Ãæ¹ñ¤ä¥í¥·¥¢¡¢ËÌÄ«Á¯¤Ê¤É¤Î¹ñ¡¹¤Î¥Ï¥Ã¥«¡¼¤¬À¤³¦³ÆÃϤòɸŪ¤È¤·¤¿¥µ¥¤¥Ð¡¼¹¶·â¤ò¹Ô¤Ã¤Æ¤¤¤ë¤È¤Î¥Ë¥å¡¼¥¹¤¬Ï¢ÆüÊóÆ»¤µ¤ì¤Æ¤ª¤ê¡¢IT´ë¶È¤ä¥»¥­¥å¥ê¥Æ¥£¥Ù¥ó¥À¡¼¤Ï¤½¤ÎÀ襤¤ÎºÇÁ°Àþ¤ËΩ¤Ã¤Æ¤¤¤Þ¤¹¡£2024ǯ10·î31Æü¤Ë¡¢¥»¥­¥å¥ê¥Æ¥£´ë¶È¤ÎSophos¤¬¡¢Ãæ¹ñ¤òµòÅÀ¤È¤¹¤ëÊ£¿ô¤Î¶¼°Ò¥¢¥¯¥¿¡¼¤ËÂбþ¤·¤Æ¤­¤¿2018ǯ¤«¤é2023ǯ¤Þ¤Ç¤Î³èÆ°¤Îµ­Ï¿¤ò¸ø³«¤·¤Þ¤·¤¿¡£

Pacific Rim timeline: Information for defenders from a braid of interlocking attack campaigns - Sophos News

https://news.sophos.com/en-us/2024/10/31/pacific-rim-timeline/

Pacific Rim: Inside the Counter-Offensive-The TTPs Used to Neutralize China-Based Threats - Sophos News

https://news.sophos.com/en-us/2024/10/31/pacific-rim-neutralizing-china-based-threat/

Sophos¤Ï¡Ö¥Ñ¥·¥Õ¥£¥Ã¥¯¡¦¥ê¥à¡×¤ÈÂꤷ¤¿º£²ó¤Î¥ì¥Ý¡¼¥È¤Î³µÍפȤ·¤Æ¡¢¡ÖÅö¼Ò¤Ï5ǯ°Ê¾å¤Ë¤ï¤¿¤ê¡¢¥Ü¥Ã¥È¥Í¥Ã¥È¤ä¿·¤·¤¤¥¨¥¯¥¹¥×¥í¥¤¥È¡¢ÆÃÃí¤Î¥Þ¥ë¥¦¥§¥¢¤ò¶î»È¤·¤ÆSophos¤Î¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¤ò¹¶·â¤·¤Æ¤­¤¿Ãæ¹ñ¤ÎÊ£¿ô¤Î¥°¥ë¡¼¥×¤òÄ´ºº¤·¤Æ¤­¤Þ¤·¤¿¡×¤È½Ò¤Ù¤Þ¤·¤¿¡£

À¯ÉܤäË¡¼¹¹Ôµ¡´Ø¡¢¤Û¤«¤Î¥»¥­¥å¥ê¥Æ¥£¥Ù¥ó¥À¡¼¤È¶¨ÎϤ·¤Æ¼Â»Ü¤·¤¿Ä´ºº·ë²Ì¤«¤é¡¢Sophos¤Ï¤Þ¤¶¤Þ¤Ê¥ì¥Ù¥ë¤Î¿®ÍêÅ٤ǡ¢¤³¤ì¤é¤Î¥µ¥¤¥Ð¡¼¹¶·â¤ò¥Ü¥ë¥È¡¦¥¿¥¤¥Õ¡¼¥ó¤äAPT31¡¢APT41(Winnti)¤Ëµ¢Â°¤µ¤»¤ë¤³¤È¤¬¤Ç¤­¤¿¤È¤Î¤³¤È¡£Æäˡ¢Ãæ¹ñ¤Î»ÍÀî¾Ê¤¬¥¨¥¯¥¹¥×¥í¥¤¥È¤ÎÄ´ºº¤ª¤è¤Ó³«È¯¤ÎµòÅÀ¤Ë¤Ê¤Ã¤Æ¤¤¤ë¤³¤È¤Ë¤Ä¤¤¤Æ¤Ï¶¯¤¤³Î¿®¤¬¤¢¤ë¤È¤·¤Æ¤¤¤Þ¤¹¡£



