ãŠãŒã¶ãŒèªèšŒã®åéã§ã¯ãCredential Stuffing ã¯ãµã€ããŒã»ãã¥ãªãã£ã®è åšã§ãããçãŸããããŸãã¯äŸµå®³ããããŠãŒã¶ãŒåãšãã¹ã¯ãŒãã®è³æ Œæ å ± (ããŒã¿äŸµå®³ããã£ãã·ã³ã°æ»æããã¹ã¯ãŒã ãã³ããªã©ã®ããŸããŸãªãœãŒã¹ããåé) ãã¿ãŒã²ãã ã¢ããªã±ãŒã·ã§ã³ã®ãã°ã€ã³ã«èªåçã«æ¿å ¥ããããšã䌎ããŸãããŠãŒã¶ãŒã¢ã«ãŠã³ãã«äžæ£ã«ã¢ã¯ã»ã¹ããããšããã€ã³ã¿ãŒãã§ãŒã¹ããã®ãµã€ããŒæ»æææ³ã¯ããŠãŒã¶ãŒãè€æ°ã®ãªã³ã©ã€ã³ ãµãŒãã¹éã§åããŠãŒã¶ãŒåãšãã¹ã¯ãŒãã®çµã¿åãããåå©çšãããã¹ã¯ãŒãåå©çšã®åºç¯ãªæ £è¡ãå©çšããŠããããã®çµæãããŒã¿äŸµå®³ã€ãã³ãåŸã®ãªã¹ã¯ãå¢å¹ ãããŸãã
æè¿ã®çµ±èšã«ãããšãããŒã¿äŸµå®³ã® 80% 以äžã«ãçãŸããèªèšŒæ å ±ãŸãã¯è匱ãªèªèšŒæ å ±ã®äœ¿çšãé¢ä¿ããŠããããµã€ããŒè åšç°å¢ã«ããã Credential Stuffing æ»æã®èå»¶ã瀺ããŠããŸããèªèšŒæ å ±ãªã¹ãã¯ããŒã¯ãŠã§ãäžã§é åžã販売ãããããšãå€ããäœååãã®å ¬éãããèªèšŒæ å ±ãå«ãŸããŠããŸããããã«ãæ»æè ã¯ãããããããããŸããŸãªããŒã«ãå©çšããŠãã°ã€ã³ ããã»ã¹ãèªååããã³é«éåããããšãå€ããèšå€§ãªæ°ã®ã¢ããªã±ãŒã·ã§ã³ãåæã«æšçã«ããããšãã§ããŸãã
ããã¯ãšã³ããWebãã¢ãã€ã« ã¢ããªã±ãŒã·ã§ã³çšã®no-codeãã©ãããã©ãŒã ã§ããAppMasterã®ã³ã³ããã¹ãã§ã¯ãå ç¢ãªã»ãã¥ãªãã£ãšãŠãŒã¶ãŒèªèšŒã¡ã«ããºã ãç¶æããããšãæãéèŠã§ãããã©ãããã©ãŒã ã¯éçºããã»ã¹ã®å€§éšåãèªååããããããŠãŒã¶ãŒ ããŒã¿ãä¿è·ããã¢ããªã±ãŒã·ã§ã³å šäœã®æŽåæ§ãç¶æããããã«ãAppMaster ã§çæãããã¢ããªã±ãŒã·ã§ã³ã Credential Stuffing ããã®ä»ã®æ»æãã¯ãã«ã«å¯Ÿããä¿è·æªçœ®ã確å®ã«å®è£ ããããšãéèŠã§ãã
AppMasterã¢ããªã±ãŒã·ã§ã³ãã¿ãŒã²ãããšãã Credential Stuffing æ»æã®ãªã¹ã¯ã軜æžããããã«ãããã€ãã®æŠç¥ãæ¡çšã§ããŸãããããã«ã¯æ¬¡ã®ãã®ãå«ãŸããŸããããããã«éå®ãããŸããã
1. 匷åãªãã¹ã¯ãŒã ããªã·ãŒã®é©çš: ãŠãŒã¶ãŒã«è€éã§åºæã®ãã¹ã¯ãŒãã®çµã¿åãããæ¡çšãããããšã§ãæ»æè ãã¢ã«ãŠã³ãã䟵害ããããšãããå°é£ã«ãªããŸãã倧æåãšå°æåãæ°åãç¹æ®æåãçµã¿åããããããã¹ã¯ãŒãã®æå°é·ãèšå®ããããããšãè³æ Œæ å ±æšæž¬ã¢ã«ãŽãªãºã ã®é£æåºŠãé«ããªãå¯èœæ§ããããŸãã
