Webã»ãã¥ãªãã£ã匷åããããã«ãã©ã®ãããªããšããã¹ããããã®ãã³ãã«ãªãã®ãã¯ãŒã«ãã¯ã€ãã®ãªã³ã©ã€ã³ã³ãã¥ããã£ãOWASPïŒOpen Worldwide Application Security ProjectïŒããæäŸããã»ãã¥ãªãã£ã¬ããŒããOWASP Top 10ãã ããã
æ¬çš¿ã§ã¯ãEGã»ãã¥ã¢ãœãªã¥ãŒã·ã§ã³ãº åç· åœ¹ CTO / æ å ±åŠçæšé²æ©æ§ïŒIPAïŒéåžžå€ç ç©¶å¡ / æè¡å£«ïŒæ å ±å·¥åŠéšéïŒã®åŸ³äžžæµ©æ°ã«ãOWASP Top10ã®ææ°çã§ãããOWASP Top 10:2021ããããŒã¹ã«ãä»Webã»ãã¥ãªãã£æ åœè ãæ³šæãã¹ããªã¹ã¯ããã®å¯Ÿçã«ã€ããŠã話ã䌺ã£ãã
-

EGã»ãã¥ã¢ãœãªã¥ãŒã·ã§ã³ãº åç· åœ¹ CTO / æ å ±åŠçæšé²æ©æ§ïŒIPAïŒéåžžå€ç ç©¶å¡ / æè¡å£«ïŒæ å ±å·¥åŠéšéïŒã®åŸ³äžžæµ©æ°
OWASP Top 10ãšã¯
OWASP Top 10ã¯ããªã³ã©ã€ã³ã³ãã¥ããã£ãOWASPãã宿çã«çºè¡šããã»ãã¥ãªãã£ã¬ããŒãã ãWebãµã€ãã§çºçããè åšã®ãã¡ããšãã«å±éºæ§ãé«ããšå€æãããé ç®ããŸãšããŠãããææ°çã¯ã2021幎ã«çºè¡šããããOWASP Top 10:2021ãã§ããã
OWASP Top 10:2021ã®10é ç®
OWASP Top 10:2021ã«æ²èŒãããŠãã10ã®ã«ããŽãªãŒã¯ä»¥äžã®éãã ã
ããããã¯åŸ³äžžæ°ã«ãåã«ããŽãªãŒã«ã€ããŠãã®è©³çްã䌺ãã
ã¢ã¯ã»ã¹å¶åŸ¡ã®äžå
ãã¢ã¯ã»ã¹å¶åŸ¡ã®äžåããšã¯ãWebãµã€ãã®ç¹å®ããŒãžãªã©ãžã®ã¢ã¯ã»ã¹æš©éãé©åã«ç®¡çã§ããŠããªãããšãæããç°¡åã«èšãã°ãAããã«ããèŠãããªãã¯ãã®ããŒãžãæå³ãããBãããé²èЧå¯èœã«ãªã£ãŠãããšããããšã ã
å®ã¯ãOWASP Top 10:2021ã«ããããã®ã«ããŽãªãŒã¯ã察象ç¯å²ãåºãå ·äœçãªå 容ãã€ãã¿ã¥ãããåããOWASPãçºè¡šããŠãããOWASP API Security Top 10:2023ãã§ã¯ããã¢ã¯ã»ã¹å¶åŸ¡ã®äžåãã«é¢ããé ç®ã3ã€ã«çްååãããŠããã埳䞞æ°ã¯ããã¡ãã®æ¹ãçè§£ããããããšããŠãOWASP API Security Top 10:2023ãåç §ãã€ã€ããã®è©³çްãèªã£ãã
