ã»ãã¥ãªãã£èªååãè åšå¯Ÿå¿ã«é©åœããããããé²åãããµã€ããŒè åšã«å¯Ÿãæ¯é¡ãªãé床ãšå¹çãæäŸããŸãã匷éãªé²åŸ¡ãæ§ç¯ããããã®æŠç¥ãå©ç¹ã課é¡ãæªæ¥ã®ãã¬ã³ãã解説ããŸãã
ã»ãã¥ãªãã£èªååïŒè¶ æ¥ç¶ç€ŸäŒã«ãããè åšå¯Ÿå¿ã®é©åœ
æ¥éãªããžã¿ã«ãã©ã³ã¹ãã©ãŒã¡ãŒã·ã§ã³ãã°ããŒãã«ãªæ¥ç¶æ§ããããŠçµ¶ããæ¡å€§ããæ»æå¯Ÿè±¡é åã«ãã£ãŠå®çŸ©ãããæä»£ã«ãããŠãäžçäžã®çµç¹ã¯åäŸã®ãªããµã€ããŒè åšã®çæ»æã«çŽé¢ããŠããŸããé«åºŠãªã©ã³ãµã ãŠã§ã¢æ»æãããæãã©ããã®ãªãé«åºŠæšçåæ»æïŒAPTïŒãŸã§ããããã®è åšãåºçŸãæ¡æ£ããé床ãšèŠæš¡ã¯ãé²åŸ¡æŠç¥ã®æ ¹æ¬çãªè»¢æãèŠæ±ããŠããŸããããã«çç·ŽããŠããŠãã人éã®ã¢ããªã¹ãã ãã«é Œãããšã¯ããã¯ãæç¶å¯èœã§ãæ¡åŒµå¯èœã§ããããŸãããããã§ã»ãã¥ãªãã£èªååãç»å Žããè åšå¯Ÿå¿ã®æ§çžããååçã§éªšã®æããããã»ã¹ãããèœåçã§ã€ã³ããªãžã§ã³ãããã€éåžžã«å¹ççãªé²åŸ¡ã¡ã«ããºã ãžãšå€é©ããã®ã§ãã
ãã®å æ¬çãªã¬ã€ãã§ã¯ãè åšå¯Ÿå¿ã«ãããã»ãã¥ãªãã£èªååã®æ¬è³ªãæ·±ãæãäžãããã®æ¥µããŠéèŠãªæçŸ©ãäžæ žãšãªãå©ç¹ãå®çšçãªå¿çšãå®è£ æŠç¥ããããŠå€æ§ãªã°ããŒãã«ç£æ¥ã«ããããµã€ããŒã»ãã¥ãªãã£ã®æªæ¥ã«ã€ããŠæ¢æ±ããŸããç§ãã¡ã®ç®çã¯ãã°ããŒãã«ã«çžäºæ¥ç¶ãããäžçã§çµç¹ã®ããžã¿ã«ã¬ãžãªãšã³ã¹ã匷åããããšåªããã»ãã¥ãªãã£å°éå®¶ãITãªãŒããŒããããŠããžãã¹ã¹ããŒã¯ãã«ããŒã«ãå®çšçãªæŽå¯ãæäŸããããšã§ãã
é²åãããµã€ããŒè åšã®ç¶æ³ïŒãªãèªååãäžå¯æ¬ ãªã®ã
ã»ãã¥ãªãã£èªååã®å¿ èŠæ§ãçã«çè§£ããããã«ã¯ããŸãçŸä»£ã®ãµã€ããŒè åšã®ç¶æ³ã®è€éããææ¡ããªããã°ãªããŸãããããã¯ãããã€ãã®éèŠãªèŠå ã«ãã£ãŠç¹åŸŽã¥ãããããåçã§æµå¯Ÿçãªç°å¢ã§ãã
æ»æã®é«åºŠåãšéã®å¢å€§
- é«åºŠæšçåæ»æïŒAPTïŒïŒ åœå®¶äž»äœãé«åºŠã«çµç¹åãããç¯çœªã°ã«ãŒãã¯ãåŸæ¥ã®é²åŸ¡ãåé¿ãããããã¯ãŒã¯å ã§é·æçã«ååšãç¶æããããã«èšèšãããã倿®µéã§ã¹ãã«ã¹æ§ã®é«ãæ»æãçšããŸãããããã®æ»æã¯ãã¹ãã¢ãã£ãã·ã³ã°ãããŒããã€è匱æ§ã®æªçšãŸã§ãæ§ã ãªæè¡ãçµã¿åãããããšãå€ããæåã§ã®æ€åºãéåžžã«å°é£ã«ããŠããŸãã
- ã©ã³ãµã ãŠã§ã¢2.0ïŒ çŸä»£ã®ã©ã³ãµã ãŠã§ã¢ã¯ãããŒã¿ãæå·åããã ãã§ãªãããããçªåãããäºéã®è è¿«ãæŠè¡ãçšããŠãæ©å¯æ å ±ã®å ¬éãè è¿«ããããšã§è¢«å®³è ã«æ¯æãã匷èŠããŸããæå·åãšããŒã¿çªåã®éåºŠã¯æ°ååäœã§æž¬å®ã§ããæåã®å¯Ÿå¿èœåãå§åããŸãã
- ãµãã©ã€ãã§ãŒã³æ»æïŒ ä¿¡é Œãããåäžã®ãã³ããŒã䟵害ããããšã§ãæ»æè ã¯å€æ°ã®äžæµé¡§å®¢ãžã®ã¢ã¯ã»ã¹ãåŸãããšãã§ããããã¯æ°åã®çµç¹ã«åæã«åœ±é¿ãäžããé倧ãªã°ããŒãã«ã€ã³ã·ãã³ãã§äŸèšŒãããŠããŸãããã®ãããªåºç¯å²ã«ããã圱é¿ã®æåã§ã®è¿œè·¡ã¯ãã»ãŒäžå¯èœã§ãã
- IoT/OTã®è匱æ§ïŒ ã¢ãã®ã€ã³ã¿ãŒãããïŒIoTïŒããã€ã¹ã®æ¥å¢ãšã補é ããšãã«ã®ãŒããã«ã¹ã±ã¢ãªã©ã®ç£æ¥ã«ãããITãšãªãã¬ãŒã·ã§ãã«ãã¯ãããžãŒïŒOTïŒãããã¯ãŒã¯ã®èåã¯ãæ°ããªè匱æ§ãçã¿åºããŠããŸãããããã®ã·ã¹ãã ãžã®æ»æã¯ãç©ççãªãçŸå®äžçãžã®åœ±é¿ãåãŒãå¯èœæ§ãããã峿ãã€èªååããã察å¿ãæ±ããããŸãã
äŸµå®³ãšæšªå±éã®é床
æ»æè ã¯æ©æ¢°ã®ãããªéåºŠã§æŽ»åããŸãããããã¯ãŒã¯å ã«äŸµå ¥ãããšã人éã®ããŒã ããããç¹å®ãå°ã蟌ãããããã¯ããã«éããæšªå±éããæš©éãææ Œãããæ°žç¶æ§ã確ç«ããããšãã§ããŸããäžåäžç§ãéèŠã§ãããããæ°åã®é ãããå°ã蟌ããããã€ã³ã·ãã³ããšãäžçäžã§æ°çŸäžä»¶ã®èšé²ã«åœ±é¿ãäžããå€§èŠæš¡ãªããŒã¿äŸµå®³ãšã®åããç®ãšãªãåŸãŸããèªååãããã·ã¹ãã ã¯ããã®æ§è³ªäžãå³åº§ã«åå¿ããããšãã§ããå€ãã®å Žåãéå€§ãªæå®³ãçºçããåã«ãæåããæšªå±éãããŒã¿çªåãé²ãããšãã§ããŸãã
人çèŠçŽ ãšã¢ã©ãŒãç²ã
ã»ãã¥ãªãã£ãªãã¬ãŒã·ã§ã³ã»ã³ã¿ãŒïŒSOCïŒã¯ãæ§ã ãªã»ãã¥ãªãã£ããŒã«ããæ¯æ¥äœåãäœçŸäžãã®ã¢ã©ãŒãã«ãã°ãã°å§åãããŠããŸããããã¯ä»¥äžã®äºæ ã«ã€ãªãããŸãã
- ã¢ã©ãŒãç²ãïŒ ã¢ããªã¹ãã¯èŠåã«éæã«ãªããéèŠãªã¢ã©ãŒããèŠéãããšã«ã€ãªãããŸãã
