[![Logo](https://www.paloaltonetworks.com/wp-content/uploads/2021/07/PANW_Parent.png)](https://www.paloaltonetworks.jp/)  
[![Unit42 Logo](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/unit42-logo-white.svg)](https://unit42.paloaltonetworks.com/ja/)  
Menu

* [セキュリティ コンサルティング](https://www.paloaltonetworks.com/unit42)
* [**現在、攻撃を受けていますか?**](https://start.paloaltonetworks.com/contact-unit42.html)  
  Japanese
* [English](https://unit42.paloaltonetworks.com/russian-language-malspam-pushing-redaman-banking-malware/)
* [Japanese](https://unit42.paloaltonetworks.com/ja/russian-language-malspam-pushing-redaman-banking-malware/)
* [Threat Research Center](https://unit42.paloaltonetworks.com/ja/ "Threat Research")
* [脅威リサーチ](https://unit42.paloaltonetworks.com/ja/category/threat-research-ja/ "脅威リサーチ")
* [マルウェア](https://unit42.paloaltonetworks.com/ja/category/malware-ja/ "マルウェア")  
  [マルウェア](https://unit42.paloaltonetworks.com/ja/category/malware-ja/)

# バンキング マルウェアRedamanを配信するロシア語のマルスパム

![Clock Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-clock.svg) 3 分で読めます  
Related Products  
[![Advanced Threat Prevention icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/06/strata_RGB_logo_Icon_Color.png)Advanced Threat Prevention](https://unit42.paloaltonetworks.com/ja/product-category/advanced-threat-prevention-ja/ "Advanced Threat Prevention")[![Advanced WildFire icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/06/strata_RGB_logo_Icon_Color.png)Advanced WildFire](https://unit42.paloaltonetworks.com/ja/product-category/advanced-wildfire-ja/ "Advanced WildFire")[![Cortex XDR icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/06/cortex_RGB_logo_Icon_Color.png)Cortex XDR](https://unit42.paloaltonetworks.com/ja/product-category/cortex-xdr-ja/ "Cortex XDR")

* ![Profile Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-profile-grey.svg)  
  著者:
  
  * [Mike Harbison](https://unit42.paloaltonetworks.com/ja/author/mike-harbison/)
  * [Brad Duncan](https://unit42.paloaltonetworks.com/ja/author/brad-duncan/)

* ![Published Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-calendar-grey.svg)  
  公開日:2019年1月23日

* ![Tags Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-category.svg)  
  カテゴリー
  
  * [サイバー犯罪](https://unit42.paloaltonetworks.com/ja/category/cybercrime-ja/)
  * [マルウェア](https://unit42.paloaltonetworks.com/ja/category/malware-ja/)
  * [脅威リサーチ](https://unit42.paloaltonetworks.com/ja/category/threat-research-ja/)

* ![Tags Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-tags-grey.svg)  
  タグ:
  
  * [Banking Trojan](https://unit42.paloaltonetworks.com/ja/tag/banking-trojan-ja/)
  * [Malspam](https://unit42.paloaltonetworks.com/ja/tag/malspam-ja/)
  * [Redaman](https://unit42.paloaltonetworks.com/ja/tag/redaman-ja/)
  * [Russia](https://unit42.paloaltonetworks.com/ja/tag/russia-ja/)

* [![Download Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-download.svg)](https://unit42.paloaltonetworks.com/ja/russian-language-malspam-pushing-redaman-banking-malware/?pdf=download&lg=ja&_wpnonce=7c3dfffa8c "Click here to download")

* [![Print Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-print.svg)](https://unit42.paloaltonetworks.com/ja/russian-language-malspam-pushing-redaman-banking-malware/?pdf=print&lg=ja&_wpnonce=7c3dfffa8c "Click here to print")

共有![Down arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/down-arrow.svg)

* ![Link Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-share-link.svg)

* [![Link Email](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-sms.svg)](mailto:?subject=バンキング%20マルウェアRedamanを配信するロシア語のマルスパム&body=Check%20out%20this%20article%20https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F "Share in email")

* [![Facebook Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-fb-share.svg)](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F "Share in Facebook")

* [![LinkedIn Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-linkedin-share.svg)](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F&title=バンキング%20マルウェアRedamanを配信するロシア語のマルスパム "Share in LinkedIn")

* [![Twitter Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-twitter-share.svg)](https://twitter.com/intent/tweet?url=https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F&text=バンキング%20マルウェアRedamanを配信するロシア語のマルスパム "Share in Twitter")

* [![Reddit Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-reddit-share.svg)](https://www.paloaltonetworks.com//www.reddit.com/submit?url=https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F&ts=markdown "Share in Reddit")

* [![Mastodon Icon](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-mastodon-share.svg)](https://mastodon.social/share?text=バンキング%20マルウェアRedamanを配信するロシア語のマルスパム%20https%3A%2F%2Funit42.paloaltonetworks.com%2Fja%2Frussian-language-malspam-pushing-redaman-banking-malware%2F "Share in Mastodon")
  Redamanは2015年に初めて確認されたバンキング マルウェアで、ロシアの金融機関を利用して取引を行う受信者を標的とします。最初は[RTMバンキング型トロイの木馬](https://www.welivesecurity.com/wp-content/uploads/2017/02/Read-The-Manual.pdf)として報告され、2017年に、[Symantec](https://www.symantec.com/security-center/writeup/2017-022117-0116-99)や[Microsoft](https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=TrojanSpy:Win32/Redaman)などのベンダーがこのマルウェアの更新バージョンをRedamanと呼び始めました。2018年9月から12月までの4か月間に、Redamanのさまざまなバージョンが、ロシア語の大量配信キャンペーンで見つかっています。このブログでは、2018年9月から12月までの時点でこのバンキング マルウェアを配信していた悪意のあるスパム(マルスパム)の継続的なキャンペーンから見つかった新たな進化に関する調査結果を紹介します。ここでは、以下について説明します。

