| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
Automation platforms are increasingly being used to chain multiple IoT devices together to create user-friendly smart applications – but that’s also creating unpredictable attack surfaces that can be hard to manage. A Trend Micro report released at RSA Conference 2019 warns that these types of complex IoT environments, which can involve a mix of local standalone servers, cloud-based servers and virtual assistant-based servers, are opening new risks for smart buildings.
Researchers at Trend Micro say they've found new malware that uses Slack channels, GitHub, and the file.io file-sharing site to steal data from Windows PCs.

It seems that some homes may be too smart for their own good. On Monday, March 5, researchers at the San Francisco RSA conference presented to an assembled crowd of journalists and cybersecurity experts an unexpected approach for hacking into the device-enabled homes of the modern day George and Lydia Hadley.
Orbiting hunks of metal make it possible for billions of earthlings to benefit from marvels of the digital age, from GPS signals and weather monitoring systems to the communication protocols for credit card authorizations and other complex transactions.

Smart home devices aren’t just for the home. Businesses are inviting more and more internet-connected devices into their offices and buildings as well. While the technology may simplify some tasks, security experts warn that the Internet of Things is also opening companies up to more security threats.

Today, endpoint security solution provider Trend Micro released their 2018 Trend Micro Cloud App Security Report. Trend Micro drew from the data collected by their Cloud App Security solution to formulate their findings; among these findings, Trend Micro discovered enterprises faced over 8 million high-risk email threats in 2018 alone—a significant increase over 2017.

A blue verified badge on Instagram is among the most sought after status symbols in the digital world, a must-have for many so-called influencers. But now a group of hackers are taking advantages of our obsession with appraisal online.
A group of Turkish-speaking hackers is hijacking popular Instagram profiles, including those belonging to actors and singers, and, in some cases, promising to turn back control to the victims in exchange for a ransom or nude photos and videos.
Traditional attacks, such as phishing and credential stuffing, continue to dominate the threat landscape for most industries, while well-known malware, such as WannaCry, remain a threat for behind-the-curve companies, according to two annual cyberthreat reports released today.

We hear about them all the time, another company getting its data breached, another credit card scanner hacked, but do you really know what a data breach is exactly and what it means if it happens to you? Here’s a quick rundown of data breaches and what you should know.
As long as there are ATMs, hackers will be there to drain them of money. And while ATM-targeted “jackpotting” malware—which forces machines to spit out cash—has been on the rise for several years, but a recent variant on the scheme takes that concept literally, turning the machine’s interface into something like a slot machine. One that pays out every time.
OT, IoT and systems targeted by cryptominers - those are among the main network security concerns of Greg Young, VP of cybersecurity at Trend Micro. Which technology trends should security leaders follow to improve network security? Young shares his insight.
The Outlaw group is conducting an active campaign which is targeting Linux systems in cryptocurrency mining attacks. On Tuesday, the JASK Special Ops research team disclosed additional details (.PDF) of the attack wave which appears to focus on seizing infrastructure resources to support illicit Monero mining activities.

Researchers at Trend Micro recently published their look inside online underground marketplaces in the Middle East and North Africa, where criminals are buying and selling malware, laundering money and event booking their next discount vacation.
Super Bowl LIII will draw the attention of millions of people around the world – and cybercriminals hoping to exploit attendees and fans before and during the big game.

Google has banned dozens of Android apps downloaded millions of times from the official Play Store after researchers discovered they were being used to display phishing and scam ads or perform other malicious acts.

Experts walk us through all the threats lurking in our high tech homes...and tell us some simple – but not always used – ways we can better protect ourselves.

The biggest technology trends ahead are expected to have an impact on security, including the adoption of cloud computing, plus advances in machine learning and artificial intelligence. Greg Young, from Trend Micro explains more.
Microsoft Exchange 2013 and newer versions are vulnerable to a privilege escalation attack that gives anyone with a mailbox a way to gain domain administrator rights at potentially 90% of organizations running Active Directory and Exchange, according to a security researcher.

It’s time to take stock of your private information. Monday, Jan. 28 is Data Privacy Day, which marks the 1981 signing of Europe’s Convention 108, the first legally binding international treaty involving privacy and data protection. But, more important, it’s a reminder that protecting your personal data is vital.
A global team of researchers recently took industrial system hacking to a whole new — and visual — level by exploiting flaws they discovered in radio frequency (RF) controllers that move cranes and other large machinery at construction sites and in factories.

In the future, industrial robots may create jobs, boost productivity and spur higher wages. But one thing seems more certain for now: They’re vulnerable to hackers.
Hundreds of e-commerce websites have been hit with a card-skimming attack that compromised an advertising plugin, according to research from Trend Micro and RiskIQ.
Federico Maggi will never forget the first time he saw a crane being hacked. Last March, he was on a strange kind of road trip. Travelling the Lombardi region of Italy with his colleague Marco Balduzzi in a red Volkswagen Polo, the pair hoped to convince construction site managers, who they’d never met or spoken with before, to let them have a crack at taking control of cranes with their hacking tools.

Most car manufacturers would dread the idea of someone hacking one of their vehicles, but Tesla has decided to go the other way and open up its software to a hacking contest called Pwn2Own in Vancouver.