¢¡ºÇ½é¤Î¹¶·â¡§2018ǯ

¤³¤¦¤·¤¿°ìÏ¢¤Î¹¶·â¤Îȯü¤Ï¡¢¥Í¥Ã¥È¥ï¡¼¥¯¥Ç¥Ð¥¤¥¹¤Ç¤Ï¤Ê¤¯Sophos¤Î¥¤¥ó¥É»Ò²ñ¼Ò¤Ç¤¢¤ëCyber​​oam¤ÎËܼҥӥë¤Ø¤Î¹¶·â¤Ç¤·¤¿¡£

2018ǯ12·î4Æü¡¢Sophos¤Î¥»¥­¥å¥ê¥Æ¥£¥Á¡¼¥à¤Î¥¢¥Ê¥ê¥¹¥È¤Ï¡¢¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥­¥ã¥ó¤ò¼Â¹Ô¤·¤Æ¤¤¤ë¥Ç¥Ð¥¤¥¹¤ò¸¡ÃΤ·¤Þ¤·¤¿¡£¤½¤·¤Æ¡¢¤½¤Î½Ð¤É¤³¤í¤òõ¤·¤¿·ë²Ì¡¢Cyber​​oam¤Î¥ª¥Õ¥£¥¹¤ÎÊɳݤ±¥Ç¥£¥¹¥×¥ì¥¤¤Ë±ÇÁü¤ò½Ð¤¹¤¿¤á¤ÎÄ㸢¸Â¤ÎPC¤Ë¡¢¥ê¥â¡¼¥È¥¢¥¯¥»¥¹·¿¥È¥í¥¤¤ÎÌÚÇÏ(RAT)¤¬»Å¹þ¤Þ¤ì¤Æ¤¤¤¿¤³¤È¤¬È¯³Ð¤·¤Þ¤·¤¿¡£

Cloud Snooper¤È̾ÉÕ¤±¤é¤ì¤¿¤³¤Î¹¶·â¼Ô¤Ï¡¢Åö½éÈæ³ÓŪñ½ã¤Ê¼ê¸ý¤ò»È¤Ã¤Æ¤¤¤ë¤è¤¦¤Ë¸«¤¨¤Þ¤·¤¿¤¬¡¢Ä´ºº¤¬¿Ê¤àÃæ¤Ç¤«¤Ä¤Æ¤Ê¤¤¤Û¤ÉÂ絬ÌϤ«¤ÄÊ£»¨¤Ê¹¶·â¼êË¡¤òŸ³«¤·¤Æ¤¤¤ë¤³¤È¤¬¤ï¤«¤Ã¤Æ¤­¤¿¤È¤Î¤³¤È¡£

¤Þ¤¿¡¢Åö»þ¤ÏCloud Snooper¤Î½ê°¤âÉÔÌÀ¤Ç¤·¤¿¤¬¡¢Sophos¤Ï¡Öº£¤Ç¤Ï¡¢¤³¤ì¤¬¥Í¥Ã¥È¥ï¡¼¥¯¥Ç¥Ð¥¤¥¹¤òɸŪ¤È¤¹¤ë¥Þ¥ë¥¦¥§¥¢³«È¯¤Ë¸þ¤±¤Æ¾ðÊó¤ò¼ý½¸¤¹¤ë¡¢Ãæ¹ñ¤ÎºÇ½é¤Î¼è¤êÁȤߤǤ¢¤Ã¤¿¤È³Î¿®¤ò»ý¤Ã¤Æɾ²Á¤·¤Æ¤¤¤Þ¤¹¡×¤È½Ò¤Ù¤Þ¤·¤¿¡£



¢¡Â絬Ìϲ½¡§2020ǯ

Ãæ¹ñ¤Î¥Ï¥Ã¥«¡¼¤Ï¡¢2020ǯ½éƬ¤«¤é2022ǯ¤Ë¤«¤±¤ÆÊ£¿ô¤Î¥­¥ã¥ó¥Ú¡¼¥ó¤òŸ³«¤·¡¢ÌÜΩ¤Ã¤¿¹¶·â¤òËܳÊŪ¤Ë¹Ô¤¤»Ï¤á¤Þ¤·¤¿¡£Ãæ¤Ç¤â¼çÍפʹ¶·â¤Ç¤¢¤ë2020ǯ4·î¤Î¡ÖAsnarök(CVE-2020-12271)¡×¤È¤¤¤¦¹¶·â¤Ï¡¢¥ª¥é¥ó¥ÀÀ¯ÉܤΥϥ¤¥Æ¥¯ÈȺá¥æ¥Ë¥Ã¥È¤Ç¤¢¤ë¹ñΩ¥µ¥¤¥Ð¡¼¥»¥­¥å¥ê¥Æ¥£¥»¥ó¥¿¡¼(NCSC)¤È¤ÎÏ¢·È¤Ë¤è¤êAsnarök¥Þ¥ë¥¦¥§¥¢¤ÎC2¥µ¡¼¥Ð¡¼¤Î²¡¼ý¤¬¹Ô¤ï¤ì¤ë¤È¤¤¤¦¡¢Â礬¤«¤ê¤ÊÁܺº¤ËȯŸ¤·¤¿¤È¤Î¤³¤È¡£

