Skip to main content

TrendAI™ Ranks #1 on CyberGym with a 97% Exploit-Remediation Score

TrendAI™ Deep Research

spark

Featured Articles

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation
AIOT & critical infrastructure

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation

The critical systems we can’t afford to lose are the same ones attackers are racing to target. With a new generation of AI-augmented cyber threats, what used to be weeks of warning can collapse into mere hours. What is the current state of the threat landscape for essential industries, and what can organizations do to fortify their defenses? Uncover this and more in our report.

Read article
AIOT & critical infrastructure
Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation

The critical systems we can’t afford to lose are the same ones attackers are racing to target. With a new generation of AI-augmented cyber threats, what used to be weeks of warning can collapse into mere hours. What is the current state of the threat landscape for essential industries, and what can organizations do to fortify their defenses? Uncover this and more in our report.

Read Article
IoT & smart devicesASM ASRM
Rethinking the External Attack Surface: Managing the Growing Risk of Open Cyber-Physical Data

China-aligned operational relay box (ORB) infrastructure is harvesting open sensor data at scale, and most defenders can't see it. Our report dives into how these ORBs can use open telemetry for data collection and other purposes.

Read Article
HacktivismRansomware & extortion
Mapping the Criminal Economy Targeting Critical Infrastructure

TrendAI™ Research went inside the forums, marketplaces, and Telegram channels where access to factories, utilities, and energy firms is bought, sold, and weaponized. Combing through two years’ worth of data revealed an underground where financially motivated brokers and ransomware crews now operate alongside state-aligned hacktivists, sharing the same entry vectors, the same pirated training, and in some cases, the same personnel.

Read Article
Exploits & Zero-Days
Security 101: Virtual Patching

What happens to an unpatched or vulnerable application or organization’s IT infrastructure? Here's how virtual patching helps enterprises address vulnerability and patch management woes.

Read Article
AI governance
Securing Sovereign AI: Practical Controls Across Physical, Software, and Model Supply Chains

Sovereign AI places responsibility for every layer of the security stack in the operator's hands, and this article examines the threats that accompany that shift alongside the practical controls that keep nationally owned AI systems trustworthy.

Read Article
Cloud security
An Invisible Attack Surface: Thousands of Industrial Control Systems Exposed Near Data Centers

TrendAI™ Research's investigation of ICS protocols near U.S. data centers uncovered thousands of vulnerable devices controlling critical cooling, power, and environmental infrastructure. These systems—designed for operational efficiency, not security—were accessible from the public internet.

Read Article
AI
Pwning Agentic AI Part III: Securing Your AI Agent

This final installment of our trilogy on Pwning Agentic AI covers defenses against the return-to-tool (RTT) attacks—read-only Postgres bypass, support-ticket ransomware, and KYC passport exfiltration—demonstrated in Part II. Here we take a look at what works and what doesn’t against this new class of attack.

Read Article
Cyber crime
What Cybercriminals Look For in Corporate Insiders

The supply and demand for insider threat actors have evolved from isolated opportunism into a structured, thriving criminal market, complete with brokers, recruiters, referral bonuses, guarantor services, and revenue-sharing arrangements. This research examines that market across different industries.

Read Article
AIAPTsThreat reports
2026 H1 APT Report: How APTs Are Weaponizing Trust in the Age of AI

State-aligned threat actors are folding AI into every stage of the attack chain while hiding their infrastructure inside the services defenders already trust. This report unpacks the geopolitics driving the activity and what defenders should prioritize next.

Read Article
AICyber threats
The Vulnerability Window Is Closing Quickly: What CISA and Five Eyes Now Say About Public Sector Security

CISA's BOD 26-04 and a new Five Eyes statement highlight the same urgent gaps in vulnerability management. Find out what these developments mean for your security program.

Read Article