OWASP API Security Top 10:2023ã«ããããã¢ã¯ã»ã¹å¶åŸ¡ã®äžåãé¢é£é ç®ã®1ã€ç®ã¯ããªããžã§ã¯ãã¬ãã«ã®èªå¯ã®äžåãã2ã€ç®ã¯ããªããžã§ã¯ãããããã£ã¬ãã«ã®èªå¯ã®äžåãã§ããã
éçºè 以å€ã®æ¹ã«ã¯ãªãã¿ã®èãã§ãããããªããžã§ã¯ãããããããã£ããšããèšèã«ã€ããŠã埳䞞æ°ã¯SNSãäŸã«ç€ºããã
äŸãã°ãå€ãã®SNSã§ã¯ãŠãŒã¶ãŒãèªèº«ã®ãããã£ãŒã«æ å ±ãç»é²ããããã®ãªãã«ã¯ãããã¯ããŒã ãã¢ã€ã³ã³ãã¡ãŒã«ã¢ãã¬ã¹ãé»è©±çªå·ããã¹ã¯ãŒããªã©ãããŸããŸãªé ç®ãååšããã ããã
ãã®å Žåãã€ããæ¹ã«ãããããããã°ã©ã ã«ãããŠã¯ãããããã£ïŒã«ããšãããªããžã§ã¯ãã«ãããŠããããã¯ããŒã ããã¢ã€ã³ã³ããã¡ãŒã«ã¢ãã¬ã¹ããé»è©±çªå·ãããã¹ã¯ãŒãããªã©ãããããã£ãšããŠç»é²ãããã€ã¡ãŒãžã ã
ãSNSã®äŸã§èšãã°ãããªããžã§ã¯ãã¬ãã«ã®èªå¯ã®äžåãã¯ãéå ¬éã«ããŠãããŠãŒã¶ãŒã®ãããã£ãŒã«æ å ±ãã ãã§ãååŸã§ããå ¬éç¶æ ã«ãªã£ãŠããã±ãŒã¹ãªã©ã§ããäžæ¹ãããªããžã§ã¯ãããããã£ã¬ãã«ã®èªå¯ã®äžåãã§ã¯ããããã£ãŒã«èªäœã®å ¬éã»éå ¬éã¯é©åã«ç®¡çãããŠãããããããã£ãŒã«å ã®åé ç®ã®ç®¡çãé©åã§ãªããäŸãã°ãããã£ãŒã«å ¬éãŠãŒã¶ãŒã«ãããŠãã¡ãŒã«ã¢ãã¬ã¹ãé»è©±çªå·ããã¹ã¯ãŒãçã®éå ¬éã«ãã¹ãæ å ±ãååŸã§ããŠããŸãã±ãŒã¹ãªã©ã該åœããŸãããããã¯éåžžã®ãµãŒãã¹ã®éçšç¯å²ã§ãèµ·ããåŸãåé¡ã§ãããOWASP API Securityã«æããããŠãããšããããšã¯ãå€éšãµãŒãã¹ããã®ãªã¯ãšã¹ãã«ããAPI飿ºããŠæ å ±æäŸããéã«ãšãã«èµ·ãããããã®ã§æ³šæãå¿ èŠã§ããïŒåŸ³äžžæ°ïŒ
OWASP API Security Top 10:2023ã®3ã€ç®ã¯ãæ©èœã¬ãã«ã®èªå¯äžåãã§ããããã¡ãã¯ãã®åã®éããæ©èœã¬ãã«ã®è©±ã«ãªããäŸãã°ã管çè æš©éãæã€äººã®ã¿ãã¢ã¯ã»ã¹å¯èœãªæ©èœã®ã¯ãããäžè¬æš©éã®äººãã¢ãã¬ã¹ããŒã«/adminãªã©ãå ¥åããã°ããã®æ©èœã䜿ããŠããŸããããªç¶æ³ãèããããã
æå·åã®å€±æ
