Skip to main content

TrendAI™ Ranks #1 on CyberGym with a 97% Exploit-Remediation Score

TrendAI™ Deep Research

spark

Featured Articles

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation
AIOT & critical infrastructure

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation

The critical systems we can’t afford to lose are the same ones attackers are racing to target. With a new generation of AI-augmented cyber threats, what used to be weeks of warning can collapse into mere hours. What is the current state of the threat landscape for essential industries, and what can organizations do to fortify their defenses? Uncover this and more in our report.

Read article
AIDeepfakesPhishing & BEC
Deepfake It ‘til You Make It: A Comprehensive View of the New AI Criminal Toolset

This report takes a comprehensive look at how deepfakes are used to support criminal business processes, what are the toolkits criminals are exploiting to power their deepfake creation, and what the deepfake underground looks like.

Read Article
ASM ASRMCyber crime
Proactive Security: The Role of Exposure Management and Detection-Response Capability

Cyberattacks are growing increasingly sophisticated and frequent, which is why security strategies focused solely on detection and response are no longer sufficient. This reality brings renewed attention to the importance of identifying and mitigating cyber risks before incidents occur.

Read Article
AILLMs
The Road to Agentic AI: Defining a New Paradigm for Technology and Cybersecurity

Our latest research provides a framework for understanding agentic AI systems, outlines their core characteristics, and examines the security implications surrounding their use.

Read Article
AILLMsSoftware supply chain
Slopsquatting: When AI Agents Hallucinate Malicious Packages

Our research examines how AI coding assistants can hallucinate plausible but non-existent package names—therefore enabling slopsquatting attacks—while also providing practical defense strategies that organizations can implement to secure their development pipelines

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part V: Securing LLM Services

To conclude our series on agentic AI, this article examines emerging vulnerabilities that threaten AI agents, focusing on providing proactive security recommendations on areas such as code execution, data exfiltration, and database access.

Read Article
Cyber crimeExploits & Zero-DaysBotnets
The Rise of Residential Proxies as a Cybercrime Enabler

This research discusses how residential proxies help cybercriminals bypass antifraud and IT security systems, and how vulnerabilities in the IoT supply chain are exploited where Android-based devices are shipped pre-infected.

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part IV: Database Access Vulnerabilities

How can attackers exploit weaknesses in database-enabled AI agents? This research explores how SQL generation vulnerabilities, stored prompt injection, and vector store poisoning can be weaponized by attackers for fraudulent activities.

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part III: Data Exfiltration

In the third part of our series we demonstrate how risk intensifies in multi-modal AI agents, where hidden instructions embedded within innocuous-looking images or documents can trigger sensitive data exfiltration without any user interaction.

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part II: Code Execution

Our research examines vulnerabilities that affect Large Language Model (LLM) powered agents with code execution, document upload, and internet access capabilities. This is the second part of a series diving into the critical vulnerabilities in AI agents.

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part I: Introduction to AI Agent Vulnerabilities

This introductory post kicks off a blog series on AI agent vulnerabilities, outlining key security risks like prompt injection and code execution, and sets the stage for future parts, which will dive deeper into issues such as code execution flaws, data exfiltration, and database access threats.

Read Article