マイクロソフト・アウトルック、11月からMSIX形式の添付ファイルの受信をブロックへ
マイクロソフトは、来月からOutlook Webおよび新しいOutlook Windowsクライアントにおいて、ブロック対象の添付ファイル一覧に「.msix」および「.msixbundle」形式の添付ファイルを追加すると発表した。 .msix ファイルは、特定のコンピュータアーキテクチャや構成に合わせて最適化された最新の Windows インストールパッケージであり、.msixbundle...
View Articleランサムウェアの新たな標的が現れました。バックアップの準備はできていますか?
復旧が可能だと分かっていれば、ランサムウェアの脅威ははるかに和らぎます。 だからこそ、攻撃者はバックアップの暗号化に狙いを定めているのです。彼らは復旧ポイントを消去し、暗号化されたデータを復元するために必要なインフラを破壊します。その復旧手段が失われると、身代金を支払うよう迫る圧力は急激に高まります。...
View ArticlePoeLLMマルウェアが、暗号通貨マイニング攻撃においてセキュリティ対策が不十分なAIサーバーに感染させる
公開されているAIサービスを標的とした暗号通貨マイニング攻撃では、PoeLLMマルウェアを使用して、侵害されたサーバーをスキャナーやエクスプロイトのランチャーとして悪用している。 このマルウェアは、GitHub上にホストされた詩からキーワードを抽出することで、コマンド&コントロール(C2)アドレスを取得するという、珍しい手法を採用している。...
View ArticleSonicWall、SMA1000ゲートウェイにおける最大深刻度のSSRF脆弱性について警告
SonicWallは、SMA1000シリーズのアプライアンスに存在する、最大深刻度のサーバーサイドリクエストフォージェリー(SSRF)の脆弱性に対処するためのホットフィックスをリリースしました。 CVE-2026-102255として追跡されているこの脆弱性は、SMA1000 6210、 7210、および8200vモデルの「Appliance...
View ArticlePoCが公開された後、ハッカーたちがアトラシアンの重大な脆弱性を悪用
Jira、Confluence、Bitbucket を含む複数の Atlassian 製品ファミリーに影響を与える重大な脆弱性(CVE-2026-21589)が、認証を必要としない攻撃で悪用されています。 本日早朝、セキュリティ企業のPrevidianは、詳細な技術レポートが公開されてからわずか数時間後に、自社のハニーポットネットワーク上でこの活動を検知しました。...
View Articleアドバンテスト、ランサムウェア攻撃による個人情報の流出を確認
アドバンテスト株式会社は、今年初めに発生したランサムウェア攻撃により、影響を受けた個人の個人識別情報が流出したことを、当該個人に通知しています。 同社は、半導体業界向けの自動試験装置を製造するグローバル企業です。2月15日、攻撃者が同社のネットワークに侵入し、一部のシステムへのアクセス権を取得しました。...
View ArticleAIボットを用いた1,000万ドルのストリーミング詐欺で、ミュージシャンが実刑判決を受けた
ノースカロライナ州のミュージシャンが、大規模なストリーミング使用料詐欺事件に関与し、Spotify、Apple Music、Amazon Music、YouTube Musicから1,000万ドル以上の使用料を不正に受け取ったとして、懲役18か月の判決を受けた。...
View Article「Ninja Forms」プラグインの脆弱性が悪用され、WordPressサイトがハッキングされる
ハッカーたちは、互いに関連性のない2つのWordPressプラグイン「Ninja Forms」と「WPC Product Bundles for WooCommerce」に存在する保存型クロスサイトスクリプティング(XSS)の脆弱性を悪用し、バックドアをインストールしたり、不正な管理者アカウントを作成したりしています。...
View Article「Pwn2Own Ireland」初日、ハッカーたちが32件のゼロデイ脆弱性を悪用
「Pwn2Own Ireland 2026」コンテストの初日、セキュリティ研究者たちはサムスン「Galaxy S26」を2回ハッキングし、32件のゼロデイ脆弱性を悪用して388,500ドルを獲得した。 「Pwn2Own Ireland 2026」ハッキングコンテストでは、参加者は携帯電話(Apple iPhone 17、Samsung Galaxy S26、 Google Pixel...
View ArticleASOS confirms data breach after “HACKED” in-app notifications
UK fashion retailer ASOS confirmed a data breach Tuesday after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company’s...
View ArticleAtlassian warns of critical file-access flaw in Jira, Confluence
Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple self-hosted Data Center products, including...
View ArticleFake ChatGPT, Gemini Sites steal advertising accounts, MFA codes
A new campaign targeting ad account managers uses fake ChatGPT, Gemini, Claude, and Perplexity sites that steal login credentials and multi-factor authentication (MFA) codes through browser-in-browser...
View ArticleHow to secure RMM software: 8 controls MSPs should test
Secure remote monitoring and management (RMM) software should let an MSP discover endpoints, automate patching, control privileged access, cut alert noise, contain incidents, protect recovery points,...
View ArticleWikimedia: Rogue OpenAI agents behind unauthorized Wikipedia edits
The Wikimedia Foundation says rogue OpenAI agents made unauthorized Wikipedia edits and may have been partially responsible for a May outage. As Wikimedia Chief Product and Technology Officer Selena...
View ArticleNikkei discloses breaches of employees’ Microsoft, Google email accounts
Over the weekend, Japanese publishing giant Nikkei disclosed that unknown attackers recently breached two employee email accounts and used one to send thousands of phishing emails. In a Sunday...
View ArticleEngineer sentenced for locking over 3,000 devices on employer network
A former core infrastructure engineer at an industrial company headquartered in New Jersey was sentenced to 32 months in prison for locking thousands of devices on his employer’s network in a...
View ArticleRejetto HFS servers now actively scanned for critical RCE flaw
Hackers are actively scanning for a Rejetto HFS weak signing key vulnerability, tracked as CVE-2026-61500, that allows session forgery, account takeover, and remote code execution (RCE). VulnCheck VP...
View ArticleIQVIA fined $7.8 million for failing to properly anonymize health data
Italy’s Data Protection Authority (GPDP) has fined IQVIA €7 million ($7.8M) over poor data-processing practices that the agency says could have put roughly one million patients at risk of data...
View ArticleSouth Korea probes bank breaches amid suspected AI-powered attacks
South Korea’s Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country. During the meeting, officials confirmed...
View ArticleNew Dell System Update flaw lets hackers gain root privileges
Dell warned customers to patch a critical vulnerability in the System Update (DSU) command-line interface (CLI) deployment tool as soon as possible. DSU lets enterprise IT administrators deploy BIOS,...
View Article