ð¡ïžææ°ãµã€ããŒã»ãã¥ãªãã£ååïŒAIãããããæ°ããªè åšãšé²åŸ¡ã®é²åïŒ2026幎3æ10æ¥ãã¥ãŒã¹ïŒ
仿¥ãå±ãããã»ãã¥ãªãã£ãã¥ãŒã¹ã¯ãAIæè¡ã®é²åããµã€ããŒæ»æãšé²åŸ¡ã®äž¡é¢ã«ããã«å€§ããªåœ±é¿ãäžããŠããããæµ®ã圫ãã«ããŠããŸããåœå®¶ã¬ãã«ã®é«åºŠãªãããã³ã°ããŒã«ã®æµåºãããAIãæŽ»çšããææ°ã®è åšåæããããŠã©ã³ãµã ãŠã§ã¢ã®å·§åŠåãŸã§ãèŠéããªãæ å ±ãç®çœæŒãã§ãðããŸããOpenAIãå Mandiant嵿¥è ã«ããæ°ããªã»ãã¥ãªãã£ããžãã¹ã®ç«ã¡äžããªã©ãæ¥çåç·šã®åããæŽ»çºåããŠããŸããçŸå Žã®ãšã³ãžãã¢ã«åœ¹ç«ã€AWSã®ä¿®åŸ©æé ãASMïŒã¢ã¿ãã¯ãµãŒãã§ã¹ç®¡çïŒã®ãã¹ããã©ã¯ãã£ã¹ãããã¯ã¢ããããŸãããæ¥ã é²åããè åšã«å¯Ÿæããããã®ãã³ããããã²ãã§ãã¯ããŠã¿ãŠãã ããð¡ã
iPhoneãçãé«åºŠãªãããã³ã°ããŒã«ãCorunaãçºèŠ ç±³æ¿åºããæµåºãç¯çœªéå£ã®æã«æž¡ã£ãã
GoogleããiPhoneãæšçãšããæ¥µããŠé«åºŠãªãããã³ã°ããŒã«çŸ€ã§ããCorunaãçºèŠãããšçºè¡šããŸããããã®ããŒã«ã¯iOS 13.0ãã17.2.1ãŸã§ã®ããŒãžã§ã³ã«åœ±é¿ãäžããéå»ã«æªä¿®æ£ã ã£ããŒããã€è匱æ§ãå«ãèš23ä»¶ã®è匱æ§ãæªçšããŠããŸããã¢ãã€ã«ã»ãã¥ãªãã£äŒæ¥ã®iVerifyã«ããåæã§ã¯ããã®ããŒã«ã¯å ã ç±³æ¿åºãéçºãããã®ãæµåºãããã·ã¢ãäžåœãæ ç¹ãšããç¯çœªéå£ã®æã«æž¡ã£ãå¯èœæ§ãé«ããšæšæž¬ãããŠããŸããææãããšãŠãŒã¶ãŒãæ°ã¥ããªããã¡ã«æå·è³ç£ãåçãé»åã¡ãŒã«ãªã©ã®æ©å¯æ å ±ãçã¿åºãããå±éºæ§ããããŸãã察çãšããŠã¯ãOSãææ°ããŒãžã§ã³ã«æŽæ°ããããããã¯ããŠã³ã¢ãŒããæå¹ã«ããããšãåŒ·ãæšå¥šãããŠããŸãã iPhoneãçãé«åºŠãªãããã³ã°ããŒã«ãCorunaãçºèŠ ç±³æ¿åºããæµåºãç¯çœªéå£ã®æã«æž¡ã£ãã
OpenAIãAIã»ãã¥ãªãã£ã¹ã¿ãŒãã¢ããã®ãPromptfooããè²·å
OpenAIããAIã·ã¹ãã ã®ã»ãã¥ãªãã£ã匷åããããã«ã2024å¹Žåµæ¥ã®ã¹ã¿ãŒãã¢ããã§ããPromptfooãè²·åãããšçºè¡šããŸãããPromptfooã¯AIã®è匱æ§ãç¹å®ã修埩ããããã®ã»ãã¥ãªãã£ãã©ãããã©ãŒã ã§ããããã§ã«ãã©ãŒãã¥ã³500äŒæ¥ã®25ïŒ ä»¥äžããæé13äžäººãã®ã¢ã¯ãã£ããŠãŒã¶ãŒã«å©çšãããŠããŸããAIãšãŒãžã§ã³ãã®æ®åã«äŒŽããæ©å¯ããŒã¿ãžã®äžæ£ã¢ã¯ã»ã¹ãèªååã·ã¹ãã ã®æªçšãšãã£ãæ°ããªãªã¹ã¯ãçãŸããŠããããã®è²·åã¯ãã®å¯Ÿçãæ¥ãçãããããŸããä»åŸã¯OpenAIã®AIãšãŒãžã§ã³ãæ§ç¯ãã©ãããã©ãŒã ã§ããOpenAI Frontierã«çµ±åãããèªååãããã¬ããããŒã æŒç¿ãéããŠã»ãã¥ãªãã£è©äŸ¡ãè¡ãããäºå®ã§ãã OpenAIãAIã»ãã¥ãªãã£ã¹ã¿ãŒãã¢ããã®ãPromptfooããè²·å
