概要: FunkSecランサムウェアグループは、MiniappsチャットボットなどのAIツールを活用してランサムウェア攻撃を開発・改良したとされており、経験の浅い攻撃者でさえ高度なマルウェアを迅速に作成できたと報告されています。同グループは2024年12月にデータ漏洩サイトを立ち上げ、ランサムウェアと二重の脅迫手法を用いて80人以上の被害者を狙ったと主張しています。AIは、グループの技術的プレゼンテーションを洗練させるために詳細なコードコメントの作成を支援したとされ、Rustで記述されたカスタム暗号化ツールの迅速な反復開発も支援したとされています。
Editor Notes: Check Point's investigation, published on January 10, 2025, provides further details: https://research.checkpoint.com/2025/funksec-alleged-top-ransomware-group-powered-by-ai/.
Alleged: FunkSec developed an AI system deployed by FunkSec , Scorpion , DesertStorm , El_Farado , Blako , XTN と Bjorka, which harmed FunkSec ransomware targets.
関与が疑われるAIシステム: Unknown LLM systems と Miniapps
インシデントのステータス
Risk Subdomain
A further 23 subdomains create an accessible and understandable classification of hazards and harms associated with AI
4.3. Fraud, scams, and targeted manipulation
Risk Domain
The Domain Taxonomy of AI Risks classifies risks into seven AI risk domains: (1) Discrimination & toxicity, (2) Privacy & security, (3) Misinformation, (4) Malicious actors & misuse, (5) Human-computer interaction, (6) Socioeconomic & environmental harms, and (7) AI system safety, failures & limitations.
- Malicious Actors & Misuse
Entity
Which, if any, entity is presented as the main cause of the risk
Human
Timing
The stage in the AI lifecycle at which the risk is presented as occurring
Post-deployment
Intent
Whether the risk is presented as occurring as an expected or unexpected outcome from pursuing a goal
Intentional