ãæå·åã®å€±æããšã¯ããã¹ã¯ãŒããå¹³æã§ä¿åããŠããŸã£ãŠãããéä¿¡ãããã³ã«ã«HTTPSïŒHypertext Transfer Protocol SecureïŒã䜿çšããŠããªããšãããããªäºè±¡ããããšåŸ³äžžæ°ã¯èª¬æããããŸããä»ã¯æšå¥šãããŠããªãæå·åã®ã¢ã«ãŽãªãºã ã䜿çšããããšãããã®ã«ããŽãªãŒã«å«ãŸããã
åæ°ã¯ãŠã§ããµãŒãã®èšå®ããHSTSïŒHTTP Strict Transport SecurityïŒã«ããããšããã¹ã¯ãŒãã®å®å šãªä¿åã¯ãå¿ ãããã¹ãããšãã ãšããã
ã€ã³ãžã§ã¯ã·ã§ã³
ãã€ã³ãžã§ã¯ã·ã§ã³ãã¯ãURLãWebãµã€ãã®æåå ¥åæ¬ïŒãã°ã€ã³æ¬ã»æ€çŽ¢çªãªã©ïŒã«ãOSã³ãã³ããSQLæçã®åçš®å®è¡æãçŽã蟌ãŸããããã¡ã§å ¥åããWebã¢ããªã±ãŒã·ã§ã³ãæå³ããå®è¡ããŠããŸãæ»æææ³ãæããæ»æãåãããšãããŒã¿ããŒã¹å ã®æ å ±ãæ»æè ã®ç»é¢ã«è¡šç€ºãããŠããŸã£ããããµãŒãã¹ã忢ããŠããŸã£ããããšããããšãèããããã
埳䞞æ°ã¯ãã€ã³ãžã§ã¯ã·ã§ã³æ»æã®å€ãã¯SQLã€ã³ãžã§ã¯ã·ã§ã³ãå ããããšããããã§ã察çãšããŠãå®å šãªéçºçšAPIã䜿çšããããšãæšå¥šããããšè¿°ã¹ããå ·äœçã«ã¯ãã¬ãŒã¹ãã«ãã䜿ãããšãORMã©ã€ãã©ãªã䜿çšããããšãæååçµåã§SQLæãäœæããªãããšãªã©ã察çã«ãªããšããã
å®å šã§ãªãèšèš
ãå®å šã§ãªãèšèšãã®ã«ããŽãªãŒã¯ãããŸããŸãªã·ãã¥ãšãŒã·ã§ã³ãèãããããã埳䞞æ°ã¯OWASPã«èšèŒãããŠãããæ»æã·ããªãªã®äŸãããæ¬¡ã®3ã€ãäŸã«æããã
1ã€ç®ã¯ãç§å¯ã®è³ªåãšçããã§ãããããã¯ãã€ãŠããèŠããããã¹ã¯ãŒããªã©ãå¿ããéã®åŸ©å çã®1ã€ã ãæ¬äººä»¥å€ãåçãç¥ãããšãã§ããå¯èœæ§ããããããçŸåšãOWASPã§ã¯éæšå¥šãšããŠããããéèç³»ã®ãµã€ããªã©ã§ã¯ã確èªã»èªèšŒãå€éåãããŠããã±ãŒã¹ãå€ããã®ã®ãããã»ã¹ã®1ã€ãšããŠãŸã èŠããããïŒåŸ³äžžæ°ïŒããšãããã
2ã€ç®ã®ã·ããªãªã¯ãç°¡åã«æªçšãããããªã仿§äžã®èœã¡åºŠã«é¢ãããã®ãOWASPã®ãµã€ãã«ã¯äŸãšããŠãäºçŽã·ã¹ãã ã«ããããã£ã³ã»ã«ããªã·ãŒã®ä»æ§ãèšèŒãããŠãããã°ã«ãŒãäºçŽå²åŒãããæ ç»é€šã®ã·ã¹ãã ã«ãããŠã15人以äžã®å£äœäºçŽã«éããããžãããå¿ é ãšãã仿§ã ã£ããšããããã®å Žåã14人ãŸã§ã®äºçŽãæ°åç¹°ãè¿ãããšã§ããããžãããªãã«å šåžãäºçŽã§ããŠããŸãå¯èœæ§ããããä»®ã«æ»æè ãå šåžãæŒãããŠçŽåã«å šãŠããã£ã³ã»ã«ãããšäŒæ¥ã¯å€§ããªæå®³ãåããããšã«ãªãã
