home.social

#サイバーセキュリティ — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #サイバーセキュリティ, aggregated by home.social.

  1. WhatsApp, Japan, and a 500% Traffic Spike! 💹 🚨

    To be honest, we thought threat actors were tripping when we saw a new WhatsApp phishing campaign targeting Japanese citizens. Don't they know LINE is the app in Japan? Well, we were surprised because this campaign is actually working…

    The campaign doesn't only impersonate WhatsApp through its phishing page, but also through the lookalike domains it uses. Around 2k "WhatsApp" domain name variations are involved. The actor also leverages RDGAs – mostly for subdomains. Domains like web-rka-whatsapp[.]com[.]cn have up to 32 RDGA subdomains!

    Upon visiting one of these lookalike domains, the user is fingerprinted and only forwarded to the phishing page if they match the intended profile — otherwise they get redirected to sites like bing[.]com or microsoft[.]com. As we show at the image below (with an AI-translated version), the malicious landing page simulates the WhatsApp login screen and encourages victims to scan a malicious QR code with their phone to log in.

    When we found the cluster, we genuinely didn't think this campaign would land in Japan — but we were wrong. In the last 6 months, traffic to these domains has increased more than 500%, and it continues to rise.

    What impact would these top quality lookalikes have if the campaigns were directed at countries where WhatsApp is actually the preferred messaging app?

    Domain sample:
    whatsappweb[.]net
    whatapapp[.]com
    whatsptapp[.]com
    leropaxi-whatsapp[.]com[.]cn

    #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #Phishing #Quishing #WhatsApp #LINE #Japan #脅威情報 #フィッシング詐欺 #QRコード詐欺 #DNSセキュリティ #Infoblox脅威情報 #WhatsApp #LINEセキュリティ #日本 #サイバーセキュリティ

  2. WhatsApp, Japan, and a 500% Traffic Spike! 💹 🚨

    To be honest, we thought threat actors were tripping when we saw a new WhatsApp phishing campaign targeting Japanese citizens. Don't they know LINE is the app in Japan? Well, we were surprised because this campaign is actually working…

    The campaign doesn't only impersonate WhatsApp through its phishing page, but also through the lookalike domains it uses. Around 2k "WhatsApp" domain name variations are involved. The actor also leverages RDGAs – mostly for subdomains. Domains like web-rka-whatsapp[.]com[.]cn have up to 32 RDGA subdomains!

    Upon visiting one of these lookalike domains, the user is fingerprinted and only forwarded to the phishing page if they match the intended profile — otherwise they get redirected to sites like bing[.]com or microsoft[.]com. As we show at the image below (with an AI-translated version), the malicious landing page simulates the WhatsApp login screen and encourages victims to scan a malicious QR code with their phone to log in.

    When we found the cluster, we genuinely didn't think this campaign would land in Japan — but we were wrong. In the last 6 months, traffic to these domains has increased more than 500%, and it continues to rise.

    What impact would these top quality lookalikes have if the campaigns were directed at countries where WhatsApp is actually the preferred messaging app?

    Domain sample:
    whatsappweb[.]net
    whatapapp[.]com
    whatsptapp[.]com
    leropaxi-whatsapp[.]com[.]cn

    #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #Phishing #Quishing #WhatsApp #LINE #Japan #脅威情報 #フィッシング詐欺 #QRコード詐欺 #DNSセキュリティ #Infoblox脅威情報 #WhatsApp #LINEセキュリティ #日本 #サイバーセキュリティ

  3. WhatsApp, Japan, and a 500% Traffic Spike! 💹 🚨

    To be honest, we thought threat actors were tripping when we saw a new WhatsApp phishing campaign targeting Japanese citizens. Don't they know LINE is the app in Japan? Well, we were surprised because this campaign is actually working…

    The campaign doesn't only impersonate WhatsApp through its phishing page, but also through the lookalike domains it uses. Around 2k "WhatsApp" domain name variations are involved. The actor also leverages RDGAs – mostly for subdomains. Domains like web-rka-whatsapp[.]com[.]cn have up to 32 RDGA subdomains!

    Upon visiting one of these lookalike domains, the user is fingerprinted and only forwarded to the phishing page if they match the intended profile — otherwise they get redirected to sites like bing[.]com or microsoft[.]com. As we show at the image below (with an AI-translated version), the malicious landing page simulates the WhatsApp login screen and encourages victims to scan a malicious QR code with their phone to log in.

    When we found the cluster, we genuinely didn't think this campaign would land in Japan — but we were wrong. In the last 6 months, traffic to these domains has increased more than 500%, and it continues to rise.

    What impact would these top quality lookalikes have if the campaigns were directed at countries where WhatsApp is actually the preferred messaging app?

    Domain sample:
    whatsappweb[.]net
    whatapapp[.]com
    whatsptapp[.]com
    leropaxi-whatsapp[.]com[.]cn

    #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #Phishing #Quishing #WhatsApp #LINE #Japan #脅威情報 #フィッシング詐欺 #QRコード詐欺 #DNSセキュリティ #Infoblox脅威情報 #WhatsApp #LINEセキュリティ #日本 #サイバーセキュリティ

  4. WhatsApp, Japan, and a 500% Traffic Spike! 💹 🚨

    To be honest, we thought threat actors were tripping when we saw a new WhatsApp phishing campaign targeting Japanese citizens. Don't they know LINE is the app in Japan? Well, we were surprised because this campaign is actually working…

    The campaign doesn't only impersonate WhatsApp through its phishing page, but also through the lookalike domains it uses. Around 2k "WhatsApp" domain name variations are involved. The actor also leverages RDGAs – mostly for subdomains. Domains like web-rka-whatsapp[.]com[.]cn have up to 32 RDGA subdomains!