Mandiant嵿¥è Kevin Mandiaæ°ãAIãµã€ããŒã»ãã¥ãªãã£ã®ã¹ã¿ãŒãã¢ãããArmadinãã§åŸ©åž°ã1å9000äžãã«ã調é
èåãªãµã€ããŒã»ãã¥ãªãã£äŒæ¥ã§ããMandiantã®åµæ¥è ãKevin Mandiaæ°ãæ°ããªã¹ã¿ãŒãã¢ããArmadinãç«ã¡äžãã1å9000äžãã«ãšããå·šé¡ã®è³é調éã宿œããŸããããã®äŒæ¥ã¯AIãæŽ»çšããèªåŸåãœãããŠã§ã¢ãšãŒãžã§ã³ããæ§ç¯ãããšã³ã¿ãŒãã©ã€ãºç°å¢ã24æéäœå¶ã§ç£èŠããŠäŸµå®³ã®å åãç¶ç¶çã«ã¹ãã£ã³ããŸãããããŸã§ã»ãã¥ãªãã£ããŒã ãæ°æéããæ°æ¥ãããŠè¡ã£ãŠãããã°ãã¢ã©ãŒãã®åæäœæ¥ãããããæ°åã§å®äºãããããšãå¯èœã«ãªããŸãããµã€ããŒæ»æã®é »åºŠãšå·§åŠããå¢ãäžã§ã人éã«ããæååæãžã®äŸåãæžãããAIãšãŒãžã§ã³ãã«ããèªååããµã€ããŒé²åŸ¡ã®äžå¿ã«æ®ãã驿°çãªã¢ãããŒããšããŠæ³šç®ãéããŠããŸãã Mandiant founder Kevin Mandia returns with AI cybersecurity startup Armadin, raises $190M in funding
ãã»ãã¥ãªãã£å°éå®¶ãšåçã®çµæã Microsoftãå ¬éããAIæ¯æŽã®è åšåæã¯ãŒã¯ãããŒã®äžèº«
Microsoftã®Defender Security Research Teamããéæ§é åããŒã¿ããAIãæŽ»çšããŠé«åºŠãªæ€åºã€ã³ãµã€ããçæããæ°ããã¯ãŒã¯ãããŒãå ¬éããŸããããã®ã·ã¹ãã ã¯ãé·æã®è åšã¬ããŒããªã©ããTTPïŒæŠè¡ã»æè¡ã»æé ïŒãèªåçã«æœåºããMITRE ATT&CKãã¬ãŒã ã¯ãŒã¯ã«æ£èŠåããŠãããã³ã°ãè¡ããŸããããã«ãRAGïŒæ€çŽ¢æ¡åŒµçæïŒãçšããAIã®åŒã³åºãã«ãããæ¢åã®æ€åºã«ã¿ãã°ãšç §ããåãããŠã«ãã¬ããžã®ã®ã£ãããç¹å®ããŸããMicrosoftã®è©äŸ¡ã«ããã°ããã®AIãæŽ»çšããã¢ãããŒãã¯ã»ãã¥ãªãã£å°éå®¶ãšåçã¬ãã«ã®ç²ŸåºŠãéæããŠãããåæäœæ¥ã®åçãªé«éåãæåŸ ãããŠããŸãã ãã»ãã¥ãªãã£å°éå®¶ãšåçã®çµæã Microsoftãå ¬éããAIæ¯æŽã®è åšåæã¯ãŒã¯ãããŒã®äžèº«
2026ææ°ãµã€ããŒæ»æãã¬ã³ã æ¥åå§èšãªã¹ã¯å¯Ÿçã®ããã®6ã€ã®ç¹æ€ãã€ã³ã
