2016年6月18日土曜日

[JTB] used a personal computer from the remote control to virus infection or four years ago, around the "PlugX", and targeted cyber attacks aimed at specific organizations, such as government agencies and major corporations


( '-`) .. OO (I would What subspecies has been remodeled ...  ... also pulled out in such a modus operandi in such a major)


1: Lone traveler ★ \ (^ o ^) / bad © 2ch.net 2016/06/15 (water) 04: 33: 37.13 ID: CAP_USER9
Or infected with JTB PC virus to remote control
June 15, 4 hour 26 minutes
http://www3.nhk.or.jp/news/html/20160615/k10010556801000.html

A problem that a large amount of personal information that major travel company "JTB" to management there is a fear that was leaked to the outside, in the remote PC
To be able to operate that there is a suspicion that was infected with a computer virus called "PlugX" is to parties
It was found in an interview. Tokyo Metropolitan Police Department is promoting a detailed analysis of the infected virus.


Major travel company "JTB" In this issue, a group company of the server that manages the personal information of customers in the "targeted e-mail"
That had received a cyber attack by, it was revealed in the press conference of 14 days.
If it depends on the parties concerned and are referred to as the "PlugX" to be infected is given a personal computer to be able to remotely control computer
It is that there is a suspicion of the virus.


And it depends on the security company, "PlugX" is targeted cyber attacks aimed at specific organizations, such as government agencies and major corporations
In, used since about four years ago, is that if the infection can be pulled out the information in the server and personal computer.
In this issue, the Tokyo Metropolitan Police Department received a consultation from JTB of damage at the end of last month, with a view to suspicion of fraud directive electromagnetic record-service
We are promoting a detailed analysis of the infected virus.






32: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 54: 13.11 ID: m2YwJ1yt0
>> 1
It can not be said that the victim, there is no pressing infection from the incorporation without outside by his own negligence
Same PC is not doing anything the security measures at the time that can be remotely operated, amazed level

103: Anonymous @ 1 anniversary 2016/06/15 (Wed) 09: 46: 54.49 ID: QreJzfse0
>> 32
Exactly
Virus is also bad. However, it is defintely bad person who was infected
Even worse the environment to become infected Once information Dada leak
It has access to that information, because I do things I have been allowed to send information







6: Anonymous @ 1 anniversary 2016/06/15 (water) 04: 45: 00.05 ID: X6l1SJnh0
800 million people x500 yen apologize QUO = 40 billion yen + paperwork costs

85: Anonymous @ 1 anniversary 2016/06/15 (Wed) 08: 02: 01.31 ID: l357XM + e0
>> 6
Slightly name litigation cause him also






9: Anonymous @ 1 anniversary 2016/06/15 (water) 04: 53: 34.26 ID: CERNlAfyO
The I affiliates That's miso.
Also by increasing the headquarters of the firewall, Tayui place remains absolutely for access from within the group.

10: Anonymous @ 1 anniversary 2016/06/15 (water) 04: 56: 36.25 ID: X6l1SJnh0
>> 9
It is constructed, no matter how robust security system
Worked are individuals or thinner awareness of security at medium
Be broken if the simple defenseless. Open suspicious attached mail Hui guy too much.

11: Anonymous @ 1 anniversary 2016/06/15 (water) 04: 57: 38.48 ID: xNL4QiSq0
Personal information of employees who leaked doing idiot
Not even announced that person of the name
We've got protected from customer








16: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 05: 53.88 ID: M2HqXVuM0
Toka the passport number should feel free to hold
Sora Akan

19: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 08: 05.39 ID: faa3qOd70
It would be tremendous effort Once you become a simultaneous change of the passport number

21: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 16: 16.39 ID: LdIlyu9l0
JTB bankruptcy Kana








24: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 22: 04.58 ID: yUnUkl2W0
When it's Outlook, is said to Oke off preview mode, the decision only in the subject → sender in the suppliers name, subject also looked like that guy
Nara Click to wonder would look content.

27: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 32: 27.97 ID: O9h2Pgfl0
>> 24
Usually because the macros and VBA executable office file is attached, check the e-mail sender, it will disappear silently ignored.
In particular, office files unnecessarily ignored the old extension.
To come or send if anyway necessary.

30: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 41: 43.45 ID: CVM2V6cS0
>> 24
I guess the guy is there to see. And relegation to the company history compilation rooms to the detriment of the company and shareholders.









