| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|

Researchers at cybersecurity company Trend Micro ran a simulated factory network for seven months that invited all sorts of digital miscreants into the fray. Different attackers used the mock network, or honeypot, to mine cryptocurrency and infected it with two strains of a ransomware known as CrySIS.

Trend Micro's Zero Day Initiative (ZDI) has now officially announced the first Pwn2Own for 2020, to take part in Vancouver at CanSecWest, March 18-20. This time the stakes have been upped in the automotive category: the hacker who can evade the multiple layers of security found in a Tesla Model 3 to pull off a complete vehicle compromise will win a $500,000 (£380,000) prize. Oh yes, and a brand spanking new Tesla Model 3 for good measure.

Trend Micro aims to maintain its leadership position in cloud security over Palo Alto Networks through the $70 million purchase of cybersecurity startup Cloud Conformity.
The Tokyo-based platform security giant said its acquisition of the 50-person cloud security posture management company will help Trend Micro address misconfigurations and unprotected user accounts in the public cloud space, according to Chief Operating Officer Kevin Simzer.

Trend Micro today announced an alliance with Snyk through which alerts about vulnerabilities in open source code will be passed on to the tools Trend Micro makes available to apply virtual patches to both monolithic and microservices-based applications.

Trend Micro, a cybersecurity and defense company, recently announced a strategic partnership with the developer-first security company Snyk to help businesses cope with potential vulnerabilities without interrupting the software delivery process.
The new alliance integrates open source vulnerability intelligence from Snyk with Trend Micro’s comprehensive ability to detect vulnerabilities for teams operating in a DevOps environment.

Hackers will soon be able to stress-test the Facebook Portal at the annual Pwn2Own hacking contest, following the introduction of the social media giant’s debut hardware device last year.

Trend Micro is among the top five endpoint security vendors who’ve been in the battle since the earliest iterations of antivirus software, more than three decades ago. The company has evolved far beyond those days. They came to Las Vegas prepared to push detection and response beyond the endpoint.

A report from Trend Micro detailed some of the latest ways cybercriminals are using the social media platform to defraud users of their cash. Trend Micro analyzed Twitter data over a three-day period in February and found criminals are gaming search engine results to lure more victims.

Data from Black Hat’s fifth attendee survey of more than 300 information security professionals uncovered massive concern over the security of the 2020 U.S. presidential election – and most think the picture is bleak. “In any jurisdiction where digital election technology is not treated like critical infrastructure it is akin to having unregulated ATM machines,” said Greg Young, vice president of cybersecurity at Trend Micro.

Enterprise search engine Elasticsearch is under threat of being turned into a sophisticated cryptocurrency mining botnet to be used in distributed denial of service (DDoS) attacks. Trend Micro describes a new malware strain that launches multi-stage attacks on publicly accessible databases and servers that run old versions of Elasticsearch software.

Trend Micro said it has made its Deep Security as a Service product available on the Microsoft Azure Marketplace. Launching at Microsoft’s Inspire 2019 event, the Trend Micro offering lets organizations combine the benefits of security software-as-a-service (SaaS) with consolidated cloud billing and usage-based, metered pricing.

Trend Micro announced the extension of its industry leading network protection to the cloud, now available on Amazon Web Services (AWS) Marketplace. This was delivered in response to the operational challenges enterprises often experience with available network security solutions. It will first be available for AWS Transit Gateway, with multiple deployment models planned to follow.

According to a recent report issued by security researchers at Trend Micro, ATM malware has become a commodity and any criminal with $1,000 to invest can start attacking ATMs in no time.

A vulnerability allows any website to forcibly join a user to a Zoom call, with their video camera activated, without a user's permission. According to Trend Micro's Greg Young, having your camera and audio enabled on your Mac without your knowledge can create a number of scenarios with bad outcomes, including the use of the captured video or screenshots for blackmail.

The attacker behind the development of Anubis has been active for at least 12 years, and in order to stay current, has retooled the malware for use in fresh attack waves, according to Trend Micro researchers.

