¸÷³Øʸ»úǧ¼±(OCR)µ»½Ñ¤òÍѤ¤¤Æ²èÌ̾å¤Ëɽ¼¨¤µ¤ì¤Æ¤¤¤ëʸ»ú¾ðÊó¤òǧ¼±¤¹¤ë¤³¤È¤Ç¡¢²¾ÁÛÄ̲ߥ¦¥©¥ì¥Ã¥È¥¢¥×¥ê¤Îǧ¾Ú¾ðÊó¤òÅð¤ß½Ð¤¹°­°Õ¤Î¤¢¤ëAndroid¥¢¥×¥ê¤Î¸ºß¤ò¡¢¥»¥­¥å¥ê¥Æ¥£´ë¶È¤ÎMcAfee¤¬»ØŦ¤·¤Æ¤¤¤Þ¤¹¡£McAfee¤Ë¤è¤ë¤È¡¢OCR¤òÍѤ¤¤Æǧ¾Ú¾ðÊó¤òÅð¤à°­°Õ¤Î¤¢¤ë¥¢¥×¥ê¤Ï¡¢280¼ïÎà°Ê¾å¤â¸ºß¤¹¤ë¤½¤¦¤Ç¤¹¡£

New Android SpyAgent Campaign Steals Crypto Credentials via Image Recognition | McAfee Blog

https://www.mcafee.com/blogs/other-blogs/mcafee-labs/new-android-spyagent-campaign-steals-crypto-credentials-via-image-recognition/



SpyAgent Android malware steals your crypto recovery phrases from images

https://www.bleepingcomputer.com/news/security/spyagent-android-malware-steals-your-crypto-recovery-phrases-from-images/

Found: 280 Android apps that use OCR to steal cryptocurrency credentials | Ars Technica

https://arstechnica.com/security/2024/09/found-280-android-apps-that-use-ocr-to-steal-cryptocurrency-credentials/

McAfee¤Ë¤è¤ë¤È¡¢²¾ÁÛÄ̲ߥ¦¥©¥ì¥Ã¥È¥¢¥×¥ê¤Îǧ¾Ú¾ðÊó¤òÅð¤à°­°Õ¤Î¤¢¤ë¥¢¥×¥ê(¥Þ¥ë¥¦¥§¥¢)¤Ï¡¢¶ä¹Ô¡¦À¯Éܵ¡´Ø¡¦¥Æ¥ì¥Ó¥¹¥È¥ê¡¼¥ß¥ó¥°¥µ¡¼¥Ó¥¹¡¦¸ø¶¦»ö¶È¤Ê¤É¤Î¸ø¼°¥¢¥×¥ê¤Ëʱ¤·¡¢¥Õ¥£¥Ã¥·¥ó¥°¥á¡¼¥ë·Ðͳ¤ÇÇÛÉÛ¤µ¤ì¤Æ¤¤¤ë¤½¤¦¤Ç¤¹¡£¤³¤ì¤é¤Î¥Þ¥ë¥¦¥§¥¢¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ¤·¤Þ¤¦¤È¡¢¥Ç¥Ð¥¤¥¹Æâ¤Î¥Æ¥­¥¹¥È¥á¥Ã¥»¡¼¥¸¤äÏ¢ÍíÀè¡¢²èÁü¤Ê¤É¤ò¹¶·â¼Ô¤¬´ÉÍý¤¹¤ë¥ê¥â¡¼¥È¥µ¡¼¥Ð¡¼¤Ë¾¡¼ê¤ËÁ÷¿®¤µ¤ì¤Æ¤·¤Þ¤¤¤Þ¤¹¡£¤Ê¤ª¡¢ÌäÂê¤Î¥¢¥×¥ê¤¬Google Play¾å¤ÇÇÛ¿®¤µ¤ì¤Æ¤¤¤¿¤È¤¤¤¦¾Úµò¤Ï¡¢µ­»öºîÀ®»þÅÀ¤Ç¤Ï¸«¤Ä¤«¤Ã¤Æ¤¤¤Þ¤»¤ó¡£