* 感染ベクトル

* 電子メールの特徴

* 標的にされた受信者

* Redamanのサンプルの分析

* 感染トラフィック

## 感染ベクトル

2018年9月以降、Redamanバンキング マルウェアはマルスパムを通して配信されています。このキャンペーンでは、ロシア語のマルスパムがロシアの電子メール受信者宛てに送信され、多くの場合、電子メール アドレスの末尾に\*\*\*.ru\*\*\* が付いています。これらの電子メールにはファイルが添付されています。これらの添付ファイルはPDFドキュメントを装ったアーカイブ済みWindows実行可能ファイルです。2018年9月には、添付ファイルはzipアーカイブでした。2018年10月には、添付ファイルはzipアーカイブ、7-zipアーカイブ、およびrarアーカイブでした。2018年11月には、添付ファイルはrarアーカイブでした。そして、2018年12月には、添付ファイルはファイル名の末尾が\*\*\*.gz\*\*\*となっているgzipアーカイブに変わりました。
![図1: 2018年9月から12月までのRedamanバンキング マルウェアの感染のフロー チャート](https://unit42-preview.paloaltonetworks.com/wp-content/uploads/2019/10/redaman_figure1_jp.png) 図1: 2018年9月から12月までのRedamanバンキング マルウェアの感染のフロー チャート

## 電子メール

このマルスパムでは、件名、メッセージ テキスト、および添付ファイル名が何度も変わっています。しかしながら、メッセージにはすべて共通のテーマがあります。メッセージでは、受信者が解決する必要のある金融問題と思われる件に関する文書またはファイルが参照されています。これらのメッセージは多くの場合あいまいで、金融問題と思われる件に関する詳細はほとんど含まれていません。メッセージの唯一の目的は、受信者が添付のアーカイブ ファイルを開いて、格納されている実行可能ファイルをダブルクリックするよう誘導することです。

2018年9月から12月までに確認された数多くの実例の中から、このマルスパムの件名を10個選んで次に示します。

* Subject: Акт сверки сентябрь-октябрь
* Subject: Весь пакет док-ов за прошлый месяц
* Subject: Все док-ты за август-сентябрь
* Subject: Деб.задолженность среда
* Subject: Документы, сверка 02.10
* Subject: Заявка на возврат за ноябрь
* Subject: Необходимо свериться среда
* Subject: Отправка на за прошлую неделю
* Subject: Пакет документов для оплаты 1е октября
* Subject: Сверка на оплату

次に示したものは、上記の件名のGoogle翻訳です。

* 件名: 和解の行為9月〜10月
* 件名: 先月のドックの全パッケージ
* 件名: 8月から9月までのすべての文書
* 件名: 水曜日の借金
* 件名: 書類検証02.10
* 件名: 11月の返品請求
* 件名: 水曜日に確認する必要があります
* 件名: 先週の送信
* 件名: 支払用書類のパッケージ
* 件名: 支払いの調整

![図2: 2018年9月のRedamanマルスパムの例](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure2.png) 図2: 2018年9月のRedamanマルスパムの例 ![図3: 2018年10月のRedamanマルスパムの例](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure3.png) 図3: 2018年10月のRedamanマルスパムの例 ![図4: 2018年11月のRedamanマルスパムの例](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure4.png) 図4: 2018年11月のRedamanマルスパムの例  
![図5: 2018年12月のRedamanマルスパムの例](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure5.png) 図5: 2018年12月のRedamanマルスパムの例

## 標的にされた受信者

弊社の[AutoFocus](https://www.paloaltonetworks.jp/products/secure-the-network/autofocus.html)脅威インテリジェンス プラットフォームが検知したこれらの電子メールおよびデータのコンテンツから、このキャンペーンは主にロシアの受信者を標的としていることが確認されました。2018年9月から12月までに、AutoFocusで、Redamanバンキング マルウェアとしてタグ付けされた添付ファイルを持つ電子メール セッションは、3,845件でした。このマルスパムの上位10の送信者および受信者のデータは次のとおりです。

### 上位10の送信者のメール サーバー:

* ロシアから -- 3,456
* ベラルーシから -- 98
* ウクライナから -- 93
* エストニアから -- 29
* ドイツから -- 30
* 米国から -- 21
* オランダから -- 12
* 英国から -- 7
* スイスから -- 7
* ラトビアから -- 2

### 上位10の受信者のメール サーバー:

* ロシア宛て -- 2,894
* オランダ宛て -- 195
* 米国宛て -- 55
* スウェーデン宛て -- 24
* 日本宛て -- 16
* カザフスタン宛て-- 12
* スペイン宛て -- 12
* フィンランド宛て -- 11
* ドイツ宛て -- 6
* オーストリア宛て -- 4

![図6: 2018年9月から12月までの電子メール受信者の分布を示したAutoFocusのマップ](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure6.png) 図6: 2018年9月から12月までの電子メール受信者の分布を示したAutoFocusのマップ

