| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
Real estate insurance company First American Financial Corp exposed nearly 885 million sensitive customer documents dating back up to 16 years on a publicly available web page. Trend Micro's Mark Nunnikhoven comments that BEC is a rising issue in the real estate market and is starting to target realtors. An attacker can apply a sense of urgency when posing as a realtor and try to fool a buyer into sending money to a fake account, or vice versa.

Trend Micro is extending the reach of its container security offerings to now address the full range of the DevSecOps life cycle. The latest updates to Trend Micro Deep Security add the ability to inspect all lateral and horizontal traffic movement between containers and platform layers such as Kubernetes and Docker.

Security researchers from Trend Micro said they had recently discovered a new variant of Trickbot arriving via redirection URL in a spam mail message. The URL appears to point toward a Google domain but instead redirects users who click on it to a site that downloads Trickbot on the user's system.

Microsoft released a patch for an elevation-of-privileges vulnerability being exploited in the wild. It’s tied to the Windows Error Reporting feature and is being abused by attackers who have gained local access to affected PCs. According to Trend Micro's Zero Day Initiative, they would need to first gain access to run code on a target system, but malware often uses elevations like this one to go from ‘user’ to ‘admin’ code execution.

Trend Micro's Greg Young shares how complex IoT environments (CIEs) offer new opportunities for hackers to launch physical and digital attacks. That’s bad news for IT professionals as it means a further expansion of the corporate attack surface.
Cybersecurity researchers at Trend Microhave detailed a new means of the Dharma family of ransomware being deployed: by bundling it inside a fake anti-virus software installation.

Trend Micro says that a key vulnerability in smart homes is the control systems and automation platforms used to coordinate all our smart devices. The increasing complexity with each additional device and automation rule also means an expanding attack surface.

Trend Micro found that the radio signals crane controllers use are not encrypted over the air in any way, and can be easily intercepted and spoofed using off-the-shelf equipment and a basic knowledge of electronics and radio engineering.

Trend Micro discovered that a hacking group, nicknamed Mirrorthief, relied on the scripting technique to steal card data from 201 online campus stores across the US and Canada on April 14th. The team slipped its scripts into the checkout pages of the sites (all created by a common developer, PrismRBS) to harvest full card details, names, addresses and phone numbers.
Trend Micro comments that the delineation between pure web defacement and cybercriminal or cyberespionage activity is disappearing. If this continues and escalates, then the line between defacers, hacktivists and cybercriminals will become even more blurred.
Trend Micro is now making it possible to employ Kubernetes to orchestrate security scans of container images conducted by Trend Micro Deep Security, its suite of of tools that rely on deep packet inspection to protect applications using a combination of firewalls, intrusion protection systems and monitoring of logs and files.
Manufacturing networks still running outdated technology could risk their intellectual property and production processes. The Trend Micro report, Securing Smart Factories: Threats to Manufacturing Environments in the Era of Industry 4.0, outlines the security dimension of a new era for manufacturing driven by IoT and connectivity everywhere.

Trend Micro, an IT security company with U.S. headquarters in Irving, has partnered with Moxa to launch TXOne Networks. The joint venture will focus on security needs present in Industrial Internet of Things (IIoT) environments, including smart manufacturing, smart cities, smart energy, and more.
Data breaches have become a recurring nightmare for enterprises and consumers alike. And the security outlook isn't likely to improve anytime soon, with at least one industry report forecasting a range of new cyberattack vectors in 2019.

More than a week after LockerGoga infected the Norwegian aluminum manufacturer Norsk Hydro, researchers are still trying to figure out the ransomware’s delivery mechanism. As LockerGoga evolves with new features, researchers are left trying to understand what the group behind the ransomware is really after.

A bipartisan bill set to be introduced on Wednesday aims to close what is regarded as a major gap in congressional cybersecurity and extend the government's protections to senators and their staffers' personal phones and computers.
LockerGoga - the malware that recently disrupted operations at Norwegian aluminum company Norsk Hydro - is the latest example of the rapidly changing nature of ransomware attacks.
From the EU to Texas, law enforcement and security professionals are warning that the telecom threat landscape is evolving as fraudsters leverage telecom infrastructure to conduct network-based fraud attacks, according to multiple sources.
Simpler is better. While that might be a frequent truism in life, it's especially applicable to the technology landscape facing organizations, as CISOs attempt to manage cloud services, 5G and other emerging technologies, says Steve Neville, director of corporate marketing at Trend Micro.

Reviewing 2018 attacks, Jon Clay, director of global threat communications at Trend Micro, says social engineering persists, including phishing attacks, while criminals also continue to steal credentials, lob ransomware at targets and push cryptomining malware.
A team of security researchers has hacked a Tesla Model 3 car on the last day of the Pwn2Own 2019 hacking contest that was held this week in Vancouver, Canada.
Nearly half (49%) of global organizations feel more exposed to security breaches because of skills shortages, according to a new Trend Micro study. The vendor polled 1,125 IT decision makers around the world and found that nearly two-thirds (64%) have experienced an increase in attacks over the past year.

Those thinking artificial intelligence (AI) will steal their jobs need not worry – the software is only filling the blanks, at the moment. And the blanks, at least when it comes to cybersecurity, are quite large. According to the latest Trend Micro figures, organisations worldwide are faced with an ‘ongoing and often detrimental’ shortage of cybersecurity talent.
The growth of 5G and the Internet of Things may be helping to bring smarter and more connected experiences and services around the world, but may also be exposing users to more security worries.

Experts from SolarWinds, Trend Micro, Vade Secure, WatchGuard Technologies, and Webroot discuss five things worth worrying about online, and suggested countermeasures for mitigating them.