| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
Security vendor Trend Micro recently discovered a new method of delivering malware that doesn't require a mouse click to trigger.
"While features like macros, [object linking and embedding], and mouse hovers do have their good and legitimate uses, this technique is potent in the wrong hands," researchers from antivirus provider Trend Micro wrote in a blog post published Friday morning.
Researchers from Trend Micro recently discovered Persirai targeting over 1,000 IP camera models based on multiple original equipment (OEM) products.
Popular chat platforms such as Slack, Discord and Telegram can be abused by malicious actors and turned into command and control (C&C) infrastructure, according to Trend Micro.
Hackers are abusing Slack, Discord, Telegram and other third-party chat platforms by incorporating them into their malicious command-and-control infrastructure and then using their functionality to communicate data and even download malware, according to a new Trend Micro report.
A study of the Dark Web by Trend Micro shows that cybercriminals attack each other with almost the same ferocity as they reserve for their victims outside of it.

Trend Micro states that more than 90 percent of successful hacks and data breaches stem from phishing, emails crafted to lure their recipients to click a link, open a document or forward information to someone they shouldn’t. Training users how to detect and react to these threats are a critical ransomware deterrent.
“Behind most modern conveniences, there exists a SCADA system somewhere that controls them,” Trend Micro researchers pointed out in a new report that delves in the heart of vulnerabilities affecting SCADA systems’ Human Machine Interfaces (HMIs).
Trend Micro researchers are taking a stand against the published reports stating UIWIX ransomware is the new WannaCry when, in fact, the only thing it has in common with Wanacrypt0r is its threat vector.
Meanwhile, iOS 10.3.2 fixes 41 vulnerabilities including multiple fixes for WebKit, the most severe of which “could allow the processing of maliciously crafted web content to allow arbitrary code execution”, ZDI said.
Researchers at IT security company Trend Micro say warnings that the Uiwix ransomware could be a more dangerous version of WannaCry might be inaccurate, according to a new report.

Cybersecurity experts say this piece of malware had an especially malicious quality. Mark Nunnikhoven is vice president of cloud research at the security software company Trend Micro.
The Zero Day Initiative (ZDI), which organizes Pwn2Own, published six advisories on Wednesday for each of the security holes fixed by Microsoft.
The malware, called Persirai, has been found infecting Chinese-made wireless cameras since last month, security firm Trend Micro said on Tuesday. The malware does so by exploiting flaws in the cameras that a security researcher reported back in March.

"The industrial robot – it's not ready for the world it's living in," said Mark Nunnikhoven, vice president of cloud research at Trend Micro. "The reality is these things are being connected in more and more places. There are a lot of attacks that could happen in that environment."

The software that runs internet-connected industrial robots is outdated and vulnerable to hacking, according to a new report from cybersecurity firm Trend Micro and the Politecnico de Milano. The researchers found tens of thousands of industrial devices were susceptible to hackers, which included industrial robots.
Trend Micro's Mark Nunnikhoven said the attack was "extremely clever" because it's difficult to filter email with a legitimate Google URL. The URL can't be blocked because it's a legitimate domain, owned and controlled by Google. Defending against this attack relies entirely on the user," he noted.
"As far as the robot thinks, it's still drawing a straight line," Mark Nunnikhoven, vice president of cloud research at Trend Micro, told Forbes. "It's a remote code exploit to change the configuration file, we're not changing the instructions, we’re changing what the robot believes to be true about its environment.
First emerging on the Russian underground marketplace in March 2016, Cerber has been issued in a number of versions with each iteration evolving its structure, techniques and functions. It is now being cited by Trend Micro as the "most prolific family of ransomware in the threat landscape."
Discovered by Trend Micro, FalseGuide's main focus is on infecting and adding as many devices to a centrally-managed botnet. The purpose of this botnet is to show unrequested ads to victims, via popups or other means.

"Despite the best efforts of law enforcement to stem the exponential growth of cybercrime, the truth is that it's an uphill struggle," writes Ed Cabrera, Trend Micro's chief cybersecurity officer. "Transnational cybercriminals these days are well resourced, determined and agile."

A hacking group linked by cybersecurity experts to Russia's military intelligence apparatus has begun taking aim at France's centrist presidential candidate, Emmanuel Macron, the cybersecurity firm Trend Micro said in a report published on Tuesday.

The group, dubbed "Pawn Storm" by security firm Trend Micro, used email phishing tricks and attempted to install malware at think tanks tied to Chancellor Angela Merkel's Christian Democratic Union (CDU) party and coalition partner, the Social Democratic Party (SPD), Feike Hacquebord said.

“There are several things which suggest that the group behind the Macron hacking was also responsible for the DNC breach, for example. We found similarities in the IP addresses and malware used in the attacks,” said Rik Ferguson, vice president of Trend Micro’s security research program.

Machine learning serves as a heavy lifter in security software protecting businesses’ data from cyber criminals’ exfiltration efforts. Since the first deluge of spam created the demand for email security, Trend Micro has been researching and implementing strategies for combining computer intelligence with the wisdom of human experience. Its XGen™ Smart Protection Suite focuses on endpoint, email, and web security, all of which are regularly exploited by criminals.