- çãå°œãçåçŸ€ïŒ çµ¶ãéãªããã¬ãã·ã£ãŒãšå調ãªã¿ã¹ã¯ã¯ããµã€ããŒã»ãã¥ãªãã£å°éå®¶ã®é«ãé¢è·çã®äžå ãšãªããŸãã
- ã¹ãã«äžè¶³ïŒ äžççãªãµã€ããŒã»ãã¥ãªãã£äººæã®äžè¶³ã¯ãçµç¹ãããå€ãã®ã¹ã¿ãããéãããšããŠããè åšã«è¿œãã€ãã®ã«ååãªæ°ãåçŽã«ååšããªãããšãæå³ããŸãã
èªååã¯ããã€ãºãé€å»ããã€ãã³ããçžé¢ãããå®åã¿ã¹ã¯ãèªååããããšã§ãããã®åé¡ã軜æžãã人éã®å°éå®¶ã圌ãã®ãŠããŒã¯ãªèªç¥èœåãå¿ èŠãšããè€éã§æŠç¥çãªè åšã«éäžã§ããããã«ããŸãã
è åšå¯Ÿå¿ã«ãããã»ãã¥ãªãã£èªååãšã¯ïŒ
ãã®æ žå¿ã«ãããŠãã»ãã¥ãªãã£èªååãšã¯ã人éã®ä»å ¥ãæå°éã«æããŠã»ãã¥ãªãã£éçšã®ã¿ã¹ã¯ãå®è¡ããããã«ãã¯ãããžãŒã䜿çšããããšãæããŸããè åšå¯Ÿå¿ã®æèã§ã¯ããµã€ããŒã€ã³ã·ãã³ãã®æ€ç¥ãåæãå°ã蟌ããæ ¹çµ¶ã埩æ§ã®åã¹ããããèªååããããšã«ç¹ã«é¢ãããŸãã
ã»ãã¥ãªãã£èªååã®å®çŸ©
ã»ãã¥ãªãã£èªååã¯ãå埩çãªã¿ã¹ã¯ãèªååããåçŽãªã¹ã¯ãªãããããè€æ°ã®ã»ãã¥ãªãã£ããŒã«ã«ãŸãããè€éãªã¯ãŒã¯ãããŒããªãŒã±ã¹ãã¬ãŒã·ã§ã³ããé«åºŠãªãã©ãããã©ãŒã ãŸã§ãå¹ åºãæ©èœãå«ã¿ãŸããããã¯ãç¹å®ã®ããªã¬ãŒãæ¡ä»¶ã«åºã¥ããŠå®çŸ©æžã¿ã®ã¢ã¯ã·ã§ã³ãå®è¡ããããã«ã·ã¹ãã ãããã°ã©ãã³ã°ããæäœæ¥ã®åŽåãšå¯Ÿå¿æéãåçã«åæžããããšã«é¢ãããã®ã§ãã
åçŽãªã¹ã¯ãªãããè¶ ããŠïŒãªãŒã±ã¹ãã¬ãŒã·ã§ã³ãšSOAR
åºæ¬çãªã¹ã¯ãªããã«ããã®åœ¹å²ã¯ãããŸãããè åšå¯Ÿå¿ã«ãããçã®ã»ãã¥ãªãã£èªååã¯ããã«é²ãã§ã以äžã掻çšããŸãã
- ã»ãã¥ãªãã£ãªãŒã±ã¹ãã¬ãŒã·ã§ã³ïŒ ããã¯ãç°ãªãã»ãã¥ãªãã£ããŒã«ãã·ã¹ãã ãæ¥ç¶ããããããã·ãŒã ã¬ã¹ã«é£æºããŠåäœã§ããããã«ããããã»ã¹ã§ãããã¡ã€ã¢ãŠã©ãŒã«ããšã³ããã€ã³ãæ€ç¥ã»å¯Ÿå¿ïŒEDRïŒãã»ãã¥ãªãã£æ å ±ã»ã€ãã³ã管çïŒSIEMïŒãã¢ã€ãã³ãã£ãã£ç®¡çã·ã¹ãã ãªã©ã®ãã¯ãããžãŒéã§ãæ å ±ãšã¢ã¯ã·ã§ã³ã®æµããåçåããããšã§ãã
- ã»ãã¥ãªãã£ãªãŒã±ã¹ãã¬ãŒã·ã§ã³ãèªååã察å¿ïŒSOARïŒãã©ãããã©ãŒã ïŒ SOARãã©ãããã©ãŒã ã¯ãçŸä»£ã®èªååãããè åšå¯Ÿå¿ã®åºç€ã§ãããããã¯ã以äžã®ããã®äžå çãªãããæäŸããŸãã
- ãªãŒã±ã¹ãã¬ãŒã·ã§ã³ïŒ ã»ãã¥ãªãã£ããŒã«ãçµ±åããããŒã¿ãšã¢ã¯ã·ã§ã³ã®å ±æãå¯èœã«ããŸãã
- èªååïŒ ã€ã³ã·ãã³ã察å¿ã¯ãŒã¯ãããŒå ã®å®åçã§å埩çãªã¿ã¹ã¯ãèªååããŸãã
- ã±ãŒã¹ç®¡çïŒ ã»ãã¥ãªãã£ã€ã³ã·ãã³ãã管çããããã®æ§é åãããç°å¢ãæäŸãããã°ãã°ãã¬ã€ããã¯ãå«ã¿ãŸãã
- ãã¬ã€ããã¯ïŒ ç¹å®ã®çš®é¡ã®ã»ãã¥ãªãã£ã€ã³ã·ãã³ããžã®å¯Ÿå¿ãå°ããäºåå®çŸ©ãããèªåãŸãã¯åèªåã®ã¯ãŒã¯ãããŒãäŸãã°ããã£ãã·ã³ã°ã€ã³ã·ãã³ãçšã®ãã¬ã€ããã¯ã¯ãã¡ãŒã«ãèªåçã«åæããéä¿¡è ã®ã¬ãã¥ããŒã·ã§ã³ã確èªããæ·»ä»ãã¡ã€ã«ãéé¢ããæªæã®ããURLããããã¯ãããããããŸããã
èªååãããè åšå¯Ÿå¿ã®äž»èŠãªæ±
è åšå¯Ÿå¿ã«ããã广çãªã»ãã¥ãªãã£èªååã¯ãéåžžã3ã€ã®çžäºã«é¢é£ããæ±ã«äŸåããŠããŸãã
- èªåæ€ç¥ïŒ AI/MLãè¡ååæãè åšã€ã³ããªãžã§ã³ã¹ã掻çšããŠãç°åžžã䟵害ã®çè·¡ïŒIoCïŒãé«ã粟床ãšé床ã§ç¹å®ããŸãã
- èªååæãšãšã³ãªããã¡ã³ãïŒ è åšã«é¢ãã远å ã®ã³ã³ããã¹ãïŒäŸïŒIPã¬ãã¥ããŒã·ã§ã³ã®ç¢ºèªããµã³ãããã¯ã¹ã§ã®ãã«ãŠã§ã¢çœ²åã®åæãå éšãã°ã®ã¯ãšãªïŒãèªåçã«åéãããã®æ·±å»åºŠãšç¯å²ãè¿ éã«å€æããŸãã
- èªå察å¿ãšä¿®åŸ©ïŒ æ€ç¥ãšæ€èšŒãå®äºæ¬¡ç¬¬ã䟵害ããããšã³ããã€ã³ãã®éé¢ãæªæã®ããIPã®ãããã¯ããŠãŒã¶ãŒã¢ã¯ã»ã¹ã®åãæ¶ãããããå±éã®éå§ãªã©ãäºåå®çŸ©ãããã¢ã¯ã·ã§ã³ãå³åº§ã«å®è¡ããŸãã
èªååãããè åšå¯Ÿå¿ã®äžæ žãšãªãå©ç¹
ã»ãã¥ãªãã£èªååãè åšå¯Ÿå¿ã«çµ±åããå©ç¹ã¯ãæ·±ãåºç¯å²ã«ããããã»ãã¥ãªãã£äœå¶ã ãã§ãªããéçšå¹çãäºæ¥ç¶ç¶æ§ã«ã圱é¿ãäžããŸãã
åäŸã®ãªãéåºŠãšæ¡åŒµæ§
- ããªç§åäœã®åå¿ïŒ æ©æ¢°ã¯ããªç§åäœã§æ å ±ãåŠçããã³ãã³ããå®è¡ã§ããããããããã¯ãŒã¯å ã§ã®æ»æè ã®ãæœäŒæéããå€§å¹ ã«ççž®ããŸãããã®é床ã¯ãããªã¢ãŒãã£ãã¯ãã«ãŠã§ã¢ãæ¥éãªã©ã³ãµã ãŠã§ã¢å±éã®ãããªé«éã§åãè åšã軜æžããããã«äžå¯æ¬ ã§ãã