## Redamanのサンプルの分析

Unit 42は、2018年11月13日のマルスパムからRedamanマルウェアのサンプルを分析しました。

### マルスパムのrarアーカイブのSHA256ハッシュ:

* f6fb51809caec2be6164863b5773a7ee3ea13a449701a1f678f0655b6e8720df

### rarアーカイブから抽出したRedaman実行可能ファイルのSHA256ハッシュ:

* cd961e81366c8d9756799ec8df14edaac5e3ae4432c3dbf8e3dd390e90c3e22f

### 上記の実行可能ファイルによって作成されたRedaman DLLのSHA256ハッシュ:

* cd961e81366c8d9756799ec8df14edaac5e3ae4432c3dbf8e3dd390e90c3e22f

RedamanのWindows実行可能ファイルが最初に実行されるときに、この実行可能ファイルはローカル ホスト(C:\\ドライブまたはD:\\ドライブ)で次のファイルまたはディレクトリを検索します。

* ***C:\\cuckoo***
* ***C:\\fake\_drive***
* ***C:\\perl***
* ***C:\\strawberry***
* ***C:\\targets.xls***
* ***C:\\tsl***
* ***C:\\wget.exe***
* ***C:\\\*python\****

これらのいずれかのファイルまたはディレクトリが存在する場合、Windows実行可能ファイルは例外をスローして終了します。これは、Redamanがサンドボックスあるいはそれと同様の分析環境で実行されているのかどうかを確認していることを示します。

例外が発生しない場合、Windows実行可能ファイルはDLLファイルをユーザーの***AppData\\Local\\Temp\\*** ディレクトリにドロップし、\*\*\*C:\\ProgramData\\\*\*\*ディレクトリの下にランダムな名前を付けてフォルダを作成し、そのフォルダの下にランダムなファイル名を付けたDLLを移動します。このRedaman DLLは、以下のプロパティを持ち、スケジュールされたWindowsタスクの初めから終わりまでその永続性が確保されます。

* 名前: Windows Update
* 説明: Windowsコンポーネントを更新する
* トリガー: ユーザーがログオンすると常に実行される
* アクション: **rundll32.exe "C:\\ProgramData\\** *%random value%\\%random value.random 3-character extension%* ",**DllGetClassObject host**

スケジュールされたタスクを作成し、DLLをロードさせた後、最初のRedaman実行可能ファイルは自身を削除します。
![図7: スケジュールされたタスクを通して永続的なRedaman DLLの例](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure7.png) 図7: スケジュールされたタスクを通して永続的なRedaman DLLの例 ![図8: Redaman DLLがrundll32.exeを使用してアクティブであることを示しているProcess Hacker](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure8.png) 図8: Redaman DLLがrundll32.exeを使用してアクティブであることを示しているProcess Hacker

Redamanは、アプリケーション定義のフック プロシージャを使用して、ブラウザ アクティビティ、特にChrome、Firefox、およびInternet Explorerのアクティビティを監視します。次にローカル ホストで、金融分野に関連した情報がないか検索します。Redamanのその他の機能は次のとおりです。

* 感染ホストへのファイルのダウンロード
* キーロギング アクティビティ
* スクリーン ショットのキャプチャおよびWindowsデスクトップの動画の記録
* 特にロシアの銀行を標的とした、金融データの収集と盗み出し
* スマート カードのモニタリング
* 感染ホストのシャットダウン
* Windowsホスト ファイルを通したDNS構成の変更
* クリップボード データの取得
* 実行中のプロセスの強制終了
* Windowsのストアへの証明書の追加

## 感染トラフィック

Unit 42は、2018年11月14日に、SHA256ハッシュcd961e81366c8d9756799ec8df14edaac5e3ae4432c3dbf8e3dd390e90c3e22fが含まれる実行可能ファイルを使用して、以下の感染トラフィックを生成しました。

* 104\.28.16\[.\]33 port 443 -- ***namecha\[.\]in*** -- GET /name/d/stat-counter-3-1
* 185\.141.61\[.\]246 port 80 -- ***185.141.61\[.\]246*** -- POST /index.php
* 193\.37.213\[.\]28 port 80 -- ***193.37.213\[.\]28*** -- POST /p/g\_3453456jawd346.php

![](https://unit42.paloaltonetworks.com/wp-content/uploads/2019/01/redaman_figure9.png) 図9: WiresharkでフィルタしたRedamanの感染トラフィック

代用のネームコイン ブロック エクスプローラである***namecha\[.\]in*** へのHTTPS URLからネットワーク アクティビティが開始しました。[ネームコイン](https://namecoin.org/)とは、分散DNSに使用できる仮想通貨システムです。これは、実例として当てはまることがわかりました。図10に示しているように、URLから、後続の感染後トラフィックに使用するIPアドレスが返されたからです。