¤³¤ì¤é¤Î¥Þ¥ë¥¦¥§¥¢¤ÏOCR¥½¥Õ¥È¥¦¥§¥¢¤òÍѤ¤¤ë¤³¤È¤Ç¡¢Åð¤ß½Ð¤·¤¿¾ðÊó¤Ëɽ¼¨¤µ¤ì¤Æ¤¤¤ë²¾ÁÛÄ̲ߥ¦¥©¥ì¥Ã¥È¥¢¥×¥ê¤Îǧ¾Ú¾ðÊó¤òÃê½Ð¤·¤è¤¦¤È¤¹¤ëÅÀ¤¬ÆÃħ¤Ç¤¹¡£¥»¥­¥å¥ê¥Æ¥£´ë¶ÈMcAfee¤Î¸¦µæ°÷¤Ç¤¢¤ë¥µ¥ó¥ê¥ç¥ë¡¦¥ê¥å¥¦»á¤Ï¡¢°­°Õ¤Î¤¢¤ë¥¢¥×¥ê¤¬Åð¤ó¤À¥Ç¡¼¥¿¤òÁ÷¿®¤¹¤ë¥µ¡¼¥Ð¡¼¤ËÉÔÀµ¥¢¥¯¥»¥¹¤¹¤ë¤³¤È¤Ç¡¢¤³¤Î»ö¼Â¤òȯ¸«¤·¤¿¤ÈÀâÌÀ¤·¤Æ¤¤¤Þ¤¹¡£Æ±»á¤Ï¡Ö¥µ¡¼¥Ð¡¼¤Î¥»¥­¥å¥ê¥Æ¥£ÀßÄ꤬´Å¤¯¡¢ËÜÍè¤Ï¥µ¡¼¥Ð¡¼´ÉÍý¼Ô¤Î¤ß¤¬±ÜÍ÷²Äǽ¤Ê¥Ú¡¼¥¸¤Ë¥¢¥¯¥»¥¹¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤¿¡×¤È¤âÀâÌÀ¤·¤Þ¤·¤¿¡£

°Ê²¼¤Ï¥Þ¥ë¥¦¥§¥¢¤òÇÛÉÛ¤·¤Æ¤¤¤ë¹¶·â¼Ô¤¬±¿ÍѤ¹¤ë¥ê¥â¡¼¥È¥µ¡¼¥Ð¡¼¾å¤Ë¸ºß¤¹¤ë¡¢OCR¥½¥Õ¥È¥¦¥§¥¢¤ò´ÉÍý¤¹¤ë¥Ú¡¼¥¸¤Î¥¹¥¯¥ê¡¼¥ó¥·¥ç¥Ã¥È¡£¥Þ¥ë¥¦¥§¥¢¤Ë´¶À÷¤·¤¿¥Ç¥Ð¥¤¥¹¤«¤éÅð¤ß½Ð¤·¤¿¥Ç¡¼¥¿¤òOCR¥½¥Õ¥È¥¦¥§¥¢¤Ç¥Æ¥­¥¹¥È¾ðÊó¤ËÊÑ´¹¤·¤Æ¤¤¤ë¤³¤È¤¬¤è¤¯¤ï¤«¤ê¤Þ¤¹¡£



¥ê¥å¥¦»á¤Ï¡Ö¥Ú¡¼¥¸¤òÄ´¤Ù¤¿¤È¤³¤í¡¢¹¶·â¼Ô¤Î¼ç¤ÊÌÜŪ¤Ï²¾ÁÛÄ̲ߥ¦¥©¥ì¥Ã¥È¤Î¥Ë¡¼¥â¥Ë¥Ã¥¯¥ê¥«¥Ð¥ê¥Õ¥ì¡¼¥º¤òÆþ¼ê¤¹¤ë¤³¤È¤À¤Ã¤¿¤³¤È¤¬ÌÀ¤é¤«¤Ë¤Ê¤ê¤Þ¤·¤¿¡£¤³¤ì¤ÏÈï³²¼Ô¤Î²¾ÁÛÄ̲߻ñ»º¤Ë¥¢¥¯¥»¥¹¤·¡¢¾ì¹ç¤Ë¤è¤Ã¤Æ¤Ï»È¤¤²Ì¤¿¤¹¤³¤È¤Ë½ÅÅÀ¤òÃÖ¤¤¤Æ¤¤¤ë¤³¤È¤ò¼¨º¶¤·¤Æ¤¤¤Þ¤¹¡×¤Èµ­¤·¤Æ¤¤¤Þ¤¹¡£

