{"id":2698,"date":"2021-05-01T16:14:36","date_gmt":"2021-05-01T07:14:36","guid":{"rendered":"https:\/\/itresearchart.biz\/?p=2698"},"modified":"2021-05-01T16:14:36","modified_gmt":"2021-05-01T07:14:36","slug":"nisc%e3%80%8c%e3%83%a9%e3%83%b3%e3%82%b5%e3%83%a0%e3%82%a6%e3%82%a8%e3%82%a2%e3%81%ab%e3%82%88%e3%82%8b%e3%82%b5%e3%82%a4%e3%83%90%e3%83%bc%e6%94%bb%e6%92%83%e3%81%ab%e9%96%a2%e3%81%99%e3%82%8b","status":"publish","type":"post","link":"https:\/\/itresearchart.biz\/?p=2698","title":{"rendered":"NISC\u300c\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u306b\u3088\u308b\u30b5\u30a4\u30d0\u30fc\u653b\u6483\u306b\u95a2\u3059\u308b\u6ce8\u610f\u559a\u8d77\u306b\u3064\u3044\u3066\u300d"},"content":{"rendered":"<p>NISC\u304b\u3089<a href=\"https:\/\/www.nisc.go.jp\/active\/infra\/pdf\/ransomware20210430.pdf\">\u300c\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u306b\u3088\u308b\u30b5\u30a4\u30d0\u30fc\u653b\u6483\u306b\u95a2\u3059\u308b\u6ce8\u610f\u559a\u8d77\u306b\u3064\u3044\u3066 \u300d<\/a>\u304c\u51fa\u3066\u3044\u307e\u3059\u3002<\/p>\n<blockquote><p>\u5bfe\u7b56\u306f\u3001\u4e88\u9632\u3001\u691c\u77e5\u3001\u5bfe\u5fdc\u3001\u5fa9\u65e7\u306e\u89b3\u70b9\u304b\u3089\u884c\u3046\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059<\/p><\/blockquote>\n<p>\u3068\u3057\u3066\u3001\u5177\u4f53\u7684\u306a\u5bfe\u5fdc\u7b56\u3092\u500b\u5225\u306b\u8ad6\u3058\u3066\u3044\u307e\u3059\u3002<\/p>\n<h3>\u4e88\u9632<\/h3>\n<p>\u4e88\u9632\u3068\u3057\u3066\u306f\u3001<\/p>\n<ul>\n<li>\u611f\u67d3\u3092\u9632\u6b62\u3059\u308b\u305f\u3081\u306e\u5bfe\u5fdc\u7b56<\/li>\n<li>\u30c7\u30fc\u30bf\u306e\u6697\u53f7\u5316\u306b\u3088\u308b\u88ab\u5bb3\u3092\u8efd\u6e1b\u3059\u308b\u305f\u3081\u306e\u5bfe\u5fdc\u7b56<\/li>\n<\/ul>\n<p>\u306b\u308f\u3051\u3066\u8ad6\u3058\u3089\u308c\u3066\u3044\u307e\u3059\u3002\u500b\u4eba\u7684\u306b\u8208\u5473\u6df1\u3044\u306e\u306f\u3001<\/p>\n<blockquote><p>\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u3092\u7528\u3044\u308b\u653b\u6483\u8005\u30b0\u30eb\u30fc\u30d7\u306b\u3088\u308b\u60aa\u7528\u304c\u5831\u544a\u3055\u308c\u3066\u3044\u308b\u3082\u306e\u3092\u542b\u3080\u4ee5\u4e0b\u306e\u8106\u5f31\u6027\u306b\u5341\u5206\u7559\u610f\u3059\u308b\u3002<br \/>\n&#8211; Fortinet \u88fd Virtual Private Network(VPN)\u88c5\u7f6e\u306e\u8106\u5f31\u6027(CVE-2018-13379)<br \/>\n&#8211; Ivanti \u88fd VPN \u88c5\u7f6e\u300cPulse Connect Secure\u300d\u306e\u8106\u5f31\u6027(CVE-2021-22893\u3001CVE-2020-8260\u3001CVE-2020-8243\u3001CVE-2019-11510)<br \/>\n&#8211; Citrix \u88fd\u300cCitrix Application Delivery Controller\u300d\u300cCitrix Gateway\u300d\u300cCitrixSD-WAN WANOP\u300d\u306e\u8106\u5f31\u6027(CVE-2019-19781)<br \/>\n&#8211; Microsoft Exchange Server \u306e\u8106\u5f31\u6027(CVE-2021-26855 \u7b49)<br \/>\n&#8211; SonicWall Secure Mobile Access (SMA) 100 \u30b7\u30ea\u30fc\u30ba\u306e\u8106\u5f31\u6027(CVE-2021-20016)<br \/>\n&#8211; QNAP Systems \u88fd NAS(Network Attached