DevOps initiatives have become important for 74% of organizations over the past year, but communication must improve for DevOps to be successful, according to Trend Micro.

Cybersecurity experts from Trend Micro blocked five million attempted hacks of IoT cameras. Trend Micro teamed up with IP security solution provider VIVOTEK in a bid to secure IoT cameras. Data from 7,000 IP cameras were analysed by Trend Micro to find the scale of the threat against them, and how few protections they have.

The first day of the re:Inforce conference showed how AWS views security—as a fundamental part of building technology. Trend Micro's Mark Nunnikhoven took away three repeated themes: Security is a key business concern, automation is key part of modern security, and security must be built into the fabric of everything.

Trend Micro researchers discovered a cryptocurrency mining botnet that uses the Android Debug Bridge (ADB) Wi-Fi interface and SSH connections to hosts stored in the known_hosts list to spread to other devices.
Trend Micro announced it has blocked 5 million attempted cyberattacks against IP cameras in just five months. Through its strategic partnership with VIVOTEK, a global leading IP security solution provider, Trend Micro’s IoT security solutions are embedded in globally deployed IP cameras to provide superior protection.
According to researchers at Trend Micro, criminals have been using hacking tools that were reportedly stolen from the National Security Agency in targeting companies around the world as part of a cryptomining campaign since March.
SmarTone Japanese operator NTT Docomo will launch a service designed to protect IoT devices running on its mobile network using Trend Micro’s security platform. Protection will be enabled by the Docomo Cloud Platform Network Security Service. The security shield will mainly target Docomo’s customers who are building infrastructure-as-a-service environments.

Trend Micro has confirmed that attackers have been exploiting a vulnerability in the Oracle WebLogic server to install monero (XMR) mining malware, while using certificate files as an obfuscation trick.
Trend Micro published its findings on a new malware, dubbed BlackSquid, which has proven itself to be especially dangerous. The malware has emerged from the depths to attack web servers with a barrage of exploits designed to land illicit cryptocurrency miners.

Trend Micro's Bill Malik tells TechRadar about some of the most pressing IoT threats, including phishing and business email compromise attacks as well as ransomware.
Real estate insurance company First American Financial Corp exposed nearly 885 million sensitive customer documents dating back up to 16 years on a publicly available web page. Trend Micro's Mark Nunnikhoven comments that BEC is a rising issue in the real estate market and is starting to target realtors. An attacker can apply a sense of urgency when posing as a realtor and try to fool a buyer into sending money to a fake account, or vice versa.

Trend Micro is extending the reach of its container security offerings to now address the full range of the DevSecOps life cycle. The latest updates to Trend Micro Deep Security add the ability to inspect all lateral and horizontal traffic movement between containers and platform layers such as Kubernetes and Docker.

Security researchers from Trend Micro said they had recently discovered a new variant of Trickbot arriving via redirection URL in a spam mail message. The URL appears to point toward a Google domain but instead redirects users who click on it to a site that downloads Trickbot on the user's system.

Microsoft released a patch for an elevation-of-privileges vulnerability being exploited in the wild. It’s tied to the Windows Error Reporting feature and is being abused by attackers who have gained local access to affected PCs. According to Trend Micro's Zero Day Initiative, they would need to first gain access to run code on a target system, but malware often uses elevations like this one to go from ‘user’ to ‘admin’ code execution.

Trend Micro's Greg Young shares how complex IoT environments (CIEs) offer new opportunities for hackers to launch physical and digital attacks. That’s bad news for IT professionals as it means a further expansion of the corporate attack surface.
Cybersecurity researchers at Trend Microhave detailed a new means of the Dharma family of ransomware being deployed: by bundling it inside a fake anti-virus software installation.

Trend Micro says that a key vulnerability in smart homes is the control systems and automation platforms used to coordinate all our smart devices. The increasing complexity with each additional device and automation rule also means an expanding attack surface.