2. å€èŠçŽ èªèšŒ (MFA) ã®å®è£ : MFA ã¯ããŠãŒã¶ãŒãèªåã®èº«å ã確èªããããã«å°ãªããšã 2 ã€ã®ç°ãªã圢åŒã®èšŒæ ã®æäŸãèŠæ±ããããšã«ãããèªèšŒããã»ã¹ã匷åããŸãã圌ãã¯ç¥ã£ãŠããããš (ãã¹ã¯ãŒããPINããã¹ãã¬ãŒãºãªã©)ããŸãã¯åœŒããç¥ã£ãŠãããã® (æçŽãé¡ãé³å£°èªèãªã©ã®çäœèªèšŒ) ãç¥ã£ãŠããŸããæ»æè ãã¢ã«ãŠã³ãã䟵害ããããã«ã¯ãæ£ããè³æ Œæ å ±ãšè¿œå ã® ID 圢åŒã®äž¡æ¹ãå¿ èŠãšãªããããMFA 㯠Credential Stuffing ã«ããäžæ£ã¢ã¯ã»ã¹ã®å¯èœæ§ãå€§å¹ ã«æžãããŸãã
3. ã¬ãŒãå¶éã¡ã«ããºã ã®æ¡çš: ãã°ã€ã³è©Šè¡ãå¶éããããšã§ãæ»æè ã Credential Stuffing ãå®è¡ã§ããã¬ãŒããå¶éã§ããŸãã倱æãããã°ã€ã³è©Šè¡ã®æ°ãç£èŠããããé£ç¶è©Šè¡ã®éã«é å»¶ãå°å ¥ãããšãèªååãããæ»æã®ãªã¹ã¯ã軜æžã§ããŸããããã«ãCAPTCHA ãå©çšãããšããããã«ãããã«ãŒã ãã©ãŒã¹æ»æã®å®è¡ãç¹å®ãã黿¢ããããšãã§ããŸãã
4. äžå¯©ãªãã°ã€ã³ ãã¿ãŒã³ã®ç£èŠ: å°çäœçœ®æ å ±ã IP ã¢ãã¬ã¹ ããŒã¿ãªã©ã®ãã°ã€ã³åäœã®ãã¿ãŒã³ãåæãããšãCredential Stuffing ã®è©Šè¡ã瀺ãç°åžžãªã¢ã¯ãã£ããã£ã®æ€åºã«åœ¹ç«ã¡ãŸãããã°ã€ã³è©Šè¡ãæå®åæ°å€±æããåŸã«ã¢ã«ãŠã³ã ããã¯ã¢ãŠã ããªã·ãŒãå®è£ ãããšã远å ã®ä¿è·å±€ãæäŸããããšãã§ããŸãããããã«ã¯æ£èŠã®ãŠãŒã¶ãŒã«å¯Ÿããäžå¿ èŠãªããã¯ã¢ãŠãã®ããªã¬ãŒãé²ãããã®æ£ç¢ºãªç£èŠãå¿ èŠã§ãã
5. ãã¹ã¯ãŒã ãããŒãžã£ãŒã®äœ¿çšã®å¥šå±: ä¿¡é Œæ§ãé«ãå®å šãªãã¹ã¯ãŒã ãããŒãžã£ãŒã®å°å ¥ãä¿é²ãããšããŠãŒã¶ãŒã䜿çšãããªã³ã©ã€ã³ ãµãŒãã¹ããšã«äžæã§è€éãªãã¹ã¯ãŒããçæããã³ä¿åããCredential Stuffing æ»æã®æœåšçãªåœ±é¿ã軜æžã§ããŸãã
AppMaster匷åãªãã¹ã¯ãŒã ããªã·ãŒãMFAãã¬ãŒãå¶éãªã©ã®å ç¢ãªãŠãŒã¶ãŒèªèšŒæ©èœãçµ±åããããšã§ãå®å šã§ã¹ã±ãŒã©ãã«ãªã¢ããªã±ãŒã·ã§ã³ã®äœæãä¿é²ããããšãç®çãšããŠããŸããããã«ãAppMaster ã§çæãããã¢ããªã±ãŒã·ã§ã³ã¯ãPostgresql äºæããŒã¿ããŒã¹ãšé£æºããŠãæ©å¯æ§ã®é«ããŠãŒã¶ãŒ ããŒã¿ã®å®å šãªä¿ç®¡ãšç®¡çãä¿èšŒããæ©èœãåããŠããŸãããããã®å¯Ÿçãã¢ããªã±ãŒã·ã§ã³éçºããã»ã¹ã«çµã¿èŸŒãããšã§ã AppMasterno-codeãã©ãããã©ãŒã ã®å©äŸ¿æ§ãšå¹çæ§ãç¶æããªãããå¢å€§ãã Credential Stuffing ã®è åšããã¯ã©ã€ã¢ã³ããšãšã³ããŠãŒã¶ãŒãä¿è·ããããåªããŠããŸãã