セキュリティのアレ

セキュリティのアレ

ゆるーいセキュリティのポッドキャストですよ。

Author

セキュリティのアレ

Category

Technology

Podcast website

www.tsujileaks.com

Latest episode

Jun 29, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

第208回 時間による解決と抗い!スペシャル! 22.01.2024

Tweet ・ ランサムリークサイト観察記 2023年振り返り | (n)inja csirt ・ セキュリティのアレまとめ — セキュリティのアレまとめ ・ 通販サイトへの不正ログイン・なりすまし注文の発生について ・ Ivanti Connect Secure、Ivanti Policy Secureの脆弱性 CVE-2023-46805およびCVE-2024-21887についてまとめてみた – piyolog ・ ED 24-01: Mitigate Ivanti Connect Secure and Ivanti Policy Secure Vulnerabilities | CISA...

第207回 振り返りつつも前に向くのか?スペシャル! 16.01.2024

Tweet ・ 2023 CVE Data Review – JerryGamblin.com ・ 2023 Threat Landscape Year in Review: If Everything Is Critical, Nothing Is | Qualys Security Blog ・ Hacker hijacks Orange Spain RIPE account to cause BGP havoc ・ Digging into the Orange España Hack | Kentik Blog ・ [ncc-announce] [News] Security Breach: Investigation Update ncc-announce — RIPE Network Coordination Centre ・ 往診ならファストド...

第206回 トリプル長爆誕!スペシャル! 25.12.2023

Tweet ・ 常連さんの神アレンジがSNSメニューに【麻婆油淋飯】 #俵飯 #デカ盛り #大食い #麻婆豆腐 #油淋鶏 #tawarameshi #japanesefood #tokyofood – YouTube ・ NOTICE|サイバー攻撃に悪用されるおそれのあるIoT機器の調査、注意喚起を行うプロジェクト ・ 閣法 第212回国会 6 国立研究開発法人情報通信研究機構法の一部を改正する等の法律案 ・ 国立研究開発法人情報通信研究機構法 | e-Gov法令検索 ・ 総務省|サイバー...

第205回 我々もまぁまぁスジナシだ!スペシャル! 18.12.2023

Tweet ・ Hacker Group Linked to Russian Military Claims Credit for Cyberattack on Kyivstar | WIRED ・ Kyivstar restores mobile internet across Ukraine, reactivates international roaming | VEON ・ CERT-UA experts are investigating a cyberattack against Kyivstar telecom operator’s network ・ Disrupting the gateway services to cybercrime – Microsoft On the Issues ・ CaaS Alert: Disrupting Storm...

第204回 ギリギリの紹介ラインがあるんだぜ!スペシャル! 12.12.2023

Tweet ・ How Insiders Use Vulnerabilities Against Organizations | CrowdStrike ・ NVD – CVE-2022-28958 ・ Mirai Variant MooBot Targeting D-Link Devices ・ Moobot Uses a Fake Vulnerability – Blog – VulnCheck ・ CISA Removes One Known Exploited Vulnerability From Catalog | CISA ・ GhostSec offers Ransomware-as-a-Service Possibly Used to Target Israel ・ オットーという男 | ソニー・ピ...

第203回 呼ばれてへんねん!スペシャル! 04.12.2023

Tweet ・ 「現代用語の基礎知識」選 ユーキャン 新語・流行語大賞 ・ AlphV files an SEC complaint against MeridianLink for not disclosing a breach to the SEC (2) ・ Your voice is my password – the risks of AI-driven voice cloning ・ Ex-infosec COO pleads guilty to nightmarish sales strategy • The Register ・ そいつどいつチャンネル【公式】 – YouTube ・ きつね日和ch – YouTube    ...

第202回 アイキャッチの案を大募集だ!スペシャル! 27.11.2023

Tweet ・ フィッシング対策協議会 Council of Anti-Phishing Japan | ニュース | 緊急情報 | URL に特殊な IP アドレス表記を用いたフィッシング (2023/11/14) ・ Is this the real life? Is this just fantasy? Caught in a landslide, NoEscape from NCC Group | NCC Group Research Blog | Making the world safer and more secure ・ LOLDrivers ・ NoEscape Ransomware | HC3: Analyst Note ・ Diamond Sleet supply chain co...

第201回 このポッドキャストは58分37秒で聴けます!スペシャル! 20.11.2023

Tweet ・ In-Depth Analysis of July 2023 Exploit Chain Featuring CVE-2023-36884 and CVE-2023-36584 ・ Reflecting on 20 years of Windows Patch Tuesday | Windows Experience Blog ・ Reflecting on 20 years of Patch Tuesday | MSRC Blog | Microsoft Security Response Center ・ Hive Ransomware’s Offspring: Hunters International Takes the Stage ・ 岐阜県 inaba 稲葉ピーナツホームページ     辻...

