| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
A new, vendor-neutral connected car hack has been discovered that is "indefensible by modern car security technology" and could put many drivers at risk of a critical cyberattack, according to a Wednesday blog post from security firm Trend Micro. The hack was discovered by Trend Micro's Forward-looking Threat Research (FTR) team, Politecnico di Milano, and Linklayer Labs.
Attackers who successfully exploited the vulnerability could assume control over target systems and create new accounts with full user rights, install programs, and view, edit, or delete data. Researchers at TrendMicro have found malware exploiting the same flaw but using PowerPoint files for distribution, a technique not previously seen in the wild.
Users of online dating apps and the businesses they work for could end up the target of spear phishing and social engineering scams, especially when these services make one's personal information accessible to virtually anyone, Trend Micro researchers warned in a blog post on Thursday.

Researchers at Trend Micro examined three years worth of malware from OnionDog — around 200 total samples — and found evidence that the malware was likely developed and used in joint U.S./South Korean military exercises.

Trend Micro alerts users that an email campaign which appeared a couple of months ago is currently targeting Russian-speaking enterprises and delivering a new Windows-based backdoor.
Microsoft added that an unauthenticated attacker in an enterprise setting could remotely trigger the flaw through an SMB connection, which Trend Micro researchers said is "pretty close to wormable," referring to its spreadability.

The HITRUST Alliance and Trend Micro have announced a partnership to create the HITRUST Cyber Threat Management and Response Center, which will expand HITRUST’s cyber threat information sharing program for health care.

Marcus Hutchins arrest does not appear to be directly related to WannaCry, said Mark Nunnikhoven, vice president of cloud security at Trend Micro.
According to Gilbert Sison and Janus Agcaoili, two security researchers at Trend Micro, the most recent version of the Cerber ransomware can dump browser passwords and can steal files related to Bitcoin wallets.
Trend Micro researchers are keen to explain that there are malware that are fileless only while entering a user’s system (and they eventually reveal themselves when they execute their payload), and there are completely fileless malware attacks, where the entire infection chain is fileless.