![図10: 後続の感染トラフィックに使用するためにnamecha\[.\]inから返されたデータ](https://unit42-preview.paloaltonetworks.com/wp-content/uploads/2019/10/redaman_figure10_jp.png) 図10: 後続の感染トラフィックに使用するためにnamecha\[.\]inから返されたデータ 感染の発生中は、コールバック トラフィックが、185.141.61\[.\]246のコマンド\&コントロール(C2)サーバーに定期的に送信されました。感染した直後に、C2サーバーからのリターン トラフィックで、Pony亜種DLLが、感染したWindowsクライアントに送信されました。 ![図11: Wiresharkを使用して、58キロバイトのエンコード データが185.141.61\[.\]246のC2サーバーから返されたことを検出](https://unit42-preview.paloaltonetworks.com/wp-content/uploads/2019/10/redaman_figure11_jp.png) 図11: Wiresharkを使用して、58キロバイトのエンコード データが185.141.61\[.\]246のC2サーバーから返されたことを検出 Pony亜種DLLのデータは、複数のXORキーと[RTLcompressed](https://docs.microsoft.com/en-us/windows-hardware/drivers/ddi/content/ntifs/nf-ntifs-rtlcompressbuffer)を使用してXORエンコードされていました。このPony亜種DLLのSHA256は、b4701d95219d465e978c4a815fcce89787916da33ae2a49d0e76d4445fd39adaで、これは感染の発生中に***193.37.213\[.\]28/p/g\_3453456jawd346.php*** へのトラフィックを生成しました。

## 結論

2015年に初めて確認されてから、バンキング マルウェアのこのファミリは、ロシアの金融機関を通した取引を実行する受信者を標的にし続けています。Unit 42は、2018年9月から12月の4か月間にマルスパムの100件を超える実例を検出しました。このブログはその時間枠のRedamanを詳細に調査した内容を示しています。ここでは、以下について説明しました。

* 感染ベクトル
* 電子メールの特徴
* 標的にされた受信者
* Redamanのサンプルの分析
* 感染トラフィック

2019年の時がたつにつれて、Redamanの新しいサンプルを検出できるものと期待しています。

パロアルトネットワークスのお客様は、この脅威から保護されています。Trapsがローカル分析を使用してこれらのファイルを識別し、Wildfireがこれらのファイルを悪意あるものとして分類しています。弊社のThreat Preventionプラットフォームがこのマルウェアを検出します。2018年9月から12月に弊社が検出したRedamanマルウェアの詳細については、以下の付録をご覧ください。

## 付録A

2018年9月から12月に検出された119個のマルスパム添付ファイルのSHA256ファイル ハッシュ、30個の抽出済みRedaman実行可能ファイル、および30個のドロップされたRedaman DLLファイル。詳細については、以下にアクセスしてください。[https://github.com/pan-unit42/iocs/blob/master/Redaman\_banking\_malware/2018-09-thru-2018-12-file-hashes-for-Redaman-banking-malware.txt](https://github.com/pan-unit42/iocs/blob/master/Redaman_banking_malware/2018-09-thru-2018-12-file-hashes-for-Redaman-banking-malware.txt)

## 付録B

2018年9月に検出されたRedamanバンキング マルウェアのSHA256ファイル ハッシュ、アーカイブ ファイル名、および抽出済みファイル名。詳細については、以下にアクセスしてください。[https://github.com/pan-unit42/iocs/blob/master/Redaman\_banking\_malware/2018-09-file-hashes-for-Redaman-banking-malware.txt](https://github.com/pan-unit42/iocs/blob/master/Redaman_banking_malware/2018-09-file-hashes-for-Redaman-banking-malware.txt)

## 付録C

2018年10月に検出されたRedamanバンキング マルウェアのSHA256ファイル ハッシュ、アーカイブ ファイル名、および抽出済みファイル名。詳細については、以下にアクセスしてください。[https://github.com/pan-unit42/iocs/blob/master/Redaman\_banking\_malware/2018-10-file-hashes-for-Redaman-banking-malware.txt](https://github.com/pan-unit42/iocs/blob/master/Redaman_banking_malware/2018-10-file-hashes-for-Redaman-banking-malware.txt)

## 付録D

2018年11月に検出されたRedamanバンキング マルウェアのSHA256ファイル ハッシュ、アーカイブ ファイル名、および抽出済みファイル名。詳細については、以下にアクセスしてください。[https://github.com/pan-unit42/iocs/blob/master/Redaman\_banking\_malware/2018-11-file-hashes-for-Redaman-banking-malware.txt](https://github.com/pan-unit42/iocs/blob/master/Redaman_banking_malware/2018-11-file-hashes-for-Redaman-banking-malware.txt)

## 付録E

2018年12月に検出されたRedamanバンキング マルウェアのSHA256ファイル ハッシュ、アーカイブ ファイル名、および抽出済みファイル名。詳細については、以下にアクセスしてください。[https://github.com/pan-unit42/iocs/blob/master/Redaman\_banking\_malware/2018-12-file-hashes-for-Redaman-banking-malware.txt](https://github.com/pan-unit42/iocs/blob/master/Redaman_banking_malware/2018-12-file-hashes-for-Redaman-banking-malware.txt)
トップに戻る

### タグ

* [Banking Trojan](https://unit42.paloaltonetworks.com/ja/tag/banking-trojan-ja/ "Banking Trojan")
* [Malspam](https://unit42.paloaltonetworks.com/ja/tag/malspam-ja/ "Malspam")
* [Redaman](https://unit42.paloaltonetworks.com/ja/tag/redaman-ja/ "Redaman")
* [Russia](https://unit42.paloaltonetworks.com/ja/tag/russia-ja/ "Russia")  
  [Threat Research Center](https://unit42.paloaltonetworks.com/ja/ "Threat Research") [次ページ:OceanLotusの新しいダウンローダーKerrDownの追跡](https://unit42.paloaltonetworks.com/ja/tracking-oceanlotus-new-downloader-kerrdown/ "OceanLotusの新しいダウンローダーKerrDownの追跡")