Storage)\u88fd\u54c1\u300cQNAP\u300d\u306b\u95a2\u3059\u308b\u8106\u5f31\u6027(CVE-2021-28799\u3001CVE-2020-36195\u3001CVE-2020-2509 \u7b49)<br \/>\n&#8211; Windows \u306e\u30c9\u30e1\u30a4\u30f3\u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u30fc\u306e\u8106\u5f31\u6027(CVE-2020-1472 \u7b49)<\/p><\/blockquote>\n<p>\u3068\u3044\u3046\u3053\u3068\u3067\u3001\u8106\u5f31\u6027\u306e\u540d\u6307\u3057\u304c\u306a\u3055\u308c\u3066\u3044\u308b\u3068\u3053\u308d\u3067\u3057\u3087\u3046\u304b\u3002\u30d1\u30c3\u30c1\u30fb\u516c\u8868\u304c\u306a\u3055\u308c\u3066\u3044\u306a\u3044\u30bc\u30ed\u30c7\u30a4\u3088\u308a\u3082\u5409\u306e\u8106\u5f31\u6027\u306b\u5bfe\u3059\u308b\u5bfe\u5fdc\u3092\u6020\u3063\u3066\u3044\u3066\u88ab\u5bb3\u306b\u3042\u3046\u3068\u3044\u3046\u3053\u3068\u306b\u6ce8\u610f\u3057\u307e\u3057\u3087\u3046\u3001\u3068\u3044\u3046\u3053\u3068\u304b\u3068\u601d\u3044\u307e\u3059\u3002<\/p>\n<p>\u3042\u3068\u306f\u3001<strong>\u30d0\u30c3\u30af\u30a2\u30c3\u30d7<\/strong>\u3067\u3059\u306d\u3002<\/p>\n<h4>\u691c\u77e5<\/h4>\n<blockquote><p>\u8fc5\u901f\u306a\u691c\u77e5\u3092\u5b9f\u73fe\u3059\u308b\u305f\u3081\u306b\u306f\u3001\u30aa\u30da\u30ec\u30fc\u30bf\u30fc\u3068\u30de\u30b7\u30f3\u306b\u3088\u308b\u81ea\u52d5\u5316\u3092\u691c\u8a0e\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059<\/p><\/blockquote>\n<p>\u3068\u3057\u3066<\/p>\n<blockquote><p>\u632f\u308b\u821e\u3044\u691c\u77e5\u3001 EDR(Endpoint Detection and Response) \u3001 CDM(Continuous Diagnostics and Mitigation)\u7b49\u3092\u6d3b\u7528\u3059\u308b<\/p><\/blockquote>\n<p>\u3068\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<h4>\u5bfe\u5fdc\u30fb\u5fa9\u65e7<\/h4>\n<p>\u3053\u306e\u3066\u70b9\u306b\u3064\u3044\u3066\u306f<\/p>\n<blockquote><p>\u30c7\u30fc\u30bf\u306e\u6697\u53f7\u5316\u3001\u516c\u958b\u3001\u30a4\u30f3\u30bf\u30fc\u30cd\u30c3\u30c8\u516c\u958b\u30b5\u30fc\u30d0\u30fc\u306b\u5bfe\u3059\u308b DoS \u653b\u6483\u7b49\u3092\u60f3\u5b9a\u3057\u305f\u5bfe\u51e6\u614b\u52e2\u3001\u5bfe\u51e6\u65b9\u6cd5\u3001\u696d\u52d9\u7d99\u7d9a\u8a08\u753b\u7b49\u3092\u542b\u3080\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u3078\u306e\u5bfe\u5fdc\u8a08\u753b\u304c\u9069\u5207<br \/>\n\u306b\u7b56\u5b9a\u3067\u304d\u3066\u3044\u308b\u304b\u78ba\u8a8d\u3059\u308b\u3002<\/p>\n<p>\u4e00\u90e8\u306e\u8077\u54e1\u304c\u9577\u671f\u4f11\u6687\u4e2d\u3084\u30c6\u30ec\u30ef\u30fc\u30af\u7b49\u3067\u3042\u3063\u3066\u3082\u3001\u8077\u54e1\u304c\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u611f\u67d3\u306e\u5146\u5019\u3092\u628a\u63e1\u3057\u305f\u5834\u5408\u3001\u8077\u54e1\u304c\u8fc5\u901f\u306b\u30b7\u30b9\u30c6\u30e0\u7ba1\u7406\u8005\u306b\u9023\u7d61\u3067\u304d\u308b\u3053\u3068\u3092\u78ba\u8a8d\u3059\u308b\u3002<\/p>\n<p>\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u306e\u611f\u67d3\u306b\u3088\u308b\u88ab\u5bb3\u3092\u53d7\u3051\u305f\u5834\u5408\u306b\u3001\u7d44\u7e54\u5185\u5916(\u696d\u52d9\u59d4\u8a17\u5148\u3001\u95a2\u4fc2\u7701\u5e81\u3092\u542b\u3080)\u306b\u8fc5\u901f\u306b\u9023\u7d61\u3067\u304d\u308b\u3088\u3046\u3001\u9023\u7d61\u4f53\u5236\u3092\u78ba\u8a8d\u3059\u308b\u3002<\/p><\/blockquote>\n<p>\u3068\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>NISC\u306e\u7ba1\u8f44\u306b\u306f\u306a\u3089\u306a\u3044\u306e\u3067\u3059\u304c\u3001Pay