| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|

"The attack surface is larger than it has ever been, so it's a fertile ground for finding and abusing vulnerabilities," says Dustin Childs, communications manager for Trend Micro's Zero Day Initiative, the largest vendor-agnostic bug bounty program.

According(Opens in a new window) to Trend Micro, the gang also previously recruited company insiders to help them hack a target’s network. “LockBit has been detected all over the globe, with the US seeing most of the attack attempts from June 2021 to January 20, 2022, followed by India and Brazil,” the security firm wrote in a February report.

The number of security threats coming through email is growing once again, according to new research from Trend Micro.
According to research by cybersecurity firm Trend Micro, the “rise of deepfakes raises concern: It inevitably moves from creating fake celebrity pornographic videos to manipulating company employees and procedures.”

Trend Micro‘s chief technology strategy officer David Chow expects security vendor collaboration and consolidation to play a significant role in national security, he told SDxCentral in an interview at the RSA Conference.

The cybercriminals behind DeadBolt primarily target NAS devices. QNAP systems are the main targets, though in February the group attacked NAS devices from Asustor, a subsidiary of systems maker Asus, said analysts with cybersecurity firm Trend Micro.

Connected cars provide plenty to entice threat actors, with more than 400 million predicted to be on the roads globally by 2025. Trend Micro announced VicOne, dedicated security for the electric vehicles and connected cars of today and tomorrow.

The FBI in April warned that BlackCat affiliates use previously compromised user credentials to gain initial access to a victim network, but didn't identify Exchange flaws as a point of entry. However, researchers at Trend Micro at the time reported BlackCat affiliates had used the Exchange CVE-2021-31207 flaw initial entry and to install a web shell on the server for remote access.

Survey results from Trend Micro indicate that, when it comes to organizations understanding their attack surfaces, most don't.

More processes could be terminated by the updated Cuba ransomware variant prior to file encryption, such as MySQL, MS Exchange, and Outlook, while additional directories and file types have been added to the ransomware's exclusion list, a Trend Micro report revealed.