埳䞞æ°ã¯ãã®ãããªå Žåã®å¯ŸçãšããŠãåäžIPã¢ãã¬ã¹ããã®ã¢ã¯ã»ã¹ãã確èªãã該åœãããã®ãåŒŸãæ¹æ³ãèãããããšãã€ã€ãããã§ãå®ç§ã§ã¯ãªãå Žåãããããã®ã«ãŒã«èªäœã倿Žããããšãèããã¹ãã ãšããã
3ã€ç®ã®ã·ããªãªã¯ä¿ã«èšãâ転売ã€ãŒâ察çã§ãããæ¬äººç¢ºèªã«ãã€ãã³ããŒã«ãŒããçšãããªã©ã峿 Œã«ããæ¹æ³ã¯èããããããã©ããŸã§å¯Ÿå¿ããããã®å€æã¯é£ããã
ããã®ã«ããŽãªãŒã¯ãœãããŠã§ã¢ã®å®è£ ã¬ãã«ã®è©±ã ãã§ã¯ãªããããžãã¹ã¢ãã«ãããžãã¹ã«ãŒã«ãŸã§ããã®ãŒãã¹ãå Žåãããããšã瀺åããŠããŸããïŒåŸ³äžžæ°ïŒ
ã»ãã¥ãªãã£èšå®ãã¹
ãã»ãã¥ãªãã£èšå®ãã¹ããšããŠåŸ³äžžæ°ã瀺ããã®ããã¢ããªã±ãŒã·ã§ã³ãµãŒãã«æåããä»éãããµã³ãã«ã¢ããªã±ãŒã·ã§ã³ãæ¶ãå¿ããäºè±¡ã ãæ¶ãå¿ãããšããµã³ãã«ã¢ããªã±ãŒã·ã§ã³ãååšããéå±€ãURLã«è¿œèšããããšã§ãå€éšãããµã³ãã«ã¢ããªã±ãŒã·ã§ã³ã«ã¢ã¯ã»ã¹ã§ããŠããŸãããµã³ãã«ã¢ããªã±ãŒã·ã§ã³ã¯ãããŸã§ãµã³ãã«ã§ãã»ãã¥ãªãã£å¯Ÿçãäžååãªã¢ããªã±ãŒã·ã§ã³ã§ããããšãå€ããããæ©å¯æ å ±ãæŒããããŠããŸããšãã£ãããšãèããããã
ãŸããOWASP Top 10:2021ã®ãæ»æã·ããªãªã®äŸãã§ã¯ãµãŒãã®èšå®ãã¹ã«ãã£ãŠãã¹ã¿ãã¯ãã¬ãŒã¹ïŒå®è¡ããããã°ã©ã ã®åŠçæ å ±ïŒãªã©ã®ãšã©ãŒã¡ãã»ãŒãžããŠãŒã¶ãŒã«éä¿¡ãããŠããŸããããããè匱æ§ãªã©ãèŠã€ããããå¯èœæ§ãææããŠããã
è匱ã§å€ãã³ã³ããŒãã³ã
ãè匱ã§å€ãã³ã³ããŒãã³ããã§ã¯ãã¢ããªã±ãŒã·ã§ã³å ã§äœ¿çšããããªãŒãã³ãœãŒã¹ãªã©ã®å€éšèª¿éãœãããŠã§ã¢ã«è匱æ§ãå«ãŸããŠããããããçªããŠæ»æãããåé¡ãææããŠããã埳䞞æ°ã¯ã以åã«è©±é¡ã«ãªã£ãLog4jãªã©ãããã«è©²åœããããšèª¬æããã
