ãµã€ããŒã»ãã¥ãªãã£ã®ããŒã±ãã£ã³ã°ã§ã¯ãæ¯ãèãåæã AI/ML (人工ç¥èœã𿩿¢°åŠç¿) ãšãã£ãçšèªãéåžžã«é »ç¹ã«äœ¿ãããŠãããæ å ±ã»ãã¥ãªãã£ã®å°éå®¶ã¯ãç¹ã«æ°ã«ãçããã«èãæµããŸãããããŠå®éã®ãšããããããã®çšèªã¯éµåã¿ã«ããªãæ¹ãè¯ããããããŸããã
ããæå³ã§ã¯ããããã®ã¢ãã«ã¯ç®æ°ãããã®ã§ã¯ãããŸããããã«ãŒããã€ã³ãã¯ãæªæã®ããã¡ãŒã«ãè¿·æã¡ãŒã«ããããã¯ããããã«ããããŸã§ã AI/ML æè¡ã䜿çšããŠããŸããããŸãããã®åéã¯æ¥éã«é²åããŠãããçµç¹ãèªç€Ÿãä¿è·ããããã®æ°æ©èœããŠãŒã¹ã±ãŒã¹ã䜿çšå¯èœã«ããŠããŸãããã®ãããè¡ååæã AI/ML ããã è¡ãã®ã§ã¯ãªããååã«è¡ãããšãéèŠãªã®ã§ãã
æ°ãã Supernova ããã€ãã¢ãšã³ãžã³ã¯ Supernova ãåºç€ãšããŠæ§ç¯

å³ 1ïŒãã«ãŒããã€ã³ãã®æ°ãã Supernova ããã€ãã¢ãšã³ãžã³ã«ããåæã§ã¯ãçšèªãé¢ä¿æ§ãé »åºŠãã³ã³ããã¹ããå©çšããAI/ML ãçšããŠãªã¢ã«ã¿ã€ã ã«ç°åžžãæ€ç¥ããè åšã鲿¢
2022 幎第 2 ååæã«ã¯ãSupernova ããã€ãã¢ãšã³ãžã³ãäžçäžã®ã¡ãŒã«ã»ãã¥ãªãã£ããå©çšã®ã客æ§ã«ã远å è²»çšã远å èšå®äžèŠã§ãªãªãŒã¹ããŸãããSupernova ããã€ãã¢ãšã³ãžã³ã¯ãæšæºããå€ããã¡ãŒã«ãã¿ãŒã³ãããé©åã«æ€ç¥ããããžãã¹ã¡ãŒã«è©æ¬º (BEC) ããèªèšŒæ å ±ã®ãã£ãã·ã³ã°ãªã©ãããããçš®é¡ã®è åšã®æ€ç¥èœåãåäžãããŠããŸããããã¯ã2021 幎㫠Advanced BEC Defense ã®äžç°ãšã㊠Supernova ã§è¡ãããäœæ¥ããæ§ç¯ããããã®ãšã³ãžã³ããã®ã·ã°ãã«ãšåŠç¿ãåãå ¥ããŠããŸãã
Supernova ããã€ãã¢ãšã³ãžã³ãæªæã®ããã¡ãã»ãŒãžãã©ããã倿ããããã«äœ¿çšããã·ã°ãã«ã®äžéšãã玹ä»ããŸã (ãšã³ãžã³ã®é²åã«äŒŽããã·ã°ãã«ã远å ããŠããäºå®ã§ã)ã
- äžæã®éä¿¡è ãã€ãŸããããŸã§ã«é£çµ¡ãåã£ãããšã®ãªã人
- ãã£ãã«èŠãããªãèšèé£ããææ (åããŠéèååŒã«ã€ããŠè©±ãåããªã©)
- äžè¬çã§ãªã URL ããµããã¡ã€ã³
- éåžžãšã¯ç°ãªã SaaS (Software-as-a-Service) ããã³ã (ãµãã©ã€ã€ãŒã¢ã«ãŠã³ãã®äŸµå®³ã®å åã§ããããšãå€ã)
- ç°åžžãª SMTP ã€ã³ãã© (ãããåæ§ã«ãã¢ã«ãŠã³ã䟵害ã®å¯èœæ§ã瀺ããŠãã)
