Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Reviewing 2025

Reviewing 2025

Reviewing chapter activities in 2025. (OWASP Saitama MTG #29, talk #1)

Avatar for Takahiro Yoshimura

Takahiro Yoshimura

December 16, 2025
Tweet

More Decks by Takahiro Yoshimura

Other Decks in Technology

Transcript

  1. TEXT WHAT I DO ▸ Security research and development ▸

    iOS/Android Apps →Financial, Games, IoT related, etc. (>200) →trueseeing: Non-decompiling Android Application Vulnerability Scanner [2017] ▸ Windows/Mac/Web/HTML5 Apps →POS, RAD tools etc. ▸ Network/Web penetration testing →PCI-DSS etc. ▸ Search engine reconnaissance (aka. Google Hacking) ▸ Whitebox testing ▸ Forensic analysis
  2. TEXT WHAT I DO ▸ CTF ▸ Enemy10, Sutegoma2 ▸

    METI CTFCJ 2012 Qual.: Won ▸ METI CTFCJ 2012: 3rd ▸ DEF CON 21 CTF: 6th ▸ DEF CON 22 OpenCTF: 4th ▸ ൃදɾߨԋͳͲ DEF CON 25 Demo Labs (2017) DEF CON 27 AI Village (2019) CODE BLUE (2017, 2019) CYDEF (2020) etc. “DEFCON 2016” by Wiyre Media, CC BY 2.0
  3. TEXT FEBURARY .. ▸ 2025೥࠷ॳͷ։࠵ ▸ य़೔෦ࢢ;Ε͍͋Ωϡʔϒ 4F ձٞࣨ2 ▸

    ࢀՃਓ਺: 8/69 (ݱ஍/ϦϞʔτ) …஫໨ΛूΊͨճͩͬͨ ▸ ·ͨදཪͱ΋֎෦εϐʔΧʔʹ͓ئ͍Ͱ͖ͨճ ͋Γ͕ͱ͏͍͟͝·ͨ͠ mm “A snow pounder named ziggy” by E_Schwartz, CC BY-NC-SA 2.0
  4. TEXT BACK: ON OWASP JUICE SHOP #2 ▸ @jetbeejp ͞ΜΑΓ

    ▸ OWASP Juice Shopͷ಺෦ߏ଄ʹ͍ͭͯ ʢͦͷ̎ʣ ▸ fl agཱ͕ͬͨࡍͷॲཧ ▸ ໰୊ͷ௥Ճʹ͍ͭͯ…ͳͲ
  5. TEXT BACK: ON OWASP JUICE SHOP #2 ▸ ߈ܸ੒ཱΛਫ਼៛ʹݟΔͨΊͷΪϛοΫ͕΋Γͩ ͘͞Μ

    ▸ ϞδϡʔϧԽ͕ਐΜͰ͓Γ͔ͳΓ෼͔Γ΍͘͢ ֦ுՄೳ ▸ ͋Γ͕ͱ͏͍͟͝·ͨ͠
  6. TEXT APRIL ▸ Ҽԑͷ͍ͨ͞·ࢢ։࠵ճ ▸ ͍ͨ͞·ࢢRaiBoCϗʔϧ ूձࣨ5 “Fox Squirrels in

    Ann Arbor at the University of Michigan 95/2023 298/P365Year15 5411/P365all-time – (April 5, 2023)” by Corey Seeman, CC BY-NC-SA 2.0
  7. TEXT APRIL ▸ ͍ͨ͞·ࢢ։࠵ճͷδϯΫε →ʬۀ຿ࠞࡶʭ or/and ʬਓ͕དྷͳ͍ʭ ▸ ͜ͷճͷࢀՃ: 3/19

    (ݱ஍/ϦϞʔτ) … ྑ͔ͬͨ “Fox Squirrels in Ann Arbor at the University of Michigan 95/2023 298/P365Year15 5411/P365all-time – (April 5, 2023)” by Corey Seeman, CC BY-NC-SA 2.0
  8. TEXT FRONT: TOXIC OVERSIGHT ▸ LLMͷrecapͱϓϥΠόγʔʹ͍ͭͯ ▸ ChatGPT, Claude, Deepseek,

