Found 35919 bookmarks
Newest
400 Security Practitioners Gave These 7 Insights into Their Cybercrime Monitoring
400 Security Practitioners Gave These 7 Insights into Their Cybercrime Monitoring
The cybercrime underground is complex and dynamic, and cybercrime threats that emerge from it pose a significant risk to organizations. What organizations know and refer to as the cybercrime underground is changing within the hour. Unfortunately, many organizations underestimate that risk or may believe that cybercrime monitoring and threat detection doesn’t apply to their organization. […]
·kelacyber.wpenginepowered.com·
400 Security Practitioners Gave These 7 Insights into Their Cybercrime Monitoring
狙われるMSP: 脅威アクターの一石二鳥 (多鳥)な攻撃術
狙われるMSP: 脅威アクターの一石二鳥 (多鳥)な攻撃術
脅威インテリジェンスアナリスト ヤエル・キション   マネージドサービスプロバイダー(MSP)やマネージドセキュリティサービスプロバイダー(MSSP)は、多岐にわたるITサービスや円滑な事業運営に必要なサポートを提供しており、いまや多くの企業にとって重要な役割を果たしています。しかし同時に、1社を侵害してその資産を侵害するにとどまらず、潜在的被害者の数を増やすべく第三者も幅広く標的にしようと目論むサイバー犯罪者にとって、MSPは魅力的な標的となっています。本ブログでは、MSPやIT企業を標的とするサイバー犯罪エコシステムで活動する脅威アクターが、現在関心を寄せているトピックについて解説します。
·kelacyber.wpenginepowered.com·
狙われるMSP: 脅威アクターの一石二鳥 (多鳥)な攻撃術
Attacks on MSPs: How Threat Actors Kill Two Birds (and More) With One Stone
Attacks on MSPs: How Threat Actors Kill Two Birds (and More) With One Stone
Yael Kishon, Threat Intelligence Analyst Managed service providers (MSPs or MSSPs) have become a vital part of many companies, providing a range of IT services and support to keep operations running smoothly. At the same time, MSPs become attractive targets for cybercriminals aiming not only to compromise assets of a single company, but also to […]
·kelacyber.wpenginepowered.com·
Attacks on MSPs: How Threat Actors Kill Two Birds (and More) With One Stone
An Executive’s Guide To The Cybercrime Underground
An Executive’s Guide To The Cybercrime Underground
David Carmiel, KELA’s CEO In recent years, the cybercrime underground has become increasingly sophisticated and profitable by preying on vulnerable organizations. As a result, security leaders must gain visibility into what happens in this underground network of illegal activity to protect their organizations from emerging threats and accurately assess their risks. In this article, I […]
·kelacyber.wpenginepowered.com·
An Executive’s Guide To The Cybercrime Underground
RaidForumsから流出したデータベースに関するKELAの考察
RaidForumsから流出したデータベースに関するKELAの考察
2023年5月29日、ハッカーフォーラム「RaidForums」のユーザー約47万9,000人分の情報を含んだデータベースが、新たに立ち上げられたフォーラム「Exposed」に流出しました。RaidForumsは、不正アクセスの被害者となった組織から窃取されたデータを売買・公開・ホスティングする場として知られていましたが、法執行機関により押収され、閉鎖されました。その後、同フォーラムのユーザーは新たに立ち上げられたフォーラム「Breached(BreachForums)」に活動の場を移しましたが、そのBreachedも創設者であった人物の逮捕を受け、先日法執行機関により押収されることとなりました。 そして2023年5月、Breachedの後継になりうる場としてExposedが立ち上げられました。ただしExposedの所有者「Impotent」は、RaidForumsやBreachedの所有者とは関連の無い人物であると思われます。このImpotentこそがRaidForumsのデータベースを公開した人物でしたが、Impotentはこのデータベースの出所は不明であると語っており、他のサイバー犯罪コミュニティで活動しているユーザーも、RaidForumsの閉鎖後は法執行機関だけが同フォーラムのデータにアクセスできたのであれば、どのような経緯でデータベースが流出したのかと疑問を持っています。またその一方で、ExposedはRaidForumsのデータベースをマーケティングツールとして活用しており、新規ユーザーになってデータベースをダウンロードするよう呼びかけるバナーを掲げています(注:50ユーロを支払って上位ユーザーになると、同データベースをダウンロードするリンクが提供されます)。実際、このデータベースがExposedに流出して2日後には、同フォーラムのユーザー数が流出前日(5月28日)時点の約900人から3,200人超と3倍強にまで増加しました。 今回のレポートでは、我々がこのデータベースをインデックス化し、調査して得られた考察を詳述します。このデータベースはKELAのプラットフォームでもご確認いただけます(こちらのクエリをご利用ください)。
·kelacyber.wpenginepowered.com·
RaidForumsから流出したデータベースに関するKELAの考察
RaidForums leaked database – insights and intelligence by KELA
RaidForums leaked database – insights and intelligence by KELA
On May 29, 2023, a database containing the information of nearly 479,000 members of the RaidForums hacking forum was leaked online on a new forum named Exposed.
·kelacyber.wpenginepowered.com·
RaidForums leaked database – insights and intelligence by KELA