¤Þ¤¿¡¢Asnarök¤È¸å¤Ë¡ÖPersonal Panda¡×¤È̾ÉÕ¤±¤é¤ì¤¿Ê̤ι¶·â¤Ç¤Ï¡¢Àȼå(¤¼¤¤¤¸¤ã¤¯)À­¤ò¸¦µæ¤·¤Æ¸ø³«¤¹¤ë¥Ð¥°¥Ð¥¦¥ó¥Æ¥£¤ÎÊó¹ð¼Ô¤È¡¢¥Ï¥Ã¥«¡¼ÁÈ¿¥¤È¤Î´Ö¤Ë´ØÏ¢À­¤¬¤¢¤ë¤³¤È¤¬¤ï¤«¤ê¤Þ¤·¤¿¡£

ξ¼Ô¤¬¤¤¤º¤ì¤â»ÍÀî¾Ê¤Î¾ÊÅÔ¡¦À®ÅÔ¤òµòÅÀ¤È¤·¤Æ¤¤¤ë¤³¤È¤«¤é¡¢Sophos¤Ï¡ÖÀ®ÅԤζµ°éµ¡´Ø¤òÃæ¿´¤È¤·¤¿¸¦µæ¥³¥ß¥å¥Ë¥Æ¥£¤¬Â¸ºß¤·¡¢ÀȼåÀ­¤Î¸¦µæ·ë²Ì¤ò¥»¥­¥å¥ê¥Æ¥£¥Ù¥ó¥À¡¼¤ÈÃæ¹ñÀ¯Éܤ«¤é¥µ¥¤¥Ð¡¼¹¶·â¤òÀÁ¤±É餦ÁÈ¿¥¤ÎξÊý¤È¶¦Í­¤·¤Æ¤¤¤ë¤Î¤Ç¤Ï¤Ê¤¤¤«¡×¤ÈÃæÄøÅ٤γο®Å٤ǿ䬤·¤Æ¤¤¤Þ¤¹¡£



by May Wong

¢¡¥¹¥Æ¥ë¥¹¤Ø¤Î°Ü¹Ô¡§2022ǯ¡Á

Ãæ¹ñ¤Î¹¶·â¼Ô¤Ï¡¢2022Ⱦ¤Ð¤ËÀï½Ñ¤òÊѹ¹¤·¡¢É¸Åª¤òÀ¯Éܵ¡´Ø¤ä¥¤¥ó¥Õ¥é¡¢¸¦µæµ¡´Ø¡¢¸ø¶¦µ¡´Ø¡¢·³»ö´ØÏ¢´ë¶È¤Ê¤É¤ÎÆÃÄê¤ÎÁÈ¿¥¤ËÀßÄꤷ¤Æ¡¢ÁÀ¤¤¤ò¹Ê¤Ã¤¿¹¶·â¤ò¹Ô¤¦¤è¤¦¤Ë¤Ê¤ê¤Þ¤·¤¿¡£

¿ÍͤÊÀïά¡¦µ»½Ñ¡¦¼ê½ç(TTP)¤ò³èÍѤ·¤Ê¤¬¤é¹Ô¤ï¤ì¤¿¤³¤ì¤é¤Î¹¶·â¤Ï¡¢¼«Æ°²½¤µ¤ì¤¿¹¶·â¤Ç¤Ï¤Ê¤¯¡¢¹¶·â¼Ô¤¬¼ê¤º¤«¤é¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¡¢¿¯³²¤µ¤ì¤¿¥Ç¥Ð¥¤¥¹¾å¤Ç¹¶·â¤ò¹Ô¤¦¡Ö¥¢¥¯¥Æ¥£¥Ö¥¢¥É¥Ð¡¼¥µ¥ê¡¼¡×¥¹¥¿¥¤¥ë¤òÆÃħ¤È¤·¤¿¤â¤Î¤À¤Ã¤¿¤È¤Î¤³¤È¡£

