| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|

AvosLocker ransomware was discovered by Trend Micro researchers to have a new variant that could facilitate antivirus system deactivation and evade detection.

As per Trend Micro’s recent international Cyber Risk Index (CRI) findings for the second quarter of 2021, 76% of those surveyed anticipate a breach within the next 12 months.

Telemetry data gathered by Trend Micro shows that the food and beverage sector was the most hit industry between July 1, 2021 and February 28, 2022, followed by technology, finance, telecom, and media verticals.

Reports from outside Trend Micro have provided valuable insights into the alleged cyberattacks.

Touting its new Trend Micro One as a major step toward consolidating security products on a single platform, the company said it will offer a full suite of its security products to provide, among other things, “continuous lifecycle of risk and threat assessment with attack surface discovery, cyber risk analysis, and threat mitigation and response."

"It is a stressful time for all of the participants, making sure that what they've worked on over the last few months is still working," said Dustin Childs with Trend Micro's Zero Day Initiative, the organization that runs the contest.

“I, the creator of RU_Ransom, created this malware to harm Russia,” the code’s ransom note says, according to an analysis by security firm Trend Micro.

Additional vendors providing AI-based endpoint protection include Broadcom, CrowdStrike, SentinelOne, McAfee, Sophos, Trend Micro, VMWare Carbon Black, Cybereason, etc.

The technology can automatically discover and secure internal and external facing assets with attack surface discovery, cyber risk analysis, threat mitigation and response.

Trend Micro Monday relaunched its flagship software-as-a-service (SaaS) offering as a unified security platform, Trend Micro One, making it the latest vendor to emphasize the complexity of competing consoles in the security operations center.

The contest, organized by Trend Micro’s Zero Day Initiative (ZDI), saw 11 contestants demonstrating their exploits in the OPC UA Server, Control Server, Human Machine Interface, and Data Gateway categories.

At Pwn2Own, the stakes are a little bit lower, but the systems are the same as what you’ll find in the real world. This week in Miami, the targets were all industrial control systems that run critical facilities.

The newly published Cyber Risk Index, a study by Trend Micro and the Ponemon Institute, shows that more than three-quarters of global organizations expect to suffer a cyberattack in the next 12 months — 25% of which say an attack is "very likely."

“We observed active exploitation of Spring4Shell wherein malicious actors were able to weaponize and execute the Mirai botnet malware on vulnerable servers, specifically in the Singapore region,” said Deep Patel, Nitesh Surana and Ashish Verma, security researchers with Trend Micro, in a Friday analysis.

"We observed active exploitation of Spring4Shell wherein malicious actors were able to weaponize and execute the Mirai botnet malware on vulnerable servers, specifically in the Singapore region," said Trend Micro's researchers.

CrowdStrike, Microsoft and Trend Micro sit atop the Forrester Wave report for endpoint detection and response providers as vendors grapple with business data increasingly moving to the cloud.

A report by Trend Micro describing, “A floating battleground navigating the landscape of cloud-based cryptocurrency mining”, claims there’s an “hour-by-hour” battle between multiple groups over which gets to use compromised cloud.

Jon Clay, VP of threat intelligence at the cybersecurity company Trend Micro, recently shared with Enterprise Storage Forum his insights on the storage market and some storage security practices companies can implement.

Security researchers suspect that the Cyclops Blink malware could be used to “build infrastructure to further attacks on high-value targets.”

As autocomplete code writing tools become more and more popular, cybersecurity experts discuss what these tools lack to ensure their security.

Threat experts explain how “cyber patriots” have become involved in the Ukraine/Russia conflict, and how haphazard hacktivism could lead to unintended consequences.

Cybersecurity vendors share their response and ongoing support to citizens and employees of Ukraine as the situation evolves.

This article on TeamTNT’s activity surrounding striking Linux systems and Kubernetes builds on recent cryptojacking campaigns.

This article analyzes LiveAction’s new offering that combines behavior analysis and machine learning to expose malware in encrypted network traffic.

An analysis of SMS phone-verified account (PVA) services has led to the discovery of a rogue platform built atop a botnet involving thousands of infected Android phones.

Some senior execs have their heads in the sand when it comes to cybersecurity - and it might take falling victim to a cyberattack for that issue to be fixed.

Samba has patched a vulnerability that could enable remote, unauthenticated attackers to execute arbitrary code as root on impacted installations.

Researchers are calling a new strain of ransomware that targeted a U.S. bank last week "White Rabbit."

LockBit is a hugely popular form of ransomware for cyber criminals targeting Windows - and now cybersecurity researchers have identified a Linux-ESXi variant of it in the wild.

Security teams trying to defend their organizations need to adapt quickly to new challenges. Yesterday’s buzzwords and best practices have become today’s myths.

Cybersecurity researchers identify White Rabbit, which is a new ransomware that appears to have links to FIN8, a hacking group that previously focused on finances.

A Remote Access Trojan, otherwise known as a RAT, is a type of spyware that allows a cybercriminal to take control of the computer or other device it's installed on.

Praise be & pass the recipe for the software soup: There’s too much scrambling to untangle vulnerabilities and dependencies, say a security experts roundtable.

"Revolutionary" is basically a marketing term these days that's applied to everything from new detergents to cut-rate fashion styles.

Cybercriminals are increasingly using malicious QR codes to trick consumers.

The US Cybersecurity and Infrastructure Security Agency (CISA) has added fifteen common vulnerabilities and exposures (CVEs) to its Known Exploited Vulnerabilities Catalog, a veritable who’s-who of bugs that are being actively exploited.

A security vulnerability in VMware’s Cloud Foundation, ESXi, Fusion and Workstation platforms could pave the way for hypervisor takeover in virtual environments – and a patch is still pending for some users.

Three weeks after the Cybersecurity & Infrastructure Security Agency (CISA) issued an Emergency Directive ordering federal agencies to address their systems that are vulnerable to the Log4j flaw.

Casual computer users have probably never heard of this logging software, but it's used across the entire internet.

The latest Roomba cleans like a champ and is the first robot vacuum I've used that doesn't get tangled up in cables and cords

This week, host Connor Craven interviews Lori Smith, director of product marketing at Trend Micro, on extended detection and response (XDR).

Software in connected devices has little oversight. As more objects come online, that problem will snowball.

Researchers on Monday reported that they found threat actors who attacked Alibaba’s cloud-based Linux servers, disabling features in Alibaba’s Elastic Computing Service (ECS) instances to conduct illicit mining on the Monero cryptocurrency.

The Trend Micro study reveals pressing need for new way to discuss business risk.

Cybersecurity researchers at Trend Micro lift the lid on Void Balaur, a financially motivated cyber-crime group that has targeted politicians, journalists, human rights activists, medical professionals and others since 2015.

Just weeks after hackers managed to breach iOS 15 security measures and hack an Apple iPhone 13 Pro, now it's the turn of Samsung's current flagship smartphone, the Galaxy S21, to feel the hacking heat.

Build applications in the cloud like cattle, not pets, says Aaron Ansari, VP of cloud security at Trend Micro. He also strongly endorses ant relay races, but more on that later.

During the first day of Pwn2Own Austin 2021, contestants won $362,500 after exploiting previously unknown security flaws to hack printers, routers, NAS devices, and speakers from Canon, HP, Western Digital, Cisco, Sonos, TP-Link, and NETGEAR.

Ransomware attacks on the banking industry increased 1,300% during first half of 2021.
Lack of public disclosures for cloud bugs can allow vendors to sit on vulnerability reports and can prevent researchers from getting acknowledgement and payouts.