
Interview with Hiroaki Kuramochi, CTO of information security company Luck, about changes in attack methods and background
AI-generated summary
Incidents of personal information leakage due to unauthorized access targeting companies are occurring one after another.
Incidents of personal information being leaked due to unauthorized access targeting companies are occurring one after another. Why are these attacks occurring one after another, and what are the characteristics of the recent attacks? We spoke to Hiroaki Kuramochi, Director and CTO (Chief Technology Officer) of the information security company "Luck" (Tokyo).
--Personal information has been leaked one after another. Why?
"I am very surprised as there has never been a situation in the past where damage has been so publicly announced.At this point, we have not found any evidence that indicates that the attacks were caused by the same attacker or attack campaign.Unless the root cause is clarified, similar damage will likely continue in the future."
--What are the characteristics of attacks in recent cases?
"Until recently, most attacks on companies were ransomware attacks. These are methods that infiltrate a company's network through a VPN (virtual private network), encrypt files, and then demand a ransom from the company. Nowadays, the targets of attacks have shifted to stealing large amounts of personal information.In particular, companies that can efficiently obtain large amounts of personal information, such as consumer services and cloud-based services used by multiple businesses, are being targeted.
--Why did the target change?
"In the end, the attacker's goal is money. In the past, many companies had a policy of not paying ransoms for ransom attacks, and the fact that they no longer made money as a result is thought to be a factor in the change."
"There have been many incidents in the past where email addresses and passwords have been stolen. In addition to this, information on driver's licenses and passports has also been leaked. There may be a change in the means by which stolen information is turned into money, such as selling personal information that can be used for fraud to criminal groups."
AI in the background?
--What do you think about the possibility that AI (artificial intelligence) is being used in attacks?
“It shows that it was actually used…
![[Understand all at once] What is happening now with a series of personal information leaks?](/api/img?u=https%3A%2F%2Fimgopt.asahi.com%2Fogp%2FAS20261009003873_comm.jpg&w=320&q=72&f=webp)
Personal information has been leaked one after another due to unauthorized access to companies such as Times Car and Daiwa Securities. The exact reason for the damage is unknown, but vulnerabilities in cloud services and the timing of the attack's announcement may have played a role.

On the 9th, US media reported that an AI from the AI company Anthropic provided false information about a murder case to police during a test and repeatedly applied for a visa to the State Department. There was no actual harm caused, and a U.S. government task force emphasized that reporting and remediation by AI companies is a "critical national security obligation."
Commune, a community platform for businesses run by Shinagawa Ward, was accessed illegally, and information on approximately 307,000 members may have been leaked. LINE Yahoo!, Sansan, Panasonic, Yamaha, Suzuki and others announced the impact on October 9th, announcing that personal information such as email addresses and names may have been viewed by a third party.
IDC Frontier announced on October 9th that it is working with the corporate division of its parent company Softbank to respond to customers regarding the outage caused by a ransomware attack on IDCF Cloud that occurred around 3:40 a.m. on October 7th. It affected 495 businesses and local governments, and advised customers that data recovery could only be done from their own backups.
On October 9, Coconara announced that its skill market service ``Coconara Skill Market'' had been accessed illegally by a third party, and 449 member resumes and 1,845 resume-related documents were leaked. Credit card information and passwords are not covered, and disclosure to the general public or unauthorized use has not been confirmed.

It has been revealed that Elon Musk's ``TerraFab'' semiconductor manufacturing concept aims to open a large-scale factory in Texas in 2032 that will integrate the integrated production of logic semiconductors and memory with a monthly production capacity of approximately 1 million units. Preparations are underway to start operating a prototype factory in 2027, and orders have begun to be placed with Japanese semiconductor manufacturing equipment and materials companies. Total investment could reach up to $119 billion.