| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
Real estate insurance company First American Financial Corp exposed nearly 885 million sensitive customer documents dating back up to 16 years on a publicly available web page. Trend Micro's Mark Nunnikhoven comments that BEC is a rising issue in the real estate market and is starting to target realtors. An attacker can apply a sense of urgency when posing as a realtor and try to fool a buyer into sending money to a fake account, or vice versa.

Trend Micro is extending the reach of its container security offerings to now address the full range of the DevSecOps life cycle. The latest updates to Trend Micro Deep Security add the ability to inspect all lateral and horizontal traffic movement between containers and platform layers such as Kubernetes and Docker.

Security researchers from Trend Micro said they had recently discovered a new variant of Trickbot arriving via redirection URL in a spam mail message. The URL appears to point toward a Google domain but instead redirects users who click on it to a site that downloads Trickbot on the user's system.

Microsoft released a patch for an elevation-of-privileges vulnerability being exploited in the wild. It’s tied to the Windows Error Reporting feature and is being abused by attackers who have gained local access to affected PCs. According to Trend Micro's Zero Day Initiative, they would need to first gain access to run code on a target system, but malware often uses elevations like this one to go from ‘user’ to ‘admin’ code execution.

Trend Micro's Greg Young shares how complex IoT environments (CIEs) offer new opportunities for hackers to launch physical and digital attacks. That’s bad news for IT professionals as it means a further expansion of the corporate attack surface.