤ì¤ë¹¶·â¤ò¼Â»Ü¤·¤Þ¤·¤¿¡£¤Þ¤¿¡¢Android¥Ç¥Ð¥¤¥¹¤òɸŪ¤È¤·¤¿¥­¥ã¥ó¥Ú¡¼¥ó¤Ç¤Ï¡¢Ê£¿ô¤Î¥¨¥¯¥¹¥×¥í¥¤¥È¤òÁȤ߹ç¤ï¤»¤Æ¡¢Chrome¥Ö¥é¥¦¥¶¤ËÊݸ¤µ¤ì¤Æ¤¤¤ë¥æ¡¼¥¶¡¼¤ÎCookie¤òÅð¤ß½Ð¤·¤Æ¤¤¤¿¤È¤µ¤ì¤Æ¤¤¤Þ¤¹¡£



Google¤Î¥»¥­¥å¥ê¥Æ¥£¸¦µæ¼Ô¤Ç¤¢¤ë¥¯¥ì¥á¥ó¥È¡¦¥ë¥·¡¼¥Ë¥å»á¤Ï¡ÖAPT29¤¬¤³¤Î¹¶·â¤Çï¤òɸŪ¤È¤·¤Æ¤¤¤¿¤«¤ÏÄ꤫¤Ç¤Ï¤¢¤ê¤Þ¤»¤ó¡£¤·¤«¤·¡¢¥¨¥¯¥¹¥×¥í¥¤¥È¤¬¥Û¥¹¥È¤µ¤ì¤¿¾ì½ê¤ä¡¢Ä̾¤³¤ì¤é¤Î¥µ¥¤¥È¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤Î¤Ïï¤À¤Ã¤¿¤«¤ò¹Í¤¨¤ë¤È¡¢¥â¥ó¥´¥ë¤ÎÀ¯ÉÜ¿¦°÷¤¬É¸Åª¤È¤µ¤ì¤¿²ÄǽÀ­¤¬¹â¤¤¤È¹Í¤¨¤Æ¤¤¤Þ¤¹¡×¤È½Ò¤Ù¤Þ¤·¤¿¡£

ʬÀϤò¹Ô¤Ã¤¿TAG¤Ï¡Ö¹¶·â¼Ô¤Ï¥¹¥Ñ¥¤¥¦¥§¥¢¥á¡¼¥«¡¼¤ÎIntellexa¤ª¤è¤ÓNSO Group¤¬°ÊÁ°¤Ë»ÈÍѤ·¤Æ¤¤¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤ÈƱ°ì¤Þ¤¿¤ÏÃø¤·¤¯Îà»÷¤·¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤ò»ÈÍѤ·¤Æ¤¤¤Þ¤¹¡×¤ÈÊó¹ð¤·¤Þ¤·¤¿¡£°Ê²¼¤ÏAPT29¤¬»ÈÍѤ·¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤Î¥³¡¼¥É¤È¡¢2023ǯ9·î¤ËIntellexa¤¬»ÈÍѤ·¤¿¥³¡¼¥É¤Ç¤¹¡£°ìÉô¤Î¥³¡¼¥É¤Î°ÌÃÖ¤ò½ü¤­¡¢¤Û¤È¤ó¤É¤Î¥³¡¼¥É¤¬Æ±°ì¤Ç¤¢¤ë¤³¤È¤¬¼¨¤µ¤ì¤Æ¤¤¤Þ¤¹¡£



Intellexa¤äNSO Group¤È¤¤¤Ã¤¿´ë¶È¤Ï¡Ö¾¦ÍÑ¥¹¥Ñ¥¤¥¦¥§¥¢¥Ù¥ó¥À¡¼(CSV)¡×¤È¸Æ¤Ð¤ì¡¢¡Ö¹çˡŪ¤Ê´Æ»ë¤Î¼êÃʤȤ·¤ÆÆÃÄê¤ÎÀ¯ÉܤäË¡¼¹¹Ôµ¡´Ø¤Ë¤Î¤ßÀ½ÉʤòÈÎÇ䤷¤Þ¤¹¡×¤È¤Î¹çË¡À­¤ò¼çÄ¥¤·¤Æ¤¤¤Þ¤¹¡£°ìÊý¤Ç¡¢¿Í¸¢ÍʸîÃÄÂΤä¥×¥é¥¤¥Ð¥·¡¼ÊݸîÃÄÂΤ«¤é¡Ö°ãË¡¤Ê´Æ»ë¤ÈÍÞ°µ¤Î¥Ä¡¼¥ë¡×¤È¤ÎÈãȽ¤ò¼õ¤±¤Æ¤­¤Þ¤·¤¿¡£

TAG¤Ï¡ÖAPT29¤Ë»ÈÍѤµ¤ì¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤¬CSV¤Ë¤è¤Ã¤ÆľÀܶ¦Í­¤µ¤ì¤¿¤â¤Î¤Ê¤Î¤«¡¢¤½¤ì¤È¤âAPT29¤¬CSV¤Î¥¨¥¯¥¹¥×¥í¥¤¥È¤ò²¿¤é¤«¤Î¼êÃʤÇÆþ¼ê¤·¤ÆºÆÍøÍѤ·¤¿¤À¤±¤Ê¤Î¤«¤ÏÉÔÌÀ¤Ç¤¹¡×¤È½Ò¤Ù¤¿¾å¤Ç¡Ö»ä¤¿¤Á¤Ï¡¢CSV¤¬³«È¯¤·¤¿¥¨¥¯¥¹¥×¥í¥¤¥È¤¬APT29¤ò´Þ¤à¶¼°Ò¥¢¥¯¥¿¡¼¤Ë³È»¶¤¹¤ë²ÄǽÀ­¤ò¶¯Ä´¤·¤Æ¤¤¤Þ¤¹¡×¤È»ØŦ¤·¤Þ¤·¤¿¡£

¤Ê¤ª¡¢NSO Group¤Î¹­ÊóôÅö¼Ô¤Ç¤¢¤ë¥®¥ë¡¦¥é¥¤¥Ê¡¼»á¤Ï¡Ö²æ¡¹¤Ï¼«¼ÒÀ½Éʤò¥í¥·¥¢¤ËÈÎÇ䤷¤Æ¤¤¤Þ¤»¤ó¡£NSO Group¤Îµ»½Ñ¤Ï¥¢¥á¥ê¥«¡¢¥¤¥¹¥é¥¨¥ë¡¢Æ±ÌÁ´Ø·¸¤Ë¤¢¤ëĵÊ󵡴ؤÈË¡¼¹¹Ôµ¡´Ø¤Ë¤Î¤ßÈÎÇ䤵¤ì¤Æ¤¤¤Þ¤¹¡£Åö¼Ò¤Î¥·¥¹¥Æ¥à¤È¥Æ¥¯¥Î¥í¥¸¡¼¤Ï°ÂÁ´À­¤¬¹â¤¯¡¢³°Éô¤Î¶¼°Ò¤ò¸¡½Ð¤·¤Æ¥Ö¥í¥Ã¥¯¤¹¤ë¤¿¤á¤Ë·Ñ³Ū¤Ê´Æ»ë¤ÎÂоݤȤʤäƤ¤¤Þ¤¹¡×¤È¸ì¤Ã¤Æ¤¤¤Þ¤¹¡£