第200回 これは通過点なんだ!スペシャル! 14.11.2023

Tweet ・ SysAid On-Prem Software CVE-2023-47246 Vulnerability – SysAid ・ 短縮URLサービス利用時に表示された悪質な広告についてまとめてみた – piyolog ・ CISA Adds One Known Exploited Vulnerability to Catalog | CISA ・ New high-severity vulnerability (CVE-2023-29552) discovered in the Service Location Protocol (SLP) | Bitsight     辻伸弘メモ: 200回です。でも通過点。身近なところ...

第199回 あと1回!スペシャル! 06.11.2023

Tweet ・ Unauthorized Access to Okta’s Support Case Management System: Root Cause and Remediation | Okta Security ・ Encrypted traffic interception on Hetzner and Linode targeting the largest Russian XMPP (Jabber) messaging service — ・ Ransomware Vulnerability Warning Pilot updates: Now a One-stop Resource for Known Exploited Vulnerabilities and Misconfigurations Linked to Ransomware | CISA...

第198回 なんだかんだ泥臭く行くのだ!スペシャル! 23.10.2023

Tweet ・ X-Force uncovers global NetScaler Gateway credential harvesting campaign ・ Cisco IOS XE の脆弱性 CVE-2023-20198 / CVE-2023-20273 についてまとめてみた – piyolog ・ Multiple Vulnerabilities in Cisco IOS XE Software Web UI Feature ・ Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerabilities ・ BOD 23-02: Mitigating the Risk from Internet-Exposed Manage...

第197回 夏は終わった!コンビニに明日はない!スペシャル! 10.10.2023

Tweet ・ サイバー空間をめぐる脅威の情勢等|警察庁Webサイト ・ デジタル空間に、もっと信頼を。 Originator Profile ・ A new spin on the ZeroFont phishing technique – SANS Internet Storm Center ・ 華もち|商品情報|ハーゲンダッツ ジャパン Häagen-Dazs     辻伸弘メモ: 口は災いの元。例のモノが届いた?どこで何喋ったか覚えてない定期。ようやくよやく。性能以外の大事なものもある。シェバット。...

第196回 あと4回で200回を迎えるぜ!スペシャル! 02.10.2023

Tweet 【関連記事】 ・ Analysis of Time-to-Exploit Trends: 2021-2022 | Mandiant ・ 中国を背景とするサイバー 攻撃グループ BlackTech に よるサイバー攻撃について(注意喚起)|警察庁Webサイト ・ People’s Republic of China-Linked Cyber Actors Hide in Router Firmware | CISA ・ Reports about Cyber Actors Hiding in Router Firmware ・ Coalition’s Cyber Claims Report Finds Frequency and Severity...

第195回 KEVとOTPとMFA!スペシャル! 25.09.2023

Tweet 【関連記事】 ・ 令和5年上半期におけるサイバー空間をめぐる脅威の情勢等について|警察庁Webサイト ・ Sophos X-Ops: "In a recent intrusion, Sophos observed the latest BlackCat / ALPHV variant, dubbed Sphynx, sporting new features and being used to encrypt Azure Storage accounts." – Infosec Exchange ・ KEV Catalog Reaches 1000, What Does That Mean and What Have We Learned | CISA...

第194回 アレですよ!アレ!スペシャル! 18.09.2023

Tweet 【関連記事】 ・ Security Online Day 2023 秋の陣(2023.09.26‐27) ・ 「Amazonを不正利用された」──SNS上で報告相次ぐ 「二段階認証を突破された」などの声も – ITmedia NEWS ・ Amazon.co.jpのクレジットカードセキュリティ – Amazonカスタマーサービス ・ Peach Sandstorm password spray campaigns enable intelligence collection at high-value targets | Microsoft Security Blog ・ Malware distribut...

第193回 そろそろ秋を意識していきたい!スペシャル! 11.09.2023

Tweet 【関連記事】 ・ Active North Korean campaign targeting security researchers ・ Time keeps on slippin’ slippin’ slippin’: The 2023 Active Adversary Report for Tech Leaders – Sophos News ・ パスワードの利用実態調査2023| トレンドマイクロ ・ 「2022年度情報セキュリティに対する意識調査【倫理編】【脅威編】」報告書 | 情報セキュリティ | IPA 独立行政法人 情報処理推進機構 ・ 宇多田ヒカル「Gold ~また...

第192回 合わせ技一本!突撃となりのアノニマスに管理画面を添えて!スペシャル! 04.09.2023

Tweet 【関連記事】 ・ TECH+ EXPO for セキュリティ 2023 | マイナビニュース ・ Suspected PRC Cyber Actors Continue to Globally Exploit Barracuda ESG Zero-Day Vulnerability (CVE-2023-2868) ・ Diving Deep into UNC4841 Operations Following Barracuda ESG Zero-Day Remediation (CVE-2023-2868) | Mandiant ・ 2023-08 Out-of-Cycle Security Bulletin: Junos OS: SRX Series and EX Series: Multiple vulnerabilities...