çŸåšã®ãµã€ããŒæ»æã¯æ¥µããŠçµç¹åãããŠãããç¹ã«ã©ã³ãµã ãŠã§ã¢ãããžãã¹ã¡ãŒã«è©æ¬ºïŒBECïŒã«ããè¢«å®³ãæ·±å»åããŠããŸããæè¿ã§ã¯ãçæAIãæªçšããçµå¶è ã®é³å£°åæã«ããééæç€ºããå ¬å ±ã®USBããŒãã«äžæ£ããããä»èŸŒããžã¥ãŒã¹ãžã£ããã³ã°ãªã©ãææ³ããŸããŸãå·§åŠã«ãªã£ãŠããŸãããŸããå§èšå ã®ã·ã¹ãã ããäŸµå ¥ã詊ã¿ããµãã©ã€ãã§ãŒã³æ»æãåŸãçµ¶ãããèªç€Ÿã®ã»ãã¥ãªãã£å¯Ÿçã ãã§ã¯å®å šã確ä¿ããããªãç¶æ³ã§ããããã«å¯Ÿæããããã«ã¯ã瀟å å€ã®å¢çããªãããŠãã¹ãŠã®éä¿¡ãæ€èšŒãããŒããã©ã¹ãã¢ãŒããã¯ãã£ã®å°å ¥ããå€èŠçŽ èªèšŒïŒMFAïŒã®åŸ¹åºã«ããç¹æš©IDã®ä¿è·ãäžå¯æ¬ ãšãªã£ãŠããŸãã 2026ææ°ãµã€ããŒæ»æãã¬ã³ã æ¥åå§èšãªã¹ã¯å¯Ÿçã®ããã®6ã€ã®ç¹æ€ãã€ã³ã
ãåäŒç€Ÿã®å€ãVPNè£ çœ®ãã¯äœç¹ãªã¹ã¯ïŒ æ»æè ããå ã«åãããã®ã»ãã¥ãªãã£âåªå 床âåèšèšè¡
å€ãã®äŒæ¥ãå°å ¥ããŠããASMïŒã¢ã¿ãã¯ãµãŒãã§ã¹ç®¡çïŒããåãªãè³ç£ã®æ£åžãããŒã«ããå®è·µçãªæææ±ºå®ãšã³ãžã³ãžãšé²åãããããã®ææ³ãæå±ãããŠããŸããæ»æè ã®èŠç¹ã«ç«ã¡ãè³ç£éèŠåºŠãè匱æ§ãé²åºåºŠãæªçšå¯èœæ§ã®4ã€ã®èŠçŽ ãæãåãããŠåªå 床ã¹ã³ã¢ãç®åºããããšãéèŠã§ããããã«ãã¹ã³ã¢åž¯ããšã«SLOïŒãµãŒãã¹ã¬ãã«ç®æšïŒãæç¢ºã«å®çŸ©ããããšã§ãäŸãã°ãã¹ã³ã¢90以äžãªã4æé以å ã«å°ã蟌ããããšãã£ãè¿ éãªå¯Ÿå¿ãå¯èœã«ãªããŸããã°ã¬ãŒãŸãŒã³ã«ãªããã¡ãªåäŒç€Ÿãå§èšå ã®ITè³ç£ãäžå çã«ç£èŠããå±äººçãªå€æãæé€ããèªååãããŒãæ§ç¯ããããšããèœåçãªãµã€ããŒé²åŸ¡ã®éµãšãªããŸãã ãåäŒç€Ÿã®å€ãVPNè£ çœ®ãã¯äœç¹ãªã¹ã¯ïŒ æ»æè ããå ã«åãããã®ã»ãã¥ãªãã£âåªå 床âåèšèšè¡
AIæä»£ã®ã©ã³ãµã ãŠã§ã¢ãç Žå£ãããããã¯ã¢ããã®åžžèã
ãããŸã§ITæ¥çã®ãã¹ããã©ã¯ãã£ã¹ãšãããŠããã3-2-1ããã¯ã¢ããæŠç¥ãããAIãæŽ»çšããé«åºŠãªãµã€ããŒæ»æã®åã§ã¯éçšããªããªãã€ã€ãããŸããè¿å¹Žã®ãã«ãŠã§ã¢ã®80ïŒ ã¯ãæ€ç¥ãåé¿ããŠã·ã¹ãã å ã«é·æéæœäŒãããªã¢ãŒãå¶åŸ¡ãç¶æããç°å¢å¯çåïŒLiving off the landïŒæ»æãžãšã·ããããŠããŸããããŒã¿ãæå·åããŠå³åº§ã«èº«ä»£éãèŠæ±ããåŸæ¥ã®ã©ã³ãµã ãŠã§ã¢ãšã¯ç°ãªããAIãé§äœ¿ããæ»æè ã¯å¯ãã«èªèšŒæ å ±ãçªåããããŒã¿ãéãã«æã¡åºããŸããé²åŸ¡åŽã¯äŒãããšãªãé²åãç¶ããAIããŒã¹ã®è åšã«å¯ŸããåŸæ¥ã®æ çµã¿ãè¶ ããæ°ããªãµã€ããŒã¬ãžãªãšã³ã¹æŠç¥ãæ§ç¯ããå¿ èŠããããŸãã AIæä»£ã®ã©ã³ãµã ãŠã§ã¢ãç Žå£ãããããã¯ã¢ããã®åžžèã