¥ê¥å¥¦»á¤Ë¤è¤ë¤È¡¢¹¶·â¼Ô¤Ï¥ê¥â¡¼¥È¥µ¡¼¥Ð¡¼Â¦¤ÇPython¤ÈJavascript¤ò»ÈÍѤ·¤ÆÅð¤ó¤À¥Ç¡¼¥¿¤ò½èÍý¤·¤Æ¤ª¤ê¡¢¶ñÂÎŪ¤Ë¤ÏOCR¤ò»ÈÍѤ·¤Æ²èÁü¤ò¥Æ¥­¥¹¥È¤ËÊÑ´¹¤·¡¢¤³¤ì¤ò´ÉÍý¥Ñ¥Í¥ë¤Ç´ÉÍý¤·¤Æ¤¤¤ë¤½¤¦¤Ç¤¹¡£¤³¤Î¥×¥í¥»¥¹¤ÏÅð¤ó¤À¾ðÊó¤Î¼è¤ê°·¤¤¤ÈÍøÍѤ¬¹âÅÙ¤ËÀöÎý¤µ¤ì¤Æ¤¤¤ë¤³¤È¤ò¼¨¤·¤Æ¤¤¤ë¤È¥ê¥å¥¦»á¤Ï»ØŦ¤·¤Þ¤·¤¿¡£°Ê²¼¤ÎPython¥³¡¼¥É¤Ï²èÁü¤Ëɽ¼¨¤µ¤ì¤Æ¤¤¤ë¥Æ¥­¥¹¥È¤òOCR¤ÇÆɤ߼è¤ê¥Æ¥­¥¹¥È¤ËÊÑ´¹¤¹¤ë¤¿¤á¤Î¤â¤Î¤Ç¤¹¡£



¥Þ¥ë¥¦¥§¥¢¤ÏÅö½é¤ÏÀ©¸æ¥µ¡¼¥Ð¡¼¤È¤ÎÄÌ¿®¤ËHTTP¤òÍøÍѤ·¤Æ¤¤¤Þ¤·¤¿¤¬¡¢µ­»öºîÀ®»þÅÀ¤Ç¤Ï¥»¥­¥å¥ê¥Æ¥£¥½¥Õ¥È¥¦¥§¥¢¤¬²òÀϤ¹¤ë¤Î¤¬¤è¤êº¤Æñ¤ÊWebSocket¤ò²ð¤·¤ÆÀܳ¤¹¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£¤Ä¤Þ¤ê¡¢¥Þ¥ë¥¦¥§¥¢¤Ï»þ´Ö¤Î·Ð²á¤È¶¦¤ËÊ£¿ô¤Î¥¢¥Ã¥×¥Ç¡¼¥È¤ò¼õ¤±¤Æ¤¤¤ë¤È¤¤¤¦¤ï¤±¡£

°Ê²¼¤Ï¥Þ¥ë¥¦¥§¥¢¤Î¿Ê²½¥¿¥¤¥à¥é¥¤¥ó¤ò¼¨¤·¤¿¤â¤Î¡£2024ǯ6·î¤ËWebSocket¤òÍøÍѤ·»Ï¤á¤Æ¤ª¤ê¡¢7·î¤Ë¤ÏÆñÆɲ½¤òÍøÍѤ¹¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£¤Þ¤¿¡¢¥Þ¥ë¥¦¥§¥¢¤ÏÅö½é´Ú¹ñ¥æ¡¼¥¶¡¼¤òÂоݤȤ·¤Æ¤¤¤¿¤â¤Î¤Î¡¢8·îº¢¤«¤é¥¤¥®¥ê¥¹¹ñÆâ¤Ç¤â³È»¶¤µ¤ì¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¤½¤¦¤Ç¤¹¡£



¥ê¥å¥¦»á¤Ï¡Ö¶¼°Ò¥¢¥¯¥¿¡¼¤¬¿Í¸ýÅý·×Ū¤Ë¤âÃÏÍýŪ¤Ë¤â¤½¤Î³èÆ°ÈϰϤò¹­¤²¤Æ¤¤¤ë¤³¤È¤ò¼¨¤·¤Æ¤¤¤ë¤¿¤á¡¢½ÅÍפǤ¹¡£¥¤¥®¥ê¥¹¤Ø¤Î¿Ê½Ð¤Ï¡¢¹¶·â¼Ô¤¬°Õ¿ÞŪ¤Ë³èÆ°ÈϰϤò¹­¤²¤è¤¦¤È¤·¤Æ¤¤¤ë¤³¤È¤ò¼¨¤·¤Æ¤ª¤ê¡¢¤ª¤½¤é¤¯¥Þ¥ë¥¦¥§¥¢¤Î¥í¡¼¥«¥é¥¤¥ºÈǤò»È¤Ã¤Æ¿·¤·¤¤¥æ¡¼¥¶¡¼¥°¥ë¡¼¥×¤òÁÀ¤Ã¤Æ¤¤¤ë¤â¤Î¤È»×¤ï¤ì¤Þ¤¹¡×¤Èµ­¤·¤Æ¤¤¤Þ¤¹¡£