察çãšããŠã¯ãææ°çã«ããŒãžã§ã³ã¢ãããããé·æéæŽæ°ãããŠããªãã³ã³ããŒãã³ãã¯äœ¿ããªããšãã£ãããšãæããããã
ãå€éšãœãããŠã§ã¢ã®å°å ¥ã«éããŠã¯éçºã³ãã¥ããã£ã®ç¶æ³ãªã©ã確èªããããšã倧äºã§ããæ¥ã«ã³ãã¥ããã£ãäžæŽ»çºã«ãªããéçºãæ¢ãŸã£ãŠããŸããã¿ãŒã³ããããŸãã®ã§ãäºå ãå«ããŠãã調ã¹ãŠããã¹ãã§ããããå°å ¥æç¹ã§ã¯è匱æ§ãèŠã€ãã£ãŠããªãã£ããšããŠããå°æ¥è匱æ§ãçºèŠãããéã«å¯Ÿå¿ãããªãããšãèããããŸãã®ã§ãé·æééçºãæ¢ãŸã£ãŠãããããªãœãããŠã§ã¢ã®äœ¿çšã¯æ§ããã¹ãã§ããïŒåŸ³äžžæ°ïŒ
èå¥ããã³èªèšŒã®å€±æ
ãèå¥ããã³èªèšŒã®å€±æãã¯ããã®åã®éãããŠãŒã¶ãŒIDãªã©ã®èªèšŒã«åé¡ãããå Žåãæãã
æ»æã®äŸãšããŠã¯ããèŸæžæ»æãããã¹ã¯ãŒããªã¹ãæ»æããªã©ããããåè ã¯ãç¹å®ã®IDã«å¯ŸããŠãå€ãã®äººããã䜿ããããªãã¹ã¯ãŒããæ¬¡ã ã«å ¥åããŠãã°ã€ã³ã§ãããã©ãããè©Šãæ»æãåŸè ã¯ããã¹ã¯ãŒãã䜿ãåããŠãŒã¶ãŒãçã£ããã®ã§ãæ å ±æŒããããIDã»ãã¹ã¯ãŒãã®ãªã¹ããå ¥æããçã£ç«¯ããå ¥åããŠãã°ã€ã³ã§ãããã®ããªããè©Šãæ»æã«ãªãããããããããã䜿ã£ãŠãå€ãã®IPã¢ãã¬ã¹ãããäžæ£ãã°ã€ã³ãšå€å¥ãã«ãããã«è©Šè¡ããŠããã®ãäžè¬çã ã
埳䞞æ°ã¯ãµã€ãéå¶åŽã®å¯ŸçãšããŠãã人éã«ããã¢ã¯ã»ã¹ãã©ããã確èªããæ©èœãå€èŠçŽ èªèšŒãå°å ¥ãããã»ããå ¬å ±ã®å Žã®PCãªã©ãäžç¹å®å€æ°ã®äººã䜿ã端æ«ãããã°ã€ã³ãããŠãŒã¶ãŒããã°ã¢ãŠããå¿ããã±ãŒã¹ãããããããïŒäžå®æéæäœããªãã£ããšãã«ïŒã¿ã€ã ã¢ãŠããããããšãªã©ã倧åããšããã
ãœãããŠã§ã¢ããã³ããŒã¿æŽåæ§ã®äžå ·å
ããœãããŠã§ã¢ããã³ããŒã¿æŽåæ§ã®äžå ·åãã¯2021幎çããç»å Žããæ°ããã«ããŽãªãŒã ã埳䞞æ°ã¯ãæ»æã·ããªãªã®äŸããåºã«ãã眲åãªãã®ãœãããŠã§ã¢æŽæ°ãã®å±éºæ§ãææããã
äŸãã°ãå®¶åºçšã®ã«ãŒã¿ãŒãã»ãããããããã¯ã¹ãªã©ãã¢ããããŒãããéããœãããŠã§ã¢ã«çœ²åããªããã®ãã€ã³ã¹ããŒã«ããçµæãå®ã¯ãããåœç©ã§ããã«ãŠã§ã¢ã«ææããŠããŸããšãã£ãããšãããã
