| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|

The image of the bank robber is hopelessly outdated. Today’s heist does not begin with a getaway car outside a branch. It begins quietly, with an adversary establishing persistence inside a financial institution’s network and studying how the organisation responds, says Tom Kellermann, VP of AI Security and Threat Research at Trend AI.

The cumulative milestone reached by TrendAI, whose U.S. headquarters is in Irving, underscores how quickly AI is reshaping cybersecurity spending — and how the AWS Marketplace captures that growth.

Tom Kellermann, VP of Al Security and Threat Research, analyses how Al has altered the cyberattack kill chain, as enterprise Al is being used against them

Security teams often treat frontier and open-weight artificial intelligence models as competing choices. The two are complementary, not substitutes, said Johnny Hand, global CISO at TrendAI.

The number of software security flaws discovered in popular technology products in 2026 is on pace to roughly double the tally of vulnerabilities that surfaced in 2025, an explosion driven by increasingly capable artificial intelligence systems.

A jailbroken Google Gemini did 90 percent of the work in a credential- and cryptocurrency-stealing spree, including spinning up a new command-and-control (C2) server in just six minutes, according to a TrendAI report shared exclusively with The Register.

TrendAI has published research on a cybercrime economy built around stolen healthcare data, ransomware, and traded access to health systems.

Economic growth and innovation thrive in the light. But mounting cyber risk threatens to cast a shadow over global organizations at a time of tremendous change. From healthcare to financial services, and energy to education, AI is helping businesses to work faster, smarter and more efficiently. But it also exposes those same organizations to risk.

New research from TrendAI highlights the immense reach of Fancy Bear, also known as APT28 and Forest Blizzard.

TrendAI finds 70% of requested exploits in the last three years were for vulnerabilities that were at least two years old.

“The massive amount of volume coming in terms of software projects is quite overwhelming,” said Peter Girnus, senior threat researcher at Trend Micro’s Zero Day Initiative. “I think the industry really has to figure out how to add that security piece between how these agents work—between the models and the tool chains and the various components of the AI ecosystem.”

Bharat Mistry, field CTO at TrendAI, a business unit of Trend Micro, says healthcare leaders should stop thinking one environment can do it all and instead put each system where it works best.

A record 73 entries were included in this year's competition at Automotive World in Tokyo, and, while not all were successful, Trend Micro's Zero Day Initiative still ended up paying out more than $1 million to successful competitors.

Security researchers exploited dozens of vulnerabilities in vehicle infotainment systems and EV chargers during the latest Pwn2Own contest at Automotive World 2026.

My top priority for 2026 is to scale differentiated, AI-driven cybersecurity platforms, turning unique expertise into durable growth and long-term value for customers worldwide.

A digital double can take twice the trouble. That is - a virtual replica of an organization's IT infrastructure allows for the dynamic deployment of simulations and proactive defenses, said Trend Micro COO Kevin Simzer.

Rachel Jin, chief platform and business officer at Trend Micro, says the speed and overall volatility of AI models is reshaping everything – from IT lifecycles to threat patterns. LLMs update monthly and attackers are increasingly using that pace to generate highly tailored phishing attacks, automate tasks and further scale operations.

Overall, the incidents underscore that Japanese companies are suffering the long tail of recovering from ransomware, especially if the victims refuse to pay the ransom, says Jon Clay, vice president of threat intelligence for cybersecurity firm Trend Micro.

Cybercriminals, including ransomware crews, will lean more heavily on agentic AI next year as attackers automate more of their operations, Trend Micro's researchers believe.

Over the past year, VLMs have become significantly more accurate and practical, agrees Bharat Mistry, field CTO at Trend Micro. That's due to training on huge collections of paired images and texts, along with improved model designs, he says.
Japanese cybersecurity software company Trend Micro Inc. today gave a preview of its soon-to-be-launched Trend Vision One AI Security Package, a solution that delivers proactive, centralized exposure management with analytics for artificial intelligence-driven environments.

At Pwn2Own Ireland 2025, competitors targeted products in eight categories, including printers, network storage systems, messaging apps, smart home devices, surveillance equipment, home networking equipment, flagship smartphones (Apple iPhone 16, Samsung Galaxy S25, and Google Pixel 9), and wearable technology (including Meta's Ray-Ban Smart Glasses and Quest 3/3S headsets).

As the final day of the Pwn2Own Ireland 2025 hacking event enters its final phase, the biggest single reward ever offered by the organizers, $1 million, was up for grabs by a hacker known only as ‘Eugene’ from Team Z3. This would be the Messenger holy grail hack, a successful zero-day, zero-click, remote code execution hack targeting WhatsApp.