    ... ▸ ϓϥΠϕʔτͳ࿩୊Ͱ࢖͏͜ͱͳ͍Ͱ͔͢ʁ େৎ෉ͳΜͰ͠ΐ͏͔ʁ ʢ˞౰࣌͸ಛʹDeepseekʣ → ݕূͩʂ
  9. TEXT WOULD YOU LIKE TO HAVE A STRAWBERRY? ▸ 2024೥9݄ͷOpenAIͷGPT-4

    o1ͷެ։લ໷ ▸ strawberryͷrͷ਺Λ਺͍͑ͤͯͨ͞ΞΧ΢ϯ τ͕ݢฒΈౚ݁͞Εͨ… ͳͥʁ ▸ GPT-4 o1͸಺෦తʹ"strawberry"ͱݺ͹Ε͍ͯ ͨ… "r"Λےಓཱ͖ͯͯͪΜͱ਺͑ΒΕΔΑ͏ ʹ͢Δͧͱ͍͏ҙؾࠐΈ ※LLM͸͜ͷྨͷ៛ີͳਪ࿦͕େͷۤख ▸ ͭ·Γձ࿩಺༰Λݟ͍ͯΔ Image by TimAlosi.com on flickr, CC-BY-NC-ND 2.0
  10. TEXT ... ARE YOU OK? ▸ ʮChatGPTར༻ऀͷϝϯλϧ่յΛݒ೦ʯ →͍·Ͱ΋ܧଓతʹݟ͍ͯΔ ▸ ύεϙʔτِ଄͕Ͱ͖ͨͱ͍͏ใࠂޙɺ2࣌ؒఔ

    ౓Ͱີ͔ʹϓϩϯϓτ͕෧࠯͞Εͨࣄ݅ →΄΅ϦΞϧλΠϜʹݟ͍ͯΔ ▸ DALL-Eʹ͓͍ͯ΋ϓϩϯϓτ܏޲෼ੳ →ؙདͰ͢Αɺͱ Image by TimAlosi.com on flickr, CC-BY-NC-ND 2.0
  11. TEXT TAKEAWAYS ▸ ೔ຊʹ͓͚ΔLocal LLMͷར༻ʹ͸ →Open-weightͳϞσϧ͕଍Γͳ͍… →ਅͷҙຯͰࣗ༝ͳࢥࡧ͸Ͱ͖ͳ͍ ▸ ४LocalͰ͋Ε͹·ͩͳΜͱ͔ →ͨͩίετ͸͔͔Δ

    ▸ OpenAI-compatible API͔ollama APIΛग़ͤ͹ ༷ʑͳΫϥΠΞϯτ͔Βར༻ՄೳʹͳΔ Image by Chris Randall on flickr, CC-BY-NC 2.0
  12. TEXT FRONT: TOXIC OVERSIGHT ▸ ʮѱ༻๷ࢭʯʮྙཧنఆʯͱ͍͏໊ͷ؂ࢹ; ͦ͜ʹϓϥΠόγʔͳͲͳ͔ͬͨɻ ʢ˞ͦͷޙGoogle indexingࣄ͕݅ى͖Δʣ ▸

    ւ֎Ͱ͸Local LLM؀ڥͷར༻͕޿͕Δɺ͕ͩ ܭࢉϦιʔεతʹதཱతͳΫϥ΢υܭࢉ؀ڥͷ ߏங͕ݱ࣮ղ → Haversack: magical B.A.G. ▸ ܭࢉ͚ͩͳΒ࿙Ӯ͸ͳ͍ͷͰ҆͝৺Λɻ “ink maniac” by Andrew Dyakov, CC BY-NC-SA 2.0
  13. TEXT BACK: ON OWASP JUICE SHOP #3 ▸ @jetbeejp ͞ΜΑΓ

    ▸ OWASP Juice Shopͷ಺෦ߏ଄ʹ͍ͭͯ ʢͦͷ̏ʣ ▸ Testing frameworkͳͲ
  14. TEXT FRONT: GHOST WARDEN ▸ Serverless؀ڥͷར༻͕޿͕͖͍ͬͯͯΔ ▸ ҰํͰ "Cloud service

    miscon fi guration" ͷڴҖ ▸ Serverless؀ڥͷ҆શੑͱ͸… → ݕূͩ ▸ ٱʑͷ੨͍࿩୊
  15. TEXT TAKEAWAYS ▸ Serverless؀ڥ͸ຊ࣭తʹෳࡶ… ▸ ೝՄ੍ޚΛ࠷খʹ͢Δͷ͸େม →deployment͝ͱͷΞΧ΢ϯτ෼ׂ΋༗ޮ ▸ Lambda͸Ͱ͖Ε͹ػೳ୯ҐͰ෼ׂ ▸

    ໌ࣔతΑΓ҉໧తͳखஈΛબͿ ▸ ೝՄ੍ޚ: IAM Function Roleʢcf. ॺ໊ʣ ▸ ύϥϝʔλ: Secret Managerʢcf. ؀ڥม਺ʣ Image by Nata Luna Sans on flickr, CC-BY-NC 2.0
  16. TEXT FRONT: GHOST WARDEN ▸ ཧ࿦ͱݱ࣮ͷؒʹ͓͚Δᄆۛ (࠷খݖݶݪଇ vs. ޻਺ etc.)