- 幎äžç¡äŒã®å¯Ÿå¿ïŒ èªååã¯ç²ãããäŒæ©ãå¿ èŠãšããã24æé365æ¥çšŒåãããã¹ãŠã®ã¿ã€ã ãŸãŒã³ã§ç¶ç¶çãªç£èŠãšå¯Ÿå¿èœåã確ä¿ããŸããããã¯ãã°ããŒãã«ã«åæ£ããçµç¹ã«ãšã£ãŠæ¥µããŠéèŠãªå©ç¹ã§ãã
- 容æãªæ¡åŒµïŒ çµç¹ãæé·ããããæ»æã®éãå¢å ãããããŠããèªååã·ã¹ãã ã¯äººçè³æºã®æ¯äŸçãªå¢å ãå¿ èŠãšããã«è² è·ã«å¯Ÿå¿ã§ããŸããããã¯ãå€§äŒæ¥ãè€æ°ã®ã¯ã©ã€ã¢ã³ããæ±ããããŒãžãã»ãã¥ãªãã£ãµãŒãã¹ãããã€ããŒïŒMSSPïŒã«ãšã£ãŠç¹ã«æçã§ãã
粟床ã®åäžãšäžè²«æ§
- ãã¥ãŒãã³ãšã©ãŒã®æé€ïŒ å埩çãªæäœæ¥ã¯ãç¹ã«ãã¬ãã·ã£ãŒã®äžã§ã¯ãã¥ãŒãã³ãšã©ãŒãèµ·ããããããªããŸããèªååã¯ãäºåå®çŸ©ãããã¢ã¯ã·ã§ã³ãæ£ç¢ºãã€äžè²«ããŠå®è¡ããã€ã³ã·ãã³ããæªåãããå¯èœæ§ã®ãããã¹ã®ãªã¹ã¯ãäœæžããŸãã
- æšæºåããã察å¿ïŒ ãã¬ã€ããã¯ã¯ãç¹å®ã®çš®é¡ã®ãã¹ãŠã®ã€ã³ã·ãã³ããããã¹ããã©ã¯ãã£ã¹ãšçµç¹ã®ããªã·ãŒã«åŸã£ãŠåŠçãããããšãä¿èšŒããäžè²«ããçµæãšã³ã³ãã©ã€ã¢ã³ã¹ã®åäžã«ã€ãªãããŸãã
- 誀æ€ç¥ã®åæžïŒ é«åºŠãªèªååããŒã«ãç¹ã«æ©æ¢°åŠç¿ãšçµ±åããããã®ã¯ãæ£åœãªã¢ã¯ãã£ããã£ãšæªæã®ããè¡åãããè¯ãåºå¥ã§ããã¢ããªã¹ãã®æéãæµªè²»ãã誀æ€ç¥ã®æ°ãæžããããšãã§ããŸãã
ãã¥ãŒãã³ãšã©ãŒãšã¢ã©ãŒãç²ãã®è»œæž
å®åçãªã€ã³ã·ãã³ãã®åæããªã¢ãŒãžã調æ»ãããã«ã¯å°ã蟌ãã®ã¹ããããèªååããããšã§ãã»ãã¥ãªãã£ããŒã ã¯ä»¥äžã®ããšãå¯èœã«ãªããŸãã
- æŠç¥çãªè åšãžã®éäžïŒ ã¢ããªã¹ãã¯ãéå±ã§å埩çãªã¿ã¹ã¯ããè§£æŸããã圌ãã®èªç¥èœåãæ¹å€çæèã調æ»èœåãçã«å¿ èŠãšãããè€éã§åœ±é¿ã®å€§ããã€ã³ã·ãã³ãã«éäžããããšãã§ããŸãã
- è·åæºè¶³åºŠã®åäžïŒ å§åçãªéã®ã¢ã©ãŒããšéå±ãªã¿ã¹ã¯ãæžããããšã¯ãè·åæºè¶³åºŠã®åäžã«è²¢ç®ãã貎éãªãµã€ããŒã»ãã¥ãªãã£äººæã®å®çãå©ããŸãã
- ã¹ãã«æŽ»çšã®æé©åïŒ é«åºŠãªã¹ãã«ãæã€ã»ãã¥ãªãã£å°éå®¶ã¯ãæãŠããªããã°ããµããåããã®ã§ã¯ãªããé«åºŠãªè åšã«åãçµãããšã§ããã广çã«é 眮ãããŸãã
ã³ã¹ãå¹çãšãªãœãŒã¹ã®æé©å
åææè³ã¯ãããŸãããã»ãã¥ãªãã£èªååã¯é·æçã«å€§å¹ ãªã³ã¹ãåæžããããããŸãã
- éçšã³ã¹ãã®åæžïŒ æåä»å ¥ãžã®äŸå床ãäœããªãããšã¯ãã€ã³ã·ãã³ããããã®äººä»¶è²»ãäœããªãããšãæå³ããŸãã
- 䟵害ã³ã¹ãã®æå°åïŒ ããéãæ€ç¥ãšå¯Ÿå¿ã¯ãèŠå¶äžã®çœ°éã蚎èšè²»çšãè©å€ã®æå®³ãäºæ¥ã®äžæãªã©ãå«ã䟵害ã®ééç圱é¿ã軜æžããŸããäŸãã°ãããã°ããŒãã«ãªèª¿æ»ã§ã¯ãèªååã®ã¬ãã«ãé«ãçµç¹ã¯ãèªååãæå°éã®çµç¹ã«æ¯ã¹ãŠã䟵害ã³ã¹ããå€§å¹ ã«äœãããšã瀺ããããããããŸããã
- æ¢åããŒã«ãžã®ROIåäžïŒ èªååãã©ãããã©ãŒã ã¯ãæ¢åã®ã»ãã¥ãªãã£æè³ïŒSIEMãEDRããã¡ã€ã¢ãŠã©ãŒã«ãIAMïŒãçµ±åãããã®äŸ¡å€ãæå€§åããããšãã§ããããããå€ç«ãããµã€ããšããŠã§ã¯ãªãã飿ºããŠæ©èœããããšãä¿èšŒããŸãã
ããã¢ã¯ãã£ããªé²åŸ¡ãšäºæž¬èœå
é«åºŠãªåæã𿩿¢°åŠç¿ãšçµã¿åãããããšã§ãã»ãã¥ãªãã£èªååã¯ååçãªå¯Ÿå¿ããããã¢ã¯ãã£ããªé²åŸ¡ãžãšç§»è¡ã§ããŸãã
- äºæž¬åæïŒ å°æ¥ã®æœåšçãªè åšã瀺ããã¿ãŒã³ãç°åžžãç¹å®ããå å¶çãªã¢ã¯ã·ã§ã³ãå¯èœã«ããŸãã
- èªååãããè匱æ§ç®¡çïŒ æªçšãããåã«è匱æ§ãèªåçã«ç¹å®ããããããé©çšããããšããå¯èœã§ãã
- é©å¿åé²åŸ¡ïŒ ã·ã¹ãã ã¯éå»ã®ã€ã³ã·ãã³ãããåŠç¿ããæ°ããªè åšã«å¯ŸããŠããè¯ãé²åŸ¡ããããã«ã»ãã¥ãªãã£å¶åŸ¡ãèªåçã«èª¿æŽã§ããŸãã
è åšå¯Ÿå¿ã«ãããã»ãã¥ãªãã£èªååã®äž»èŠåé
ã»ãã¥ãªãã£èªååã¯ãè åšå¯Ÿå¿ã©ã€ããµã€ã¯ã«ã®å€ãã®ãã§ãŒãºã«ããã£ãŠé©çšã§ããå€§å¹ ãªæ¹åããããããŸãã
èªååãããã¢ã©ãŒãã®ããªã¢ãŒãžãšåªå é äœä»ã
ããã¯ãå€ãã®å Žåãèªååã«ãšã£ãŠæåã§æã圱é¿åã®ããåéã§ããã¢ããªã¹ãããã¹ãŠã®ã¢ã©ãŒããæåã§ã¬ãã¥ãŒãã代ããã«ïŒ
- çžé¢åæïŒ ç°ãªããœãŒã¹ïŒäŸïŒãã¡ã€ã¢ãŠã©ãŒã«ãã°ããšã³ããã€ã³ãã¢ã©ãŒããIDãã°ïŒããã®ã¢ã©ãŒããèªåçã«çžé¢ãããæœåšçãªã€ã³ã·ãã³ãã®å šäœåã圢æããŸãã
