Vulnerabilities And Exploits
7 articles
-
AI and Emerging TechnologiesStars Don’t Save You: Popularity Is Not Security in the MCP Ecosystem
Building on our previous research, we correlated the security issues identified in public MCP servers with metadata crawled from popular directories. We then analyzed whether indicators such as popularity, activity, and vetting serve as reliable metrics to infer the risk of adopting an MCP server.
June 24th, 2026Vincenzo Ciancaglini, Marco Balduzzi, Alfredo Oliveira, David Fiser
Read article -
Internet Of ThingsThe Attackers Are Already Inside: NERC CIP-015 Is How the Grid Fights Back
NERC CIP-015 is the first NERC CIP standard to mandate internal network security monitoring for Bulk Electric System environments. Here is what it requires, why OT environments make compliance hard, and how TrendAI™ addresses each obligation.
June 22nd, 2026Amruta Namjoshi, Bharat Mistry
Read article -
Vulnerabilities And ExploitsThe Industrialization of Botnets: Automation and Scale as a New Threat Infrastructure
Today’s botnet operations, enabled by automation and shared resources, are outpacing traditional response and patching models. This highlights the growing importance of security capabilities that can match the speed and scale of these attacks.
February 26th, 2026Ashish Verma, Deep Patel, Simon Dulude
Read article -
Vulnerabilities And ExploitsMCP Security: Network-Exposed Servers Are Backdoors to Your Private Data
Exposed MCP servers pose a risk for organizations utilizing them. Our research examined the types of concerns that emerge and how to keep systems safe through immediate and extended measures.
July 16th, 2025Alfredo Oliveira, David Fiser
Read article -
CybercrimeThe Rise of Residential Proxies as a Cybercrime Enabler
This research discusses how residential proxies help cybercriminals bypass antifraud and IT security systems, and how vulnerabilities in the IoT supply chain are exploited where Android-based devices are shipped pre-infected.
May 27th, 2025Feike Hacquebord, Philippe Lin, Fyodor Yarochkin, Vladimir Kropotov
Read article -
AI and Emerging TechnologiesUnveiling AI Agent Vulnerabilities Part III: Data Exfiltration
In the third part of our series we demonstrate how risk intensifies in multi-modal AI agents, where hidden instructions embedded within innocuous-looking images or documents can trigger sensitive data exfiltration without any user interaction.
May 12th, 2025Sean Park
Read article -
Vulnerabilities And ExploitsMalicious Script Plagues Over 2,000 WordPress Accounts, Redirects Visitors to Scam Sites
Over 2,000 WordPress sites were compromised by a malicious script that redirects visitors to scam sites, gains admin access, and installs fake plugins.
January 24th, 2020TrendAI™ Research
Read article