ãäžè¬ãŠãŒã¶ãŒãæãç®ã«ãã眲åããšããŠåæ°ãäŸã«æããã®ã¯ãWindowsã¢ããªã±ãŒã·ã§ã³ã®ã€ã³ã¹ããŒã©ãŒã ãéåžžã€ã³ã¹ããŒã©ãŒã«ã¯ãœãããŠã§ã¢ãå¶äœããäŒæ¥ã®ååãå ¥ã£ãŠãããããŸãã«çœ²åã®ãªããã®ãååšããããã®å ŽåããœãããŠã§ã¢ã®æäŸå ãµã€ãã確èªãããªã©ãã€ã³ã¹ããŒã«ãããã©ãããããæ€èšããå¿ èŠãããã
ã»ãã¥ãªãã£ãã°ããã³ç£èŠã®å€±æ
ã»ãã¥ãªãã£ãã°ã¯ããã€èª°ãã©ãã§äœãããããåããæ å ±ã§ãããæ£ããååŸããç£èŠããããšãéèŠã ããã°ã確èªã§ããªããã°ããµã€ããŒæ»æãåããããšãçºèŠããŠãããã€ããããŒã¿ã䟵害ãããŠããã®ãåãããããã®åŸã®å¯Ÿå¿ãé£ãããªãããŸããããããæ»æãã®ãã®ã«æ°ä»ããã«æ å ±æŒãããç¶ãããªã©ã®äºæ ãèããããã
察çãšããŠåŸ³äžžæ°ãæšå¥šããã®ã¯WAFïŒWeb Application FirewallïŒã®å°å ¥ã ãããã«ããããã°ã®ååŸãšåºæ¬çãªã¢ãã¿ãªã³ã°ã¯ã«ããŒã§ããããŸããWAFã«ã¯ãSQLã€ã³ãžã§ã¯ã·ã§ã³ãªã©ã®æ»æãé²ãæ©èœãæèŒãããŠãããã®ã倿°ååšããããã ããWAFã ãã§å šãŠã®æ»æãé²ããããã§ã¯ãªãããšã¯çæããŠããããã
ãµãŒããµã€ããªã¯ãšã¹ããã©ãŒãžã§ãª
埳䞞æ°ããOWASP API Security Top 10:2023ã«ãå ¥ã£ãŠããŠãä»éåžžã«æ³šç®ãããŠããããšããã®ããããµãŒããµã€ããªã¯ãšã¹ããã©ãŒãžã§ãªïŒSSRFïŒServer Side Request ForgeryïŒãã§ããã
SSRFã«ã€ããŠåæ°ã¯ããããŸããŸãªæ¹æ³ã«ãããå€éšå ¬éãããŠãããµãŒããçµç±ããŠãå€éšã«å ¬éãããŠããªããµãŒãã®èšå®æ å ±ãèªèšŒæ å ±ãååŸããæ»æææ³ããšèª¬æããã2019幎7æã«ã¯ç±³åœã®å€§æéèã»Capital Oneããã®æ»æãåãã1å人ãè¶ ããå人æ å ±ãæµåºããäºä»¶ããã£ãã
ã§ã¯ãªãä»ã泚ç®åºŠãé«ãŸã£ãŠããã®ããåæ°ã¯ãã¯ã©ãŠããµãŒãã¹ã®å©çšãå¢å ããããšãäžå ãSSRFã«ããã¯ã©ãŠãã®ã¹ãã¬ãŒãžãµãŒãã¹ãžã®ã¢ã¯ã»ã¹æ å ±ãååŸããŠã倧éã®æ å ±ãæãã±ãŒã¹ãããããšããããã§ããã¯ã©ãŠãåŽã®å¯Ÿçãé²ãã§ããã®ã§ãæ°èŠã®ãµã€ãã§ã¯ãããŸã§ç°¡åã«æ»æã¯ã§ããªãããå€ãèšå®ãæ®ã£ãŠãããµã€ãã ãšåœé¢ã¯ãã®æã®æ»æææ³ãæ®ãã ããããšè©±ããã