- ãšã³ãªããã¡ã³ãïŒ å éšããã³å€éšãœãŒã¹ïŒäŸïŒè åšã€ã³ããªãžã§ã³ã¹ãã£ãŒããè³ç£ããŒã¿ããŒã¹ããŠãŒã¶ãŒãã£ã¬ã¯ããªïŒããã³ã³ããã¹ãæ å ±ãèªåçã«ååŸããã¢ã©ãŒãã®æ£åœæ§ãšæ·±å»åºŠã倿ããŸããäŸãã°ãSOARãã¬ã€ããã¯ã¯ãã¢ã©ãŒããããIPã¢ãã¬ã¹ãæ¢ç¥ã®æªæã®ãããã®ã§ããããé¢äžããŠãããŠãŒã¶ãŒã髿š©éã§ãããã圱é¿ãåããè³ç£ãéèŠã€ã³ãã©ã§ããããèªåçã«ç¢ºèªãããããããŸããã
- åªå é äœä»ãïŒ çžé¢åæãšãšã³ãªããã¡ã³ãã«åºã¥ããã¢ã©ãŒããèªåçã«åªå é äœä»ããã髿·±å»åºŠã®ã€ã³ã·ãã³ããå³åº§ã«ãšã¹ã«ã¬ãŒã·ã§ã³ãããããã«ããŸãã
ã€ã³ã·ãã³ãã®å°ã蟌ããšä¿®åŸ©
è åšã確èªããããšãèªååãããã¢ã¯ã·ã§ã³ãè¿ éã«ãããå°ã蟌ãã修埩ã§ããŸãã
- ãããã¯ãŒã¯éé¢ïŒ 䟵害ãããããã€ã¹ãèªåçã«éé¢ãããã¡ã€ã¢ãŠã©ãŒã«ã§æªæã®ããIPã¢ãã¬ã¹ããããã¯ãããŸãã¯ãããã¯ãŒã¯ã»ã°ã¡ã³ããç¡å¹ã«ããŸãã
- ãšã³ããã€ã³ãã®ä¿®åŸ©ïŒ ãšã³ããã€ã³ãäžã§æªæã®ããããã»ã¹ãèªåçã«åŒ·å¶çµäºããããã«ãŠã§ã¢ãåé€ãããŸãã¯ã·ã¹ãã ã®å€æŽãå ã«æ»ããŸãã
- ã¢ã«ãŠã³ãäŸµå®³ïŒ ãŠãŒã¶ãŒã®ãã¹ã¯ãŒããèªåçã«ãªã»ãããã䟵害ãããã¢ã«ãŠã³ããç¡å¹ã«ãããŸãã¯å€èŠçŽ èªèšŒïŒMFAïŒã匷å¶ããŸãã
- ããŒã¿æŒæŽ©é²æ¢ïŒ çãããããŒã¿è»¢éãèªåçã«ãããã¯ãŸãã¯éé¢ããŸãã
ã°ããŒãã«ãªéèæ©é¢ãåŸæ¥å¡ã®ã¯ãŒã¯ã¹ããŒã·ã§ã³ããç°åžžãªã¢ãŠãããŠã³ãããŒã¿è»¢éãæ€åºããã·ããªãªãèããŠã¿ãŸããããèªååããããã¬ã€ããã¯ã¯ãå³åº§ã«è»¢éã確èªããå®å IPãã°ããŒãã«ãªè åšã€ã³ããªãžã§ã³ã¹ãšç §åããã¯ãŒã¯ã¹ããŒã·ã§ã³ããããã¯ãŒã¯ããéé¢ãããŠãŒã¶ãŒã®ã¢ã«ãŠã³ããäžæåæ¢ãã人éã®ã¢ããªã¹ãã«èŠåããããšãã§ããŸã â ããããã¹ãŠãæ°ç§ä»¥å ã«è¡ããŸãã
è åšã€ã³ããªãžã§ã³ã¹ã®çµ±åãšãšã³ãªããã¡ã³ã
èªååã¯ãèšå€§ãªéã®ã°ããŒãã«ãªè åšã€ã³ããªãžã§ã³ã¹ã掻çšããããã«äžå¯æ¬ ã§ãã
- èªååã蟌ã¿ïŒ æ§ã ãªãœãŒã¹ïŒåçšããªãŒãã³ãœãŒã¹ãæ¥çå¥ã®ISAC/ISAOãªã©ãç°ãªãå°åããã®ãã®ïŒããè åšã€ã³ããªãžã§ã³ã¹ãã£ãŒããèªåçã«åã蟌ã¿ãæ£èŠåããŸãã
- ã³ã³ããã¹ãåïŒ å éšãã°ãã¢ã©ãŒããè åšã€ã³ããªãžã§ã³ã¹ãšèªåçã«ç §åããç¹å®ã®ããã·ã¥ããã¡ã€ã³ãIPã¢ãã¬ã¹ãªã©ã®æ¢ç¥ã®æªæã®ããææšïŒIoCïŒãç¹å®ããŸãã
- ããã¢ã¯ãã£ããªãããã¯ïŒ ãã¡ã€ã¢ãŠã©ãŒã«ãäŸµå ¥é²æ¢ã·ã¹ãã ïŒIPSïŒããã®ä»ã®ã»ãã¥ãªãã£å¶åŸ¡ãæ°ããIoCã§èªåçã«æŽæ°ããæ¢ç¥ã®è åšããããã¯ãŒã¯ã«äŸµå ¥ããåã«ãããã¯ããŸãã
è匱æ§ç®¡çãšãããé©çš
ãã°ãã°å¥ã®åéãšèŠãªãããŸãããèªååã¯è匱æ§å¯Ÿå¿ãå€§å¹ ã«åŒ·åã§ããŸãã
- èªåã¹ãã£ã³ïŒ ã°ããŒãã«ãªè³ç£å šäœã§è匱æ§ã¹ãã£ã³ãèªåçã«ã¹ã±ãžã¥ãŒã«ããå®è¡ããŸãã
- åªå é äœä»ããããä¿®åŸ©ïŒ æ·±å»åºŠãæªçšå¯èœæ§ïŒãªã¢ã«ã¿ã€ã ã®è åšã€ã³ããªãžã§ã³ã¹ã䜿çšïŒãè³ç£ã®éèŠåºŠã«åºã¥ããŠè匱æ§ãèªåçã«åªå é äœä»ããããããé©çšã¯ãŒã¯ãããŒãããªã¬ãŒããŸãã
- ãããå±éïŒ å Žåã«ãã£ãŠã¯ãèªååã·ã¹ãã ããããå±éãæ§æå€æŽãéå§ããããšãã§ããç¹ã«äœãªã¹ã¯ã§å€§éã®è匱æ§ã«å¯ŸããŠãé²åºæéãççž®ããŸãã
ã³ã³ãã©ã€ã¢ã³ã¹ãšã¬ããŒãã®èªåå
ã°ããŒãã«ãªèŠå¶èŠä»¶ïŒäŸïŒGDPRãCCPAãHIPAAãISO 27001ãPCI DSSïŒãæºããããšã¯ãå€§èŠæš¡ãªåãçµã¿ã§ããèªååã¯ãããåçåã§ããŸãã
- èªåããŒã¿åéïŒ ã³ã³ãã©ã€ã¢ã³ã¹ã¬ããŒãã«å¿ èŠãªãã°ããŒã¿ãã€ã³ã·ãã³ã詳现ãç£æ»èšŒè·¡ãèªåçã«åéããŸãã
- ã¬ããŒãçæïŒ ã³ã³ãã©ã€ã¢ã³ã¹ã¬ããŒããèªåçã«çæããã»ãã¥ãªãã£ããªã·ãŒãèŠå¶èŠä»¶ãžã®æºæ ã蚌æããŸããããã¯ã倿§ãªå°åã®èŠå¶ã«çŽé¢ããå€åœç±äŒæ¥ã«ãšã£ãŠäžå¯æ¬ ã§ãã
- ç£æ»èšŒè·¡ã®ç¶æïŒ ãã¹ãŠã®ã»ãã¥ãªãã£ã¢ã¯ã·ã§ã³ã®å æ¬çã§äžå€ã®èšé²ã確ä¿ãããã©ã¬ã³ãžãã¯èª¿æ»ãç£æ»ãæ¯æŽããŸãã
ãŠãŒã¶ãŒããã³ãšã³ãã£ãã£ã®è¡ååæïŒUEBAïŒå¯Ÿå¿
UEBAãœãªã¥ãŒã·ã§ã³ã¯ãå éšè åšã䟵害ãããã¢ã«ãŠã³ãã瀺ãå¯èœæ§ã®ããç°åžžãªè¡åãç¹å®ããŸããèªååã¯ããããã®ã¢ã©ãŒãã«åºã¥ããŠå³åº§ã«è¡åãèµ·ããããšãã§ããŸãã