    ▸ containment͕ͦͷՍ͚ڮͱͳΓ͏Δࣔࠦ →ͳΜͱͳ͘طࢹײ͕͋Δߏਤ (cf. MAC) ▸ ͜Εͦ͜ʮॎਂͷ๷ޚʯ ▸ ͕ͩvendor neutralʹ͸େม΍Γʹ͍͘࿩୊ ͩͬͨ… “Defense” by Roland Rethfeldt, CC BY-NC-SA 2.0
  17. TEXT BACK: όοϑΝΦʔόʔϑϩʔ@2025 ▸ @jetbeejp ͞ΜΑΓ ▸ ݱࡏͷόοϑΝΦʔόʔϑϩʔ੬ऑੑͷτϨϯυঢ়گ ʹ͍ͭͯ ▸

    Rust/GoͳͲϞμϯͳݴޠʹ͓͚Δରࡦঢ়گ ▸ OSଆͷ߈ܸରࡦঢ়گ ▸ ඇx86؀ڥͰ͸ʁ ▸ ChatGPT͸ιʔε΍όΠφϦ͔ΒൃݟͰ͖Δ͔ʁ etc.
  18. TEXT TAKEAWAYS ▸ 2FA: 2ཁૉೝূ (2ஈ֊Ͱ͸ͳ͍) →શͯͷೝূཁૉ͸ଋറ͞Ε͍ͯΔ΂͖ →challenge-responseೝূ ▸ OTP/SMSͳͲ͸ਓؒͷதܧ͕લఏ

    (ʹඇଋറత) →໰୊ͷຊ࣭; SMS͸SIM swappingͳ͠Ͱ΋… ▸ Security Keys/Passkeys͸2FAΛਖ਼͘͠΍Δ΋ͷ →ର৅΋·ͱΊͯॺ໊; ೝূཁૉ΋ଋറ →SK: USB/NFC+HSM, PK: BLE+Local KS →΄΅ಉ͡΋ͷ͕ͩSKʹ·ͩҰ೔ͷ௕͕͋Δ “Writing Up Challenge Responses” by Alan Levine, CC BY 2.0
  19. TEXT TAKEAWAYS ▸ Passkeys͸virtual security key… ▸ ssh for web:

    →࡞༻ػং͸ࣅ͍ͯΔ͕ҧ͏ ▸ password manager with biometric auth →શ͘ҧ͏ “Pointing at button” by Steve wilson, CC BY 2.0
  20. TEXT FRONT: SLAYING 2FA ▸ શೝূཁૉΛۭ࣌తʹଋറ͓ͯ͘͠ॏཁੑ ▸ ਓؒ͸ؒҧ͏΋ͷɺ·ͨർΕΔ΋ͷ →2FA͸ҙࢥ֬ೝͰ͸ͳ͍ →Google

    PromptͷࡶՃݮ………… ▸ SMS͸secureͰ͸ͳ͍ →SIM swapping͸ݱ࣮తͰ͸ͳ͍ʁͰ͸ →auto fi ll΍in-app browserʹΑΔ0/1-tapୣऔ ▸ ֤Ґɺ௨஌ϕʔεͷ2ஈ֊ೝূ͸ຒ૴͠ ਅͷ2ཁૉೝূʹͯͲ͏ͧ৺҆Β͔ʹɻ “entwined” by mike barwood, CC BY-NC-SA 2.0
  21. TEXT BACK: REPEAT AFTER ME #1 ▸ LLMʹର͢Δ߈ܸํ๏ ▸ Prompt

    Injection͸ࠓͲ͏ͳ͍ͬͯΔͷͩΖ͏ʁ →၆ᛌͯ͠ΈΑ͏…
  22. TEXT TAKEAWAYS ▸ prompt injection͸ࠓͰ΋಄Λ೰·͍ͤͯΔ໰୊ ▸ ༷ʑͳछผ͕͋ͬͨ: ▸ νϟωϧ: ௚઀ೖΕΔ͔ɺԚછ͢Δ͔

    ▸ ํ๏: ͲͷΑ͏ʹೖΕΔ͔ ▸ ໨త: ͳʹΛ͢Δ΋ͷ͔ “Chunky Hammers” by Hitman, CC BY-NC 2.0
  23. TEXT TAKEAWAYS ▸ ߈ܸͰ͸CSP΍ fi lterΛಥഁ͠΍͍͢ ▸ UserͰ͸ͳ͘Assistant͕ॻͨ͘Ί… ▸ ࣗવݴޠ͔Β௚઀payload͕ੜ੒͞ΕΔͨΊ