ããããSupernova ããã€ãã¢ãšã³ãžã³ã«çµã¿èŸŒãŸããŠããã®ã¯ãæ€ç¥æ©èœã ãã§ã¯ãããŸããããã£ãã«ãªãéä¿¡è ããã®ã¡ãã»ãŒãžã«ã¯ãã¡ãŒã«èŠåã¿ã°ã䜿çšããŠãReport Suspiciousã(äžå¯©ãªã¡ãŒã«ãå ±åãã) ãšããã¿ã°ãä»ãã貎éãªã³ã³ããã¹ããšãšãã«ãŠãŒã¶ãŒã«èŠåãçºããããšãã§ããŸãããŠãŒã¶ãŒã¯ãã®èŠåã«åºã¥ããŠãã€ã³ã·ãã³ã ã¬ã¹ãã³ã¹ ããŒã ããèªååãããäžæ£äœ¿çšã¡ãŒã«ããã¯ã¹ ãœãªã¥ãŒã·ã§ã³ã«ãçŽæ¥ã¡ãã»ãŒãžãå ±åã§ããŸãããŸããã¡ãã»ãŒãžãäžæ£å€å®ãããå Žåã«ã¯ãã客æ§ã¯ Proofpoint TAP (Targeted Attack Protection) ããã·ã¥ããŒãã§çŽæ¥è¡åã€ã³ãµã€ãã確èªã§ããããã«ãªããŸãã
æ°ãã Supernova ããã€ãã¢ãšã³ãžã³ã¯ããã§ã«ãããã¬ãã«ã®æå¹æ§ã®åäžãå³ããªãããã客æ§ã«äœèª€æ€ç¥çãä¿èšŒããŠããŸãããŸããAI/ML ã®å©çšã«é¢ããŠãç¹ã«ãã³ããŒã®ãã€ãºãå€ãããšãããéææ§ã«ããã ãã£ãŠããŸããçŸåšã®èª€æ€ç¥ç㯠414 äžä»¶ã« 1 ä»¶ã§ãããã¯æ¥çãããã¬ãã«ã®å€ã§ãããä»åŸãæ¹åã«åããæè³ãç¶ããŠãããŸãããããŠããã®ããŒã¿ãµã€ãšã³ã¹ã®ã¢ãããŒãã¯ããã«ãŒããã€ã³ãã«ãšã£ãŠæ°ãããã®ã§ã¯ãããŸããã
ãã«ãŒããã€ã³ããæã€äžçæå€§çŽã®ãµã€ããŒã»ãã¥ãªã㣠ããŒã¿ ã»ãã

å³ 2ïŒãã«ãŒããã€ã³ãã§ã¯ãäžçæå€§çŽã®ãµã€ããŒã»ãã¥ãªãã£ã»ããŒã¿ ã»ãããä¿æããéäžç®¡çãããããŒã¿ãµã€ãšã³ã¹ ããŒã ãé§äœ¿ããŠãã¢ãã«ã®ãã¬ãŒãã³ã°ãè¡ã£ãŠãã
éäžç®¡çãããããŒã¿ãµã€ãšã³ã¹ ããŒã ã¯ã20 幎以äžã«ããããé«åºŠãªæè¡ãå©çšããŠé«åºŠãªè åšãæ€ç¥ããã³é»æ¢ããŠããŸããããã®ããŒã ã¯ããã«ãŒããã€ã³ãã®è£œåã©ã€ã³å šäœãæ±ã£ãŠãããå ¬çæ©é¢ãåŠè¡æ©é¢ã®å°éå®¶ããµã€ããŒã»ãã¥ãªãã£åéã®çç·Žããå°éå®¶ãªã©ãåå ããŠããŸããåœç€Ÿã¯ããã¥ãŒã¯å€§åŠãã¯ã·ã³ãã³å·ç«å€§åŠãããŒãã€ã»ããã倧åŠãªã©ã®æ©é¢ãšææºããæå ç«¯ã®æèœãæè¡ãä¿èšŒããŠããŸãã
ãŸããã¡ãŒã«ãã¯ã©ãŠãããããã¯ãŒã¯ããã¡ã€ã³ãªã©ã®èšå€§ãªãµã€ããŒã»ãã¥ãªã㣠ããŒã¿ ã»ããã«ã¢ã¯ã»ã¹ã§ãã Proofpoint Nexus Threat Graph ã«ãããããŒã ã¯ãã广çã«ã¢ãã«ãæäŸããæ¹åããããšãã§ããŸããFortune 100ãFortune 1000ãããã³ Global 2000 ã§ãã³ããŒã¯ã³ã®å°å ¥å®çžŸãæã¡ã20 äžäººä»¥äžã®äžå ã»äžå°äŒæ¥ (SMB) ã®é¡§å®¢ãå±éããŠããããšã¯ãããè¿ éã«ããŒã¿ãã¢ãã«ã«æå ¥ããããæ©ããããæ£ç¢ºã«è åšãæ€ç¥ã§ãã蚌ãšãªã£ãŠããŸãã