- èªåãªã¹ã¯ã¹ã³ã¢ãªã³ã°ïŒ çãããæŽ»åã«åºã¥ããŠãŠãŒã¶ãŒã®ãªã¹ã¯ã¹ã³ã¢ããªã¢ã«ã¿ã€ã ã§èª¿æŽããŸãã
- é©å¿åã¢ã¯ã»ã¹å¶åŸ¡ïŒ ãã峿 ŒãªèªèšŒèŠä»¶ïŒäŸïŒã¹ãããã¢ããMFAïŒãèªåçã«ããªã¬ãŒããããé«ãªã¹ã¯ã®è¡åã瀺ããŠãŒã¶ãŒã®ã¢ã¯ã»ã¹ãäžæçã«åãæ¶ããŸãã
- 調æ»ã®ããªã¬ãŒïŒ UEBAã¢ã©ãŒããé倧ãªéŸå€ã«éãããšãã«ã人éã®ã¢ããªã¹ãã®ããã«è©³çްãªã€ã³ã·ãã³ããã±ãããèªåçã«äœæããŸãã
ã»ãã¥ãªãã£èªååã®å®è£ ïŒæŠç¥çã¢ãããŒã
ã»ãã¥ãªãã£èªååã®æ¡çšã¯ãç®çå°ã§ã¯ãªãæ ã§ããç¹ã«è€éãªã°ããŒãã«ãªãããããªã³ããæã€çµç¹ã«ãšã£ãŠãæ§é åãããæ®µéçãªã¢ãããŒããæåã®éµã§ãã
ã¹ããã1ïŒçŸåšã®ã»ãã¥ãªãã£äœå¶ãšã®ã£ããã®è©äŸ¡
- è³ç£ã®æ£åžãïŒ ä¿è·ããå¿ èŠããããã® â ãšã³ããã€ã³ãããµãŒããŒãã¯ã©ãŠãã€ã³ã¹ã¿ã³ã¹ãIoTããã€ã¹ãéèŠãªããŒã¿ãªã©ããªã³ãã¬ãã¹ããã³æ§ã ãªã°ããŒãã«ã¯ã©ãŠããªãŒãžã§ã³ã«ãããè³ç£ãçè§£ããŸãã
- çŸåšã®ããã»ã¹ã®ãããã³ã°ïŒ æ¢åã®æåã€ã³ã·ãã³ã察å¿ã¯ãŒã¯ãããŒãææžåããããã«ããã¯ãå埩çãªã¿ã¹ã¯ããã¥ãŒãã³ãšã©ãŒãçºçããããé åãç¹å®ããŸãã
- äž»èŠãªåé¡ç¹ã®ç¹å®ïŒ ã»ãã¥ãªãã£ããŒã ã®æå€§ã®èŠåŽã¯ã©ãã§ããïŒïŒäŸïŒå€ããã誀æ€ç¥ãé ãå°ã蟌ãæéãã°ããŒãã«SOCéã§ã®è åšã€ã³ããªãžã§ã³ã¹å ±æã®å°é£ãïŒã
ã¹ããã2ïŒæç¢ºãªèªååã®ç®æšãšãŠãŒã¹ã±ãŒã¹ã®å®çŸ©
å ·äœçã§éæå¯èœãªç®æšããå§ããŸããäžåºŠã«ãã¹ãŠãèªååããããšããªãã§ãã ããã
- 倧éãã€äœè€é床ã®ã¿ã¹ã¯ïŒ é »ç¹ã§ãæç¢ºã«å®çŸ©ããã人éã®å€æãæå°éããå¿ èŠãšããªãã¿ã¹ã¯ïŒäŸïŒIPããããã³ã°ããã£ãã·ã³ã°ã¡ãŒã«åæãåºæ¬çãªãã«ãŠã§ã¢å°ã蟌ãïŒããèªååãå§ããŸãã
- 圱é¿ã®å€§ããã·ããªãªïŒ äžè¬çãªæ»æã¿ã€ãã«å¯Ÿããæ€ç¥å¹³åæéïŒMTTDïŒã察å¿å¹³åæéïŒMTTRïŒã®ççž®ãªã©ãæã峿çãã€å ·äœçãªå©çããããããŠãŒã¹ã±ãŒã¹ã«çŠç¹ãåœãŠãŸãã
- ã°ããŒãã«ã«é¢é£ããã·ããªãªïŒ ã°ããŒãã«ãªäºæ¥å šäœã§å ±éã®è åšïŒäŸïŒåºç¯å²ã«ããããã£ãã·ã³ã°ãã£ã³ããŒã³ãäžè¬çãªãã«ãŠã§ã¢ãå ±éã®èåŒ±æ§æªçšïŒãèæ ®ããŸãã
ã¹ããã3ïŒé©åãªãã¯ãããžãŒã®éžæïŒSOARãSIEMãEDRãXDRïŒ
å ç¢ãªã»ãã¥ãªãã£èªååæŠç¥ã¯ããã°ãã°ããã€ãã®äž»èŠãªãã¯ãããžãŒã®çµ±åã«äŸåããŸãã
- SOARãã©ãããã©ãŒã ïŒ ãªãŒã±ã¹ãã¬ãŒã·ã§ã³ãšèªååã®ããã®äžæ¢ç¥çµç³»ãæ¢åã®ããŒã«ãšã®åŒ·åãªçµ±åèœåãšæè»ãªãã¬ã€ããã¯ãšã³ãžã³ãæã€ãã©ãããã©ãŒã ãéžæããŸãã
- SIEMïŒã»ãã¥ãªãã£æ å ±ã»ã€ãã³ã管çïŒïŒ éäžåããããã°åéãçžé¢åæãã¢ã©ãŒãçºä¿¡ã«äžå¯æ¬ ã§ããSIEMã¯ãèªåå¿çã®ããã«SOARãã©ãããã©ãŒã ã«ã¢ã©ãŒãããã£ãŒãããŸãã
- EDRïŒãšã³ããã€ã³ãæ€ç¥ã»å¯Ÿå¿ïŒ/ XDRïŒæ¡åŒµæ€ç¥ã»å¯Ÿå¿ïŒïŒ ãšã³ããã€ã³ãããã³è€æ°ã®ã»ãã¥ãªãã£å±€ïŒãããã¯ãŒã¯ãã¯ã©ãŠããIDãã¡ãŒã«ïŒã«ãããæ·±ãå¯èŠæ§ãšå¶åŸ¡ãæäŸããèªååãããå°ã蟌ããšä¿®åŸ©ã¢ã¯ã·ã§ã³ãå¯èœã«ããŸãã
- è åšã€ã³ããªãžã§ã³ã¹ãã©ãããã©ãŒã ïŒTIPïŒïŒ SOARãšçµ±åããŠããªã¢ã«ã¿ã€ã ã§å®çšçãªè åšããŒã¿ãæäŸããŸãã
ã¹ããã4ïŒãã¬ã€ããã¯ãšã¯ãŒã¯ãããŒã®éçº
ãããèªååã®äžæ žã§ãããã¬ã€ããã¯ã¯ãèªååããã察å¿ã¹ããããå®çŸ©ããŸãããããã¯ä»¥äžã®ããã§ããã¹ãã§ãã
- è©³çŽ°ïŒ ãã¹ãŠã®ã¹ããããæ±ºå®ç¹ãã¢ã¯ã·ã§ã³ãæç¢ºã«æŠèª¬ããŸãã
- ã¢ãžã¥ãŒã«åŒïŒ è€éãªå¯Ÿå¿ããããå°ãããåå©çšå¯èœãªã³ã³ããŒãã³ãã«åè§£ããŸãã
- é©å¿æ§ïŒ ã€ã³ã·ãã³ãã®ããªãšãŒã·ã§ã³ãåŠçããããã®æ¡ä»¶ä»ãããžãã¯ãå«ã¿ãŸãïŒäŸïŒé«æš©éãŠãŒã¶ãŒã圱é¿ãåããå Žåã¯å³åº§ã«ãšã¹ã«ã¬ãŒã·ã§ã³ãæšæºãŠãŒã¶ãŒã®å Žåã¯èªåéé¢ãç¶è¡ïŒã
- 人éã«ããã¬ãã¥ãŒãšæ¿èªïŒHuman-in-the-LoopïŒïŒ ç¹ã«å°å ¥ã®åææ®µéã圱é¿ã®å€§ããã¢ã¯ã·ã§ã³ã«å¯ŸããŠãéèŠãªæ±ºå®ç¹ã§äººéã®ã¬ãã¥ãŒãšæ¿èªãèš±å¯ããããã«ãã¬ã€ããã¯ãèšèšããŸãã
ã¹ããã5ïŒå°ããå§ããå埩ããæ¡åŒµãã
ãããã°ãã³ãã¢ãããŒãã詊ã¿ãªãã§ãã ãããèªååãæ®µéçã«å®è£ ããŸãã