### 目次

* 

### 関連記事

* [2026年冬季オリンピックに対するロシアのサイバー脅威を理解する](https://unit42.paloaltonetworks.com/ja/russian-cyberthreat-2026-winter-olympics/ "article - table of contents")
* [「車売ります」広告で標的を釣る Fighting Ursa](https://unit42.paloaltonetworks.com/ja/fighting-ursa-car-for-sale-phishing-lure/ "article - table of contents")
* [BadPack にご用心: Android アプリの奇妙な分析回避トリック](https://unit42.paloaltonetworks.com/ja/apk-badpack-malware-tampered-headers/ "article - table of contents")

## 関連項目 リソース

![Pictorial representation of ChainDrop, a self-propagating npm worm. An artistic depiction of a digital workspace featuring an open laptop with a red virus on the screen.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/08/03_Malware_Category_1920x900-7-786x368.jpg)  
[![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年8月6日 [#### ChainDropの脅威の概要:自己増殖型npmワームの内部](https://unit42.paloaltonetworks.com/ja/chaindrop-npm-worm-analysis/)

* [Blockchain](https://unit42.paloaltonetworks.com/ja/tag/blockchain-ja/ "blockchain")

* [ChainDrop](https://unit42.paloaltonetworks.com/ja/tag/chaindrop/ "ChainDrop")

* [Claude code](https://unit42.paloaltonetworks.com/ja/tag/claude-code/ "Claude code")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/chaindrop-npm-worm-analysis/ "ChainDropの脅威の概要:自己増殖型npmワームの内部")  
  ![Pictorial representation of the npm packages supply chain attack. Screen displaying code with a prominent alert symbol and the words 'VIRUS DETECTED' highlighted in red.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/04/05_Malware_Category_1920x900-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年6月2日 [#### npmの脅威の状況: アタックサーフェスと緩和策(6月2日更新)](https://unit42.paloaltonetworks.com/ja/monitoring-npm-supply-chain-attacks/)

* [Credential Harvesting](https://unit42.paloaltonetworks.com/ja/tag/credential-harvesting-ja/ "Credential Harvesting")

* [GitHub](https://unit42.paloaltonetworks.com/ja/tag/github-ja/ "GitHub")

* [Npm packages](https://unit42.paloaltonetworks.com/ja/tag/npm-packages/ "npm packages")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/monitoring-npm-supply-chain-attacks/ "npmの脅威の状況: アタックサーフェスと緩和策(6月2日更新)")  
  ![Pictorial representation of Screening Serpens. An illustrated blue snake is highlighted by a red circle against a night sky. The constellation serpens.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/05/Serpens-Iran-A-1920x900-2-786x368.png)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/threat-actor-groups.svg)脅威アクター グループ](https://unit42.paloaltonetworks.com/ja/category/threat-actor-groups-ja/) 2026年5月22日 [#### イランAPT Screening Serpensによる2026年スパイ キャンペーンの追跡](https://unit42.paloaltonetworks.com/ja/tracking-iran-apt-screening-serpens/)

* [Advanced Persistent Threat](https://unit42.paloaltonetworks.com/ja/tag/advanced-persistent-threat-ja/ "Advanced Persistent Threat")

* [AppDomainManager](https://unit42.paloaltonetworks.com/ja/tag/appdomainmanager/ "AppDomainManager")

* [DLL Sideloading](https://unit42.paloaltonetworks.com/ja/tag/dll-sideloading-ja/ "DLL Sideloading")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/tracking-iran-apt-screening-serpens/ "イランAPT Screening Serpensによる2026年スパイ キャンペーンの追跡")  
  ![Pictorial representation of Iran cyber attacks. Close-up of a person wearing glasses, with computer code reflected in the lenses.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/03/12_Security-Technology_Category_1920x900-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年4月17日 [#### 脅威情報: 2026年イランに関するサイバー リスクの激化(4月17日更新)](https://unit42.paloaltonetworks.com/ja/iranian-cyberattacks-2026/)

* [APK](https://unit42.paloaltonetworks.com/ja/tag/apk-ja/ "APK")

* [DDoS attacks](https://unit42.paloaltonetworks.com/ja/tag/ddos-attacks-ja/ "DDoS attacks")

* [GenAI](https://unit42.paloaltonetworks.com/ja/tag/genai-ja/ "GenAI")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/iranian-cyberattacks-2026/ "脅威情報: 2026年イランに関するサイバー リスクの激化(4月17日更新)")  
  ![Pictorial representation of the supply chain attack compromising Axios. A giant eye made of glowing binary code.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/04/02_Security-Technology_Category_1920x900-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年4月1日 [#### 脅威概要:Axiosサプライ チェーン攻撃で広範に及ぶ影響](https://unit42.paloaltonetworks.com/ja/axios-supply-chain-attack/)

* [API attacks](https://unit42.paloaltonetworks.com/ja/tag/api-attacks-ja/ "API attacks")

* [JavaScript](https://unit42.paloaltonetworks.com/ja/tag/javascript-ja/ "JavaScript")

* [Powershell](https://unit42.paloaltonetworks.com/ja/tag/powershell-ja/ "Powershell")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/axios-supply-chain-attack/ "脅威概要:Axiosサプライ チェーン攻撃で広範に及ぶ影響")  
  ![Pictorial representation of TeamPCP. Glowing code on a screen where several word such as Crime, Hackers, and Security are highlighted in a contrasting color.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/03/03_Cybercrime_Category_1920x900-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年3月31日 [#### プロテクターを武器として利用する:セキュリティ インフラにおけるTeamPCPの多段階サプライ チェーン攻撃](https://unit42.paloaltonetworks.com/ja/teampcp-supply-chain-attacks/)