ãã®ãããªã¢ãã«ã¯ãããªãã®éã®ããŒã¿ã³ãŒãã¹ããªããã°ãè åšãç¹å®ããã®ã«å¹æããªããæã«ã¯éå°ãªèª€æ€ç¥ã«ããé广ã«ãªãããšãããããŸãã
Supernova ããã€ãã¢ãšã³ãžã³ã«ããEã¡ãŒã«è åšæ€ç¥å šäœãå¢åŒ·

å³ 3ïŒãã«ãŒããã€ã³ãã 2021 幎㫠Advanced BEC Defense æ©èœã®äžéšãšããŠãªãªãŒã¹ãã Supernova ã¯ãçŸåšãBEC ã®è åšãå±éºãšå€æããã ãã§ãªããèªèšŒæ å ±ã®ãã£ãã·ã³ã°ãè©æ¬º (ãã®å€ãã¯ãåéè©æ¬ºãããã³ã¹è©æ¬ºãªã©ã®ã³ã¢ãã£ãã£ãè©æ¬ºã)ããã«ãŠã§ã¢ããã㊠TOAD ã广çã«åæ¢ãããããšãã§ãã
ã©ã¡ãã®ãšã³ãžã³ã®çµæãé©ãã¹ããã®ã§ãããSupernova ã¯ããã«ãŒããã€ã³ãã 2021 幎ã«ãªãªãŒã¹ãã Advanced BEC Defense æ©èœã®äžéšãšããŠã䞻㫠BEC æ»æãå±éºãšå€æããŸããããããéåžžã«å€ãã®ããŒã¿ããšã³ãžã³ã«æå ¥ã§ããçµæããšã³ãžã³ã¯åŠç¿ãšé©å¿ãç¹°ãè¿ããèªèšŒæ å ±ã®ãã£ãã·ã³ã°ããã«ãŠã§ã¢æ»æãããã«ã¯ã¹ãã ã®è åšãªã©ãããå€ãã®ãã®ãæ€ç¥ã§ããããã«ãªããŸããã
åæ§ã«ãSupernova ããã€ãã¢ãšã³ãžã³ã¯ãããããçš®é¡ã®è åšãããé©åã«æ€ç¥ãã鲿¢ããããšãã§ããããã«ãªãã§ãããã第 1 ååæåãã«ããã«ãŒããã€ã³ããã·ã£ããŒã¢ãŒãã§ãšã³ãžã³ããªãªãŒã¹ãããšããã4 é±éè¶³ããã§ãè«æ±æžéä»ã®è åšã«å¯Ÿããæ€ç¥ã®æå¹æ§ã 6 åãåäžããŠããããšã倿ããŸãããæ°ãããšã³ãžã³ãäžçäžã®ãã¹ãŠã®ã客æ§ãå©çšã§ããããã«ãªã£ãããšã§ãããŸããŸãªé«åºŠãªè åšãã©ã®ããã«åŠç¿ããããã«å¯Ÿããæ€ç¥èœåãåäžãããã®ãä»ããæ¥œãã¿ã§ãã
Supernova ããã€ãã¢ãšã³ãžã³ãæ€ç¥èœåãåäžãããäŸ
Supernova ããã€ãã¢ãšã³ãžã³ã®ã·ã°ãã«ãæ€ç¥èœåãã©ã®ããã«åäžãããããšãã§ããã®ãã瀺ãäŸãããã€ãã玹ä»ããŸãã
äŸïŒé¡äŒŒã® BEC è åšïŒæ€ç¥ã®å¯èœæ§ãåäž
ãã«ãŒããã€ã³ãã¯ãæ¯ææ°çŸäžä»¶ã® BEC æ»æã广çã«é»æ¢ããŠããŸããããããåžžã«æ€ç¥ã®ã¬ãã«ãäžããããšãç®æããŠããŸãããã®äŸã§ã¯ãæ¢åã® BEC åã Supernova æ€ç¥ãšã³ãžã³ããäžèŠããŠèŠåãã®ã€ããªããã¡ã€ã³ã𿝿ãçšèªãæ€ç¥ããŸãã

å³ 4ïŒãã«ãŒããã€ã³ãã® Supernova ããã€ãã¢ãšã³ãžã³ã¯ãBEC æ»æã®æ€ç¥æ©èœã远å ããäºè ã®é¢ä¿ãåçã«å€æãã
