| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
According to researchers at Trend Micro, criminals have been using hacking tools that were reportedly stolen from the National Security Agency in targeting companies around the world as part of a cryptomining campaign since March.
SmarTone Japanese operator NTT Docomo will launch a service designed to protect IoT devices running on its mobile network using Trend Micro’s security platform. Protection will be enabled by the Docomo Cloud Platform Network Security Service. The security shield will mainly target Docomo’s customers who are building infrastructure-as-a-service environments.

Trend Micro has confirmed that attackers have been exploiting a vulnerability in the Oracle WebLogic server to install monero (XMR) mining malware, while using certificate files as an obfuscation trick.
Trend Micro published its findings on a new malware, dubbed BlackSquid, which has proven itself to be especially dangerous. The malware has emerged from the depths to attack web servers with a barrage of exploits designed to land illicit cryptocurrency miners.

Trend Micro's Bill Malik tells TechRadar about some of the most pressing IoT threats, including phishing and business email compromise attacks as well as ransomware.
Real estate insurance company First American Financial Corp exposed nearly 885 million sensitive customer documents dating back up to 16 years on a publicly available web page. Trend Micro's Mark Nunnikhoven comments that BEC is a rising issue in the real estate market and is starting to target realtors. An attacker can apply a sense of urgency when posing as a realtor and try to fool a buyer into sending money to a fake account, or vice versa.

Trend Micro is extending the reach of its container security offerings to now address the full range of the DevSecOps life cycle. The latest updates to Trend Micro Deep Security add the ability to inspect all lateral and horizontal traffic movement between containers and platform layers such as Kubernetes and Docker.

Security researchers from Trend Micro said they had recently discovered a new variant of Trickbot arriving via redirection URL in a spam mail message. The URL appears to point toward a Google domain but instead redirects users who click on it to a site that downloads Trickbot on the user's system.

Microsoft released a patch for an elevation-of-privileges vulnerability being exploited in the wild. It’s tied to the Windows Error Reporting feature and is being abused by attackers who have gained local access to affected PCs. According to Trend Micro's Zero Day Initiative, they would need to first gain access to run code on a target system, but malware often uses elevations like this one to go from ‘user’ to ‘admin’ code execution.

Trend Micro's Greg Young shares how complex IoT environments (CIEs) offer new opportunities for hackers to launch physical and digital attacks. That’s bad news for IT professionals as it means a further expansion of the corporate attack surface.