Trend Micro found that the radio signals crane controllers use are not encrypted over the air in any way, and can be easily intercepted and spoofed using off-the-shelf equipment and a basic knowledge of electronics and radio engineering.

Trend Micro discovered that a hacking group, nicknamed Mirrorthief, relied on the scripting technique to steal card data from 201 online campus stores across the US and Canada on April 14th. The team slipped its scripts into the checkout pages of the sites (all created by a common developer, PrismRBS) to harvest full card details, names, addresses and phone numbers.
Trend Micro comments that the delineation between pure web defacement and cybercriminal or cyberespionage activity is disappearing. If this continues and escalates, then the line between defacers, hacktivists and cybercriminals will become even more blurred.
Trend Micro is now making it possible to employ Kubernetes to orchestrate security scans of container images conducted by Trend Micro Deep Security, its suite of of tools that rely on deep packet inspection to protect applications using a combination of firewalls, intrusion protection systems and monitoring of logs and files.
Manufacturing networks still running outdated technology could risk their intellectual property and production processes. The Trend Micro report, Securing Smart Factories: Threats to Manufacturing Environments in the Era of Industry 4.0, outlines the security dimension of a new era for manufacturing driven by IoT and connectivity everywhere.

Trend Micro, an IT security company with U.S. headquarters in Irving, has partnered with Moxa to launch TXOne Networks. The joint venture will focus on security needs present in Industrial Internet of Things (IIoT) environments, including smart manufacturing, smart cities, smart energy, and more.
Data breaches have become a recurring nightmare for enterprises and consumers alike. And the security outlook isn't likely to improve anytime soon, with at least one industry report forecasting a range of new cyberattack vectors in 2019.

More than a week after LockerGoga infected the Norwegian aluminum manufacturer Norsk Hydro, researchers are still trying to figure out the ransomware’s delivery mechanism. As LockerGoga evolves with new features, researchers are left trying to understand what the group behind the ransomware is really after.

A bipartisan bill set to be introduced on Wednesday aims to close what is regarded as a major gap in congressional cybersecurity and extend the government's protections to senators and their staffers' personal phones and computers.
LockerGoga - the malware that recently disrupted operations at Norwegian aluminum company Norsk Hydro - is the latest example of the rapidly changing nature of ransomware attacks.
From the EU to Texas, law enforcement and security professionals are warning that the telecom threat landscape is evolving as fraudsters leverage telecom infrastructure to conduct network-based fraud attacks, according to multiple sources.
Simpler is better. While that might be a frequent truism in life, it's especially applicable to the technology landscape facing organizations, as CISOs attempt to manage cloud services, 5G and other emerging technologies, says Steve Neville, director of corporate marketing at Trend Micro.

Reviewing 2018 attacks, Jon Clay, director of global threat communications at Trend Micro, says social engineering persists, including phishing attacks, while criminals also continue to steal credentials, lob ransomware at targets and push cryptomining malware.
A team of security researchers has hacked a Tesla Model 3 car on the last day of the Pwn2Own 2019 hacking contest that was held this week in Vancouver, Canada.
Nearly half (49%) of global organizations feel more exposed to security breaches because of skills shortages, according to a new Trend Micro study. The vendor polled 1,125 IT decision makers around the world and found that nearly two-thirds (64%) have experienced an increase in attacks over the past year.

Those thinking artificial intelligence (AI) will steal their jobs need not worry – the software is only filling the blanks, at the moment. And the blanks, at least when it comes to cybersecurity, are quite large. According to the latest Trend Micro figures, organisations worldwide are faced with an ‘ongoing and often detrimental’ shortage of cybersecurity talent.
The growth of 5G and the Internet of Things may be helping to bring smarter and more connected experiences and services around the world, but may also be exposing users to more security worries.

Experts from SolarWinds, Trend Micro, Vade Secure, WatchGuard Technologies, and Webroot discuss five things worth worrying about online, and suggested countermeasures for mitigating them.