*ã*ã*
å€çš®å€æ§ãªãµã€ããŒæ»æãå¢å ãããªããWebã»ãã¥ãªãã£ã®åŒ·åã¯å«ç·ã®èª²é¡ã§ãããOWASP Top 10:2021ã埳䞞æ°ã®å©èšãåèã«ãæ¹ããŠã»ãã¥ãªãã£ã®åšãæ¹ã«ã€ããŠèããŠã»ããã
ã»ãã¥ãªãã£é¢é£ã®æ³šç®ãã¯ã€ãããŒããŒ
æ±äºåæãèŠæ®ããæ¬¡äžä»£ã®ã»ãã¥ãªãã£å¯Ÿçïœãã€ã¯ãã»ã°ã¡ã³ããŒã·ã§ã³æè¡ãšã¯ïœSASEãå°å ¥ããçµç¹ãçŽé¢ãã課é¡ãšã¯ããªãSWGãCASBã®æ©èœãæå€§éã«çãããªãã®ã
ã»ãã¥ãªãã£ã確ä¿ããããã®ãã³ã57ãå ¬éããããããååãªé²åŸ¡äœå¶ãæ·ããŠããã«ã¯
èªæ²»äœãæ¥åã§ã¯ã©ãŠããµãŒãã¹ãå©çšããã«ããããæ±ããããã»ãã¥ãªãã£å¯Ÿçãšã¯
ã»ãã¥ãªãã£ã®åºæ¬ãç¥ã! ãªã¹ã¹ã¡èšäº
ã©ã³ãµã ãŠã§ã¢ã«ã©ã察å¿ãã¹ãããå®è·µæ¹æ³ãã¬ã¯ãã£ãŒããã«ãŠã§ã¢å¯Ÿçã¬ã€ããææçµè·¯ããªã¹ã¯ãäºé²çãæå
EDRãMDRãXDRãšã¯? æŒãããŠããããã»ãã¥ãªãã£ã®ããŒã¯ãŒãã解説
ãšã³ããã€ã³ãã»ãã¥ãªãã£ã®åºæ¬ã解説 - ãªã¹ã¯ãæžããããã«ãã¹ãããšãšã¯
ãŒããã©ã¹ããåºæ¬ãã解説! â誰ãä¿¡é Œããªãâã»ãã¥ãªãã£ãšã¯?
ãããã¯ãŒã¯ã»ãã¥ãªãã£ãé«ããã«ã¯? æŒãããŠããããSASEã®åºæ¬
ã»ãã¥ãªãã£åŒ·åã®ããã«ç¥ã£ãŠãããããµã€ããŒæ»æ - ååãšå¯Ÿç
ç¥ã£ãŠãããããµã€ããŒæ»æ - ååãšå¯Ÿç
æ å ±è³ç£ãå®ãããã«å¿ èŠãªãããã¯ãŒã¯ã»ãã¥ãªãã£ã®åºæ¬
ä»ãè£œé æ¥ãèããã¹ãã»ãã¥ãªãã£å¯Ÿçãšã¯?
ã©ã³ãµã ãŠã§ã¢å¯Ÿçã®åºç€ç¥è - ææçµè·¯ã察çãçºèŠåŸã®å¯Ÿå¿
AIãæªçšãããµã€ããŒæ»æã«ããã«å¯ŸåŠãã¹ãã
ãã£ãã·ã³ã°æ»æãšã¯ - äž»ãªææ³ããªã¹ã¯ãææ°ã®å¯Ÿçæ¹æ³ã埳䞞æ°ã解説
OWASP Top 10ããã²ãè§£ããªã¹ã¯ãå°éå®¶ã解説 - Webã»ãã¥ãªãã£æ åœè å¿ èŠ!
OWASP Top 10 for LLM ApplicationsããèŠããLLMã«ãããã»ãã¥ãªãã£ãªã¹ã¯ãšã¯
DDoSæ»æãšã¯ - æ»æææ³ãã察çãŸã§ãã»ãã¥ãªãã£ã®å°éå®¶ã解説