31: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 54: 12.61 ID: SKBD5gBJ0
This for good and wondering ... I'm not trying to leak everything discount subscribed person of Kumamoto travel

35: Anonymous @ 1 anniversary 2016/06/15 (water) 05: 57: 31.30 ID: 1Zby3yMq0
>> 31
Japan would not need a passport

41: Anonymous @ 1 anniversary 2016/06/15 (water) 06: 07: 46.80 ID: V7CMihyS0
> Group company for the server you want to manage the personal information of the customer 
Should you are connected to the agency, also was infected by a virus terminal from each branch server









45: Anonymous @ 1 anniversary 2016/06/15 (water) 06: 18: 40.68 ID: domsyJ1E0
Probably passport aim
Some reason chest heat or become a wanted man somewhere in the country while you do not know

49: Anonymous @ 1 anniversary 2016/06/15 (water) 06: 30: 55.69 ID: / + 2DvP0e0
It has been forced to use these guys in the business, but?
To fast and cheap is better to order in these days net

I no value?

55: Anonymous @ 1 anniversary 2016/06/15 (water) 06: 40: 11.98 ID: haYzgF6PO
>> 49
It sounds.
Net or got by dividing the frame from a major, got to or buy the remainder.
It depends on the commodity, easy street got entered flexibility to (my mom) in the middle.
Even or there is a guarantee when I Tsu accident, it is also or have firm local correspondence.

If you're familiar with travel, but I'm the real thrill is also poor travel to find cheap place not 's tour.
I At the same ...
Nobody me there When the top leader of about Mai you are poor travel!

62: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 09: 21.43 ID: / + 2DvP0e0
>> 55
Even if there is a vacancy in the time you want to ride an airplane
It's or chat Torare and are talking about guys and dawdling

Commission also cancellation fee also's a Botta








59: Anonymous @ 1 anniversary 2016/06/15 (water) 06: 57: 59.43 ID: TlfR / yFM0
Japan pension mechanism "was good, fellow has increased."

60: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 06: 18.95 ID: AJNBeBRx0
I wonder, such mon are actually pulled out the way of what kind of data

Do not encrypt I customer data that resides on the server (or was invaded on the server),
What are take them whole ton it is read correctly data to remote control the infected PC but are
But until I infection in the target type it is well reported, because not come at all out in Table I and then the actual movement
Not good enough pin To this

66: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 23: 13.83 ID: i7MhzXmj0
>> 60
I do not know well what kind of system have teamed up, but most are collectively managed by the data server
Connection ,,, I What 's such as the client PC from the commercial to create a dedicated app, after all
Whole ton can also be pulled out in the database something and in which teamed middleware level
And Hikkonui all data transferred to an external compressed dropped to once file
If to erase the file, I do not know immediately, that I

This time, the Na or was able to analyze the data that has been pulled out to restore the erased file 
Also data server is turned to a situation in which not see directly from the Internet, Nante pull over the business PC 
Because or can normally, I can only imagine the wonder system administrator was a fool


75: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 43: 02.92 ID: AJNBeBRx0
>> 66
It means pull over the business PC, once eventually place the remote control or something a compromised of
Good at understanding me finish is Hikkonuka properly?

When it comes to, as a way to prevent the business application (PC to be connected to the server)
Way of a minimum of keep separate from the available PC by connecting to an ordinary Internet, such as see-mail?

91: Anonymous @ 1 anniversary 2016/06/15 (Wed) 08: 09: 17.46 ID: 8aAKk6ty0
>> 75
The best way it.
Minimum is Toka you put OfficeScan.

95: Anonymous @ 1 anniversary 2016/06/15 (Wed) 08: 35: 33.06 ID: f9JgyYlP0
>> 91
Old Semiconductor Toka is
But it was like that make
It turned to cloud computing
It came to anything connected.
Micro-segmentation in the epidemic and regression now. System to consider in view of human nature as fundamentally depraved.

By the way like Softbank and secure seed was security vendors to JTB








82: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 53: 27.25 ID: Z0WEuMta0
From I like amateur, horrible Nante infected by simply stepping on the mail !!
A little one's office manager also of Fukui Prefecture, municipal assemblies before, we had to information outflow.
It also huh understandable story.

81: Anonymous @ 1 anniversary 2016/06/15 (water) 07: 52: 21.15 ID: 0UdPipGH0
Fukui, is hijacked Ikeda town council secretariat AV browsed PC

It was announced as the "personal computer of parliament secretariat is compromised, there is a possibility that has been extracted the data of the parliamentary relations".
50 Young Men of Parliament Secretary-General to browse adult sites, that are remotely operated.