* [CVE-2025-55182](https://unit42.paloaltonetworks.com/ja/tag/cve-2025-55182-ja/ "CVE-2025-55182")

* [GitHub](https://unit42.paloaltonetworks.com/ja/tag/github-ja/ "GitHub")

* [Infostealer](https://unit42.paloaltonetworks.com/ja/tag/infostealer-ja/ "Infostealer")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/teampcp-supply-chain-attacks/ "プロテクターを武器として利用する:セキュリティ インフラにおけるTeamPCPの多段階サプライ チェーン攻撃")  
  ![Pictorial representation of phishing campaign. A blurred image focusing on a person typing on a laptop with lines of code visible on the screen, illuminated in blue and red lights, suggestive of intense coding or cyber activities.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/03/06_Malware_Category_1920x900-3-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/06/icon-threat-research.svg)脅威リサーチ](https://unit42.paloaltonetworks.com/ja/category/threat-research-ja/) 2026年3月24日 [#### 脅威情報: パロアルトネットワークスの人材獲得チームになりすました採用スキーム](https://unit42.paloaltonetworks.com/ja/phishing-attackers-pose-as-panw-recruiters/)

* [Email scam](https://unit42.paloaltonetworks.com/ja/tag/email-scam/ "email scam")

* [Lure](https://unit42.paloaltonetworks.com/ja/tag/lure/ "lure")

* [Phishing](https://unit42.paloaltonetworks.com/ja/tag/phishing-ja/ "phishing")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/phishing-attackers-pose-as-panw-recruiters/ "脅威情報: パロアルトネットワークスの人材獲得チームになりすました採用スキーム")  
  ![Pictorial representation of Notepad++ supply chain compromise. A digital rendering of Earth from space, focusing on North and South America. The continents are illuminated in blue, with red lines and dots indicating data connections across various locations. Dark background highlights the vibrant network representation.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/02/11_Security-Technology_Category_1920x900-786x368.jpg)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/top-threats.svg)主なサイバー脅威](https://unit42.paloaltonetworks.com/ja/category/top-cyberthreats-ja/) 2026年2月11日 [#### 国家支援型の脅威アクターがNotepad++のサプライチェーンを悪用](https://unit42.paloaltonetworks.com/ja/notepad-infrastructure-compromise/)

* [Backdoor](https://unit42.paloaltonetworks.com/ja/tag/backdoor-ja/ "backdoor")

* [Cobalt Strike](https://unit42.paloaltonetworks.com/ja/tag/cobalt-strike-ja/ "Cobalt Strike")

* [DLL Sideloading](https://unit42.paloaltonetworks.com/ja/tag/dll-sideloading-ja/ "DLL Sideloading")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/notepad-infrastructure-compromise/ "国家支援型の脅威アクターがNotepad++のサプライチェーンを悪用")  
  ![Pictorial representation of Muddled Libra, aka Scattered Spider. A vibrant illustration of the Libra zodiac sign, featuring a stylized balance scale overlaid with a prominent Libra symbol. The background is a starry night sky with shades of purple and blue, suggesting a cosmic theme.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/02/03-1-Muddle-Libra-1920x900-1-786x368.png)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2024/07/threat-actor-groups.svg)脅威アクター グループ](https://unit42.paloaltonetworks.com/ja/category/threat-actor-groups-ja/) 2026年2月10日 [#### Muddled Libraのプレイブックを覗いてみよう](https://unit42.paloaltonetworks.com/ja/muddled-libra-ops-playbook/)

* [Muddled Libra](https://unit42.paloaltonetworks.com/ja/tag/muddled-libra-ja/ "Muddled Libra")

* [Powershell](https://unit42.paloaltonetworks.com/ja/tag/powershell-ja/ "Powershell")

* [Scattered Spider](https://unit42.paloaltonetworks.com/ja/tag/scattered-spider-ja/ "Scattered Spider")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/muddled-libra-ops-playbook/ "Muddled Libraのプレイブックを覗いてみよう")  
  ![Pictorial representation of threat groups from Russia. The silhouette of a bear and the Ursa constellation inside an orange abstract planet. Abstract, stylized cosmic setting with vibrant blue and purple shapes, representing space and distant planetary bodies.](https://unit42.paloaltonetworks.com/wp-content/uploads/2026/01/Ursa-Russia-B-1920x900-1-786x368.png)  
  [![category icon](https://unit42.paloaltonetworks.com/wp-content/uploads/2025/08/Insights-icon-white.svg)Insights](https://unit42.paloaltonetworks.com/ja/category/insights-ja/) 2026年1月29日 [#### 2026年冬季オリンピックに対するロシアのサイバー脅威を理解する](https://unit42.paloaltonetworks.com/ja/russian-cyberthreat-2026-winter-olympics/)

* [AI](https://unit42.paloaltonetworks.com/ja/tag/ai-ja/ "AI")

* [IoT](https://unit42.paloaltonetworks.com/ja/tag/iot-ja/ "IoT")

* [Russia](https://unit42.paloaltonetworks.com/ja/tag/russia-ja/ "Russia")  
  [今すぐ読む ![Right arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-right-arrow-withtail.svg)](https://unit42.paloaltonetworks.com/ja/russian-cyberthreat-2026-winter-olympics/ "2026年冬季オリンピックに対するロシアのサイバー脅威を理解する")