The second 24 hours of the three-day hacking frenzy that its Pwn2Own Ireland 2025 has come to a conclusion, and Samsung has been the headline victim with its flagship Galaxy S25 smartphone falling victim to a collaboration between Mobile Hacking Lab and Summoning Team hackers.

Pwn2Own Ireland kicked off on Oct. 21. What researchers found continues to highlight how secure development practices are lacking across the industry.

"RondoDox" is characteristically unlike most botnets, researchers from Trend Micro said in a report on Thursday. Where others are specially crafted to pick apart select vulnerabilities like a surgeon, RondoDox blasts onto infected devices like Rambo, trying exploit after exploit to see which one sticks.

The expiration this week of decade-old legal protections for companies sharing cyberattack intelligence with the federal government is sending a chill across the cybersecurity industry, with experts fearing a wave of attacks ahead.

“Ransomware actors and their affiliates are regularly changing their TTPs [tactics, techniques, and procedures] nowadays to stay ahead of defenses as well as law enforcement,” said Jon Clay, Trend Micro’s vice-president of threat intelligence.

The extended MirrorFace campaign, for example, has likely led to critical data loss, says Jon Clay, VP of threat intelligence at cybersecurity firm Trend Micro.

None of the vulnerabilities Apple disclosed this week appear to be under active attack, Dustin Childs, head of threat awareness at Trend Micro’s Zero Day Initiative, told CyberScoop.

A threat actor is using legit-looking AI tools and software to sneak malware for future attacks on organizations worldwide. The campaign, which Trend Micro researchers are tracking as "EvilAI," has already racked up hundreds of victims across manufacturing, government, healthcare, and other sectors, and has infected organizations in the US, India, the UK, Germany, France, Brazil, and beyond.

Africa's cybercriminals, like the continent overall, are quickly gaining maturity, says Joshua Paul Ignacio, a senior threat researcher at Trend Micro, which also aided Interpol in the latest operation.

"We're talking artificial intelligence, but chatbots are really stupid," says David Sancho, Senior Threat Researcher at Trend Micro. "They process all text as if they had new information, and if that information is a command, they process the information as a command."

On the latest episode of the TechSpective Podcast, Tony Bradley spoke with Kevin Simzer, COO of Trend Micro, about how generative and agentic AI are reshaping development and defense strategies.

"A leak happened here somewhere," Dustin Childs, head of threat awareness at Trend Micro's Zero Day Initiative (ZDI), told The Register in July. "And now you've got a zero-day exploit in the wild, and worse than that, you've got a zero-day exploit in the wild that bypasses the patch, which came out the next day."

Dark Reading's Becky Bracken meets with Dustin Childs of Trend ZDI at Black Hat 2025.

While the cybercrime underground has professionalized and become more organized in recent years, threat actors are, to a great extent, still using the same attack methods today as they were in 2020.

How Kim Jong Un's regime leverages AI and vulnerable Americans to earn millions
The new offering allows organizations to model their entire information technology and operational technology environments in real time, including support to simulate threats, validate defenses and adjust policies before attacks can occur.

The expanded alliance brings new capabilities to partners in three critical cybersecurity growth areas.

A program to share information with cybersecurity companies may have exposed unpatched flaws in the company's SharePoint service.

Both Microsoft and Trend Micro later said that hackers had actually begun exploiting the bugs on July 7, a day before the patches. It is unclear how these hackers learned of these flaws, Childs said. Trend Micro said a technology company—which it declined to identify—was compromised in the attack that it observed.

The vulnerability opening the way for the attack was first identified in May at a Berlin hacking competition organised by cybersecurity firm Trend Micro that offered cash bounties for finding computer bugs in popular software.

Both techniques remain popular with state-sponsored and cybercriminal groups, says Peter Girnus, a senior threat researcher with cybersecurity firm Trend Micro's Zero Day Initiative (ZDI).

Louise McEvoy, Trend Micro’s vice president of U.S. channel, told CRN in an email that the vendor is “working to ensure that the changes within Microsoft’s MVI program strengthen our joint business.”

This new feature also has a security hole that "could affect thousands of AI agents," according to Trend Micro principal threat researcher Sean Park, who detailed the flaw and how an attacker could exploit it to hijack a support bot in a Tuesday post.

Operation Secure was also assisted by private cybersecurity partners, including Kaspersky, Group-IB, and Trend Micro.

Hallucination mitigation is also a core part of Trend Micro's responsible AI development strategy, says Shannon Murphy, senior manager of global security and risk strategy at Trend Micro. The company recently open sourced its threat detection AI model and agent, Trend Cybertron.

Irrespective of market conditions, only the top 5% of the Zacks-covered stocks get a 'Strong Buy' rating and the next 15% get a 'Buy' rating.