åœç£CNAPPãCloudbaseããèšå®ãã¹èšºæåºæºãå·æ°ããªã¹ã¯å¯ŸåŠã®åªå é äœãæç¢ºå
ã¯ã©ãŠãã€ã³ãã©ã®ã»ãã¥ãªãã£ãªã¹ã¯ã管çããåœç£ã®CNAPPã§ããCloudbaseããAWSããã³Azureç°å¢åãã®èšå®ãã¹èšºæåºæºãå šé¢çã«å·æ°ããŸããããªãªãŒã¹åœåããå€§å¹ ã«å¢å ããçŸåšã§ã¯1000é ç®ãè¶ ãã蚺æé ç®ã®éèŠåºŠãåèšèšããåªå é äœã®ã°ãã€ããè§£æ¶ããŠããŸããç¹ã«ãæã軜埮ãªãªã¹ã¯ã瀺ãåç§°ããLowããããInfoããžãšå€æŽãããããã»ãã¥ãªãã£äžã®åèæ å ±ãšããŠäœçœ®ã¥ããããšã§ãä»ãã察åŠãã¹ãé倧ãªãªã¹ã¯ãšã®åºå¥ãæç¢ºã«ããŸãããããã«ãããã»ãã¥ãªãã£æ åœè ã¯ãã«ãã¯ã©ãŠãç°å¢å šäœã§äžè²«ããåºæºã«åºã¥ããå¹ççãã€æ£ç¢ºã«ãªã¹ã¯ç®¡çãè¡ãããšãã§ããããã«ãªããŸãã åœç£CNAPPãCloudbaseããèšå®ãã¹èšºæåºæºãå·æ°ããªã¹ã¯å¯ŸåŠã®åªå é äœãæç¢ºå
æ±å€§ç 究宀ã®ãµãŒãã«äžæ£ã¢ã¯ã»ã¹
æ±äº¬å€§åŠã¯ãç 究宀ã§éçšããŠãããµãŒããå€éšããã®äžæ£ã¢ã¯ã»ã¹ãåããããšãå ¬è¡šããŸããããã®ã€ã³ã·ãã³ãã¯ãåœè©²ãµãŒããå©çšããŠããå ±åç ç©¶è ã®ã¢ã«ãŠã³ããåŠå€ã®ãµãŒãçµç±ã§äŸµå®³ããããããèžã¿å°ã«ããŠçºçãããã®ã§ããäžæ£ã¢ã¯ã»ã¹ã¯åŠå ã ãã§ãªããåœè©²ãµãŒããèµ·ç¹ãšããŠåŠå€ã®ãããã¯ãŒã¯ã«å¯ŸããŠãè¡ãããããšã確èªãããŠããŸãã幞ããªããšã«ããã®ãµãŒãã¯äž»ã«å ¬éããŒã¿ãçšããèšç®åŠçã«äœ¿çšãããŠãããããçŸæç¹ã§ã¯å人æ å ±ãæ©åŸ®æ å ±ã®æŒãããæ¹ããã¯ç¢ºèªãããŠããŸããã倧åŠåŽã¯äžå¯©ãªéä¿¡ãæ€ç¥åŸããã«ãããã¯ãŒã¯ã鮿ããèŠå¯ãå«ãé¢ä¿æ©é¢ãšé£æºããŠè©³çްãªèª¿æ»ãé²ããŠããŸãã æ±å€§ç 究宀ã®ãµãŒãã«äžæ£ã¢ã¯ã»ã¹
ãSecurity Hub修埩æé ã[APIGateway.8] API Gateway ã«ãŒãã«ã¯èªå¯ã¿ã€ããæå®ããå¿ èŠããããŸã