æ°ãã Supernovaããã€ãã¢ãšã³ãžã³ã¯ãåä¿¡è ã«ãšã£ãŠæªç¥ã®éä¿¡è ã§ããããšãæ€ç¥ããŸããããã«ããããã«ãŒããã€ã³ããæ»æãé ä¿¡åã«æ€ç¥ããå±éºãšå€æããå¯èœæ§ãé«ããŸãããã®ãšã³ãžã³ã¯ãã€ã³ããŠã³ãã¡ãã»ãŒãžãšã¢ãŠãããŠã³ã ã¡ãã»ãŒãžã®é »åºŠãçšèªãã³ã³ããã¹ããªã©ã®å ¥åã調ã¹ãäºè éã®é¢ä¿ã®ã¹ããŒã¿ã¹ãæéã®çµéãšãšãã«åçã«å€æããããšã§ãé«åºŠãªãªã¬ãŒã·ã§ã³ã·ãã ãããã³ã°ãè¡ããŸãã
ä»®ã«äŒç ç¶æ ã®éå»ã®éä¿¡è ãäžæ£ã¢ã¯ã»ã¹ããããããå©çšããŠæ°ããªæ»æãéå§ããããšããŠããSupernova ããã€ãã¢ãšã³ãžã³ã¯ãã®éä¿¡ãç°åžžãšã¿ãªãã詳ãã調ã¹ãŸãã
äŸïŒURL ããŒã¹ã®ãã¡ã€ã«å ±æåã®è åšãå©çšããŠäžæ£ã¢ã¯ã»ã¹ããããµãã©ã€ã€ãŒ

å³ 5ïŒSupernova ããã€ãã¢ãšã³ãžã³ã¯ãæ»æè ããã¡ã€ã«å ±æãµã€ããå©çšããŠè¢«å®³è ãéšãããšããŠããå Žåã§ããäžæ£ã¢ã¯ã»ã¹ããããµãã©ã€ã€ãŒãããé©åã«æ€ç¥ãã
ããšãã°ããããµãã©ã€ã€ãŒã® Microsoft 365 ã®ã¢ã«ãŠã³ããäžæ£ã¢ã¯ã»ã¹ãåãããšããŸããããæ»æè ã¯ã¢ã«ãŠã³ããä¹ã£åãããµãã©ã€ã€ãŒãšã®é¢ä¿ã詳ãã調æ»ããäžã§ãè©æ¬ºãè¡ãããã«é¡äŒŒã® OneDrive SaaS ããã³ããã»ããã¢ããããŸãã
æ»æè ãéä¿¡ããã¡ãŒã«ã¯ãæ£èŠã®äžè¬çãªéä¿¡è ã§ãã SharePoint ããã®ãã®ã§ãããDMARC ããã¹ããŠããŸããã¬ãã¥ããŒã·ã§ã³ãèŠããšããã®ã¡ãŒã«ã¯æ£èŠã®ãã®ãšæãããŸãããŸããå¥çŽæžãšããèšèé£ãã¯ããã®ãµãã©ã€ã€ãŒãšã®éå»ã® OneDrive ã®ããåããèãããšãçãããã®ã§ã¯ãããŸãããããããããã«ã¯ Supernova ããã€ãã¢ãšã³ãžã³ãæç¥ããããã€ãã®æ å ±ãé ããŠããŸãã
Supernova ããã€ãã¢ãšã³ãžã³ã¯ããã¡ã€ã«å ±æ URL ã®ãµããã¡ã€ã³ãç°ãªã£ãŠããŠãç°åžžã§ããããšã«æ°ã¥ãããã¡ã€ã«å ±æ URL ããµã³ãããã¯ã¹åããŠã³ã³ãã³ããæ€æ»ããŸããã€ãŸãããã«ãŒããã€ã³ãã¯ããµãã©ã€ã€ãŒ ã¢ã«ãŠã³ãã«äžæ£ã¢ã¯ã»ã¹ããäžèŠããŠèŠåãã®ã€ããªãé¡äŒŒãã¡ã€ã³ãããã¡ã€ã«å ±æããã³ãã®æ°ãããµããã¡ã€ã³ã䜿çšããæ»æè ããããé©åã«æ€ç¥ãã黿¢ããããšãã§ããã®ã§ãã
AI/MLãšè¡ååæïŒåºç¯ãªæ€ç¥ã¢ã³ãµã³ãã«ã®äžéš