or Not to pay\u554f\u984c\u306f\u3001\u7279\u306b\u30b3\u30e1\u30f3\u30c8\u306f\u306a\u3044\u3068\u3044\u3046\u3053\u3068\u3067\u3059\u306d\u3002\u6d77\u5916\u306e\u3092\u8abf\u3079\u305f\u3068\u3053\u308d\u3067\u3059\u304c\u3001\u660e\u78ba\u306a\u30b3\u30e1\u30f3\u30c8\u306f\u306a\u3044\u3067\u3059\u306d\u3002\u5834\u5408\u306b\u3088\u3063\u3066\u306f\u3001\u30c6\u30ed\u30ea\u30b9\u30c8\u3078\u306e\u652f\u6255\u3044\u3092\u7981\u6b62\u3059\u308b\u6cd5\u5f8b\u306b\u89e6\u308c\u308b\u3053\u3068\u3082\u3042\u308a\u307e\u3059\u306d\u3002\u3082\u3063\u3068\u3082\u3001\u30c7\u30e1\u30ea\u30c3\u30c8\u304c\u591a\u3044\u306e\u3067\u63a8\u5968\u306f\u3055\u308c\u3066\u3044\u306a\u3044\u3068\u3044\u3046\u30b0\u30ec\u30a4\u306a\u3068\u3053\u308d\u304c\u516c\u5f0f\u306a\u30b3\u30e1\u30f3\u30c8\u306b\u306a\u308b\u3068\u3044\u3046\u3080\u305a\u304b\u3057\u3044\u554f\u984c\u3067\u3059\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"NISC\u304b\u3089\u300c\u30e9\u30f3\u30b5\u30e0\u30a6\u30a8\u30a2\u306b\u3088\u308b\u30b5\u30a4\u30d0\u30fc\u653b\u6483\u306b\u95a2\u3059\u308b\u6ce8\u610f\u559a\u8d77\u306b\u3064\u3044\u3066 \u300d\u304c\u51fa\u3066\u3044\u307e\u3059\u3002 \u5bfe\u7b56\u306f\u3001\u4e88\u9632\u3001\u691c\u77e5\u3001\u5bfe\u5fdc\u3001\u5fa9\u65e7\u306e\u89b3\u70b9\u304b\u3089\u884c\u3046\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059 \u3068\u3057\u3066\u3001\u5177\u4f53\u7684\u306a\u5bfe\u5fdc\u7b56\u3092\u500b\u5225\u306b\u8ad6\u3058\u3066\u3044\u307e\u3059\u3002 \u4e88\u9632 \u4e88\u9632\u3068\u3057\u3066\u306f\u3001 \u611f [&hellip;]","protected":false},"author":2,"featured_media":2699,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[6,5,18],"tags":[],"jetpack_publicize_connections":[],"aioseo_notices":[],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/itresearchart.biz\/wp-content\/uploads\/2021\/05\/liam-tucker-cVMaxt672ss-unsplash-e1619853256620.jpg?fit=100%2C75&ssl=1","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p8IUOX-Hw","_links":{"self":[{"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/posts\/2698"}],"collection":[{"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2698"}],"version-history":[{"count":1,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/posts\/2698\/revisions"}],"predecessor-version":[{"id":2700,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/posts\/2698\/revisions\/2700"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=\/wp\/v2\/media\/2699"}],"wp:attachment":[{"href":"https:\/\/itresearchart.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2698"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2698"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/itresearchart.biz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2698"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}