Kevin Simzer, chief operating officer at Trend Micro, shared a firsthand experience with me that emphasizes this shift. At a CISO roundtable just nine months ago, he polled the room—and every single participant was trying to block AI tools. Now? “We’re about to release some new research... and actually, 97% of them are leveraging AI,” Simzer said.

While attacks from the prolific APT group in China and North Korea continue to make up much of the activity in the region, other nations are using cyber operations as part of their approach to regional conflicts, says Feike Hacquebord, principal threat researcher at cybersecurity firm Trend Micro.

In all, no less than 28 zero-day exploits were demonstrated, and Trend Micro ZDI handed over $1,078,750 to the successful hackers in return for the vulnerability details.

What It Does: Trend Micro offers a comprehensive cybersecurity platform spanning endpoint, email, cloud, OT, and more. It’s all anchored by the Trend Micro Vision One platform.

In this video interview with Information Security Media Group at RSAC Conference 2025, Trend COO Kevin Simzer discussed the impact of trade tariffs on cybersecurity, how data sovereignty is driving on-premises deployments, and cybersecurity skill and talent challenges.

Without a doubt, there is much less eye-rolling when AI gets brought up in a conversation at RSAC this year, according to Kevin Simzer, COO at Trend Micro.

“There is a veil on the front side so we can’t see what they’re working on and what they’re working towards. We only see the results of it when it gets into the wild and actually gets demonstrated against a real live party,” Trend Micro's Dustin Childs said.

Cybersecurity company Trend Micro also put out research on this front. It found that there are detailed online forums in Russia where criminals were offering to carry out physical attacks for the highest bidder.

Trend Micro researchers detailed an emerging ransomware campaign by a new group known as "CrazyHunter" that is targeting critical sectors in Taiwan.

"I can say that, having been in this industry for longer than CVEs themselves, it won't be good," Dustin Childs, head of threat awareness at Trend Micro's Zero Day Initiative, told The Register.

Security researchers at Trend Micro are flagging problems with Nvidia’s patch for a critical vulnerability in the Nvidia Container Toolkit, warning that the incomplete mitigation leaves enterprises exposed to container escape attacks.

And although regular agentic AI is still at a very early stage—and criminal or malicious use of agentic AI even more so—it’s even more of a Wild West than the LLM field was two years ago, says Vincenzo Ciancaglini, a senior threat researcher at the security company Trend Micro.

Trend Micro has open sourced its cybersecurity large language model (LLM) and artificial intelligence (AI) agent to help organizations automate threat detection.

Trend Micro rolled out autonomous agents and its own AI brain to customers last year.

According to Trend Micro documentation, the data extortion gang was seen launching exploits against the defect in the Microsoft Management Console (MMC) framework to execute malicious code and exfiltrate data from targeted systems.

Cybercriminals working on behalf of at least six nation-states are actively exploiting a zero-day vulnerability in Microsoft Windows to commit espionage, steal data and cryptocurrency, according to Trend Micro researchers.

As security researchers Peter Girnus and Aliakbar Zahravi with Trend Micro's Zero Day Initiative (ZDI) reported today, Microsoft tagged it as "not meeting the bar servicing" in late September and said it wouldn't release security updates to address it.

Researchers from the security firm Trend Micro collaborated with Human on the Badbox 2.0 investigation, particularly focusing on the actors behind the activity.

The company says Trend Cybertron is the first specialised cybersecurity large language model (LLM) of its kind that leverages AI-driven intelligence, historical threat data and predictive analytics to protect organisations from emerging risks.

The world is worried about deepfakes. Research conducted in the U.S. and Australia finds that nearly three-quarters of respondents feel negatively about them, associating the AI-generated phenomenon with fraud and misinformation. But in the workplace, we’re more likely to let our guard down.

The fight against shadow AI mirrors past efforts to control shadow IT and unauthorized cloud applications, Shannon Murphy, senior manager of global security and risk strategy at Trend Micro, told Axios.

Generally, monitoring for cryptojacking attacks can be difficult, said Jon Clay, vice president of threat intelligence at Trend Micro. “One of the things we see a lot of is, they come in, they drop their miners, and then they wipe their tracks of everything they did prior to that. So it’s very difficult,” he said. “They also wipe out and turn off a lot of the security products that are running on these machines.”

A Trend Micro spokesperson shared a comment from the company's research team, which noted that based on currently available details, the issue could be related to a high volume of traffic from either a surge in popularity for DeepSeek's service or a targeted DDoS attack.

The incidents highlight that organizations are aiming to silence researchers, rather than engage publicly with them, says Dustin Childs, the head of threat awareness and the Zero Day Initiative at Trend Micro, which maintains a third-party bug bounty program.

Researchers at the this year's Pwn2Own Automotive hacking contest successfully hacked Tesla's wall connector electric vehicle (EV) charger.