ã³ã³ãã³ãæ€æ»ãè¡ååæã« AI/ML ãå©çšããããšã§ãæ€ç¥ã®æå¹æ§ãé«ããããšãã§ããŸãããããããããã®ãšã³ãžã³ã¯ãåç¬ã§ã¯å€ãã®ãã€ãºãçºçãããããšã確èªãããŠããŸãããã®ããããããã¯ããã«ãŒããã€ã³ãã 26 å±€ã®æ€ç¥ã¢ã³ãµã³ãã«ã§äœ¿çšããŠãããšã³ãžã³ã®ã»ãã®äžéšã«éããŸããã

å³ 6ïŒãã«ãŒããã€ã³ãã®æ€ç¥ã¢ã³ãµã³ãã«ã«ã¯ 26 以äžã®å±€ãå«ãŸããŠãããæªæã®ããã¡ãã»ãŒãžãå±éºãšå€æããå¯èœæ§ãé«ãããšåæã«ã誀æ€ç¥ã®çºçãé²ãã§ãã
Nexus Threat Graph ã®ã€ã³ããªãžã§ã³ã¹ãšçµã¿åãããå¹ åºãè©äŸ¡å顿©èœã«ãããæªæããã¡ãã»ãŒãžãã¹ãã ã¡ãŒã«å šäœã® 80% 以äžããšã³ããŠãŒã¶ãŒã«å°éããã®ã黿¢ããŠããŸããã客æ§ã«ãã£ãŠã¯ããããæ°åäžéã«ãªãããšããããŸãã
ãã«ãŒããã€ã³ãã§ã¯ãæ·»ä»ãã¡ã€ã«ãš URL ã®ãµã³ãããã¯ã¹ãæ§ç¯ããML ã¢ãã«ã䜿çšããŠãæœåšçãªãã«ãŠã§ã¢ãæ¹ããããæ®ãããæªæã®ãã URLãHTMLããã¡ã€ã«ãã¡ã¢ãªã倿ããŠããŸãã
Proofpoint Emerging Threat (ET) Intelligence ãã£ãŒãã¯ããªã¹ã¯ã®é«ã IP ã¢ãã¬ã¹ãæè¿ã«ãªã£ãŠæªæã®ããã¢ãã¬ã¹ãšããŠåºçŸããå Žåã§ããè¿ éã«ç¹å®ããããšãã§ããŸããåœç€Ÿã®ã¯ã©ãŠãè åšããŒã¿ã¯ãæªæã®ãããµãŒãããŒã㣠ã¢ããªã±ãŒã·ã§ã³ãäžæ£ã¢ã¯ã»ã¹ãããã¢ã«ãŠã³ããç¹å®ãããããã®è åšãçºåããã®ã黿¢ããããšãã§ããŸãããŸããè åšã€ã³ããªãžã§ã³ã¹ ããŒã ã¯ãããŒã¿ããã¹ãŠãŸãšããŠã幎é 7,000 件以äžã®ãã£ã³ããŒã³ãæœåºããæ°ããªè åšãé«åºŠãªè åšãæ·±ãæãäžããŠææ°ã®ãã¬ã³ããææ¡ããŠããŸãã
ã¡ãŒã«ç°¡æãªã¹ã¯ ã¢ã»ã¹ã¡ã³ãã§æè¡ãæ€èšŒãã
æçµçã«ãæãéèŠãªã®ã¯ããããã®æè¡ãã©ãã ãçµç¹ã®ãªã¹ã¯è»œæžã«ã€ãªããããšããããšã§ãã貎瀟ã®çŸåšã®ãªã¹ã¯ç¶æ³ãè¿ éã«ææ¡ããããšãèãã§ããã°ããã«ãŒããã€ã³ãã®ã¡ãŒã«ç°¡æãªã¹ã¯ ã¢ã»ã¹ã¡ã³ãããã²ãå©çšãã ããã以äžã®ã¡ãªããããããŸãã
- ãªã¹ã¯ç¶æ³ãææ¡ããŠãã䜿ãã®ã¡ãŒã« ã»ãã¥ãªã㣠ãœãªã¥ãŒã·ã§ã³ãèŠéããŠããè åšãçºèŠãã
- çµç¹å ã§è åšã®æšçã«ãªã£ãŠããã®ã¯ã ãããå¯èŠåãã
- é²åããè åšã«å¯Ÿæãããã¹ããªéžæè¢ãšããŠã®ããã«ãŒããã€ã³ãã®çµ±åãããä¿è·æ©èœã«ã€ããŠç¥ã
ãã®ãªã¹ã¯ ã¢ã»ã¹ã¡ã³ãã¯ç¡æã§ãããç³èŸŒã¿æ¹æ³ã«ã€ããŠã¯ããã¡ãã®ããŒãžãã芧ãã ããã