- ãã€ãããããã°ã©ã ïŒ ãã¹ãç°å¢ãŸãã¯ãããã¯ãŒã¯ã®ééèŠã»ã°ã¡ã³ãã§ãããã€ãã®æç¢ºã«å®çŸ©ããããŠãŒã¹ã±ãŒã¹ããå§ããŸãã
- 枬å®ãšæ¹åïŒ èªååãããã¯ãŒã¯ãããŒã®æå¹æ§ãç¶ç¶çã«ç£èŠããŸããMTTRã誀æ€ç¥çãã¢ããªã¹ãã®å¹çãªã©ã®äž»èŠãªã¡ããªã¯ã¹ã远跡ããŸããå®éã®ããã©ãŒãã³ã¹ã«åºã¥ããŠãã¬ã€ããã¯ã調æŽããæé©åããŸãã
- 段éçãªæ¡åŒµïŒ æåããããããè€éãªã·ããªãªãç°ãªãéšéãã°ããŒãã«ãªãŒãžã§ã³ã«ããã£ãŠèªååãåŸã ã«æ¡å€§ããŸããåŠãã æèšãæåãããã¬ã€ããã¯ãçµç¹ã®ã°ããŒãã«ã»ãã¥ãªãã£ããŒã å šäœã§å ±æããŸãã
ã¹ããã6ïŒèªååãšç¶ç¶çæ¹åã®æåã®è²æ
ãã¯ãããžãŒã ãã§ã¯ååã§ã¯ãããŸãããæåè£ã®å°å ¥ã«ã¯çµç¹çãªè³åãå¿ èŠã§ãã
- ãã¬ãŒãã³ã°ïŒ ã»ãã¥ãªãã£ã¢ããªã¹ããèšç·ŽããŠãèªååã·ã¹ãã ãšé£æºãããã¬ã€ããã¯ãçè§£ããããæŠç¥çãªã¿ã¹ã¯ã®ããã«èªååãæŽ»çšã§ããããã«ããŸãã
- ã³ã©ãã¬ãŒã·ã§ã³ïŒ ã·ãŒã ã¬ã¹ãªçµ±åãšéçšäžã®é£æºã確ä¿ããããã«ãã»ãã¥ãªãã£ãITéçšãéçºããŒã éã®ã³ã©ãã¬ãŒã·ã§ã³ã奚å±ããŸãã
- ãã£ãŒãããã¯ã«ãŒãïŒ ã¢ããªã¹ããèªååã¯ãŒã¯ãããŒã«é¢ãããã£ãŒãããã¯ãæäŸããã¡ã«ããºã ã確ç«ããæ°ããè åšãçµç¹ã®å€æŽãžã®ç¶ç¶çãªæ¹åãšé©å¿ãä¿èšŒããŸãã
ã»ãã¥ãªãã£èªååã«ããã課é¡ãšèæ ®äºé
å©ç¹ã¯é åçã§ãããçµç¹ã¯æœåšçãªé害ãšãããã广çã«ä¹ãè¶ããæ¹æ³ãèªèããªããã°ãªããŸããã
åææè³ãšè€éã
å æ¬çãªã»ãã¥ãªãã£èªååãœãªã¥ãŒã·ã§ã³ãç¹ã«SOARãã©ãããã©ãŒã ãå°å ¥ããã«ã¯ããã¯ãããžãŒã©ã€ã»ã³ã¹ãçµ±åäœæ¥ãã¹ã¿ããã®ãã¬ãŒãã³ã°ã«å€é¡ã®å è¡æè³ãå¿ èŠã§ããç¹ã«ãã°ããŒãã«ã«åæ£ããã€ã³ãã©ãæã€å€§èŠæš¡ãªã¬ã¬ã·ãŒç°å¢ã§ã¯ãç°ãªãã·ã¹ãã ãçµ±åããè€éãã¯çžåœãªãã®ã«ãªãåŸãŸãã
éå°ãªèªååãšèª€æ€ç¥
é©åãªæ€èšŒãªãã«ç²ç®çã«å¯Ÿå¿ãèªååãããšãæãŸãããªãçµæã«ã€ãªããå¯èœæ§ããããŸããäŸãã°ã誀æ€ç¥ã«å¯ŸããéåºŠã«æ»æçãªèªå察å¿ã¯ã以äžã®äºæ ãåŒãèµ·ããå¯èœæ§ããããŸãã
- æ£åœãªããžãã¹ãã©ãã£ãã¯ããããã¯ããéçšã®äžæãåŒãèµ·ããã
- éèŠãªã·ã¹ãã ãéé¢ããããŠã³ã¿ã€ã ã«ã€ãªããã
- æ£åœãªãŠãŒã¶ãŒã¢ã«ãŠã³ãã忢ããçç£æ§ã«åœ±é¿ãäžããã
ç¹ã«å°å ¥ã®åææ®µéã§ã¯ãæœåšçãªå·»ãæ·»ãè¢«å®³ãæ éã«èæ ®ããŠãã¬ã€ããã¯ãèšèšãã圱é¿ã®å€§ããã¢ã¯ã·ã§ã³ã«å¯ŸããŠã¯ã人éã«ããã¬ãã¥ãŒãšæ¿èªããå®è£ ããããšãäžå¯æ¬ ã§ãã
ã³ã³ããã¹ãã®ç¶æãšäººéã®ç£ç£
èªååã¯å®åçãªã¿ã¹ã¯ãåŠçããŸãããè€éãªã€ã³ã·ãã³ãã¯äŸç¶ãšããŠäººéã®çŽæãæ¹å€çæèã調æ»ã¹ãã«ãå¿ èŠãšããŸããã»ãã¥ãªãã£èªååã¯ã人éã®ã¢ããªã¹ãã眮ãæããã®ã§ã¯ãªããè£åŒ·ããã¹ãã§ãã課é¡ã¯ãã©ã®ã¿ã¹ã¯ãå®å šãªèªååã«é©ããŠããããã©ã®ã¿ã¹ã¯ã人éã®æ¿èªã䌎ãåèªååãå¿ èŠãšãããããããŠã©ã®ã¿ã¹ã¯ãå®å šãªäººéã®èª¿æ»ãèŠæ±ããããç¹å®ããé©åãªãã©ã³ã¹ãåãããšã«ãããŸããåœå®¶äž»å°ã®æ»æã«åœ±é¿ãäžããå°æ¿åŠçèŠå ããããŒã¿æŒæŽ©ã€ã³ã·ãã³ãã«åœ±é¿ãäžããç¹å®ã®ããžãã¹ããã»ã¹ãªã©ã®ã³ã³ããã¹ãçè§£ã¯ããã°ãã°äººéã®æŽå¯ãå¿ èŠãšããŸãã
çµ±åã®é害
å€ãã®çµç¹ã¯ãç°ãªããã³ããŒã®å€æ§ãªã»ãã¥ãªãã£ããŒã«ã䜿çšããŠããŸããã·ãŒã ã¬ã¹ãªããŒã¿äº€æãšèªååãããã¢ã¯ã·ã§ã³ãå¯èœã«ããããã«ãããã®ããŒã«ãçµ±åããããšã¯ãè€éã«ãªãå¯èœæ§ããããŸããAPIã®äºææ§ãããŒã¿åœ¢åŒã®éãããã³ããŒåºæã®ãã¥ã¢ã³ã¹ã¯ãç¹ã«ç°ãªãå°åã®ãã¯ãããžãŒã¹ã¿ãã¯ãæã€ã°ããŒãã«äŒæ¥ã«ãšã£ãŠãé倧ãªèª²é¡ãšãªãå¯èœæ§ããããŸãã
ã¹ãã«ã®ã£ãããšãã¬ãŒãã³ã°
èªååãããã»ãã¥ãªãã£ç°å¢ãžã®ç§»è¡ã«ã¯ãæ°ããã¹ãã«ã»ãããå¿ èŠã§ããã»ãã¥ãªãã£ã¢ããªã¹ãã¯ãåŸæ¥ã®ã€ã³ã·ãã³ã察å¿ã ãã§ãªããèªååãã©ãããã©ãŒã ãšãã¬ã€ããã¯ã®æ§æã管çãæé©åæ¹æ³ãçè§£ããå¿ èŠããããŸããããã«ã¯ãã¹ã¯ãªããäœæãAPIã€ã³ã¿ã©ã¯ã·ã§ã³ãã¯ãŒã¯ãããŒèšèšã®ç¥èããã°ãã°å«ãŸããŸãããã®ã®ã£ãããåããããã«ã¯ãç¶ç¶çãªãã¬ãŒãã³ã°ãšã¹ãã«ã¢ãããžã®æè³ãäžå¯æ¬ ã§ãã
èªååãžã®ä¿¡é Œ