* ![Slider arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/slider-arrow-left.svg)

* ![Slider arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/slider-arrow-left.svg)  
  ![Close button](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/close-modal.svg) ![Enlarged Image]()  
  ![Newsletter](https://unit42.paloaltonetworks.com/wp-content/uploads/2025/04/Unit-42_get-updates-banner.png)  
  ![UNIT 42 Small Logo](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/palo-alto-logo-small.svg) Unit 42 からの最新情報を取得

## 進化する脅威の状況を常に先取り

メール アドレス

本フォームを送信することにより、[利用規約](https://www.paloaltonetworks.jp/legal-notices/terms-of-use)に同意し、[プライバシー ポリシー](https://www.paloaltonetworks.jp/legal-notices/privacy)を承認したことになります。

本サイトは reCAPTCHA で保護されており、Googleの[プライバシー ポリシー](https://policies.google.com/privacy) と[サービス利用規約](https://policies.google.com/terms)が適用されます。

Invalid captcha!
サブスクライブ ![Right Arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/right-arrow.svg) ![loader](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-loader.svg)  
{#footer} 製品とサービス

* [AI利用ネットワーク セキュリティ プラットフォーム](https://www.paloaltonetworks.jp/network-security)

* [AIのセキュア バイ デザイン](https://www.paloaltonetworks.jp/precision-ai-security/secure-ai-by-design)

* [Prisma AIRS](https://www.paloaltonetworks.jp/prisma/prisma-ai-runtime-security)

* [AI Access Security](https://www.paloaltonetworks.jp/sase/ai-access-security)

* [クラウド提供型セキュリティ サービス](https://www.paloaltonetworks.jp/network-security/security-subscriptions)

* [Advanced Threat Prevention](https://www.paloaltonetworks.jp/network-security/advanced-threat-prevention)

* [Advanced URL Filtering](https://www.paloaltonetworks.jp/network-security/advanced-url-filtering)

* [Advanced WildFire](https://www.paloaltonetworks.jp/network-security/advanced-wildfire)

* [Advanced DNS Security](https://www.paloaltonetworks.jp/network-security/advanced-dns-security)

* [Enterprise Data Loss Prevention](https://www.paloaltonetworks.jp/sase/enterprise-data-loss-prevention)

* [Enterprise IoT Security](https://www.paloaltonetworks.jp/content/pan/ja_JP/network-security/enterprise-iot-security)

* [Medical IoT Security](https://www.paloaltonetworks.jp/network-security/medical-device-security)

* [Industrial OT Security](https://www.paloaltonetworks.jp/content/pan/ja_JP/network-security/industrial-ot-security)

* [SaaS Security](https://www.paloaltonetworks.jp/sase/saas-security)

* [次世代ファイアウォール](https://www.paloaltonetworks.jp/network-security/next-generation-firewall)

* [ハードウェア ファイアウォール](https://www.paloaltonetworks.jp/network-security/hardware-firewall-innovations)

* [ソフトウェア ファイアウォール](https://www.paloaltonetworks.jp/network-security/software-firewalls)

* [Strata Cloud Manager](https://www.paloaltonetworks.jp/network-security/strata-cloud-manager)

* [SD-WAN for NGFW](https://www.paloaltonetworks.jp/network-security/sd-wan-subscription)

* [PAN-OS](https://www.paloaltonetworks.jp/network-security/pan-os)

* [Panorama](https://www.paloaltonetworks.jp/network-security/panorama)

* [セキュア アクセス サービス エッジ](https://www.paloaltonetworks.jp/sase)

* [Prisma SASE](https://www.paloaltonetworks.jp/sase)

* [App Acceleration](https://www.paloaltonetworks.jp/sase/app-acceleration)

* [自律型デジタルエクスペリエンス管理](https://www.paloaltonetworks.jp/sase/adem)

* [Enterprise DLP](https://www.paloaltonetworks.jp/sase/enterprise-data-loss-prevention)

* [Prisma Access](https://www.paloaltonetworks.jp/sase/access)

* [Prisma Browser](https://www.paloaltonetworks.jp/sase/prisma-browser)

* [Prisma SD-WAN](https://www.paloaltonetworks.jp/sase/sd-wan)

* [リモート ブラウザ分離](https://www.paloaltonetworks.jp/sase/remote-browser-isolation)

* [SaaS Security](https://www.paloaltonetworks.jp/sase/saas-security)

* [AI駆動型セキュリティ運用プラットフォーム](https://www.paloaltonetworks.jp/cortex)

* [Cloud Security](https://www.paloaltonetworks.jp/cortex/cloud)

* [Cortex Cloud](https://www.paloaltonetworks.jp/cortex/cloud)

* [Application Security](https://www.paloaltonetworks.jp/cortex/cloud/application-security)

* [Cloud Posture Security](https://www.paloaltonetworks.jp/cortex/cloud/cloud-posture-security)

* [Cloud Runtime Security](https://www.paloaltonetworks.jp/cortex/cloud/runtime-security)

* [Prisma Cloud](https://www.paloaltonetworks.jp/prisma/cloud)

* [AI駆動型SOC](https://www.paloaltonetworks.jp/cortex)

* [Cortex XSIAM](https://www.paloaltonetworks.jp/cortex/cortex-xsiam)

* [Cortex XDR](https://www.paloaltonetworks.jp/cortex/cortex-xdr)