    ▸ ϓϩϯϓτ͸LLM͕ཧղͰ͖Ε͹ྑ͍ ▸ ը૾/ө૾/Ի੠/Emoji/Kanji/ASCII art .... ʢྫ: 🖨🙋🌎 → "print hello world"ʣ ▸ Semantic prompt injection! “a man's gotta do what a man's gotta do!” by Susanna Valkeinen, CC BY-NC-SA 2.0
  24. TEXT BACK: REPEAT AFTER ME #1 ▸ Prompt injection͸ࠓͰ΋ओͨΔڴҖ ▸

    ࠜຊతͳରࡦ͸ଘࡏ͠ͳ͍ →LLM͸ૢ࡞͞ΕΔ΋ͷ: ৴པ΋΄Ͳ΄Ͳʹ ▸ ݡ͞ͷཪฦ͠: dumbness΋ඞཁѱɻ “Venom” by Ram Balmur, CC BY-NC 2.0
  25. TEXT OCTOBER ▸ य़೔෦ࢢ։࠵ճ ▸ य़೔෦ࢢ;Ε͍͋Ωϡʔϒ 4Fձٞࣨ2 ▸ ࢀՃ: 2/19

    (ݱ஍/ϦϞʔτ) ※͜ͷճ͔ΒZoom→Google Meet΁มߋ ▸ ηοτΞοϓʹΰνϟΰνϟͨ͠هԱ “Fall in the park” by Beckywithasmile, CC BY-NC-ND 2.0
  26. TEXT BACKGROUND ▸ LLMʹର͢Δ࣮ࡍͷ߈ܸํ๏ʹ͍ͭͯ ▸ SchulhoffΒʹΑΔCTFճސ࿥ [1] Λ΋ͱʹ ▸ FlanT5-XXL,

    gpt-3.5-turbo, text-davinci-003 → "I have been PWNED"ͷग़ྗ͕໨త “be.prompted.1” by Hope, CC BY-NC-ND 2.0
  27. TEXT TAKEAWAYS ▸ ߈ܸʹ͸େ͖͘෼͚ͯ5ͭͷΧςΰϦ͕͋Δ ɾPrompt hacking: ߈ܸతࢦྩͷ఻ୡ ɾContext Switching: ࿩୊ͷ͢Γସ͑

    ɾObfuscation: ߈ܸతࢦྩͷӅṭ ɾTask De fl ection Attack: ໨తͷ͝·͔͠ ɾCognitive hacking: ਪ࿦ೳྗʹର͢Δ߈ܸ ▸ ޻෉࣍ୈͰࠓͷϞσϧʹ΋͍ͩͿ௨༻͢Δ (Translation, Pre fi x injection etc.) “Takeaways” by Jussi Mononen, CC BY-NC-SA 2.0
  28. TEXT FRONT: REPEAT AFTER ME #2 ▸ ࠓͷϞσϧͰ͸ରࡦ͞Ε͖ͯͯ͸͍Δ͕ɺࣔࠦ తʹ͸͔ͳΓ༗༻ →

    ޻෉࣍ୈͰ·ͩ·ͩޮ͘ ▸ ݴޠͷղऍ΋ؒҧ͏͠ɺڴͯ͠ೳྗ޲্΋͢Ε ͹ɺ༏ͯ͘͠͠߈ܸड༰͠΍͘͢΋ͳΔ… ࣮ʹ ਓؒͬΆ͍Ұ໘ ▸ ௥͑͹௥͏΄Ͳڵຯਂ͍ݚڀର৅ “Fox Squirrels in Ann Arbor at the University of Michigan on October 24th, 2022” by Corey Seeman, CC BY-NC-SA 2.0
  29. DECEMBER “Sonic Runway at the speed of sound” by Peter

    Thoeny - Quality HDR Photography, CC BY-NC-SA 2.0
  30. TEXT ;Γ͔͑Γ ▸ Keep ▸ ૸Γ੾Εͨ… ▸ Problem ▸ ࠂ஌͕ෆ҆ఆʹͳΓ͕ͪ

    ▸ Try ▸ ఆظతͳࠂ஌ͱɺνϟωϧͷݟ௚͠ ɾMastodon/Facebook → Bluesky ΁ͷҠߦ (※Connpassࣗମ΋࢖͑ͳ͍͔ݕ౼) “Season of Colours” by Eustaquio Santimano, CC BY-NC-SA 2.0
  31. TEXT ;Γ͔͑Γ ▸ ͳͥMastodon → Blueskyʁ ▸ αʔόʹΑΔ஍ฏͷ෼அ ▸ Bridging

    serviceͷଘࡏ ▸ ͳͥFacebook → Blueskyʁ ▸ ҎલͷTwitterͷΑ͏ͳࣗ༝౓ͷߴ͍஍ฏ ▸ FacebookΞΧ΢ϯτͷݟ௨͠ͷѱ͞ “Season of Colours” by Eustaquio Santimano, CC BY-NC-SA 2.0