logo

JPCERT Blog

ID: 7511b6be-55b3-55a2-ba04-75949cfd847b

STIX ID: identity--7511b6be-55b3-55a2-ba04-75949cfd847b

Feed Type: atom

Earliest post: 2023-03-20

Latest post: 2026-05-14

Official cybersecurity research, incident response advisories, threat analysis, and vulnerability insights from Japan’s national CERT — focused on emerging threats, coordinated responses, and global cyber trends.

01/01/2020
05/29/2026
Title Date Published Describes IncidentAuthorVisible
TSUBAME Report Overflow (Oct-Dec 2025)2026-05-14True鹿野 恵祐 (Keisuke Shikano)True
TSUBAME Report Overflow (Jul-Sep 2025)2026-03-30True鹿野 恵祐 (Keisuke Shikano)True
JSAC2026 -Workshop/Lightning Talk Session/Panel Discussion-2026-03-06True矢野 雄紀(Yuki Yano)True
JSAC2026 -Day 2-2026-02-27True佐々木 奈々恵(Nanae Sasaki)True
JSAC2026 -Day 1-2026-02-20True亀井 智矢(Tomoya Kamei)True
Multiple Threat Actors Rapidly Exploit React2Shell: A Case Study of Active Compromise2026-02-13True喜野 孝太(Kota Kino)True
Update on Attacks by Threat Group APT-C-602025-11-05True増渕 維摩(Yuma Masubuchi)True
CrossC2 Expanding Cobalt Strike Beacon to Cross-Platform Attacks2025-08-14True増渕 維摩(Yuma Masubuchi)True
Malware Identified in Attacks Exploiting Ivanti Connect Secure Vulnerabilities2025-07-18True増渕 維摩(Yuma Masubuchi)True
TSUBAME Report Overflow (Jan-Mar 2025)2025-07-08True鹿野 恵祐 (Keisuke Shikano)True
DslogdRAT Malware Installed in Ivanti Connect Secure2025-04-24True増渕 維摩(Yuma Masubuchi)True
Tempted to Classifying APT Actors: Practical Challenges of Attribution in the Case of Lazarus’s Subgroup2025-03-25True佐々木 勇人(Hayato Sasaki)True
JSAC2025 -Day 2-2025-03-19True宇野 真純(Masumi Uno)True
JSAC2025 -Day 1-2025-03-05True亀井 智矢(Tomoya Kamei)True
SPAWNCHIMERA Malware: The Chimera Spawning from Ivanti Connect Secure Vulnerability 2025-02-20True増渕 維摩(Yuma Masubuchi)True
Beware of Contacts through LinkedIn: They Target Your Organization’s Property, Not Yours2025-01-20True朝長 秀誠 (Shusei Tomonaga)True
Recent Cases of Watering Hole Attacks, Part 22024-12-26True朝長 秀誠 (Shusei Tomonaga)True
Recent Cases of Watering Hole Attacks, Part 12024-12-19True朝長 秀誠 (Shusei Tomonaga)True
Attack Exploiting Legitimate Service by APT-C-602024-12-11True亀井 智矢(Tomoya Kamei)True
Event Log Talks a Lot: Identifying Human-operated Ransomware through Windows Event Logs2024-09-30TrueJPCERT/CCTrue
Dynamic Analysis Technique of Android Malware by Injecting Smali Gadgets2024-08-08True増渕 維摩(Yuma Masubuchi)True
MirrorFace Attack against Japanese Organisations2024-07-16True朝長 秀誠 (Shusei Tomonaga)True
Attack Activities by Kimsuky Targeting Japanese Organizations2024-07-08True喜野 孝太(Kota Kino)True
JSAC2024 -Day 2-2024-04-11True亀井 智矢True
JSAC2024 -Day 1-2024-03-29True宇野 真純(Masumi Uno)True
New Malicious PyPI Packages used by Lazarus2024-02-28True朝長 秀誠 (Shusei Tomonaga)True
Credential Theft and Domain Name Hijacking through Phishing Sites2023-11-07True水野 哲也 (Tetsuya Mizuno)True
MalDoc in PDF - Detection bypass by embedding a malicious Word file into a PDF file –2023-08-28True増渕 維摩(Yuma Masubuchi)True
DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments2023-07-19True増渕 維摩(Yuma Masubuchi)True
GobRAT malware written in Go language targeting Linux routers2023-05-29True増渕 維摩(Yuma Masubuchi)True
Attack Trends Related to DangerousPassword2023-05-12True朝長 秀誠 (Shusei Tomonaga)True
Activity Targeting Crypto Asset Exchangers for Parallax RAT Infection2023-04-20TrueJPCERT/CCTrue
JSAC2023 -Day 2-2023-03-22True中村 恭脩(kyosuke Nakamura)True

1–33 of 33