第191回 偽らない偽りもあるんだぜ!スペシャル! 21.08.2023

Tweet 【関連記事】 ・ ソシャゲ公式さん、サービス継続に必要な金額を1円単位で公開してしまうwwww – YouTube ・ 放置系スマホRPG「偽りのアリス」、ユーザー最重視の障害対応 [事故対応アワード受賞レポート] | TECH+(テックプラス) ・ Approximately 2000 Citrix NetScalers backdoored in mass-exploitation campaign | NCC Group Research Blog | Making the world safer and more secure ・ 5 arrested in Poland f...

第190回 どこがどう狙われとんねん!?スペシャル! 14.08.2023

Tweet 【関連記事】 ・ Cloud Account Takeover Campaign Leveraging EvilProxy Targets Top-Level Executives at over 100 Global Organizations | Proofpoint US ・ Resecurity | EvilProxy Phishing-as-a-Service with MFA Bypass Emerged in Dark Web ・ I Watched You Roll the Die: Unparalleled RDP Monitoring Reveal Attackers' Tradecraft – Black Hat USA 2023 | Briefings Schedule ・ A Clever Honeypot Tr...

第189回 いきなり急にふと何気なく突然に!スペシャル! 07.08.2023

Tweet 【関連記事】 ・ 中国との関連が疑われる攻撃的、かつ高度なスキルを持つ攻撃者が Barracuda ESGのゼロデイ脆弱性(CVE-2023-2868)を悪用 | Mandiant ・ Barracuda Email Security Gateway Appliance (ESG) Vulnerability ・ CISA Releases Malware Analysis Reports on Barracuda Backdoors | CISA ・ Risk and Vulnerability Assessments | CISA ・ Stealer Logs & Corporate Access – Flare | Cyber Threat In...

第188回 亜種と亜種と亜種!スペシャル! 31.07.2023

Tweet 【関連記事】 ・ DuckDuckGo’s Windows browser now available in public beta ・ Google Online Security Blog: The Ups and Downs of 0-days: A Year in Review of 0-days Exploited In-the-Wild in 2022 ・ Ransom Monetization Rates Fall to Record Low Despite Jump In Average Ransom Payments ・ Hawaiʻi Community College pays ransom after attackers steal personal info of 28,000 people ・ CVE-2023-35...

第187回 !スペシャル! 24.07.2023

Tweet 【関連記事】 ・ DDoS threat report for 2023 Q2 ・ Meet NoEscape: Avaddon ransomware gang’s likely successor ・ Cyble — ‘NoEscape’ Ransomware-as-a-Service (RaaS) ・ Apology and Update on Recent Accidental Data Exposure ~ VirusTotal Blog ・ Google exposes intelligence and defense employee names in VirusTotal leak ・ クラフトボス ソルティライチTEA 600mlペット 商品情報(カロリー・原材料)...

第186回 雲と数字を掴みつつのお金の流れに学ぶ!スペシャル! 17.07.2023

Tweet 【関連記事】 ・ Mitigation for China-Based Threat Actor Activity – Microsoft On the Issues ・ Microsoft mitigates China-based threat actor Storm-0558 targeting of customer email | MSRC Blog | Microsoft Security Response Center ・ Analysis of Storm-0558 techniques for unauthorized email access | Microsoft Security Blog ・ Enhanced Monitoring to Detect APT Activity Targeting Outlook Onli...

第185回 タイトル付け忘れることもあるんだぜ!スペシャル! 10.07.2023

Tweet 【関連記事】 ・ Crypto platform Poly Network suspends service after hacker steals millions of dollars in digital assets ・ Poly Network Incident Analysis – Blog – Web3 Security Leaderboard ・ ランサムウエアによる名古屋港のシステム障害についてまとめてみた – piyolog ・ You’ve been kept in the dark (web): exposing Qilin’s RaaS program | Group-IB Blog ・ MOROHAjp – YouTub...

第184回 これでやっとスタートラインなんだの精神で!スペシャル! 03.07.2023

Tweet 【関連記事】 ・ サイバー攻撃被害に係る情報の共有・公表ガイダンス検討会 – NISC ・ podcast – #セキュリティのアレ – LISTEN ・ Binding Operational Directive 23-02 | CISA ・ Binding Operational Directive 23-02 Implementation Guidance | CISA ・ Identifying CISA BOD 23-02 Internet-Exposed Networked Management Interfaces with Censys – Censys ・ The tech flaw that lets hackers contr...

Listen to the セキュリティのアレ podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.