    Upon visiting one of these lookalike domains, the user is fingerprinted and only forwarded to the phishing page if they match the intended profile — otherwise they get redirected to sites like bing[.]com or microsoft[.]com. As we show at the image below (with an AI-translated version), the malicious landing page simulates the WhatsApp login screen and encourages victims to scan a malicious QR code with their phone to log in.

    When we found the cluster, we genuinely didn't think this campaign would land in Japan — but we were wrong. In the last 6 months, traffic to these domains has increased more than 500%, and it continues to rise.

    What impact would these top quality lookalikes have if the campaigns were directed at countries where WhatsApp is actually the preferred messaging app?

    Domain sample:
    whatsappweb[.]net
    whatapapp[.]com
    whatsptapp[.]com
    leropaxi-whatsapp[.]com[.]cn

    #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #Phishing #Quishing #WhatsApp #LINE #Japan #脅威情報 #フィッシング詐欺 #QRコード詐欺 #DNSセキュリティ #Infoblox脅威情報 #WhatsApp #LINEセキュリティ #日本 #サイバーセキュリティ

  5. WhatsApp, Japan, and a 500% Traffic Spike! 💹 🚨

    To be honest, we thought threat actors were tripping when we saw a new WhatsApp phishing campaign targeting Japanese citizens. Don't they know LINE is the app in Japan? Well, we were surprised because this campaign is actually working…

    The campaign doesn't only impersonate WhatsApp through its phishing page, but also through the lookalike domains it uses. Around 2k "WhatsApp" domain name variations are involved. The actor also leverages RDGAs – mostly for subdomains. Domains like web-rka-whatsapp[.]com[.]cn have up to 32 RDGA subdomains!

    Upon visiting one of these lookalike domains, the user is fingerprinted and only forwarded to the phishing page if they match the intended profile — otherwise they get redirected to sites like bing[.]com or microsoft[.]com. As we show at the image below (with an AI-translated version), the malicious landing page simulates the WhatsApp login screen and encourages victims to scan a malicious QR code with their phone to log in.

    When we found the cluster, we genuinely didn't think this campaign would land in Japan — but we were wrong. In the last 6 months, traffic to these domains has increased more than 500%, and it continues to rise.

    What impact would these top quality lookalikes have if the campaigns were directed at countries where WhatsApp is actually the preferred messaging app?

    Domain sample:
    whatsappweb[.]net
    whatapapp[.]com
    whatsptapp[.]com
    leropaxi-whatsapp[.]com[.]cn

    #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #Phishing #Quishing #WhatsApp #LINE #Japan #脅威情報 #フィッシング詐欺 #QRコード詐欺 #DNSセキュリティ #Infoblox脅威情報 #WhatsApp #LINEセキュリティ #日本 #サイバーセキュリティ

  6. 予約情報漏洩…😱
    Booking.comがハッキング被害に。
    名前、メール、電話番号、宿泊先とのやり取りも危険かも…🔒
    詐欺に注意!🚨
    #Bookingcom #データ漏洩 #セキュリティ
    #サイバーセキュリティ

  7. 予約情報漏洩…😱
    Booking.comがハッキング被害に。
    名前、メール、電話番号、宿泊先とのやり取りも危険かも…🔒
    詐欺に注意!🚨
    #Bookingcom #データ漏洩 #セキュリティ
    #サイバーセキュリティ

  8. Cloudflare、Agent Cloudを拡張:実行・状態・OSを束ねてAIエージェントの本番運用を狙う

    Cloudflareは4月13日、Agent […]

    xenospectrum.com/cloudflare-ag

  9. Anthropic「Claude Code」ソースコード全容が流出:次世代プロジェクト「KAIROS」や今後の新機能の全貌が明らかに

    2026年3月31日、AI開発企業Anthropicが提供するCLIベースのコーディング支援ツール「Claude Code」のソースコード全容が、オープンなnpmレジストリを通じて誰にでもアクセス可能な状態になっていたことが判明した。サイバーセキュリティ研究者Chaofan […]

    xenospectrum.com/claude-code-s

  10. 中国製ルーター、米国への輸入禁止🇺🇸🚫🔒
    既存モデルはOKだけど、新規はNG。
    やっぱりセキュリティは大事🤔 #セキュリティ #ルーター #サイバーセキュリティ

  11. 中国製ルーター、米国への輸入禁止🇺🇸🚫🔒
    既存モデルはOKだけど、新規はNG。
    やっぱりセキュリティは大事🤔 #セキュリティ #ルーター #サイバーセキュリティ

  12. wacoca.com/life/365299/ 商業保険の日本市場(2026年~2034年)、市場規模(賠償責任保険、商業自動車保険、商業財産保険、海上保険、賠償責任保険、商業自動車保険、商業財産保険、海上保険)・分析レポートを発表 | NEWSCAST #BtoB・ビジネス #Hoken #Insurance #サイバーセキュリティ #リスク管理 #中小企業 #人工知能 #保険 #商業保険 #商業自動車保険 #商業財産保険 #市場予測 #市場規模 #日本市場 #海上保険 #自然災害 #調査 #賠償責任保険

  13. wacoca.com/life/365162/ 商業保険の日本市場(2026年~2034年)、市場規模(賠償責任保険、商業自動車保険、商業財産保険、海上保険、賠償責任保険、商業自動車保険、商業財産保険、海上保険)・分析レポートを発表 | NEWSCAST #BtoB・ビジネス #Hoken #Insurance #サイバーセキュリティ #リスク管理 #中小企業 #人工知能 #保険 #商業保険 #商業自動車保険 #商業財産保険 #市場予測 #市場規模 #日本市場 #海上保険 #自然災害 #調査 #賠償責任保険