AWSç°å¢ã®ã»ãã¥ãªãã£ç¶æ³ãç£èŠããAWS Security Hubã«ãããŠãAPI Gateway V2ã®ã«ãŒãã«å¯ŸããèªèšŒèšå®ã®éèŠæ§ãšä¿®åŸ©æé ã解説ãããŠããŸããAPI Gatewayã®ã«ãŒãã«èªå¯ã¿ã€ããèšå®ãããŠããªãå Žåã誰ã§ããšã³ããã€ã³ãã«ã¢ã¯ã»ã¹ã§ããŠããŸããäžæ£ãªããŒã¿ã®ååŸãããã¯ãšã³ããžã®äŸµå ¥ãšãã£ãé倧ãªã»ãã¥ãªãã£ãªã¹ã¯ãæããŸãããããé²ãããã«ã¯ãçšéã«å¿ããŠAWS_IAMãJWTããŸãã¯ã«ã¹ã¿ã ã®LambdaãªãŒãœã©ã€ã¶ãŒãšãã£ãé©åãªèªèšŒã¿ã€ããèšå®ããããšãäžå¯æ¬ ã§ããå éšãã¹ãçšãªã©æå³çã«èªèšŒãå€ããŠããå Žåãé€ããæ¢åã®ã¯ã©ã€ã¢ã³ããžã®åœ±é¿ã確èªããäžã§éããã«èšå®ãä¿®æ£ããããšãæšå¥šãããŠããŸãã [ãSecurity Hub修埩æé ã[APIGateway.8] API Gateway ã«ãŒãã«ã¯èªå¯ã¿ã€ããæå®ããå¿ èŠããããŸã](https://dev.classmethod.jp/articles/securityhub-fsbp-remediation-apigateway-8/)
èå¯
ä»åã®ãã¥ãŒã¹å šäœã俯ç°ãããšããµã€ããŒã»ãã¥ãªãã£ã®é åã«ãããŠAIïŒäººå·¥ç¥èœïŒãæ»æè ãšé²åŸ¡è ã®äž¡æ¹ã«åçãªãã©ãã€ã ã·ããããããããŠããããšãããããããŸããæ»æè ã¯AIãå©çšããŠãã«ãŠã§ã¢ãé«åºŠåãããåŸæ¥ã®æ€ç¥ã·ã¹ãã ã匷åºãªããã¯ã¢ããæŠç¥ãããããæããããšããŠããŸããäžæ¹ã§ãé²åŸ¡åŽãOpenAIãMicrosoftãªã©ã®å·šå€§äŒæ¥ãAIãšãŒãžã§ã³ããæŽ»çšããè åšåæãèªå修埩ããŒã«ã®éçºãæ¥ãããã§é²ããŠããããµã€ããŒç©ºéã§ã¯ãŸãã«AIå士ã®é«åºŠãªæŠããæ¬æ ŒåããŠãããšèšããŸãð€ã
ãŸãããµãã©ã€ãã§ãŒã³å šäœãéããå æ¬çãªãªã¹ã¯ç®¡çã®éèŠæ§ãæ¹ããŠæµ®ã圫ãã«ãªã£ãŠããŸãã倧åŠã®ç 究宀ãåäŒç€Ÿã®å€ãVPNè£ çœ®ãéããäŸµå ¥äºäŸã瀺ãããã«ãçµç¹åäœã®é²åŸ¡ãå®ç§ã§ãã£ãŠããé¢é£äŒæ¥ãå§èšå ã®å°ããªã»ãã¥ãªãã£ã®éãããããã¯ãŒã¯å šäœã䟵害ããããªã¹ã¯ãé«ãŸã£ãŠããŸããå¢çé²åŸ¡ã«é Œãæä»£ã¯çµãããåãããŒããã©ã¹ããåæãšããæ°ããã»ãã¥ãªãã£ã®åžžèãæ±ããããŠããŸãðã
ä»åŸã¯ãASMïŒã¢ã¿ãã¯ãµãŒãã§ã¹ç®¡çïŒãCNAPPãšãã£ãææ°ã®ãœãªã¥ãŒã·ã§ã³ãå°å ¥ããèšå€§ãªã¢ã©ãŒãã®äžããæ¬åœã«å¯ŸåŠãã¹ããªã¹ã¯ãAIã§ã¹ã³ã¢ãªã³ã°ããŠèªååããã¢ãããŒããäž»æµã«ãªãã§ããããå±äººçãªéçšããè±åŽããåªå 床ã«åºã¥ããè¿ éãªæææ±ºå®ãšé²åŸ¡ã¢ã¯ã·ã§ã³ãã·ã¹ãã ã«çµã¿èŸŒãããšããããããã®äŒæ¥é²è¡ã«ãããŠäžå¯æ¬ ãªæŠç¥ãšãªããŸãðã