* [Cortex XSOAR](https://www.paloaltonetworks.jp/cortex/cortex-xsoar)

* [Cortex Xpanse](https://www.paloaltonetworks.jp/cortex/cortex-xpanse)

* [Unit 42マネージド ディテクション\&レスポンス](https://www.paloaltonetworks.jp/cortex/managed-detection-and-response)

* [マネージドXSIAM](https://www.paloaltonetworks.jp/cortex/managed-xsiam)

* [次世代のアイデンティティ セキュリティ](https://www.paloaltonetworks.jp/idira)

* [特権アクセス管理](https://www.paloaltonetworks.jp/idira/human/privileged-access-management)

* [アイデンティティ管理とアクセス管理](https://www.paloaltonetworks.jp/idira/human/identity-and-access-management)

* [Endpoint Privilege Manager](https://www.paloaltonetworks.jp/idira/human/endpoint-privilege-manager)

* [アイデンティティ ガバナンス](https://www.paloaltonetworks.jp/idira/human/identity-governance)

* [従業員パスワード管理](https://www.paloaltonetworks.jp/idira/human/workforce-password-management)

* [エージェンティック アイデンティティ](https://www.paloaltonetworks.jp/idira/agentic)

* [シークレット管理](https://www.paloaltonetworks.jp/idira/machine/secrets-management)

* [統合型シークレット ガバナンス](https://www.paloaltonetworks.jp/idira/machine/unified-secrets-governance)

* [アプリケーションの認証情報配信](https://www.paloaltonetworks.jp/idira/machine/application-credentials-delivery)

* [ベンダーの特権アクセス](https://www.paloaltonetworks.jp/idira/human/vendor-privileged-access)

* [脅威インテリジェンス\&インシデント レスポンス サービス](https://www.paloaltonetworks.jp/unit42)

* [予防評価](https://www.paloaltonetworks.jp/unit42/assess)

* [インシデント レスポンス](https://www.paloaltonetworks.jp/unit42/respond)

* [セキュリティ戦略を変革](https://www.paloaltonetworks.jp/unit42/transform)

* [脅威インテリジェンスについて](https://www.paloaltonetworks.jp/unit42/threat-intelligence-partners)  
  会社名

* [パロアルトネットワークスについて](https://www.paloaltonetworks.jp/about-us)

* [採用情報](https://jobs.paloaltonetworks.com/en/)

* [お問合せ](https://www.paloaltonetworks.jp/company/contact-sales)

* [企業責任](https://www.paloaltonetworks.com/about-us/corporate-responsibility)

* [お客様向け](https://www.paloaltonetworks.jp/customers)

* [IR](https://investors.paloaltonetworks.com/)

* [拠点](https://www.paloaltonetworks.com/about-us/locations)

* [ニュースルーム](https://www.paloaltonetworks.jp/company/newsroom)  
  人気のあるリンク

* [ブログ](https://www.paloaltonetworks.com/blog/?lang=ja)

* [コミュニティ](https://www.paloaltonetworks.com/communities)

* [コンテンツライブラリ](https://www.paloaltonetworks.jp/resources)

* [Cyberpedia](https://www.paloaltonetworks.jp/cyberpedia)

* [イベントセンター](https://events.paloaltonetworks.com/)

* [電子メール設定の管理](https://start.paloaltonetworks.com/preference-center)

* [製品A〜Z](https://www.paloaltonetworks.jp/products/products-a-z)

* [製品認証](https://www.paloaltonetworks.com/legal-notices/trust-center/compliance)

* [脆弱性の報告](https://www.paloaltonetworks.com/security-disclosure)

* [サイトマップ](https://www.paloaltonetworks.jp/sitemap)

* [テクニカル ドキュメント](https://docs.paloaltonetworks.com/)

* [Unit 42](https://unit42.paloaltonetworks.jp/)

* [個人情報の販売および共有禁止](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd)
  ![Palo Alto Networks Logo](https://www.paloaltonetworks.jp/etc/clientlibs/clean/imgs/pan-logo-dark.svg)

* [プライバシー](https://www.paloaltonetworks.jp/legal-notices/privacy)

* [トラスト センター](https://www.paloaltonetworks.jp/legal-notices/trust-center)

* [利用規約](https://www.paloaltonetworks.jp/legal-notices/terms-of-use)

* [ドキュメント](https://www.paloaltonetworks.jp/legal-notices)

Copyright © 2026 Palo Alto Networks. All Rights Reserved

* [![](https://www.paloaltonetworks.jp/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks)
* [![](https://www.paloaltonetworks.jp/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks)
* [![](https://www.paloaltonetworks.jp/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/)
* [![](https://www.paloaltonetworks.jp/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks)
* [![](https://www.paloaltonetworks.jp/content/dam/pan/en_US/images/icons/podcast.svg)](https://unit42.paloaltonetworks.com/unit-42-threat-vector-podcast/)
* JP  
  Select your language  
  ![Play](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/player-play-icon.svg) ![Pause](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/player-pause-icon1.svg) ![Minimize](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-minimize.svg) ![Close button](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/close-modal.svg)

### Default Heading

Read the article ![Right Arrow](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/right-arrow.svg)  
Seekbar

![Play](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/player-play-icon.svg) ![Pause](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/player-pause-icon1.svg)  
![Volume](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-volume.svg)  
Volume
![Minimize](https://unit42.paloaltonetworks.com/wp-content/themes/unit42-v6/dist/images/icons/icon-minimize.svg)