Another day, another batch of bad apps in Google Play. Researchers at security firm Trend Micro have discovered dozens of apps, including popular utilities and games, to serve a ton of deceptively displayed ads — including full-screen ads, hidden ads and ads running in the background to squeeze as much money out of unsuspecting Android users.
Google has removed 85 Android apps from the official Play Store that security researchers from Trend Micro deemed to contain a common strain of adware.
Over 45,000 Chinese websites have been under a barrage of attacks from miscreants looking to gain access to web servers, ZDNet has learned.

When it is about memes, people usually download them right away on their devices to share further. Posting memes on Facebook and Twitter has become something of a trend today. But, did you ever wonder you could also download malware with these memes? Researchers have discovered some malicious Twitter memes posted on an account that Twitter has since suspended.

Preying on an individuals’ desire to personalize their mobile phones, scammers infused at least 15 Android wallpaper apps to redirect phony ad click revenue, reported Trend Micro in a blog post.
The Google Play Store removed the mobile phone apps, which were downloaded more than 222,200 times while being available over a period of several months. Victims were spotted in Italy, Taiwan, the United States, Germany and Indonesia appeared to be the most infected, according to Trend
Security researchers said they’ve found a new kind of malware that takes its instructions from code hidden in memes posted to Twitter.
You have probably seen dank memes that really speak to you, but research shows that memes can also be made to speak to malware that has infected a computer. A piece of malware analyzed in a report published Friday by Trend Micro responds to executable commands embedded in images posted on Twitter.
New research has highlighted an old problem: The Internet of Things isn't exactly secure. Hardly news, you might say, but the researchers from Trend Micro discovered that two popular IoT protocols are insecure by design. So insecure, indeed, that they are putting both 'Industry 4.0' smart factory implementations and smart cities at risk. In fact, these are the design flaws that could quite literally turn the lights out.

Cybersecurity firm Trend Micro today published a report on the state of IoT security. The company found that two of the leading machine-to-machine (M2M) protocols have inherent design issues, and are frequently deployed in an insecure manner.

NEWS ANALYSIS: AWS is on a $27 billion run rate growing 46 percent a year, CEO Andy Jassy said. Its customer and partner rolls continue to swell, and it's even taking its first steps into what until now has been a missing link: open source.
Security researchers competing in the Pwn2Own competition in Tokyo this week earned a collective $325,000 for demonstrating new exploits on devices made by Samsung, Xiaomi, and Apple.
Pwn2Own, a series of contests run by the Zero Day Initiative, brings security researchers to compete to expose the most vulnerabilities in popular software and devices. The competition in Tokyo on Tuesday and Wednesday focused on mobile devices.

As the popularity of cryptocurrency rises, so does the amount of cryptominer Tojans that are being created and distributed to unsuspecting victims. One problem for cryptominers, though, is that the offending process is easily detectable due to their heavy CPU utilization.

Trend Micro and NTT DoCoMo collaborated on an IoT network security service. It is built on the Trend Micro virtual network function suite on DoCoMo’s 5G open cloud.
An unknown threat actor has been targeting organizations with botnet malware that communicates with its command-and-control server via the Internet Relay Chat application layer protocol. Nicknamed Outlaw, the hacking group developed the botnet as a Perl language-based variant of Shellbot, according to a Nov. 1 blog post from Trend Micro, whose researchers uncovered the threat.

AI and machine learning won't magically solve all of the IT world's security problems, despite what some of the hype might suggest. Used sparingly, though, these technologies can make a security team's life much easier when operating at scale.
Trend Micro Apex One™ redefines endpoint security with the capabilities delivered as a single agent, with consistency across SaaS and on-premises deployments. This offering enhances automated detection and response and provides actionable insights that maximize security for customers and offers growth opportunities for the channel.
Security researchers warn of both new and re-emerging threats that can cause serious harm.

Last week, Trend Micro came to Boston for its annual Trend Insights industry analyst event. The company provided an overview of its business, products, and strategy.
Trend Micro announced its Apex One™ endpoint security offering on Oct. 15, providing organizations with a new set of capabilities. Apex One is the rebranded name for Trend Micro's endpoint security technology, which integrates malware prevention technology with endpoint detection and response (EDR) capabilities. The endpoint security is enabled via a single end-user agent and can be integrated with Trend Micro's managed detection and response (MDR) service.

Trend Micro rolled out its unified threat management product line in North America. Included are Trend Micro Cloud Edge, Worry-Free Services, Cloud Scanner, and more.

Cybersecurity insurance is getting a lot of attention from investors right now as more and more companies try to manage their increasing risks.
Trend Micro revealed that organizations around the world are exposing themselves to unnecessary cyber risk by failing to give IT security teams a voice when planning IoT project deployments in enterprise environments.
The Scoville Scale is a measurement chart used to rate the heat of peppers or other spicy foods. It can also can have a useful application for measuring cybersecurity threats. Cyber-threats are also red hot as the human attack surface is projected to reach over 6 billion people by 2022.
Talking on the changing role of the CISO and the security department internally at the Cloudsec conference in London, Leah MacMillan, SVP global marketing at Trend Micro, asked the panel if the role of the CISO was changing?

Cybersecurity reports are seldom comforting, and this year's Midyear Security Roundup reportthat Japan-based security company Trend Micro released last week is no exception. Somewhat surprising is that although microprocessor vulnerabilities like Meltdown and Spectre top the news, ransomware and cryptomining malware delivered the old fashioned way, by hacking, phishing, or drive-by attack, are perhaps the most active threats.