èªååã·ã¹ãã ãç¹ã«éèŠãªæ±ºå®ïŒäŸïŒæ¬çªãµãŒããŒã®éé¢ãäž»èŠãªIPç¯å²ã®ãããã¯ïŒãè¡ãã·ã¹ãã ãžã®ä¿¡é Œãç¯ãããšã¯ãæãéèŠã§ãããã®ä¿¡é Œã¯ãéææ§ã®ããéçšãç¶¿å¯ãªãã¹ãããã¬ã€ããã¯ã®å埩çãªæ¹åããããŠäººéã®ä»å ¥ãå¿ èŠãªå Žåãæç¢ºã«çè§£ããããšã«ãã£ãŠåŸãããŸãã
ã°ããŒãã«ãªå®äžçãžã®åœ±é¿ãšäºäŸç޹ä»
倿§ãªæ¥çãå°åã«ããããçµç¹ã¯ã»ãã¥ãªãã£èªååãæŽ»çšããŠãè åšå¯Ÿå¿èœåãå€§å¹ ã«åäžãããŠããŸãã
éèã»ã¯ã¿ãŒïŒè¿ éãªäžæ£æ€ç¥ãšãããã¯
ããã°ããŒãã«éè¡ã¯ãæ¯æ¥äœåãã®äžæ£ãªååŒè©Šè¡ã«çŽé¢ããŠããŸãããããããæåã§ã¬ãã¥ãŒãããããã¯ããããšã¯äžå¯èœã§ãããã»ãã¥ãªãã£èªååãå°å ¥ããããšã§ã圌ãã®ã·ã¹ãã ã¯ä»¥äžã®ããã«ãªããŸããã
- äžæ£æ€ç¥ã·ã¹ãã ãæ±ºæžã²ãŒããŠã§ã€ããã®ã¢ã©ãŒããèªåçã«åã蟌ãã
- 顧客ã®è¡åããŒã¿ãååŒå±¥æŽãã°ããŒãã«ãªIPã¬ãã¥ããŒã·ã§ã³ã¹ã³ã¢ã§ã¢ã©ãŒãããšã³ãªããã¡ã³ãããã
- çãããååŒãå³åº§ã«ãããã¯ãã䟵害ãããã¢ã«ãŠã³ããåçµããé«ãªã¹ã¯ã®ã±ãŒã¹ã«ã€ããŠã¯äººéã®ä»å ¥ãªãã«èª¿æ»ãéå§ããã
ããã«ãããæåããäžæ£ååŒã90%æžå°ããå¯Ÿå¿æéãæ°åããæ°ç§ã«åçã«ççž®ãããè€æ°ã®å€§éžã«ãããè³ç£ãä¿è·ãããŸããã
ãã«ã¹ã±ã¢ïŒå€§èŠæš¡ãªæ£è ããŒã¿ã®ä¿è·
äžçäžã®æ§ã ãªç é¢ãã¯ãªããã¯ã§æ°çŸäžäººã®æ£è èšé²ã管çããããå€§èŠæš¡ãªåœéå»çæäŸè ã¯ãä¿è·å¯Ÿè±¡ä¿å¥æ å ±ïŒPHIïŒã«é¢é£ããã»ãã¥ãªãã£ã¢ã©ãŒãã®éã«èŠåŽããŠããŸããã圌ãã®èªååããã察å¿ã·ã¹ãã ã¯çŸåšã以äžã®ããã«ãªã£ãŠããŸãã
- æ£è èšé²ãžã®ç°åžžãªã¢ã¯ã»ã¹ãã¿ãŒã³ïŒäŸïŒå»åž«ãéåžžã®éšçœ²ãå°ççå°åå€ã§èšé²ã«ã¢ã¯ã»ã¹ããïŒãæ€åºããã
- 掻åãèªåçã«ãã©ã°ä»ããããŠãŒã¶ãŒã®ã³ã³ããã¹ãã調æ»ããé«ãªã¹ã¯ãšå€æãããå Žåã¯ã¢ã¯ã»ã¹ãäžæçã«åæ¢ããã³ã³ãã©ã€ã¢ã³ã¹æ åœè ã«èŠåããã
- èŠå¶éµå®ïŒäŸïŒç±³åœã®HIPAAãæ¬§å·ã®GDPRïŒã®ããã®ç£æ»èšŒè·¡ã®çæãèªååãã忣ããäºæ¥å šäœã§ã®ç£æ»äžã®æäœæ¥ãå€§å¹ ã«åæžããã
è£œé æ¥ïŒãªãã¬ãŒã·ã§ãã«ãã¯ãããžãŒïŒOTïŒã»ãã¥ãªãã£
ã¢ãžã¢ããšãŒããããåç±³ã«å·¥å Žãæã€ããå€åœç±è£œé äŒæ¥ã¯ãç£æ¥å¶åŸ¡ã·ã¹ãã ïŒICSïŒãšOTãããã¯ãŒã¯ããµã€ããŒç©çæ»æããä¿è·ãããšããç¬èªã®èª²é¡ã«çŽé¢ããŠããŸãããè åšå¯Ÿå¿ãèªååããããšã§ã圌ãã¯ä»¥äžã®ããšãå¯èœã«ãªããŸããã
- OTãããã¯ãŒã¯ã§ã®ç°åžžãªã³ãã³ããäžæ£ãªããã€ã¹æ¥ç¶ãç£èŠããã
- éèŠãªçç£ã©ã€ã³ãäžæããããšãªãã䟵害ãããOTãããã¯ãŒã¯ã»ã°ã¡ã³ããèªåçã«ã»ã°ã¡ã³ãåããããçãããããã€ã¹ãéé¢ããã
- OTã»ãã¥ãªãã£ã¢ã©ãŒããITã»ãã¥ãªãã£ã·ã¹ãã ãšçµ±åããèåããè åšã®å šäœåãšäž¡ãã¡ã€ã³ã«ãããèªå察å¿ã¢ã¯ã·ã§ã³ãå¯èœã«ããæœåšçãªå·¥å Žåæ¢ãå®å šã€ã³ã·ãã³ããé²ãã
Eã³ããŒã¹ïŒDDoSæ»æãšãŠã§ãæ»æããã®é²åŸ¡
ããèåãªã°ããŒãã«Eã³ããŒã¹ãã©ãããã©ãŒã ã¯ãçµ¶ãéãªã忣åãµãŒãã¹åŠšå®³ïŒDDoSïŒæ»æããŠã§ãã¢ããªã±ãŒã·ã§ã³æ»æããããæŽ»åãçµéšããŠããŸãã圌ãã®èªååãããã»ãã¥ãªãã£ã€ã³ãã©ã¯ã以äžã®ããšãå¯èœã«ããŠããŸãã
- å€§èŠæš¡ãªãã©ãã£ãã¯ç°åžžãçããããŠã§ããªã¯ãšã¹ãããªã¢ã«ã¿ã€ã ã§æ€åºããã
- ãã©ãã£ãã¯ãã¹ã¯ã©ãã³ã°ã»ã³ã¿ãŒã«èªåçã«ãªã«ãŒããããŠã§ãã¢ããªã±ãŒã·ã§ã³ãã¡ã€ã¢ãŠã©ãŒã«ïŒWAFïŒã«ãŒã«ãå±éãããŸãã¯æªæã®ããIPç¯å²ããããã¯ããã
- AIé§åã®ããã管çãœãªã¥ãŒã·ã§ã³ã掻çšããŠãæ£åœãªãŠãŒã¶ãŒãšæªæã®ããããããèªåçã«åºå¥ãããªã³ã©ã€ã³ãã©ã³ã¶ã¯ã·ã§ã³ãä¿è·ããåšåº«æäœãé²ãã
ããã«ããããã¹ãŠã®ã°ããŒãã«åžå Žã§ãªã³ã©ã€ã³ã¹ãã¢ã®ç¶ç¶çãªå¯çšæ§ã確ä¿ããåçãšé¡§å®¢ã®ä¿¡é Œãä¿è·ããŠããŸãã
ã»ãã¥ãªãã£èªååã®æªæ¥ïŒAIãMLããããŠãã®å ãž
ã»ãã¥ãªãã£èªååã®è»éã¯ã人工ç¥èœïŒAIïŒã𿩿¢°åŠç¿ïŒMLïŒã®é²æ©ãšå¯æ¥ã«çµ¡ã¿åã£ãŠããŸãããããã®ãã¯ãããžãŒã¯ãèªååãã«ãŒã«ããŒã¹ã®å®è¡ãããã€ã³ããªãžã§ã³ãã§é©å¿çãªæææ±ºå®ãžãšæè¯ãããæ å¢ã«ãããŸãã
äºæž¬çè åšå¯Ÿå¿