Secretary browse multiple times adult site.
And the message "your PC is infected with a virus" to the screen,
Telephone number beginning with "050" is displayed as a contact.

Secretary-General to call this number, as instructed by the voice of a man speaking a smattering of Japanese
By operating the personal computer, install the remote control file.
That was looking at the context in which it is remote operation in a state in which the call is connected over a period of about one and a half hours







86: Anonymous @ 1 anniversary 2016/06/15 (Wed) 08: 04: 01.13 ID: f9JgyYlP0
Endpoint JTB was using
Security Trend Micro products
Yet infection? Also open attachments
Behavior in the Internet gateway
It did not have to be detected? It is stupid?

98: Anonymous @ 1 anniversary 2016/06/15 (Wed) 09: 35: 04.06 ID: 5z1Bawhd0
Mere fool company as would have been done in a typical computer virus,
How can Nante risk aversion of foreign travel?
Delicate fool us or not you not suitable for business

105: Anonymous @ 1 anniversary 2016/06/15 (Wed) 09: 59: 12.92 ID: EJ71FDJp0
I did call the toll-free number, which has been described
Skilled in the art that has been entrusted to the JTB (confirmed) is
Only you do not have guidance information to the home page
Also to check whether the information has been leaked was said to take one week.
The consignment has been skilled in the art, because the first did not know, my personal information to skilled in the art leaked.
Incredible.








115: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 11: 19.56 ID: 33GOnCel0
Or mean that the virus has gone to domestic travel ...

121: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 15: 22.07 ID: 33GOnCel0
>> 115
Good w

119: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 15: 10.25 ID: 4a6P8J0u0
Passport number outflow Toka.
How do If you wait too long and made arbitrarily credit card Toka bank account?
Kana out fee of passport re-issued?







126: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 23: 19.46 ID: 5VtxSNBG0
Operator I would be dispatched
I Toka will open a carelessly without a body-mail attachments
It would be a suspiciously of 120%
Impossible

131: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 26: 12.79 ID: 3njG1opg0
>> 126
As was the dispatch
So Ya there is a means and authority to see the large amount of personal information to the dispatch

132: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 26: 42.39 ID: EmcbeqVL0
Apology is 500 points of rurubu








135: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 38: 13.61 ID: Lr5cWlam0
Do not liability What security software company?
I think we do not stand for nothing.

143: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 48: 45.72 ID: TxAH0NaNO
>> 135

If the attachment is the cause, and from the circumstances that were infected open, you will see how the strain of asking negligence in security manufacturer

So it does not infect need to even open the file ...

137: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 43: 34.24 ID: StvFpk6X0
The company's network is Toka to infection
Put out the money would'm hired a security expert
Or Jan incompetence








139: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 44: 57.95 ID: keu7uTZ / 0
I because not doing anything is Yu-chan!

147: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 53: 13.97 ID: xFu58az00
Maybe the evaluation in the world has been high because Pasupato of Japanese.
Once we ever travel history Toka association string of
I wonder if there is no such thing as Oshiira to the robbery is that it would be economically wealthy?

148: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 54: 57.48 ID: TSd13z / k0
It's here a non-listed








156: Anonymous @ 1 anniversary 2016/06/15 (water) 11: 22: 41.97 ID: TEf / rwq70
I guess there is a need to inform why the passport number to the travel company

161: Anonymous @ 1 anniversary 2016/06/15 (water) 12: 04: 49.77 ID: czARKreX0
Downy, I because I'm not a separate reason that I wanted to go on a trip abroad and Anta
Since it can not be helped because JTB was infected with a virus

163: Anonymous @ 1 anniversary 2016/06/15 (water) 12: 16: 30.29 ID: RNC1nw430
·· W that you might better just noticed yet

164: Anonymous @ 1 anniversary 2016/06/15 (water) 12: 18: 01.82 ID: klGBKoiF0
Sick! Super companion asked in the option or outflow ...

128: Anonymous @ 1 anniversary 2016/06/15 (water) 10: 24: 52.98 ID: lSqrcppq0
To self-employed me, email related to personnel changes
I laughed when he flew


[Points five times free shipping] travel tickets catalog gift Exe time Part4 Father's Day, Senior Citizen's Day, family celebration, is a popular celebration. Souvenirs, hotel voucher, retirement celebration, to the after-party prizes, JTB
[Points five times free shipping] travel tickets catalog gift Exe time Part4 Father's Day, Senior Citizen's Day, family celebration, is a popular celebration. Souvenirs, hotel voucher, retirement celebration, to the after-party prizes, JTB 

0 件のコメント:

コメントを投稿

adMax