¤Þ¤¿¡¢Ãæ¹ñ¤Î¹¶·â¼Ô¤é¤Ï¥á¥â¥ê¾å¤Ç¤·¤«Æ°ºî¤·¤Ê¤¤¥Þ¥ë¥¦¥§¥¢¡¢¹âÅ٤ʻý³µ»½Ñ¡¢¿¯³²¤µ¤ì¤¿¥Í¥Ã¥È¥ï¡¼¥¯¥Ç¥Ð¥¤¥¹¤òÂ絬ÌÏ¤Ê¥×¥í¥­¥·¥Í¥Ã¥È¥ï¡¼¥¯²½¤ÇÈëÆ¿¤¹¤ë¼ê¸ý¤Ê¤É¡¢¤µ¤Þ¤¶¤Þ¤Ê·Á¤Ç¸¡½Ð¤ò²óÈò¤¹¤ë¥¹¥Æ¥ë¥¹µ»½Ñ¤ò¿È¤Ë¤Ä¤±¤Æ¤¤¤­¤Þ¤·¤¿¡£



¤³¤¦¤·¤¿¹¶·â¤Î¿¤¯¤ÇSophos¤Ï¼éÀª¤Ë²ó¤ê¤Þ¤·¤¿¤¬¡¢¿··¿¥³¥í¥Ê¥¦¥¤¥ë¥¹´¶À÷¾É¤Ë´Ø¤¹¤ë¾ðÊóÁàºî¤Ë´ØÍ¿¤·¤Æ¤¤¤¿»ÍÀî¾Ê¤Î´ë¶È¡¦Sichuan Silence Information Technology¤ÎÄ´ºº¤Ç¤Ï·ä¤òÆͤ¤¤ÆÈ¿·â¤·¡¢¹¶·â¼Ô¤Î¥Ç¥Ð¥¤¥¹¤òµÕ¥Ï¥Ã¥­¥ó¥°¤·¤Æ¹¶·â¼Ô¤¬¥Æ¥­¥¹¥È¥¨¥Ç¥£¥¿¡¼¤Ç¥³¡¼¥É¤ò½ñ¤¯ÍͻҤò´Æ»ë¤¹¤ë¤³¤È¤â¤¢¤Ã¤¿¤È¤Î¤³¤È¤Ç¤¹¡£

Sophos¤Ï¡¢Ãæ¹ñ¤Î¥Ï¥Ã¥«¡¼¤ËÂФ¹¤ë¤³¤ì¤Þ¤Ç¤Î¼è¤êÁȤߤòÁí³ç¤·¤Æ¡Ö¶¼°Ò¥¢¥¯¥¿¡¼¤Ï5ǯ°Ê¾å¤Ë¤ï¤¿¤Ã¤Æ¼¹Ç°¿¼¤¤¹¶·â¤ò¼Â¹Ô¤·¤Æ¤­¤Þ¤·¤¿¡£¤³¤¦¤·¤¿¹¶·â¼Ô¤Ï¡¢Ë­É٤ʥ꥽¡¼¥¹¤ò»ý¤Á¡¢Ç¦ÂѶ¯¤¯¡¢¤«¤ÄÁϤŪ¤Ç¡¢¥Õ¥¡¡¼¥à¥¦¥§¥¢¤ÎÆâÉô¥¢¡¼¥­¥Æ¥¯¥Á¥ã¤Ë¤Ä¤¤¤Æʳ°¤ì¤¿Ã챤ò»ý¤Ã¤Æ¤¤¤ë¤è¤¦¤Ç¤¹¡£Sophos¤ÎÀßΩ¤«¤é40ǯ°Ê¾å¤¿¤Ã¤Æ¤¤¤Þ¤¹¤¬¡¢Åö¼Ò¤ÎÄ´ºº¤Ç¤Ï¤³¤ì¤Þ¤Ç¤Ë¤Û¤È¤ó¤É¸«¤é¤ì¤Ê¤«¤Ã¤¿¥ì¥Ù¥ë¤Î°­°Õ¤¢¤ë³èÆ°¤¬¼¡¡¹¤ÈÌÀ¤«¤µ¤ì¤Æ¤¤¤Þ¤¹¡×¤È½Ò¤Ù¤Þ¤·¤¿¡£