AIãšMLã¯ãèªååãåã«åå¿ããã ãã§ãªããäºæž¬ããèœåã匷åããŸããè åšã€ã³ããªãžã§ã³ã¹ãéå»ã®ã€ã³ã·ãã³ãããããã¯ãŒã¯ã®æ¯ãèãã®èšå€§ãªããŒã¿ã»ãããåæããããšã§ãAIã¢ãã«ã¯æ»æã®åŸ®åŠãªåå ãç¹å®ããå å¶çãªã¢ã¯ã·ã§ã³ãå¯èœã«ããŸããããã«ã¯ãç¹å®ã®é åã®é²åŸ¡ãèªåçã«åŒ·åãããããããŒããããå±éããããæ¬æ Œçãªã€ã³ã·ãã³ãã«çºå±ããåã«çºçåæã®è åšãç©æ¥µçã«ãã³ãã£ã³ã°ãããããããšãå«ãŸããå¯èœæ§ããããŸãã
èªåŸçãªèªå·±ä¿®åŸ©ã·ã¹ãã
è åšãæ€ç¥ããŠå°ã蟌ããã ãã§ãªããèªããã修埩ãã§ããã·ã¹ãã ãæ³åããŠã¿ãŠãã ãããããã«ã¯ãèªååããããããé©çšãæ§æä¿®åŸ©ãããã«ã¯äŸµå®³ãããã¢ããªã±ãŒã·ã§ã³ããµãŒãã¹ã®èªå·±ä¿®åŸ©ãå«ãŸããŸãã人éã®ç£ç£ã¯äŸç¶ãšããŠéèŠã§ãããç®æšã¯æåä»å ¥ãäŸå€çãªã±ãŒã¹ã«æžããããµã€ããŒã»ãã¥ãªãã£ã®äœå¶ãçã«ã¬ãžãªãšã³ãã§èªå·±é²åŸ¡çãªç¶æ ã«æŒãäžããããšã§ãã
人éãšæ©æ¢°ã®ããŒãã³ã°
æªæ¥ã¯ãæ©æ¢°ã人éãå®å šã«çœ®ãæããããšã§ã¯ãªãããããçžä¹å¹æã®ãã人éãšæ©æ¢°ã®ããŒãã³ã°ã«é¢ãããã®ã§ããèªååã¯ãããŒã¿éçŽãåæåæãè¿ éãªå¯Ÿå¿ãšãã£ãéåŽåãåŠçãã人éã®ã¢ããªã¹ãã¯æŠç¥çãªç£ç£ãè€éãªåé¡è§£æ±ºãå«ççãªæææ±ºå®ããããŠæ°ããªè åšãžã®é©å¿ãæäŸããŸããAIã¯ãéèŠãªæŽå¯ãæµ®äžãããæé©ãªå¯Ÿå¿æŠç¥ãææ¡ããã€ã³ããªãžã§ã³ããªå¯æçžŠå£«ãšããŠæ©èœããæçµçã«ã¯äººéã®ã»ãã¥ãªãã£ããŒã ãã¯ããã«å¹æçãã€å¹ççã«ããŸãã
ããªãã®çµç¹ã®ããã®å®çšçãªæŽå¯
ã»ãã¥ãªãã£èªååã®æ ãå§ããããŸãã¯å éããããçµç¹ã®ããã«ã以äžã®å®çšçãªã¹ããããæ€èšããŠãã ããã
- 倧éãã€äœè€é床ã®ã¿ã¹ã¯ããå§ããïŒ ã¢ããªã¹ãã®æéãå€§å¹ ã«æ¶è²»ãããããçè§£ãããå埩çãªã¿ã¹ã¯ããèªååã®æ ãå§ããŸããããããã«ãããèªä¿¡ãç¯ããè¿ éãªæåã瀺ããããè€éãªã·ããªãªã«åãçµãåã«è²ŽéãªåŠç¿çµéšãæäŸããŸãã
- çµ±åãåªå ããïŒ æçåãããã»ãã¥ãªãã£ã¹ã¿ãã¯ã¯èªååã®é害ã§ããå ç¢ãªAPIãšã³ãã¯ã¿ãæäŸãããœãªã¥ãŒã·ã§ã³ããŸãã¯æ¢åã®ããŒã«ãã·ãŒã ã¬ã¹ã«çµ±åã§ããSOARãã©ãããã©ãŒã ã«æè³ããŠãã ãããããŒã«ãããå€ãéä¿¡ã§ããã»ã©ãèªååã¯ãã广çã«ãªããŸãã
- ãã¬ã€ããã¯ãç¶ç¶çã«æ¹åããïŒ ã»ãã¥ãªãã£ã®è åšã¯çµ¶ããé²åããŠããŸããèªååããããã¬ã€ããã¯ãé²åããªããã°ãªããŸãããæ°ããè åšã€ã³ããªãžã§ã³ã¹ãã€ã³ã·ãã³ãåŸã®ã¬ãã¥ãŒãçµç¹ç°å¢ã®å€åã«åºã¥ããŠããã¬ã€ããã¯ã宿çã«ã¬ãã¥ãŒããã¹ããæŽæ°ããŠãã ããã
- ãã¬ãŒãã³ã°ã«æè³ããïŒ èªååãããæä»£ã«å¿ èŠãªã¹ãã«ãã»ãã¥ãªãã£ããŒã ã«äžããŸããããããã«ã¯ãSOARãã©ãããã©ãŒã ãã¹ã¯ãªããèšèªïŒäŸïŒPythonïŒãAPIã®äœ¿çšæ³ãè€éãªã€ã³ã·ãã³ã調æ»ã®ããã®æ¹å€çæèã«é¢ãããã¬ãŒãã³ã°ãå«ãŸããŸãã
- èªååãšäººéã®å°éç¥èã®ãã©ã³ã¹ãåãïŒ äººçèŠçŽ ãèŠå€±ããªãã§ãã ãããèªååã¯ãå°éå®¶ãæŠç¥çãªåãçµã¿ãè åšãã³ãã£ã³ã°ããããŠäººéã®åµæå·¥å€«ã ããè§£ãæãããçã«æ¬æ°ã§é«åºŠãªæ»æã®åŠçã«éäžã§ããããã«ããã¹ãã§ããæ©å¯æ§ã®é«ãããŸãã¯åœ±é¿ã®å€§ããèªååãããã¢ã¯ã·ã§ã³ã«ã¯ãã人éã«ããã¬ãã¥ãŒãšæ¿èªãã®ãã§ãã¯ãã€ã³ããèšèšããŠãã ããã
çµè«
ã»ãã¥ãªãã£èªååã¯ãã¯ãèŽ æ²¢åã§ã¯ãªãã仿¥ã®ã°ããŒãã«ãªç¶æ³ã«ãããŠå¹æçãªãµã€ããŒé²åŸ¡ã®ããã®åºæ¬çãªèŠä»¶ã§ããããã¯ãåŸæ¥ã®ã€ã³ã·ãã³ã察å¿ãæ©ãŸããé床ãèŠæš¡ã人çè³æºã®å¶çŽãšããé倧ãªèª²é¡ã«å¯ŸåŠããŸããèªååãåãå ¥ããããšã§ãçµç¹ã¯è åšå¯Ÿå¿èœåãå€é©ããæ€ç¥ãšå¯Ÿå¿ã®å¹³åæéãå€§å¹ ã«ççž®ãã䟵害ã®åœ±é¿ãæå°éã«æããæçµçã«ã¯ããã¬ãžãªãšã³ãã§ããã¢ã¯ãã£ããªã»ãã¥ãªãã£äœå¶ãæ§ç¯ããããšãã§ããŸãã
å®å šãªã»ãã¥ãªãã£èªååãžã®éã¯ãç¶ç¶çãã€å埩çã§ãããæŠç¥çãªèšç»ãæ éãªå®è£ ããããŠç¶ç¶çãªæ¹åãžã®ã³ãããã¡ã³ããèŠæ±ããŸãããããããã®é åœ â 匷åãããã»ãã¥ãªãã£ãåæžãããéçšã³ã¹ãããããŠæš©éãäžããããã»ãã¥ãªãã£ããŒã â ã¯ãè¶ æ¥ç¶ç€ŸäŒå šäœã§ããžã¿ã«è³ç£ãä¿è·ããäºæ¥ç¶ç¶æ§ã確ä¿ããäžã§ãèšãç¥ããªããªã¿ãŒã³ãããããæè³ãšãªããŸããã»ãã¥ãªãã£èªååãåãå ¥ããé²åãããµã€ããŒè åšã®æœ®æµã«å¯ŸããŠããªãã®æªæ¥ã確ä¿ããŠãã ããã