Pwn2Own is a competitive hacking event with a long and noble history stretching back to 2007; that it attracts some of the best ethical hackers and security researchers on the planet is a testament to its reputation.

After the zero-day vulnerabilities are exploited and reported during Pwn2Own, vendors have 90 days to develop and release security patches before Trend Micro's Zero Day Initiative publicly discloses them.

$380,000 paid out on the first day of Pwn2Own Automotive 2025 for exploits targeting car infotainment units, operating systems, and chargers.

The gang's operator was banned from popular hacker forums Exploit and XSS, making it difficult for him to recruit new members, according to a Trend Micro report.

“Why do people drink one soda over another? Because the brand is so strong,” says Robert McArdle, a director on Trend Micro’s cybercrime research team at Trend Micro, which helped in the investigation. “And if you can destroy that you’re left with soda water.”

“The malicious repository containing the PoC appears to be a fork from the original creator,” Trend Micro said in its report. “In this case, the original Python files were replaced with the executable poc[dot]exe that was packed using UPX.”

From Trend Micro's Jon Clay: Proactive defense needs to be prioritized, because offense is going to stay on the back foot.

Researchers at cybersecurity company Trend Micro first spotted Meta’s VR headsets appearing in its threat intelligence residential proxy data earlier this year, before tracking down that teenagers were using Big Mama to play Gorilla Tag.

Artificial intelligence is transforming cybersecurity by improving threat detection, addressing generative AI risks, and offering tailored solutions for multi-cloud and on-premises environments. "We're thinking about this next wave of innovation with AI as being very disruptive," said Kevin Simzer, COO of Trend Micro.

Trend Micro, a major cybersecurity vendor, has been quietly rolling out a new "AI brain" that gives customers the ability to automate their threat defenses.

Despite the large number of arrests, the operation will likely result only in a brief reduction in cybercriminal activity, as disrupted groups will quickly pivot and recreate their infrastructure, says Stephen Hilt, a senior threat researcher with cybersecurity firm Trend Micro, which also collaborated with authorities on the global intelligence support.

The reach of the China-linked Salt Typhoon gang extends beyond telecommunications giants in the United States, and its arsenal includes several backdoors – including a brand-new malware dubbed GhostSpider – according to Trend Micro researchers.

The gang, tracked as "Water Barghest," has already compromised more than 20,000 IoT devices, including small office and home office (SOHO) routers used by businesses, by using automated scripts to identify and compromise vulnerable devices, according to new research from Trend Micro.

Channel Futures features Louise McEvoy, Vice President of US Channel at Trend.

“On the surface, [CISA’s program is] very good,” Dustin Childs, head of threat awareness in the Zero Day Initiative at Trend Micro, tells CSO. “Every enterprise, especially any large enterprise like the US government, should have some vulnerability disclosure platform.”

Recent research through Trend Micro's Zero Day Initiative (ZDI) has surfaced half a dozen vulnerabilities in the Mazda IVI.

“CISA has a good opportunity to build this out and expand who supports it,” said Jon Clay, vice president of threat intelligence at cyber firm Trend Micro, “as the existing pledges are a very small fraction of developers in the world.”

As part of the operation, which ran from April 1 to August 31, law enforcement agencies in 95 Interpol member countries and private-sector partners such as Group-IB, Trend Micro, Kaspersky, and Team Cymru analyzed roughly 30,000 suspicious IP addresses.

It’s been a headline year for democracy, with over two billion voters casting their ballots in dozens of countries worldwide. But democracy has also never been under greater threat—and in many cases, AI-powered trickery is to blame.

While Synology and QNAP hurried out security updates, vendors are given 90 days until Trend Micro's Zero Day Initiative releases details on bugs disclosed during the contest and usually take their time to release patches.

Risk management and security vendor Trend Micro is looking ahead to 2025 as a year to build upon program enhancements and platform updates that were unveiled throughout 2024.

Trend Micro has acquired TippingPoint IPS and sells it both as a standalone product as well as integrated into their central platform called Vision One. It is available as a virtual machine, a variety of hardware appliances or as a cloud subscription for protecting AWS workloads.

Trend Micro revealed today it will extend an alliance with NVIDIA to include a Morpheus platform that harnesses graphical processor units (GPUs) to apply artificial intelligence (AI) to security operations.

Enter a third study by Trend Micro, a security scam detection app builder. It revealed that a whopping 73% of people think scams have gotten worse in the past year, and almost 80% are worried someone in their family might fall victim.

NIST's security flaw database still backlogged with 17K+ unprocessed bugs. Not great

Nearly two-thirds of organizations lack 24/7 cybersecurity coverage throughout the year due to staffing shortages, a Trend Micro report published Thursday revealed.